It is currently impossible to use the TARPIT target for iptables that you can compile in the gentoo-sources kernel as ther is no support in the default iptables for it. I generated a patch for iptables-1.2.7a to support the TARPIT target. Reproducible: Always Steps to Reproduce: 1. 2. 3. Actual Results: Patch is working.
Created attachment 9923 [details, diff] 05_all_tarpit.patch Should be bzip2-ed and put in /usr/portage/net-firewall/iptables/files/1.2.7a-files/05_all_tarpit.patch.bz2
Switched severity to major as it prvents the usage of the TARPIT target at all.
TARPIT is available out-of-the-box in iptables-1.2.8.