NetFilter
[Top] [All Lists]

RE: Pid owner module

To: <netfilter@lists.netfilter.org>
Subject: RE: Pid owner module
From: "zze-FREDI POIROT N ext RD-MAPS-LAN" <npoirot.ext@orange-ftgroup.com>
Date: Wed, 24 Jan 2007 11:27:33 +0100
Delivered-to: sp-com-lists@consult.net
Delivered-to: netfilter-list1@securepoint.com
In-reply-to: <45B731CE.4000402@plouf.fr.eu.org>
List-archive: </pipermail/netfilter>
List-help: <mailto:netfilter-request@lists.netfilter.org?subject=help>
List-id: General discussion and user questions <netfilter.lists.netfilter.org>
List-post: <mailto:netfilter@lists.netfilter.org>
List-subscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe>
List-unsubscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe>
Sender: netfilter-bounces@lists.netfilter.org
Thread-index: Acc/oK5s1PT38vORS6235EYyubZRQgAAUkdw
Thread-topic: Pid owner module
Thanks for the answer !

Do you have any idea/suggestion of how I could achieve such a filter ? 
(application-based filtering) ???


 

-----Message d'origine-----
De : netfilter-bounces@lists.netfilter.org 
[mailto:netfilter-bounces@lists.netfilter.org] De la part de Pascal Hambourg
Envoyé : mercredi 24 janvier 2007 11:16
À : netfilter@lists.netfilter.org
Objet : Re: Pid owner module

Hello,

zze-FREDI POIROT N ext RD-MAPS-LAN a écrit :
> Jan 24 10:25:47 localhost kernel: ipt_owner: pid, sid and command 
> matching not supported anymore
[...]
> 3. Since which kernel version has this module been disabled ?

Found in Changelog-2.6.14 :
   [NETFILTER]: Remove tasklist_lock abuse in ipt{,6}owner

   Rip out cmd/sid/pid matching since its unfixable broken and stands in
   the way of locking changes to tasklist_lock.



<Prev in Thread] Current Thread [Next in Thread>