VyOS config:
set system conntrack ignore ipv4 rule 10 destination port '22' set system conntrack ignore ipv4 rule 10 protocol 'tcp' set system conntrack ignore ipv4 rule 10 tcp flags syn set system conntrack modules ftp set system conntrack modules h323 set system conntrack modules nfs set system conntrack modules pptp set system conntrack modules sip set system conntrack modules sqlnet set system conntrack modules tftp set system sysctl parameter net.netfilter.nf_conntrack_tcp_loose value '0'
I found log in dmesg:
vyos@r4# sudo dmesg -T | grep ignor [Tue Sep 19 17:09:04 2023] nf_conntrack: unknown parameter 'nf_conntrack_helper' ignored [edit] vyos@r4#
It seems sysctl conntrack helper was removed here https://github.com/torvalds/linux/commit/b118509076b39cc5e616c0680312b5caaca535fe
One place where I find it in our code is https://github.com/vyos/vyos-1x/blob/38cab26959ded78a737db2272fe25106a2de47b0/data/templates/conntrack/vyos_nf_conntrack.conf.j2#L2