LinuxQuestions.org
Help answer threads with 0 replies.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 04-04-2013, 05:36 AM   #1
kikilinux
Member
 
Registered: Sep 2012
Posts: 125

Rep: Reputation: Disabled
NFQUEUE Target in iptables


Hi ,i just want to know the libnetfilter_queue has only the DROP and ACCEPT target ?
We can't specify REJECT ?
Best
 
Old 04-04-2013, 06:53 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
I'm not aware of any specific design reason, but if you want to put a REJECT at the bottom of the list, you can.
 
Old 04-04-2013, 12:48 PM   #3
kikilinux
Member
 
Registered: Sep 2012
Posts: 125

Original Poster
Rep: Reputation: Disabled
May i post this thread to another forum ?
 
Old 04-04-2013, 02:14 PM   #4
eSelix
Senior Member
 
Registered: Oct 2009
Location: Wroclaw, Poland
Distribution: Arch, Kubuntu
Posts: 1,281

Rep: Reputation: 320Reputation: 320Reputation: 320Reputation: 320
REJECT is a special target, like custom chain and therefore you probably cannot use it that way, however I am not expert in iptables queue. You need to drop packet and manually respond with proper ICMP message to mimic a REJECT target.
 
Old 04-04-2013, 03:29 PM   #5
kikilinux
Member
 
Registered: Sep 2012
Posts: 125

Original Poster
Rep: Reputation: Disabled
Another question about the function below related to libnetfilter_queue:

int nfq_set_queue_maxlen (struct nfq_q_handle * qh,u_int32_t queuelen)

How much can i take "queuelen" big (how many packets)?
Do we have to consider memory size consideration?
and another questions step by step after the answers

Best
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
iptables: rule with RETURN target just after a rule with ACCEPT target Nerox Linux - Networking 6 09-04-2011 03:33 PM
ROUTE Target in iptables johnniealan Linux - Networking 0 06-09-2009 10:15 PM
iptables: why use both -p and -m to match the target protocol? hsegtreas Linux - Security 3 06-02-2009 10:25 PM
IPTABLES and TCPMSS Target metallica1973 Linux - Networking 0 01-04-2008 09:45 AM
Iptables - Couldn't load target `ACCPET':/lib/iptables/libipt_ACCPET.so: z00t Linux - Security 3 01-26-2004 02:24 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 09:54 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration