** Reply to message from Dennis Cardinale <[EMAIL PROTECTED]> on Sat, 06 Jul 
2002 15:20:24 -0400


> Thanks for the help, Jack.  Everything is working fine now.
> 
> In regard to the last message, I'll rephrase the question:
> 
> If the netfilter userspace tools that now occupy /sbin are compiled from
> current netfilter CVS source tree, will they still execute properly when
> called from within the framework of the prior kernel (before pomming it)?
> 
> You do not need to answer the question.  As soon as I have time, I'll reboot
> the old kernel and try it myself.
<snip>

I'll answer anyway: some of the modules may work but if any of them have been recoded 
in any way, then you run the risk of the modules not working, or even worse, not 
working such that it may leave you vulnerable somehow if it really breaks. It is 
always wise to recompile the kernel with the same version of netfilter code as your 
userspace iptables modules.

jb

Reply via email to