o Fixed bugs in UDP and SCTP protocol handlers (parse_proto)
o Added the comparison infrastructure for layer-4 protocols o Added libnetfilter_conntrack_[tcp|udp|icmp|sctp].h that contains the protocol flags used by the comparison infrastructure o Added nfct_conntrack_compare to compare two conntracks based on flags o Killed nfct_event_netlink_handler o nfct_event_[conntrack|expect] requires ROOT privileges (reason: netlink multicast) o Bumped version to 0.29
@@ -90,6 +90,11 @@ int main(int argc, char **argv)
if (ret < 0 && ret != -EEXIST)
+ if (ret == -EINVAL)
+ fprintf(stdout, "NFNETLINK answers: -EINVAL, make sure "
+ "ip_conntrack_netlink is loaded and "
+ "you have NET_CAPABILITIES");
nfct_register_callback(cth, nfct_default_conntrack_display, NULL);
ret = nfct_dump_conntrack_table_reset_counters(cth);
fprintf(stdout, "TEST 2: dump conntrack table and reset (%d)\n", ret);