Networking Forums

Networking Forums > Computer Networking > Linux Networking > help understanding netfilter comment

Reply
Thread Tools Display Modes

help understanding netfilter comment

 
 
Giacomo
Guest
Posts: n/a

 
      09-12-2005, 11:45 AM
Good morning, i did not understand what problems are concerned with

"The checked segment is in window, but our windows are *not*
equivalent with the ones of the sender/receiver"

I have a problem programming a nat module for linux kernel and i would like
to understand
the problem pointed out in this comment to see if it could be the cause of
malfunction.

When translating addresses and ports, is it necessary to deal with windows
or other parameters
such as seq/ack numbers? (I don't touch payload, just ips and ports).

Thanks in advance, Giacomo.

The comment is extracted from ip_conntrack_proto_tcp.c



/*
* The TCP state transition table needs a few words...
*
* We are the man in the middle. All the packets go through us
* but might get lost in transit to the destination.
* It is assumed that the destinations can't receive segments
* we haven't seen.
*
* The checked segment is in window, but our windows are *not*
* equivalent with the ones of the sender/receiver. We always
* try to guess the state of the current sender.
*
* The meaning of the states are:
*
* NONE: initial state
.....


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Narus - any comment ? Dianci Maichong Network Routers 0 10-12-2007 06:45 AM
Comment va l'adsl sur bordeaux Thomas Bosch Linux Networking 1 11-09-2005 10:49 AM
Server comment? srvcomment? Paul D.Smith Windows Networking 1 10-27-2005 08:15 AM
big upgrade, please review and comment... Windows Networking 0 10-01-2004 02:38 PM
Bulldog - anyone care to comment? Peter Broadband 3 06-12-2004 09:43 AM



1 2 3 4 5 6 7 8 9 10 11