我尝试使用 conntrack -D 删除 conntrack 模块,但未删除。我想要删除的 contrack 列表如下:
# conntrack -L |grep 192.168.2.210
tcp 6 1 LAST_ACK src=192.168.2.210 dst=192.168.2.28 sport=53123
dport=47778 src=192.168.1.214 dst=192.168.2.210 sport=47778 dport=53123 [ASSURED] use=1
conntracktcp 6 431999 ESTABLISHED src=192.168.2.210 dst=192.168.2.28 sport=53125 dport=20900 src=192.168.1.214 dst=192.168.2.210 sport=20900 dport=53125 [ASSURED] use=1
v1.4.3 (conntrack-tools): 110 flow entries have been shown.
tcp 6 431971 ESTABLISHED src=192.168.2.210 dst=192.168.2.28 sport=53122 dport=21 src=192.168.1.214 dst=192.168.2.210 sport=21 dport=53122 [ASSURED] helper=ftp use=2
tcp 6 431979 ESTABLISHED src=192.168.2.210 dst=192.168.2.28 sport=53124 dport=21 src=192.168.1.214 dst=192.168.2.210 sport=21 dport=53124 [ASSURED] helper=ftp use=2
我运行了 conntrack -D 和 conntrack -F 并得到了
conntrack v1.4.3 (conntrack-tools): connection tracking table has been emptied.
我再次运行 conntrack -L,得到以下几行
# conntrack -L |grep 192.168.2.210
conntrack v1.4.3 (conntrack-tools): 27 flow entries have been shown.
tcp 6 431996 ESTABLISHED src=192.168.1.214 dst=192.168.2.210 sport=20900 dport=53125 src=192.168.2.210 dst=192.168.2.28 sport=53125 dport=20900 [ASSURED] use=1
我需要从 conntrack 中删除此行
任何帮助表示感谢