[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: [libvirt] [PATCH v2] nwfilter: Use -m conntrack rather than -m state



On 08/06/2013 08:11 PM, John Ferlan wrote:
On 08/06/2013 07:46 PM, Stefan Berger wrote:
Since iptables version 1.4.16 '-m state --state NEW' is converted to
'-m conntrack --ctstate NEW'. Therefore, when encountering this or later
versions of iptables use '-m conntrack --ctstate'.

Signed-off-by: Stefan Berger <stefanb linux vnet ibm com>

---
v1->v2:
    - Fixed a logic bug and adjusted version comparison to use '>='
      rather than '>'

---
ACK

Pushed


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]