Libnetfilter_conntrack problems

Harald Welte laforge at netfilter.org
Mon May 1 19:53:53 CEST 2006


On Thu, Apr 27, 2006 at 01:55:13PM +0200, Sébastien LAVEZE wrote:
> but not for destroy ==> nfct_open(CONNTRACK,
> NF_NETLINK_CONNTRACK_DESTROY), i never get any event

are you sure?  did you wait until the respective entries really timed
out from the conntrack table?

what does 'conntrack -E -e DESTROY' say?  do you then see the events?

> 2) I also would like to work with ids, when i get a conntrack via a
> callback the id field is always set to zero, is it normal ?

IIRC, we dropped ID's recently. I'm a bit lagging behind, though.

-- 
- Harald Welte <laforge at netfilter.org>                 http://netfilter.org/
============================================================================
  "Fragmentation is like classful addressing -- an interesting early
   architectural error that shows how much experimentation was going
   on while IP was being designed."                    -- Paul Vixie
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : /pipermail/netfilter-devel/attachments/20060502/acacf368/attachment-0001.pgp


More information about the netfilter-devel mailing list