[PATCH 2.6 0/12]: netfilter update
Henrik Nordstrom
hno at marasystems.com
Sun Sep 26 23:45:39 CEST 2004
On Sun, 26 Sep 2004, Patrick McHardy wrote:
> Unfortunately I have to agree with you, another set of hooks looks
> like the only way to solve the race. Let me think some more about
> the implications for iptables and ip_conntrack.
conntrack should not see this new hook.
what do do in iptables is a question.. as it is yet another step in the
packet processing it calls for a new builtin chain I think.
Regards
Henrik
More information about the netfilter-devel
mailing list