Conntrack enabled by default
Reported on the forum:

Possibly missed during my firewall refactor, vyatta made use of FW_CONNTRACK and NAT_CONNTRACK chains to enable/disable conntrack depending if rules are found to match on state in firewall/nat modules.


sdev triaged this task as High priority.
sdev created this task.

I don't think this ever worked as intended: see T3275#103228, vyos-build PR 185, and T3821.