Linux Netfilter Devel -- Re: Possible conntrack/kernel bug - not ...

On 26.07.2011 01:45, Jan Engelhardt wrote: > > On Thursday 2011-07-21 11:14, Patrick McHardy wrote: >> On 21.07.2011 10:43, Ed W wrote: >>> On 21/07/2011 07:16, Patrick McHardy wrote: >>>> It's expected behaviour since ICMP packets related to an existing >>>> connection don't refresh the connection and are not accounted. >>>> I don't have an opinion on whether they should be accounted, I >>>> guess you could argue both ways. >>> >>> Thanks for the feedback. >>> >>> I guess I was hoping that conntrack could be used for accurate bandwidth >>> accounting, however, it seems to ignore this type of packet, so it's >>> count is going to deviate from a simple interface byte counter? >> >> Yes, but it's going to do that anyways since there are also packets >> which can't be tracked, invalid packets, etc. Also conntrack doesn't >> account for link layer headers and only for IPv4/v6 packets. > > While toying around, I found that if an skb is classified as RELATED, > skb->nfct->master always points to skb->nfct itself. Is that a bug > or something? Should it not point to the origin CT? For RELATED connections expected by a helper? That would be wrong, it should point to the real master. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.


Kernel Ip Logger - Bookshelf

Linux kernel in a nutshell

Linux kernel in a nutshell

The default value is 6666. target-ip IP address for the logging agent. target- mac-address ... Cause the kernel log level to be set to the debug level, ...

Hardening Linux

Hardening Linux

The previous tcp() source statements specify 192.168.0.1 as the IP address ... To add kernel logging to syslog-NG, adjust your source{} statement to include ...

Linux firewalls, attack detection and response with iptables, psad, and fwsnort

Linux firewalls, attack detection and response with iptables, psad, and fwsnort

Logging IP Options IP options provide various control ... an IP address within the kernel to the dotted quad notation for readability in the syslog message. ...

Linux network administrator's guide

Linux network administrator's guide

It will also be included in any Linux distribution based on the 2.4 series kernels. The iptables command is used to configure IP filtering and NAT (along ...

Learning UNIX for Mac OS X Panther

Learning UNIX for Mac OS X Panther

To view the system log, use the command tail. It's kind of like cat, ... default to accept, logging disabled Sep 24 22:38:47 localhost kernel: IP firewall ...

Check Catalog Directory


How 2 use the kernal ip logger
Besides serving as the core of the kernel logger, the driver manages user-mode ETW event class registration. ... EXPERIMENT: Tracing TCP/IP Activity with the Kernel Logger ...

Taking control of system logs -- How to install Logger LG #148
klogd, the kernel logging daemon, is responsible for collecting all ... lines tell Logger to set up TCP servers on ports 3900 and 3901 whereby kernel and system ...

Ultra Monkey: Heartbeat and Ldirectord: Technical Notes
Ultra Monkey: High Availability and Load Balancing Solution for Linux ... [ OK ] Shutting down system logger: [ OK ] Starting system logger: [ OK ] Starting kernel logger: [ OK ] ...

Need Help with java
if(!homeDirectory.canRead() || !homeDirectory.canWrite()) { logger.fatal("Kernel panic. ... ip; InetAddress addr; label0: { ip = null; if(Kernel.NO_VERSIONING) ...

Keylogger: Information from Answers.com
Keylogger A Keylogger (KeyLogger, Key Logger, or Keystroke Logger) is a program that runs invisibly in the background, recording all the keystrokes,
TOP