Home > Cannot Load > Cannot Load Conntrack Support For Proto=2

Cannot Load Conntrack Support For Proto=2

While I am searching the archives, I was hoping someone else might remember this thread or have the solution. I think the ticket can be closed. I am running shorewall-4.0.8-2, if it helps. New kernel is in repos. http://scriptkeeper.net/cannot-load/cannot-load-vdm-ipx-spx-support-dos.html

No version of Shorewall will run on this system
Jun 03 20:31:55 homeproxy root[2647]: ERROR:Shorewall start failed
Jun 03 20:31:55 homeproxy systemd[1]: shorewall.service: Main process exited, code=exited, status=255/n/a
Jun 03 20:31:55 Previous by thread: [PATCH v4 0/2] Add quota capabilities to nfacct Next by thread: Re: Unknown symbol inet_frag_maybe_warn_overflow Index(es): Date Thread [IndexofArchives] [LinuxNetfilterDevelopment] [LinuxKernelNetworkingDevelopment] [LinuxKernelDevelopment] TIA comment:2 Changed 20 months ago by [email protected]… Looking deeper into the problem, I found that there are more unloaded modules, xt_connlimit xt_id iptable_nat nf_defrag_ipv4 nf_conntrack_ipv4 and that there are duplicates module is already loaded - xt_mac -> Inserting xt_multiport... official site

Thanks for your quick responses, your exceptional tech support, and great product. ------------------------------------------------------------------------- This SF.net email is sponsored by: Microsoft Defy all challenges. Microsoft(R) Visual Studio 2008. module is already loaded - xt_ecn -> Inserting xt_hl... module is already loaded - nf_nat -> Inserting nf_nat_ipv4... -> Inserting nfnetlink...

http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/ Tom Eastep 2008-Feb-05 04:14 UTC head link Re: can''t load conntrack support for proto=2 Tom Eastep wrote:> > Scott, > > If you are incapable of solving this type of I no > longer try to run such software because I don''t have the time to wrestle > through these typical Alpha-release issues. > That having been said, a case-insensitive search After going back for at least to 4th time and selecting the correct options, shorewall worked fine. Please let me know if you go back to 2.6.24 and still have problems.

module is already loaded - ip_set_bitmap_ip -> Inserting ip_set_bitmap_ipmac... module is already loaded - nf_conntrack_ipv6 -> Inserting ip_tables... module is already loaded - xt_TCPMSS -> Inserting ipt_REJECT... https://lists.opensuse.org/opensuse/2009-02/msg01833.html I remember reading a while back about the new naming convention netfilter was using for its modules with newer kernels, but I am having a hard time finding that thread when

Microsoft(R) Visual Studio 2008. http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/ Scott Ruckh 2008-Feb-05 03:19 UTC head link Re: can''t load conntrack support for proto=2 This is what you said Scott Ruckh> I just upgraded my kernel from 2.6.13-4 to 2.6.24 module is already loaded - xt_HL -> Inserting xt_nat... module is already loaded - nf_defrag_ipv6 -> Inserting nf_conntrack_ipv6...

module is already loaded - ip_set_hash_ipportnet -> Inserting ip_set_hash_mac... Continued Any clue on this? I was having problems seeing the trees in the forest. module is already loaded - xt_helper -> Inserting xt_recent...

The netfilter team don''t seem to be very concerned about compatibility when it comes to kernel configuration and module naming. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently http://scriptkeeper.net/cannot-load/cannot-load-vdm-ipx-spx-support-windows-xp.html You may use WikiFormatting here. Attachments ↑ Description ↑   Note: See TracTickets for help on using tickets. ist ip_conntrack nun aus dem kernel verschwunden oder verbirgt es sich unter einer der einstellungen ohne hilfetext und namen des moduls?

I also built > iptables 4.0 and built the netfilter modules for 2.6.24. > > I remember reading a while back about the new naming convention netfilter > was using for Microsoft(R) Visual Studio 2008. TIA Attachments (0) Oldest first Newest first Threaded Comments only Change History (4) comment:1 Changed 20 months ago by [email protected]… Meanwhile I found something more about the problem. have a peek here Changed by anonymous Author Your email or username: E-mail address and user name can be saved in the Preferences.

module is already loaded - ip_set_bitmap_port -> Inserting ip_set_hash_ip... I''m talking about the output of ''lsmod'' that you posted -- you apparently have no NAT support in your kernel. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently If this helps my USB issues, I will probably just stay with 2.6.20.9.

module is already loaded - xt_tcpudp -> Inserting iptable_filter...

module is already loaded - xt_set -> Inserting xt_state... module is already loaded - ipt_ECN -> Inserting xt_ecn... module is already loaded - ip_tables -> Inserting x_tables... Modify Ticket Action leave as closed .

module is already loaded - nf_reject_ipv6 -> Inserting ip_set... Can anyone point me to what I'm doing wrong here? My Linux version is: Linux www.host.name 3.2.0-4-amd64 #1 SMP Debian 3.2.41-2+deb7u2 x86_64 GNU/Linux On boot, the kernel says something I'm not able to understand: [ 5.629314] ip6_tables: (C) 2000-2006 Netfilter Core Check This Out module is already loaded - nf_reject_ipv4 -> Inserting xt_time...

I am still going to stick with 2.6.20.9 for now because I was having some other issues with 2.6.24 that I do not want to deal with right now. [email protected]:/# insmod nf_conntrack_ipv4 [ 1917.810000] nf_conntrack_ipv4: Unknown symbol nf_defrag_ipv4_enable (err 0) failed to insert /lib/modules/3.18.9/nf_conntrack_ipv4.ko [email protected]:/etc/modules.d# cat nf-conntrack nf_conntrack nf_conntrack_rtcache nf_defrag_ipv4 nf_conntrack_ipv4 [email protected]:/etc/modules.d# insmod nf_conntrack module is already loaded - nf_conntrack You can nevertheless proceed and submit your changes if you wish so. module is already loaded - nf_log_ipv4 -> Inserting xt_TCPMSS...

module is already loaded - xt_state -> Inserting iptable_raw... I no > longer try to run such software because I don''t have the time to wrestle > through these typical Alpha-release issues. > > -Tom Turns out this is just I get following error.Code: Select allxt_conntrack: cannot load conntrack support for proto=2
xt_conntrack: cannot load conntrack support for proto=2
Job for shorewall.service failed because the control process exited with error code. [email protected]:/# cat /etc/modules.d/ipt-nat xt_nat xt_nat iptable_nat iptable_nat ipt_MASQUERADE nf_nat_masquerade_ipv4 xt_REDIRECT ------------------------------ [email protected]:/etc/modules.d# ls *ip*t* nf* 42-ip6tables ipt-ipopt nf-ipt 49-ipt-ipset ipt-nat nf-ipt6 ipt-conntrack nf-conntrack nf-ipt6 ipt-conntrack-extra nf-conntrack-netlink nf-nat ipt-core nf-conntrack6 nfnetlink ipt-filter

module is already loaded - xt_multiport -> Inserting xt_comment...