[Oisf-users] All Good Except NFQ Repeat Mode

Andreas Herz andi at geekosphere.org
Wed May 24 19:29:04 UTC 2017


On 15/05/17 at 10:02, Dominic Ruggiero wrote:
> sudo iptables -I INPUT -j NFQUEUE
> sudo iptables -I OUTPUT -j NFQUEUE
> 

Did you keep them?

> Only 17197 of the 35343 treated pkts during this session were accepted
> due to the 18144 errors.

The packets are getting back into the iptables chain but this time with
the mark you did configure, so you want to exclude them to jump back
again into the NFQUEUE.

-- 
Andreas Herz



More information about the Oisf-users mailing list