[PATCH 2.6 0/12]: netfilter update

Henrik Nordstrom hno at marasystems.com
Sun Sep 26 23:45:39 CEST 2004


On Sun, 26 Sep 2004, Patrick McHardy wrote:

> Unfortunately I have to agree with you, another set of hooks looks
> like the only way to solve the race. Let me think some more about
> the implications for iptables and ip_conntrack.

conntrack should not see this new hook.

what do do in iptables is a question.. as it is yet another step in the 
packet processing it calls for a new builtin chain I think.

Regards
Henrik



More information about the netfilter-devel mailing list