[Oisf-users] Packets stucked in Nfqueue when running inline

Fernando Ortiz fernando.ortiz.f at gmail.com
Thu Aug 18 17:35:04 UTC 2011


>
> Then it crashed.
>
>
It seems to work find now. The third time I run it, did not stopped. It
might be something on my side. I have a script running to automatically
bypass suricata in case a saturation in queues (I just send packets in
loopback interface. If I don't receive them in a fixed time it flushes
iptables. It should't kill Suricata, though)

Lot of these messages.
[30966] 18/8/2011 -- 12:25:04 - (tmqh-packetpool.c:165) <Info>
(TmqhOutputPacketpool) -- Packet 0x4001860 has been outed without verdict,
dropping it
[30966] 18/8/2011 -- 12:25:04 - (source-nfq.c:929) <Warning>
(NFQSetVerdictRescue) -- [ERRCODE: UNKNOWN_ERROR(77)] - trying to issue
verdict on 806634
[30953] 18/8/2011 -- 12:25:04 - (source-nfq.c:698) <Warning> (NFQRecvPkt) --
[ERRCODE: UNKNOWN_ERROR(76)] - nfq_handle_packet error -1

One packet stucked so far:

 (after 'iptables -F')

    1  -4217     0 2 65535     0     0   921299  1
    2  30919     *1* 2 65535     0     0   921310  1
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20110818/71d5e799/attachment-0002.html>


More information about the Oisf-users mailing list