Re: Linux 2.4.18 Kernel Panics related to Netfilter/iptables

From: glynis@butterfly.hjsoft.com
Date: Mon Sep 02 2002 - 23:15:30 EST


On Mon, Sep 02, 2002 at 10:21:56AM +0200, mk@fashaf.co.za wrote:
> One of my machines running kernel 2.4.18 is getting kernel panics
intermittently (30minutes to 4/5 hours).
> from the logs I believe is the culprit:
> kernel: LIST_DELETE: ip_conntrack_core.c:165
`&ct->tuplehash[IP_CT_DIR_REPLY]'(c6c78e44) not in &ip_conntrack_hash
[hash_conntrack(&ct->tuplehash[IP_CT_DIR_REPLY].tuple)].

i've wrestled quite a bit with this problem, but never really could
figure out the correct answers. some people blamed the compiler, but
different versions of the compiler still produced it.

i saw it in 2.4.18 and 2.4.19pre kernels on my dual athlon.

in the end i found switching from snat to masqerading for my internal
network seemed to eliminate it. also i found that if i eliminated my
udp outgoing remote log stream from syslog-ng, i could keep the snat
and have the box still live.

i'm now running nicely with 2.4.19, snat firewall rules, and no remote
logging.

-- 
____________________}John Flinchbaugh{______________________
| glynis@hjsoft.com         http://www.hjsoft.com/~glynis/ |
~~Powered by Linux: Reboots are for hardware upgrades only~~


- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Sat Sep 07 2002 - 22:00:16 EST