2 msgGnome wallpaper
7 msgProblem upgrading kernel from 2.6.25.1to 2.6.26...
10 msgWhy does my system still want gcc 3.4.9?
23 msgNice level for X11
10 msgConstant hammering from Chinese IPs on prt 102[67]
1 msgjwhois quit working
12 msgeix-test-obolete
4 msgguest additions for vbox-1.6 gentoo guest on xp...
2 msg[OT] Automated Builds - Advice Plz
4 msgCanon Pixma driver cnijfilter-common-2.60-1.src...
3 msgemerge output confusion regarding upgradeable p...

conntrack and the netfilter howto
\ reader (12 May 2008)
. \ Norberto Bensa (12 May 2008)

6 msghelp!
5 msgChange NIC ordering
13 msgUPS recommendation
1 msgGnome File Browser - smaller Symbols
10 msginstalling lomount
8 msgemerge nano ?
7 msg[OT?] MTRR and PAT
5 msgDVD Problems...
Subject:conntrack and the netfilter howto
Group:Gentoo-user
From:reader
Date:12 May 2008


 
I'm trying to bone up on netfilter, iptables, conntrack etc etc.

Using the howto at:
http://gentoo-wiki.com/HOWTO_Iptables_and_stateful_firewalls#Firewall_design_bas ics

Early on after describing how to generate a netfilter enabled kernel,
the author has this to say:

"If you've already rebooted and are using your new netfilter-enabled
kernel, you can view a list of active network connections that your
machine is participating in by typing

"cat /proc/net/ip_conntrack"

Even with no firewall configured, Linux's conntrack functionality is
working behind the scenes, keeping track of the connections that your
machine is participating in"

That file is not present on my setup. I'm guessing it may have been
renamed since the howto was written... maybe to `nf_conntrack'. But in
the files listed in /proc/net... I don't see the behavior described.

Maybe someone can tell me what has changed or what is missing...

ls /proc/net:

arp ip_tables_matches netlink ptype
softnet_stat
arp_tables_matches ip_tables_names netstat raw
stat
arp_tables_names ip_tables_targets nf_conntrack route
tcp
arp_tables_targets ipt_hashlimit nf_conntrack_expect rt_acct
udp
dev ipt_recent packet rt_cache
udplite
dev_mcast mcfilter pnp snmp
unix
igmp netfilter protocols sockstat

--
gentoo-user mailing list



© 2004-2008 readlist.com