On Monday 2011-09-19 13:20, Brian Schang wrote: > I dug into this a little bit and discovered: > # iptables -A test -m conntrack -p tcp --ctorigdstport 22 -j ACCEPT > iptables v1.4.12.1: conntrack rev 2 does not support port ranges > Try `iptables -h' or 'iptables --help' for more information. > > With some Googling, I discovered that Tom Eastep had encountered the same > issue. He submitted a patch for iptables and Jan Engelhardt ultimately released > 'iptables 1.4.12.1'. (It was not me who released 1.4.12.1.) Tom Eastep's fix was only merged after that release. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html