LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 02-09-2010, 08:04 PM   #1
centosfan
Member
 
Registered: Jun 2003
Location: Golem city
Distribution: Server - Debian Desktop - Linux Mint
Posts: 219

Rep: Reputation: 32
Problem with ip_recent iptable on CSF firewall


When i try to add value 150 on portflood section of csf,i get following error:
iptables: Unknown error 18446744073709551615
PORTFLOOD tcp opt -- in !lo out * 0.0.0.0/0 -> 0.0.0.0/0 tcp dpt:80 state NEW recent: UPDATE seconds: 5 hit_count: 150 name: 80 side: source

Error: iptables command [/sbin/iptables -v -A INPUT -i ! lo -p tcp --dport 80 -m state --state NEW -m recent --update --seconds 5 --hitcount 150 --name 80 -j PORTFLOOD] failed, at line 996
I posted this on official csf forum and support said how is limitation with ip_recent where highest value for hit_count is 20,and how i need to modify and recompile ip_recent.But i was not able find anything about either modify or recompiling that module.I have cent os 5.4 64 bit,iptables are installed over yum.Also i have 4 servers with completely identical configuration,yet on two servers portflood works while on other two it reporting that error.Maybe it was different install cd which caused this,but again i dont know why this doesnt work since iptables version are indetical.
 
Old 02-10-2010, 07:29 AM   #2
centosfan
Member
 
Registered: Jun 2003
Location: Golem city
Distribution: Server - Debian Desktop - Linux Mint
Posts: 219

Original Poster
Rep: Reputation: 32
REsolved this by doing following commands:
# rmmod ipt_recent
# modprobe ipt_recent ip_pkt_list_tot=150
Then checking file cat /sys/module/ipt_recent/parameters/ip_pkt_list_tot shows 150 instead 20.
But still it will stay mystery how this working anyway on server which have value 20.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Firewall Shutdown and IpTable Still Active jCash Linux - Networking 1 07-22-2007 07:12 AM
iptable rules for firewall for school rickyinman Linux - Networking 1 06-24-2006 10:35 AM
SuSe 9.3 Firewall iptable issue Dralnu Linux - Security 1 08-13-2005 01:29 PM
iptable based firewall configurations rksinghpatel Linux - Networking 1 05-17-2005 02:46 PM
RPC and firewall (iptable) ayachi Linux - Software 1 05-13-2004 03:44 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 07:08 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration