From: "Покотиленко Костик" <casper@meteor.dp.ua>
To: Vitaly <vitaly_il@yahoo.com>
Cc: netfilter@vger.kernel.org
Subject: Re: How to drop existing connections
Date: Mon, 07 Apr 2008 12:28:19 +0300 [thread overview]
Message-ID: <1207560499.5879.22.camel@casper.meteor.dp.ua> (raw)
In-Reply-To: <316483.74640.qm@web65716.mail.ac4.yahoo.com>
В Пнд, 07/04/2008 в 02:05 -0700, Vitaly пишет:
> --- Karim Asif <karimas@kfupm.edu.sa> wrote:
>
> > Using iptables?
> > just add a drop rule having src/dest ip addressess
> > and ports and protocol on
> > top of other rules.
>
> Probably I wasn't clear - I want to kill existing,
> already opened connection.
> Now, after reading some articles/threads, it seems
> that only utils like tcpkill, cutter can do this...
You can use conntrack utility to remove conntrack entry, if you also
drop INVALID packets with iptables this will let you kill connection.
> >
> > ----- Original Message -----
> > From: "Vitaly" <vitaly_il@yahoo.com>
> > To: <netfilter@vger.kernel.org>
> > Sent: Monday, April 07, 2008 11:30 AM
> > Subject: How to drop existing connections
> >
> >
> > > I'd like to kill all existing connections to the
> > > specific IP/port. What is the simpliest way to do
> > > this?
> > >
> > > Thanks,
> > > Vitaly
> > >
> > >
> > >
> > >
> >
> ____________________________________________________________________________________
> > > You rock. That's why Blockbuster's offering you
> > one month of Blockbuster
> > > Total Access, No Cost.
> > > http://tc.deals.yahoo.com/tc/blockbuster/text5.com
> > > --
> > > To unsubscribe from this list: send the line
> > "unsubscribe netfilter" in
> > > the body of a message to majordomo@vger.kernel.org
> > > More majordomo info at
> > http://vger.kernel.org/majordomo-info.html
> >
> >
>
>
>
> ____________________________________________________________________________________
> You rock. That's why Blockbuster's offering you one month of Blockbuster Total Access, No Cost.
> http://tc.deals.yahoo.com/tc/blockbuster/text5.com
> --
> To unsubscribe from this list: send the line "unsubscribe netfilter" in
> the body of a message to majordomo@vger.kernel.org
> More majordomo info at http://vger.kernel.org/majordomo-info.html
--
Покотиленко Костик <casper@meteor.dp.ua>
next prev parent reply other threads:[~2008-04-07 9:28 UTC|newest]
Thread overview: 7+ messages / expand[flat|nested] mbox.gz Atom feed top
2008-04-07 8:30 How to drop existing connections Vitaly
2008-04-07 8:55 ` Karim Asif
2008-04-07 9:05 ` Vitaly
2008-04-07 9:28 ` Покотиленко Костик [this message]
2008-04-07 9:39 ` Jan Engelhardt
[not found] ` <1207562913.5879.32.camel@casper.meteor.dp.ua>
2008-04-07 11:11 ` Jan Engelhardt
2008-04-07 11:59 ` Покотиленко Костик
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1207560499.5879.22.camel@casper.meteor.dp.ua \
--to=casper@meteor.dp.ua \
--cc=netfilter@vger.kernel.org \
--cc=vitaly_il@yahoo.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox