Re: Linux 2.4.23-pre1

From: Patrick McHardy
Date: Thu Aug 28 2003 - 09:56:43 EST


Please try this patch.

Regards,
Patrick

Hans Lambrechts wrote:

Greetings,



Harald Welte:
o [NETFILTER]: Backport iptables AH/ESP fixes from 2.6.x
o [NETFILTER]: Fix uninitialized return in iptables tftp
o [NETFILTER]: NAT optimization
o [NETFILTER]: Conntrack optimization (LIST_DELETE)





I see this in my log:

Aug 28 10:45:44 pc kernel: MASQUERADE: No route: Rusty's brain broke!
Aug 28 10:46:10 pc last message repeated 13 times
Aug 28 10:48:42 pc kernel: NET: 1 messages suppressed.
Aug 28 10:48:42 pc kernel: MASQUERADE: No route: Rusty's brain broke!
Aug 28 10:48:43 pc kernel: MASQUERADE: Route sent us somewhere else.

Forwarding and masquerading doesn't work anymore.

Hans


===== net/ipv4/netfilter/ipt_MASQUERADE.c 1.6 vs edited =====
--- 1.6/net/ipv4/netfilter/ipt_MASQUERADE.c Tue Aug 12 11:30:12 2003
+++ edited/net/ipv4/netfilter/ipt_MASQUERADE.c Thu Aug 28 16:54:15 2003
@@ -90,6 +90,7 @@
#ifdef CONFIG_IP_ROUTE_FWMARK
key.fwmark = (*pskb)->nfmark;
#endif
+ key.oif = 0;
if (ip_route_output_key(&rt, &key) != 0) {
/* Funky routing can do this. */
if (net_ratelimit())