Configuration questions

Rusty Russell rusty@linuxcare.com.au
Sun, 27 Feb 2000 10:19:58 +1100


In message <20000226054928.F10043232@c446750-a.aurora1.co.home.com> you write:
> Feb 25 17:12:00 c446750-a kernel: nf_iterate: NF_STOLEN for 00000000.

Hi!

	Turn of CONFIG_NETFILTER_DEBUG in your kernel config.  It
spits out these for fragments.

> When I do I get tons of these (meaning several every second)
> which go away when I finally rmmod'd ip_conntrack.  I had the same problems
> with .18 which went away when I unloaded ip_conntrack and ip_defrag both.

Don't load ip_defrag: conntrack does defrag for you.

> both systems are currently running 2.3.47.  I can boot the server
> back into 2.2.12 and run ipchains, but I've been having MASSIVE
> problems with hackers of late and want to not run an ancient kernel
> (2.2.14 crashes the server's etherexpress pro constantly).

eepros have problems in 2.3.47: it's really quite unstable 8(

Should still works, however.

Rusty.
--
Hacking time.