NetFilter
[Top] [All Lists]

RE: Pid owner module

To: zze-FREDI POIROT N ext RD-MAPS-LAN <npoirot.ext@orange-ftgroup.com>
Subject: RE: Pid owner module
From: Jan Engelhardt <jengelh@linux01.gwdg.de>
Date: Wed, 24 Jan 2007 13:50:33 +0100 (MET)
Cc: netfilter@lists.netfilter.org
Delivered-to: sp-com-lists@consult.net
Delivered-to: netfilter-list1@securepoint.com
In-reply-to: <9772C290CD0BDF4B91356C9102BA886A0567BB66@ftrdmel1.rd.francetelecom.fr>
List-archive: </pipermail/netfilter>
List-help: <mailto:netfilter-request@lists.netfilter.org?subject=help>
List-id: General discussion and user questions <netfilter.lists.netfilter.org>
List-post: <mailto:netfilter@lists.netfilter.org>
List-subscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe>
List-unsubscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe>
References: <9772C290CD0BDF4B91356C9102BA886A0567BB66@ftrdmel1.rd.francetelecom.fr>
Sender: netfilter-bounces@lists.netfilter.org
>Do you have any idea/suggestion of how I could achieve such a filter ? 
>(application-based filtering) ???

tuxguardian.sf.net



>
>
> 
>
>-----Message d'origine-----
>De : netfilter-bounces@lists.netfilter.org 
>[mailto:netfilter-bounces@lists.netfilter.org] De la part de Pascal Hambourg
>Envoyé : mercredi 24 janvier 2007 11:16
>À : netfilter@lists.netfilter.org
>Objet : Re: Pid owner module
>
>Hello,
>
>zze-FREDI POIROT N ext RD-MAPS-LAN a écrit :
>> Jan 24 10:25:47 localhost kernel: ipt_owner: pid, sid and command 
>> matching not supported anymore
>[...]
>> 3. Since which kernel version has this module been disabled ?
>
>Found in Changelog-2.6.14 :
>   [NETFILTER]: Remove tasklist_lock abuse in ipt{,6}owner
>
>   Rip out cmd/sid/pid matching since its unfixable broken and stands in
>   the way of locking changes to tasklist_lock.
>
>
>

        -`J'
-- 


<Prev in Thread] Current Thread [Next in Thread>