At 12:24 PM -0400 10/11/07, Matthew Saltzman wrote: >On Thu, 2007-10-11 at 10:01 -0400, Tony Nelson wrote: ... >> Do you have any evidence that ip_conntrack_sane exists? The only mention >> on Google is someone who couldn't find it (if I made sense of the >> translation from Chinese). > >I'm not even sure where to look. ip_conntrack_netbios_ns and >ip_conntrack_amanda load fine. The only files with similar names I can >find are >/lib/modules/<version>/kernel/net/netfilter/nf_conntrack_netbios_ns.ko >and /lib/modules/<version>/kernel/net/netfilter/nf_conntrack_amanda.ko, >but there is >a /lib/modules/<version>/kernel/net/netfilter/nf_conntrack_sane.ko. So >if those files are related to those modules, the answer should be yes. > >If not, then I really don't understand how the iptables modules thing >works at all. I see that the ip_conntrack_* modules are now called nf_conntrack_*, which is why my search failed -- and nf_conntrack_sane is fairly new, so I don't have nf_conntrack_sane.ko. -- ____________________________________________________________________ TonyN.:' <mailto:tonynelson@xxxxxxxxxxxxxxxxx> ' <http://www.georgeanelson.com/>