Re: v2.2 IP chains in 2.3.99pre3

From: Rusty Russell (rusty@linuxcare.com.au)
Date: Sat Apr 08 2000 - 07:01:52 EST


In message <20000329112002.A7157@thagdal.cloud9.co.uk> you write:
> > It's not allowed if iptables is `Y' (it's OK if it's N or M).
>
> The IPchains support won't build unless (I assume) connection tracking
> is enabled however. And once you say "Y" to that, it's removed from the
> list of options. I must admit, I'm not personally too worried about
> making this work now, because I just decided to switch to using IPtables
> instead.

Ahh. Sorry, my mistake. ipchains & ipfwadm are an ALTERNATIVE to
conntrack. Say N or M to that to get them.

> Getting IPtables to work when static-linked into the kernel would be a
> bonus though. Currently iptables whinges about not being able to find
> "filter" when the modules are static linked, but (subject to a small
> patch on the ipfilter mailing list) works just fine when loaded as modules.

Yep. Patch sent DaveM, expect to see it soon.

Rusty.

--
Hacking time.

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Fri Mar 31 2000 - 21:00:24 EST