Possible conntrack problem

zottmann at ig.com.br zottmann at ig.com.br
Thu Jun 1 13:56:18 CEST 2006


Hi !! 

I am having a problem that I think may be related to conntrack. 

I am getting dropped packets in the firewall coming from our web server, 
source port 80, and going to external machines on high ports, with both ACK 
and SEQ numbers set. 

It seems to me that these packets are answers from our webserver to 
connections estabilished with it, but, for some reason, the connection 
information is being lost (maybe due to timeout?). 

How can I track this? Has anyone gone through something like it? 

Thanks in advance, 
Carlos. 




More information about the netfilter mailing list