fukawi2 / husk

Natural-language DSL for iptables/netfilter firewall rules.
http://huskfw.info
6 stars 1 forks source link

CentOS 5.x broken conn track #12

Closed fukawi2 closed 11 years ago

fukawi2 commented 11 years ago

It appears RHEL 5.9 has completely removed connection tracking from the distribution:

~ # ip6tables -A INPUT -m conntrack --ctstate ESTABLISHED -j ACCEPT
ip6tables v1.3.5: Couldn't load match `conntrack':/lib64/iptables/libip6t_conntrack.so: cannot open shared object file: No such file or directory

Connection Tracking has always been troublesome; this is probably the final straw for husk support of IPv6 on RHEL 5