On Fri, 2009-05-29 at 06:27 -0700, Tom Eastep wrote: > > Assuming that Shorewall is started on the system, as root do the following: > > r...@ursa:~# shorewall show capabilities | grep -i CONNMARK > CONNMARK Target: Available > Extended CONNMARK Target: Available > Connmark Match: Available > Extended Connmark Match: Available > r...@ursa:~# > > If the first and third links of output other than the above, then your > kernel and/or iptables are missing the required support.
And may just need (a) module(s) to be loaded. I think they are nf_conntrack_ipv4 and nf_conntrack on Ubuntu Intrepid. b.
signature.asc
Description: This is a digitally signed message part
------------------------------------------------------------------------------ Register Now for Creativity and Technology (CaT), June 3rd, NYC. CaT is a gathering of tech-side developers & brand creativity professionals. Meet the minds behind Google Creative Lab, Visual Complexity, Processing, & iPhoneDevCamp as they present alongside digital heavyweights like Barbarian Group, R/GA, & Big Spaceship. http://p.sf.net/sfu/creativitycat-com
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
