From mboxrd@z Thu Jan 1 00:00:00 1970 From: Ramin Dousti Subject: Re: STATELESS Date: Tue, 16 Sep 2003 09:11:53 -0400 Sender: netfilter-admin@lists.netfilter.org Message-ID: <20030916131153.GA16559@cannon.eng.us.uu.net> References: <02ba01c37c46$bb7a5f60$798014ac@matthew> <200309161256.15286.gdh@acentral.co.uk> <1063716386.31093.160.camel@raylinux.internal> Mime-Version: 1.0 Return-path: Content-Disposition: inline In-Reply-To: <1063716386.31093.160.camel@raylinux.internal> Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: Ray Leach Cc: Netfilter Mailing List On Tue, Sep 16, 2003 at 02:46:27PM +0200, Ray Leach wrote: > > > > Don't load the ip_conntrack module, and / or don't use any iptables rules that > > use "-m state" in the arguments :) > Yeah, connection tracking automagically implies state inspection. OK. Thanks for the informative comments but can you lay out the steps to prevent stateful inspection? For example, how to unload "ip_conntrack" and to prevent it from being reloaded again? Thanks again. Ramin