-
Junior Member
registered user
-
Junior Member
registered user
No idea?
Please have a look at it and try to help ...
-
Senior Member
registered user
Klaus Knopper is usually too busy to check these forums. So can contact him & other Knoppix developers at their mailing list http://lists.debian.org/debian-knoppix/
-
Junior Member
registered user
Re: Knoppix 3.9 Kernel 2.6.11 iptables string-match

Originally Posted by
floschi
perhaps directly by klaus.
This should not mean, that he's the only guy, who could solve it. Anyone else could also have a solution.
-
Junior Member
registered user
The last left error occuring in compilation is:
176: error: Initialisierungs-Element ist zur Lade-Zeit nicht berechenbar
(near initialization for 'string_match.revision')
If i should translate the first quoted line it means:
"Initialization-element can't be calculated within loading-time"
The Code leading to this:
Code:
static struct ipt_match string_match
= { { NULL, NULL }, "string", &match, &checkentry, NULL, THIS_MODULE };
It is in most cases near line 176.
Does anyone know what's going on here?
-
Junior Member
registered user
And the solution I found yesterday is:
replace the above quoted Code with the following:
Code:
static struct ipt_match string_match = {
.name = "string",
.checkentry = checkentry,
.me = THIS_MODULE
};
And then have fun!
My Problem: After compiling the kernel nothing worked any more
But that's another story ...
-
Junior Member
registered user
I experienced another problem after compiling the ipt_string.c
Now i get a Kernel PANIC!
I set up a rule for dropping all icmp requests coming from a speacial host with hex-string-matching
"7f656c66". Now when I am sending this hex-string via "ping" from the host, my Firewall get's a Kernel PANIC.
The PANIC accures when ipt_do_table is in stack. So does anyone know this error? I have no idea how to deal with it. The module is properly loaded.
Perhaps there is another module missing?
The rule:
iptalbes -I INPUT -m string --hex-string 7f656c66 -p icmp -s vvv.xx.y.zz -j DROP
.. you could call it a "Ping of death" - but I don't like that. Kernel: 2.6.12.2; iptables: 1.3.3
Unable to handle kernel NULL pointer
Oops: 0000 [#1]
EIP: 0060
EFLAGS: 00010206
EIP is at rest_init 0x3feffd6c/ox28
Process swapper (pid:0
Call Trace:
ipt_do_table
ip_local_deliver_finish
ipt_hook
nf_iterate
ip_local_deliver_finish
ip_local_deliver
ip_local_deliver_finish
ip_rcv
netif_recieve_skb
process_backlog
net_rx_action
_do_softirq
irq_exit
do_IRQ
common_interrupt
default_idle
default_idle
cpu_idle
start_kernel
Code: Bad EIP value
Kernel PANIC - not syncing: Fatal exception in interrupt
Similar Threads
-
By DieselDriver in forum Networking
Replies: 3
Last Post: 03-03-2005, 02:44 PM
-
By Neo-Rio in forum General Support
Replies: 2
Last Post: 04-08-2004, 08:05 AM
-
By zebul666 in forum Ideas
Replies: 4
Last Post: 04-07-2004, 07:00 AM
-
By Markus in forum Networking
Replies: 6
Last Post: 01-24-2004, 07:27 PM
-
By Dave_Bechtel in forum Hdd Install / Debian / Apt
Replies: 1
Last Post: 10-11-2003, 05:27 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules

SFP TO RJ45 TRANSCEIVER SFP MODULE COPPER SFP OPTICAL PORT TO RJ45 ETHERNET PORT
$7.99

NEW Sealed Cisco SFP-10G-LR 10GBASE-LR SFP+ 1310nm 10km *US Shipping*
$24.00

Dell Intel X710-DA2 5N7Y5 Dual-Port 10GbE SFP+ PCIe 3.0 x8 Network Adapter
$27.50

New Sealed Cisco GLC-LH-SMD 1000BASE-LX/LH SFP Transceiver Module *US
$17.00

Genuine Cisco SFP-10G-SR 0-2415-03 10 Gigabit Transceiver
$5.40

HP 560SFP+ 10GB 2-port PCIe NIC Ethernet ADAPTER 669279-001 w/ (2) 10GB SFP+
$16.99

Intel X520-DA2 10Gb 10Gbe 10 Gigabit Network Adapter NIC Dual Port E10G42BTDA
$28.94

For Cisco SFP-10G-T-X Transceiver Multi-Rate 1G/2.5G/5G/10G SFP+ to RJ-45 Module
$66.31

Penguin Computing Arctica 4806XP 48-Port 10G SFP+ 6x 40G QSFP+ Switch Dual PSU
$385.00

Cisco QSFP-40G-SR-BD Module 10-2945-02 NEW CLAMSHELL
$45.50