Re: iptables drops _some_ valid packets

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,
Setting /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_be_liberal to 1
did not solve the issue.

Thanks

On 9/19/06, Pascal Hambourg <pascal.mail@xxxxxxxxxxxxxxx> wrote:
Hello,

Daniel a écrit :
>
> Im having problems with iptables dropping some packets that belong to
> an established/valid connection.

If the kernel is >= 2.6.9 or includes the patch "tcp-window-tracking"
from the Netfilter patch-o-matic-ng, try to set the kernel parameter
/proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_be_liberal to 1.
See
http://www.netfilter.org/projects/patch-o-matic/pom-submitted.html#pom-submitted-tcp-window-tracking





[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux