Harald Dunkel <harald.dunkel@xxxxxxxxx> wrote: > Hi folks, > > I tried to limit the number of ssh connections per peer and for the > entire network, but on the second run of ipora.sh (attached) I got > this hiccup: [..] > [342160.909772] Call Trace: > [342160.909785] nf_conncount_destroy+0x59/0xc0 [nf_conncount] > [342160.909795] cleanup_match+0x45/0x70 [ip_tables] [..] > This is Debian's backports kernel for 4.19.12. > > Does this sound familiar? Yes, it is known. Fixes for this are in the stable queue for 4.19.17: https://git.kernel.org/pub/scm/linux/kernel/git/stable/stable-queue.git/tree/queue-4.19?id=536cc6c84a41b90d51933a27bdcef4e64719b7ce (the ones with "netfilter-nf_conncount" prefix).