iptables throws unknown error - suspecting 32/64 compat issue

Jan Engelhardt jengelh at linux01.gwdg.de
Thu May 10 16:05:14 CEST 2007


On May 10 2007 16:02, Patrick McHardy wrote:
>> 
>> A lot ... as far as the filter table and sshcheck is concerned,
>> 
>> iptables -N sshcheck;
>> iptables -A sshcheck -m recent --name sshcheck --seconds 60 --update -j DROP;
>> iptables -A sshcheck -m hashlimit --hashlimit-name sshcheck \
>>         --hashlimit-mode srcip --hashlimit 4/min --hashlimit-burst 4 \
>>         -j RETURN;
>> iptables -A sshcheck -m recent --name sshcheck --set -j DROP;
>
>Did you get an "invalid size" message in the ringbuffer before the oops?

Now that you mention it, yes:

ip_tables: conntrack match: invalid size 80 != 72


	Jan
-- 



More information about the netfilter-devel mailing list