[Bug 620] Connection reset by peer

bugzilla-daemon at bugzilla.netfilter.org bugzilla-daemon at bugzilla.netfilter.org
Tue Nov 24 14:52:07 CET 2009


http://bugzilla.netfilter.org/show_bug.cgi?id=620


kaber at trash.net changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |RESOLVED
         Resolution|                            |INVALID




------- Comment #17 from kaber at trash.net  2009-11-24 14:52 -------
No, it sounds like we found the cause.

When packets from a NATed connection are recognized as invalid (which might
happen for multiple reasons, f.i. retransmissions for which an ACK already
passed through the firewall) they are not associated with the conntrack,
meaning they'll have no NAT applied and are delivered to the unNATed
destination, which doesn't know about the connection and resets it.


-- 
Configure bugmail: http://bugzilla.netfilter.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.



More information about the netfilter-buglog mailing list