ipv4 conntrack module loading broken?
From: Meelis Roos <hidden>
Date: 2007-07-26 18:24:52
From: Meelis Roos <hidden>
Date: 2007-07-26 18:24:52
Hello, I tested 2.6.23-rc1 on my prep (arch=ppc) NAT firewall. iptables loaded rules fine (simplest test was with single SNAT rule in POSTROUTING chain in nat table) and iptables -L showed the rule was loaded. But no packets matched the rule and traffic passed un-NATed (just routed). Adding LOG rules showed that no packets reach POSTROUTING at all - and no packets read PREROUTING (didn't test more). However, after loading nf_conntrack_ipv4 module by hand, the existing rules started working. Is autoloading of nf_conntrack_ipv4 broken? -- Meelis Roos (mroos@linux.ee)