|
@@ -40,27 +40,6 @@ config NF_CONNTRACK
|
|
|
|
|
|
if NF_CONNTRACK
|
|
|
|
|
|
-config NF_CT_ACCT
|
|
|
- bool "Connection tracking flow accounting"
|
|
|
- depends on NETFILTER_ADVANCED
|
|
|
- help
|
|
|
- If this option is enabled, the connection tracking code will
|
|
|
- keep per-flow packet and byte counters.
|
|
|
-
|
|
|
- Those counters can be used for flow-based accounting or the
|
|
|
- `connbytes' match.
|
|
|
-
|
|
|
- Please note that currently this option only sets a default state.
|
|
|
- You may change it at boot time with nf_conntrack.acct=0/1 kernel
|
|
|
- parameter or by loading the nf_conntrack module with acct=0/1.
|
|
|
-
|
|
|
- You may also disable/enable it on a running system with:
|
|
|
- sysctl net.netfilter.nf_conntrack_acct=0/1
|
|
|
-
|
|
|
- This option will be removed in 2.6.29.
|
|
|
-
|
|
|
- If unsure, say `N'.
|
|
|
-
|
|
|
config NF_CONNTRACK_MARK
|
|
|
bool 'Connection mark tracking support'
|
|
|
depends on NETFILTER_ADVANCED
|
|
@@ -630,7 +609,6 @@ config NETFILTER_XT_MATCH_CONNBYTES
|
|
|
tristate '"connbytes" per-connection counter match support'
|
|
|
depends on NF_CONNTRACK
|
|
|
depends on NETFILTER_ADVANCED
|
|
|
- select NF_CT_ACCT
|
|
|
help
|
|
|
This option adds a `connbytes' match, which allows you to match the
|
|
|
number of bytes and/or packets for each direction within a connection.
|