刚对比了一下openwrt的lsmod信息和我那个服务器的lsmod信息
的确加载的模块不一样,但是我用modprob把能加载的模块都加载上了
我那个服务器是5.12内核,内核好像没找到x_tables模块
openwrt上有x_tables模块,不知道是不是因为这个的原因呢
openwrt模块信息如下:
[root@PandoraBox_0E26:/etc/modules.d]#lsmod|grep nat
ip6_tables             11242  4 ip6table_nat,ip6table_raw,ip6table_mangle,ip6table_filter
ip6table_nat            2481  0 
ip_tables              11390  4 iptable_nat,iptable_raw,iptable_mangle,iptable_filter
iptable_nat             2302  1 
nf_conntrack           59244 38 shortcut_fe_cm,iptable_nat,ip6table_nat,nf_nat_pptp,nf_nat_ipv6,nf_nat_ipv4,nf_nat_amanda,nf_conntrack_pptp,nf_conntrack_ipv6,nf_conntrack_ipv4,nf_conntrack_amanda,xt_state,xt_helper,xt_conntrack,xt_connmark,xt_connlimit,xt_connbytes,xt_CT,nf_nat_tftp,nf_nat_snmp_basic,nf_nat_sip,nf_nat_irc,nf_nat_h323,nf_conntrack_tftp,nf_conntrack_snmp,nf_conntrack_sip,nf_conntrack_rtcache,nf_conntrack_proto_gre,nf_conntrack_netlink,nf_conntrack_irc,nf_conntrack_h323,nf_conntrack_broadcast,ipt_MASQUERADE,sch_esfq,act_connmark,xt_FULLCONENAT,ip6t_MASQUERADE,nf_nat
nf_conntrack_amanda     2133  1 nf_nat_amanda
nf_conntrack_h323      37049  1 nf_nat_h323
nf_conntrack_irc        3099  1 nf_nat_irc
nf_conntrack_pptp       3980  1 nf_nat_pptp
nf_conntrack_sip       19979  1 nf_nat_sip
nf_conntrack_snmp        891  1 nf_nat_snmp_basic
nf_conntrack_tftp       3009  1 nf_nat_tftp
nf_nat                 11395 17 iptable_nat,ip6table_nat,nf_nat_pptp,nf_nat_ipv6,nf_nat_ipv4,nf_nat_amanda,xt_nat,xt_REDIRECT,xt_NETMAP,nf_nat_tftp,nf_nat_sip,nf_nat_proto_gre,nf_nat_irc,nf_nat_h323,ipt_MASQUERADE,xt_FULLCONENAT,ip6t_MASQUERADE
nf_nat_amanda            936  0 
nf_nat_h323             6095  0 
nf_nat_ipv4             3189  1 iptable_nat
nf_nat_ipv6             3149  1 ip6table_nat
nf_nat_irc              1230  0 
nf_nat_pptp             1770  0 
nf_nat_proto_gre        1061  1 nf_nat_pptp
nf_nat_sip              8309  0 
nf_nat_snmp_basic       7661  0 
nf_nat_tftp              662  0 
x_tables               14613 60 xt_u32,xt_time,xt_tcpudp,xt_tcpmss,xt_string,xt_statistic,xt_state,xt_recent,xt_nat,xt_multiport,xt_mark,xt_mac,xt_limit,xt_length,xt_iface,xt_id,xt_hl,xt_helper,xt_hashlimit,xt_ecn,xt_dscp,xt_conntrack,xt_connmark,xt_connlimit,xt_connbytes,xt_comment,xt_TCPMSS,xt_REDIRECT,xt_NETMAP,xt_LOG,xt_IPMARK,xt_HL,xt_DSCP,xt_CT,xt_CLASSIFY,xt_ACCOUNT,iptable_raw,iptable_mangle,iptable_filter,ipt_REJECT,ipt_MASQUERADE,ipt_ECN,ip_tables,act_ipt,xt_FULLCONENAT,xt_set,ip6t_NPT,ip6t_MASQUERADE,ip6t_rt,ip6t_frag,ip6t_hbh,ip6t_eui64,ip6t_mh,ip6t_ah,ip6t_ipv6header,ip6t_REJECT,ip6table_raw,ip6table_mangle,ip6table_filter,ip6_tables
xt_nat                  1433  0
B服务器的模块信息如下:
[root@leeyc31 ~]# lsmod|grep nat
nf_nat_tftp            16384  0 
nf_conntrack_tftp      20480  1 nf_nat_tftp
nf_nat_irc             20480  0 
nf_conntrack_irc       20480  1 nf_nat_irc
nf_nat_ftp             20480  0 
nf_conntrack_ftp       24576  1 nf_nat_ftp
nf_nat_amanda          16384  0 
nf_conntrack_amanda    16384  1 nf_nat_amanda
nf_nat_sip             20480  0 
nf_conntrack_sip       40960  1 nf_nat_sip
ip6table_nat           16384  1 
ip6_tables             32768  4 ip6table_filter,ip6table_raw,ip6table_nat,ip6table_mangle
xt_nat                 16384  8 
iptable_nat            16384  1 
nf_nat                 45056  9 nf_nat_irc,ip6table_nat,nf_nat_ftp,xt_nat,nf_nat_tftp,nf_nat_amanda,iptable_nat,xt_MASQUERADE,nf_nat_sip
nf_conntrack          155648  16 xt_conntrack,nf_nat_irc,nf_nat,nf_conntrack_tftp,nf_nat_ftp,xt_nat,nf_nat_tftp,nf_nat_amanda,nf_conntrack_sip,nf_conntrack_irc,nf_conntrack_amanda,nf_conntrack_netlink,xt_connmark,nf_conntrack_ftp,xt_MASQUERADE,nf_nat_sip
libcrc32c              16384  3 nf_conntrack,nf_nat,xfs
ip_tables              28672  2 iptable_filter,iptable_nat
【 在 lvsoft 的大作中提到: 】
: 他说的对,我记得sip是有mod的。
: 你看看有没有nf_conntrack_sip这个模块。
: 此外可以先用netcat测试下udp通不通
: ...................
--
FROM 202.98.17.*