[Oisf-users] having NFQUEUE without a suricata instance running blocks all connections

Jeff Dyke jeff.dyke at gmail.com
Thu Aug 31 22:41:19 UTC 2017


Thanks for sharing, i was not aware of that manpage.

On Thu, Aug 31, 2017 at 2:54 PM, James Moe <jimoe at sohnen-moe.com> wrote:

> On 08/30/2017 03:07 PM, Eric Leblond wrote:
> >>   In opensuse 42.2 (linux 4.4.79-18.26-default x86_64) the iptables
> >> manual does not show "--queue-bypass" as an option.
> >>   Is the option undocumented, hidden, or unsupported? Or does it
> >> require
> >> a custom build of iptables?
> > bypass option is 2.6.39 so it should be there. Maybe check the
> > iptables-extensions manpage ?
> >
>   Yes, the iptables-extensions manpage has the option description.
>   Thanks.
>
> --
> James Moe
> moe dot james at sohnen-moe dot com
> 520.743.3936
> Think.
>
>
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
>
> Conference: https://suricon.net
> Trainings: https://suricata-ids.org/training/
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20170831/6c16bd0d/attachment-0002.html>


More information about the Oisf-users mailing list