iptables support

Home Forums GeeXboX on ARM SoCs iptables support

This topic contains 5 replies, has 2 voices, and was last updated by  banzap 5 months, 2 weeks ago.

Viewing 6 posts - 1 through 6 (of 6 total)
  • Author
    Posts
  • #11346

    banzap
    Participant

    Hey,

    I’m trying to add some firewall rules to iptables. However, everytime try to add a new TCP rule (like for SSH) or UDP rule, like this:

    iptables -A INPUT -p TCP -m TCP --dport 22 -j ACCEPT

    I get the following error:
    iptables v1.4.17: Couldn't load matchTCP’:No such file or directory`

    I listed the files on /usr/lib/modules/latest/kernel/net/netfilter but I don’t see anything related to TCP or UDP there.

    Any help on how to fix this problem of iptables not recognizing the TCP/UDP matcher?

    Thanks

    #11347

    tomlohave
    Keymaster

    did you try first :

    iptables -N TCP
    iptables -N UDP

    ?

    • This reply was modified 5 months, 3 weeks ago by  tomlohave.
    #11349

    banzap
    Participant

    Yes, that works but those commands create chains, not matchers.
    A matcher is loaded through dynamic libraries. There should exist (normally in Linux) a lib folder with the iptables libraries for matchers, which I don’t find on any ‘lib’ folder.

    btw, I have a typo on the command, TCP/UDP should be lowercase:
    iptables -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
    but doesn’t work anyway.

    #11355

    tomlohave
    Keymaster

    hum xtable folder is not included in our package, rebuilding iptables
    I will test it later in the morning

    Cheers !

    #11356

    tomlohave
    Keymaster
    opkg install iptables_1.4.17-3_armv7.opk 
    Upgrading iptables from 1.4.17-2 to 1.4.17-3 on root.
    Configuring iptables.
    root@geexbox:~# iptables -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT

    no error

    can you test this package : http://download.geexbox.org/cuboxi/iptables_1.4.17-3_armv7.opk

    • This reply was modified 5 months, 3 weeks ago by  tomlohave.
    #11362

    banzap
    Participant

    It works!

    Thank you 🙂

Viewing 6 posts - 1 through 6 (of 6 total)

You must be logged in to reply to this topic.