xt_TARPIT (was: ipt_account / iptables 1.3.8)

Jozsef Kadlecsik kadlec at blackhole.kfki.hu
Wed Jul 18 17:02:45 CEST 2007


On Wed, 18 Jul 2007, Patrick McHardy wrote:

>> +	/* This packet will not be the same as the other: clear nf fields */
>> +	nf_conntrack_put(nskb->nfct);
>> +	nskb->nfct = NULL;

If the target is called from the raw table, please attach the fake untrack 
entry to the created packet so that we could use TARPIT and conntrack 

