netdev.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* iptables NEW or SYN
@ 2010-05-13 13:17 Markus Feldmann
  2010-05-13 15:21 ` ratheesh k
  0 siblings, 1 reply; 2+ messages in thread
From: Markus Feldmann @ 2010-05-13 13:17 UTC (permalink / raw)
  To: netdev

Hi All,

i am still experiment with iptables and the state extension. Some of my 
rules shall catch packets with the state NEW, but it doesn't catch all 
packets. Sometimes there are packets that have the SYN Flag set which go 
through my rules with the state NEW.

Any idea why?
I thought SYN is included in the state NEW, is that wrong?

What is the difference between SYN and NEW?

regards Markus


^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: iptables NEW or SYN
  2010-05-13 13:17 iptables NEW or SYN Markus Feldmann
@ 2010-05-13 15:21 ` ratheesh k
  0 siblings, 0 replies; 2+ messages in thread
From: ratheesh k @ 2010-05-13 15:21 UTC (permalink / raw)
  To: Markus Feldmann; +Cc: netdev, Netfilter mailing list

On Thu, May 13, 2010 at 6:47 PM, Markus Feldmann <feldmann_markus@gmx.de> wrote:
> Hi All,
>
> i am still experiment with iptables and the state extension. Some of my
> rules shall catch packets with the state NEW, but it doesn't catch all
> packets. Sometimes there are packets that have the SYN Flag set which go
> through my rules with the state NEW.
>
> Any idea why?
> I thought SYN is included in the state NEW, is that wrong?
>
> What is the difference between SYN and NEW?
>
> regards Markus
>
> --
> To unsubscribe from this list: send the line "unsubscribe netdev" in
> the body of a message to majordomo@vger.kernel.org
> More majordomo info at  http://vger.kernel.org/majordomo-info.html
>

Please use  netfilter-users list advise of  experts in netfilter  .
-Ratheesh .

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2010-05-13 15:21 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-05-13 13:17 iptables NEW or SYN Markus Feldmann
2010-05-13 15:21 ` ratheesh k

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).