Hello, In the common case - yes. nfct_seqadj_ext_add needs to be called before confirmation, that is why we place it in ip_vs_update_conntrack(). There is another case when synced connection comes to
Thanks a lot! If we add the other section, then this check should not be necessary. It will work. I'm just thinking if we will allocate a seqadj ext, in too many situations, were its not really neede
Hello, I hope I'll save you some time... What do you think about such change: [PATCH net] ipvs: use the new seqadj interface from ip_vs_ftp diff --git a/net/netfilter/ipvs/ip_vs_ftp.c b/net/netfilter
Hello, There is still a problem when RIP and VIP differ in text length because now ack_seq sent to RIP is not adjusted after receiving the the 227 Entering Passive Mode reply. I tried also to set *di
The IPVS FTP helper ip_vs_ftp can trigger an OOPS in nf_ct_seqadj_set, after commit 41d73ec053d2 (netfilter: nf_conntrack: make sequence number adjustments usuable without NAT). We can avoid the oops