LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 02-07-2006, 07:30 AM   #1
gottin
Member
 
Registered: May 2004
Location: Sofia / Bulgaria
Distribution: Fedora Core 5
Posts: 38

Rep: Reputation: 15
brocken iptables, problems with nat table


Hi, yesterday I found a strange problem in one of my linuxes. It was found after a manual edit of /etc/sysconfig/iptables config file.

Linux: Fedora Core 2
Kernel: 2.6.5-1.358
Iptables: iptables-1.2.9-2.3.1

Now I'll write down what I'm checking and trying.

Code:
[root@server sysconfig]# service iptables start
Unloading iptables modules:                                [FAILED]
Applying iptables firewall rules: iptables-restore v1.2.9: iptables-restore: unable to initializetable 'nat'

Error occurred at line: 33
Try `iptables-restore -h' or 'iptables-restore --help' for more information.
                                                           [FAILED]
on line 33 I have this:
*nat
:PREROUTING ACCEPT [2108660:154940433]
:POSTROUTING ACCEPT [2123853:128100860]
:OUTPUT ACCEPT [2123853:128100860]
COMMIT

A clear sign that there's a problem with iptables and nat table.

Code:
[root@server sysconfig]# dmesg
ip_tables: (C) 2000-2002 Netfilter core team
iptable_nat: Unknown symbol ip_ct_selective_cleanup
iptable_nat: Unknown symbol invert_tuplepr
iptable_nat: Unknown symbol ip_ct_gather_frags
iptable_nat: Unknown symbol ip_conntrack_untracked
iptable_nat: Unknown symbol ip_conntrack_get
...
Moreover, modprobe is eating the whole CPU.
780:25 modprobe -r iptable_nat

I tried to kill this process. But I cannot! (killall -9 modprobe, kill -9 <process num>).

Code:
[root@server sysconfig]# modprobe iptable_nat
FATAL: Error inserting iptable_nat (/lib/modules/2.6.5-1.358/kernel/net/ipv4/netfilter/iptable_nat.ko): Unknown symbol in module, or unknown parameter (see dmesg)
Any ideas how to fix this problem and run iptables or atleas where exactly is it (the problem)? There were no problems with iptalbes untill yesterday, nighter any kernel upgrades have been made.

Code:
[root@server sysconfig]# uptime
 15:26:14 up 116 days
 
Old 02-08-2006, 09:40 AM   #2
gottin
Member
 
Registered: May 2004
Location: Sofia / Bulgaria
Distribution: Fedora Core 5
Posts: 38

Original Poster
Rep: Reputation: 15
It looks like beeing a bug ( the problem). After installing the newest kernel for fedora2 and reboot everything worked out.

10x for reading this post.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Adding the NAT table into iptables logo Linux - Newbie 2 10-28-2004 01:58 AM
problems with iptables NAT figjam Linux - Networking 1 06-14-2004 07:49 PM
iptables...NAT...and problems... Bug Linux - Security 6 12-31-2003 03:31 AM
iptables-nat problems didget Linux - Security 8 12-13-2001 02:15 PM
iptables how to show the nat table Breezer Linux - Security 1 12-13-2001 02:10 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 10:07 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration