Using hardened-dev-sources-2.6.10-r3, when I try to modprobe ip_conntrack (or when shorewall does) it dies with the messages shown in this screen capture : http://dev.gentoo.org/~koon/ouch.png tseng: can you reproduce it ? I'll try what happens if ip_conntrack is compiled in. It used to work using the 2.6.7-series.
Compiling ip_conntrack inkernel apparently workarounds this bug. tseng: feel free to close it if you can't reproduce it.
I am getting this same error with kernel 2.6.12-gentoo-r6 when ip_conntrack is a module. Then all module activity is hosed and I have to reboot. I will also try to compile the iptables modules in-kernel and see if this helps. But, short of that, this should work as a module and investigation should be done on this to sort out why this module is causing a seg fault.
Is this reproducible on 2.6.15? If so, please enable CONFIG_KALLSYMS so that backtraces become useful.
Please reopen when you respond to comment #3