IPTables stops logging after long uptime

From: Chris Travers (chris@travelamericas.com)
Date: 02/07/03

  • Next message: Craig Holmes: "Re: LKM Trojan installed"
    Date: Fri, 07 Feb 2003 09:21:56 -0800
    From: Chris Travers <chris@travelamericas.com>
    To: focus-linux@securityfocus.com
    
    

    Hi all--

    I was wondering if anyone has seen similar problems with IPTables/Netfilter.

    I am running a firewall which consists of a small system (AMD K5 @133MHz
    w/32 MB Ram). It has 2 3c509 ethernet cards, is running FreeS/wan, and
    IPTables. It also has all QoS options enabled. The kernel is compiled
    without support for LKM so all of these are statically linked. I am
    running the Linux Kernel 2.4.18.

    If the system has been up for a month or so and I try to reapply the
    firewall rules, something odd happens. Instead of getting the normal
    IPTables entries:
    Feb 2 18:29:47 fwhost -- MARK --

    Rebooting solves the problem. As the kernel is entirely statically
    linked, I can't remove and reinstall the IPTables module into the
    kernel. Note that restarting Syslog does not solve the problem, and
    syslog does log everything else correctly. so the problem appears to be
    with the kernel at this point.

    Any ideas what causes this? Or should I file a bug with the Linux
    Kernel email list?

    Best Wishes,
    Chris Travers



    Relevant Pages

    • PROBLEM: iptables dont work with 2.4.25
      ... iptables v1.2.6a: can't initialize iptables table `filter': iptables who? ... Perhaps iptables or your kernel needs to be upgraded. ... f000-f0ff: Intel ICH2 ... Controller Hub ...
      (Linux-Kernel)
    • Re: Help with Linux Basics
      ... Then each time the system is booted, iptables loads from ... To run the pure basics of iptables you need to configure the following ... options into the kernel while doing make config or one of its related ... And of course you need to add the proper drivers for your interfaces to work ...
      (alt.os.linux.redhat)
    • Re: Installing IPTables: not very clear howto
      ... >>librairies have to be built according to which kernel modules you'll have. ... >>You should remove any prior iptables version that could be prior in your ... interface you want to config) then make (no need for seperate make dep ... are probably better off simply installing it via the package management ...
      (comp.security.firewalls)
    • Re: Linux firewall on P166
      ... Which is it, ipchains or iptables? ... gives you a much stronger firewall. ... It's difficult to do much with 4MB RAM, ... > of a specially-tailored kernel. ...
      (comp.security.firewalls)
    • Re: Linux firewall on P166
      ... Which is it, ipchains or iptables? ... gives you a much stronger firewall. ... It's difficult to do much with 4MB RAM, ... > of a specially-tailored kernel. ...
      (comp.os.linux.networking)