CONNMARK target and connmark match support in Ubuntu kernel

Peter Sabaini peter at sabaini.at
Sat May 30 14:24:15 UTC 2009


On Fri, 2009-05-29 at 11:50 +0530, Swapnil Jain wrote:
> Hi,
> 
> as per the shorewall MultiISP documentation ( http://www1.shorewall.net/MultiISP.html 
>   ), it says
> 
> 
> "Use of this feature requires that your kernel and iptables include  
> CONNMARK target and connmark match support (Warning: Standard Debian™  
> and Ubuntu™ kernels are lacking that support!)."

Are you sure? It seems to be enabled:

# grep CONFIG_NF_CONNTRACK_MARK /boot/config-2.6.28-11-generic 
CONFIG_NF_CONNTRACK_MARK=y

Have you tried it?

> it means MultiISP wont work properly if i am using Ubuntu server. if  
> yes whats the workaround.

Compiling a kernel of your own.


peter.

> 
> 
> --------------------------------
> Swapnil Jain
> Indore
> -----------------------------------------------
> E-mail: swapnil at pisces.net.in
> GTalk : swapnil at pisces.net.in
> MSN: jswapnil at hotmail.com
> Skype : sj1410
> YIM   : sj1410
> -----------------------------------------------
> # DO everything over SSH
> # =======================
> #	- SECURE pop3/imap ..... do NOT use pop3/imap
> #	- use ssh  ............. do NOT use ftp/telnet
> 
> 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: This is a digitally signed message part
URL: <https://lists.ubuntu.com/archives/ubuntu-users/attachments/20090530/67a47490/attachment.sig>


More information about the ubuntu-users mailing list