Page 1 of 1

iptables: Index of insertion too big

Posted: 10 Oct 2008, 15:57
by marcele
On any newer servers I get this message when trying to start csf:

Starting csf:iptables: Index of insertion too big

Running Centos 5.2
uname -a
Linux 2.6.18-92.1.13.el5 #1 SMP 8 i686 i686 i386 GNU/Linux

iptables-1.3.5-4.el5

Posted: 11 Oct 2008, 10:09
by chirpy
This indicates that iptables has been flushed. I would suspect that you are running TESTING mode, or some other cron job is flushing iptables chains, which will cause this problem while it is trying to insert a rule into a chain.

nope

Posted: 11 Oct 2008, 14:47
by marcele
Sorry this isn't the case. This is happening on our new Centos 5.2 installs .. I've verified that TESTING = "0" .. and there are no crons installed. This is happening on multiple machines. I'm a longtime csf user and never experienced this problem before.

Here is the csf.conf:
http://pastebin.com/m3037fdd4

Posted: 11 Oct 2008, 15:24
by chirpy
I just tried your configuration on a CentOS v5.2 and didn't have any problems. If you're using a stock CentOS kernel (i.e. not a custom kernel) and can give me access to the server to investigate, please log a ticket on our helpdesk.

Very odd

Posted: 11 Oct 2008, 16:19
by marcele
Yes its very odd. I installed csf to a separate vm and don't have the problem at all. I'll open a ticket and you can login to one of the servers.

Posted: 17 Oct 2008, 09:38
by chirpy
This was fixed in csf v4.11