Clean conntrack states

2018-03-02 - How to clean conntrack states
Tag: linux

A not so simple command

Firewalling on linux is messy, here is an example of how to clean conntrack states that match a specific query on a linux firewall :

conntrack -L conntrack -p tcp –orig-dport 65372 | \
while read _ _ _ _ src dst sport dport _; do
    conntrack -D conntrack –proto tcp –orig-src ${src#*=} –orig-dst ${dst#*=} \
              –sport ${sport#*=} –dport ${dport#*=}
 done