Hello, spaminator@xxxxxx a écrit :
Rebooting the bridge box left me again with an unloaded ip_conntrack_ftp. So I made an entry in /etc/modules which caters for the module to be loaded on (re)boot. Strange thing that, because other modules related to iptables are being loaded automatically, although they are not compiled into the kernel too. Are there other "surprise"-modules that have to be loaded via /etc/modules?
Only modules related to iptables rules are loaded automatically, when needed by a table, target or match in a newly created rule. Conntrack and NAT helper modules for special protocols (FTP, IRC DCC, TFTP, H.323, SIP...) are not related to any rule, thus not loaded automatically.