Re: iptables drops _some_ valid packets

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

Daniel a écrit :

Im having problems with iptables dropping some packets that belong to
an established/valid connection.

If the kernel is >= 2.6.9 or includes the patch "tcp-window-tracking" from the Netfilter patch-o-matic-ng, try to set the kernel parameter /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_be_liberal to 1. See http://www.netfilter.org/projects/patch-o-matic/pom-submitted.html#pom-submitted-tcp-window-tracking



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux