First, please ignore my previous message about the missing conntrack destroy events. I was distracted by another problem that was causing me grief and looking in the wrong place. I had another question about conntrack - is there an easy way to tell conntrack -e to only report conntrack entries for one ethernet address? Alternately, I see that I can supply src_mask and a dest_mask, but i'm not sure how to specify inverse masks there. For example, I want to specify that conntrack -e shows me the entries with src or dest which are not in the ranges of 127.127.0.1/24 and 192.168.1.0/24. can I specify multiple inverse masks? On Wednesday 02 May 2007 16:56, Alan Ezust wrote: > I was just wondering, has anyone else observed that conntrack -e (running > in events mode) sometimes shows me DESTROY events and sometimes does not, > even for TCP protocol packets. Why would this be? -- Alan Ezust www.presinet.com Presinet, inc alan.ezust@xxxxxxxxxxxx Victoria, BC, Canada
Attachment:
pgpVxkiGOfjBE.pgp
Description: PGP signature