From mboxrd@z Thu Jan 1 00:00:00 1970 From: Pablo Neira Ayuso Subject: Re: Libnetfilter_conntrack, CTNL_TEST Date: Tue, 14 Mar 2006 13:25:27 +0100 Message-ID: <4416B637.4070409@eurodev.net> References: Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 8bit Cc: netfilter-devel@lists.netfilter.org Return-path: To: =?ISO-8859-1?Q?S=E9bastien_LAVEZE?= In-Reply-To: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-devel-bounces@lists.netfilter.org Errors-To: netfilter-devel-bounces@lists.netfilter.org List-Id: netfilter-devel.vger.kernel.org Sébastien LAVEZE wrote: > I am developping an application using libnetfilter_conntrack > I first tried to run the example program ctnl_test, it seems to work > for events and table dumping but i still get errors and i would like > to know if it's normal > Here is the output : > > Test for libnetfilter_conntrack > NFNETLINK answers: Invalid argument > TEST 1: create conntrack (-22) > NFNETLINK answers: -EINVAL, make sure ip_conntrack_netlink is loaded > and you have NET_CAPABILITIES > TEST 2: dump conntrack table and reset (-524) > tcp 6 431960 ESTABLISHED src=192.168.31.42 dst=172.16.16.16 > sport=44582 dport=3128 src= 172.16.16.16 dst=192.168.31.42 > sport=3128 dport=44582 [ASSURED] use=1 > tcp 6 431960 ESTABLISHED src=192.168.31.42 dst=172.16.16.16 > sport=44583 dport=3128 src=172.16.16.16 dst=192.168.31.42 > sport=3128 dport=44583 [ASSURED] use=1 > tcp 6 431960 ESTABLISHED src=192.168.31.42 dst=172.16.16.16 > sport=44581 dport=3128 src=172.16.16.16 dst= 192.168.31.42 > sport=3128 dport=44581 [ASSURED] use=1 > tcp 6 431960 ESTABLISHED src=192.168.31.42 dst=172.16.16.16 > sport=44584 dport=3128 src=172.16.16.16 dst=192.168.31.42 > sport=3128 dport=44584 [ASSURED] use=1 > TEST 3: dump conntrack table (0) > TEST 4: get conntrack (-22) > TEST 5: update conntrack (-22) > NFNETLINK answers: Invalid argument > TEST 6: delete conntrack (-22) > TEST 7: Waiting for 10 conntrack events > Event number 1 > Event number 2 > Event number 3 > Event number 4 > Event number 5 > Event number 6 > Event number 7 > Event number 8 > Event number 9 > Event number 10 > TEST 7: Received 10 conntrack events (-1) > Test failed with error -1. Errors=5 > > I'm using a 2.6.15 kernel and i have all the needed modules > installed(ip_conntrack_netlink, ip_conntrack, nfnetlink, > nfnetlink_log...) No, it is not a normal output. What version of libnetfilter_conntrack are you using? -- Pablo