Illegal argument on owner match

From: Massimo (massimo.coletti_at_gmail.com)
Date: 06/17/05


Date: 17 Jun 2005 10:16:27 -0700

I have iptables 1.2.11 on Debian Woody.
I am not able to issue an option "-m owner --gid-owner 1234".
On the same box, this option worked until yesterday, today - as usual -
I performed an update of the existing packages.

The ipt_owner module seem installed, modprobe doesn't issue any error,
trying:

iptables -m owner -h

lists correctly the options.

I found the message below: maybe the problem is in userspace syncing,
but I don't know how to do it.

Can anybody help ?

Thanks,

Massimo

Matthias Degenkolb wrote:
> Can anybody tell me the problem or where to look next?

Look if you have this file:
/lib/iptables/libipt_owner.so

or do:
iptables -m owner -h

to see if you've got the support for owner.

If you have the support then probably the userspace code
from iptables and the kernel code it's not synced.

> Thanks,

> MD

Regards.



Relevant Pages

  • Re: Backdoor hacked
    ... Also with iptables? ... MATCH EXTENSIONS section ... packet creator, for locally-generated pack-ets. ... may have no owner, and hence never match. ...
    (comp.os.linux.security)
  • cant use iptable extensions
    ... I am using vanilla Fedora Core 2, ... and <owner>, iptables always gives me error. ... And similar results with extension. ...
    (Fedora)
  • Re: firewall securing outgoing traffic?
    ... Iptables can work on process owner ... which is what ZoneAlarm does. ... > and owner check is not enough. ... you prevent untrusted applications from running trusted applications. ...
    (comp.os.linux.security)
  • Re: Simple file manager, not browser ?
    ... I didn't know about iptables at all, ... I had to add the module "owner" to enable the --uid-owner, ... As I don't have any other network ... Jacques ...
    (alt.linux)
  • Re: 2.6.16-rc1-mm3 / netfilter / firehol problems?
    ... Is netfilter supposed to work again? ... iptables: Too many levels of symbolic links ... # ACPI Support ...
    (Linux-Kernel)