From mboxrd@z Thu Jan 1 00:00:00 1970 From: Dong_Wei Subject: /proc/net/ip_conntrack trange behavior Date: Fri, 24 Aug 2007 15:43:01 +0800 Message-ID: <46CE8C05.5060202@nj.cpsecure.com> Reply-To: Dong_Wei@nj.cpsecure.com Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit To: netfilter-devel@lists.netfilter.org Return-path: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-devel-bounces@lists.netfilter.org Errors-To: netfilter-devel-bounces@lists.netfilter.org List-Id: netfilter-devel.vger.kernel.org Hi, all When I checked /proc/net/ip_conntrack in my Linux server, I found some strange tracks like the following: [normal case] tcp 6 387113 ESTABLISHED src=219.135.189.40 dst=58.60.9.41 sport=2391 dport=443 src=58.60.9.41 dst=219.135.189.40 sport=443 dport=2391 [ASSURED] use=1 [strange track] tcp 6 377231 ESTABLISHED src=222.173.17.207 dst=219.135.189.11 sport=19691 dport=3815 [UNREPLIED] src=219.135.189.11 dst=222.173.17.207 sport=3815 dport=19691 use=1 As we kown after SYN->SYN,ACK->ACK. TCP connection is in ESTABLISHED state. and the ip_conntrack "see" the REPLY direction packet, I think the conntrak should be ASSURED. not UNREPLIED. So, pls help me. My kernel version is 2.4.22 Thanks in advance :-)