xt_TARPIT (was: ipt_account / iptables 1.3.8)

Jozsef Kadlecsik kadlec at blackhole.kfki.hu
Wed Jul 18 17:02:45 CEST 2007


Hi,

On Wed, 18 Jul 2007, Patrick McHardy wrote:

>> +	/* This packet will not be the same as the other: clear nf fields */
>> +	nf_conntrack_put(nskb->nfct);
>> +	nskb->nfct = NULL;

If the target is called from the raw table, please attach the fake untrack 
entry to the created packet so that we could use TARPIT and conntrack 
nicely.

Best regards,
Jozsef
-
E-mail  : kadlec at blackhole.kfki.hu, kadlec at sunserv.kfki.hu
PGP key : http://www.kfki.hu/~kadlec/pgp_public_key.txt
Address : KFKI Research Institute for Particle and Nuclear Physics
           H-1525 Budapest 114, POB. 49, Hungary



More information about the netfilter-devel mailing list