Bug#332231: kernel-source-2.6.8: ipt_recent bug: stops working after a 25 days uptime
Package: kernel-source-2.6.8
Version: 2.6.8-16
Severity: important
Tags: patch
After 25 days, the jiffies overflow and ipt_recent do not work anymore.
If ipt_recent is used with a '-j DROP' rule then backlisted IPs are blacklisted
forever, ignoring the --seconds option, so that you could be kicked out of
your server.
The only way to fix the problem is to reboot the server :-(
For more info on this problem please see this 2.6.x report (and patch):
http://patchwork.netfilter.org/netfilter-devel/patch.pl?id=2587
Cheers,
Ludovic.
-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.6.8-2-k7
Locale: LANG=fr_FR, LC_CTYPE=fr_FR (charmap=ISO-8859-1)
Versions of packages kernel-source-2.6.8 depends on:
ii binutils 2.15-6 The GNU assembler, linker and bina
ii bzip2 1.0.2-7 high-quality block-sorting file co
ii coreutils [fileutils] 5.2.1-2 The GNU core utilities
ii fileutils 5.2.1-2 The GNU file management utilities
-- no debconf information
Reply to: