Find the answer to your Linux question:
Results 1 to 8 of 8
Enjoy an ad free experience by logging in. Not a member yet? Register.
  1. #1

    some problem about iptables (RHEL5)


    I try to use iptables connect limit function.

    I insert module /lib/modules/2.6.18-92.el5/kernel/net/netfilter/xt_limit.ko already.

    but following command is something wrong.

    iptables -t filter -A INPUT -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT
    iptables: Unknown error 4294967295

    can anyone help?

    thank you.

  2. #2
    Linux Guru Lazydog's Avatar
    Join Date
    Jun 2004
    Location
    The Keystone State
    Posts
    2,681
    Remove '-t filter' from the rule.

    Regards
    Robert

    Linux
    The adventure of a life time.

    Linux User #296285
    Get Counted

  3. #3
    Quote Originally Posted by Lazydog View Post
    Remove '-t filter' from the rule.

    -t filter <-- user to define tables.

    iptables -A INPUT -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT
    iptables: Unknown error 4294967295

    same problem ~!!!

  4. $spacer_open
    $spacer_close
  5. #4
    Linux Guru Lazydog's Avatar
    Join Date
    Jun 2004
    Location
    The Keystone State
    Posts
    2,681
    Sorry didn't look at the whole rule.

    Code:
    iptables  -A INPUT -m tcp -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT

    Regards
    Robert

    Linux
    The adventure of a life time.

    Linux User #296285
    Get Counted

  6. #5
    thank you for reply. but.

    iptables -A INPUT -m tcp -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT
    iptables: Unknown error 4294967295

  7. #6
    Linux Guru Lazydog's Avatar
    Join Date
    Jun 2004
    Location
    The Keystone State
    Posts
    2,681
    OK, it sounds like you do not have commlimit properly setup. You are going to have to fix this in order to get thing working. No, I do not have this subroutine installed unless it is installed be the default setup or installed with the updates. I try to keep my system as simple to operate as possible.

    Regards
    Robert

    Linux
    The adventure of a life time.

    Linux User #296285
    Get Counted

  8. #7
    Just Joined!
    Join Date
    Jun 2004
    Location
    Portugal
    Posts
    47
    Two -m options in the same line... I think your looking for this:

    Code:
    iptables -A INPUT -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT

  9. #8
    thank you for you reply, but unfortunately


    iptables -A INPUT -p tcp --syn --dport 80 -m connlimit --connlimit-above 2 -j REJECT
    iptables: Unknown error 4294967295

    [root@station10 ~]# iptables -L
    Chain INPUT (policy ACCEPT)
    target prot opt source destination

    Chain FORWARD (policy ACCEPT)
    target prot opt source destination

    Chain OUTPUT (policy ACCEPT)
    target prot opt source destination


    some error still show up.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •