[PATCH 1/1] Re: dangerous? Setting mark in nat table

Patrick McHardy kaber at trash.net
Thu Mar 15 00:02:33 CET 2007


Carl-Daniel Hailfinger wrote:
> On 14.03.2007 23:21, Henrik Nordstrom wrote:
> 
>>Or whatever it will be in the successor to iptables..
>>
>>just spewing ideas at this time. As Patrick I do not consider the core
>>iptables worth the effort of such redesign and if redesigning stuff then
>>something significantly better should be done. nf-HiPAC is one possible
>>alternative where a lot is done much smarter even if communication
>>between the projects is pretty distant at the moment.
> 
> 
> Speaking of HiPAC, when is it going to be merged? IIRC the merge was
> discussed at the netfilter workshop 2005 with the goal to merge it in
> 2.6.16. Has this decision been overturned/revised/forgotten or was
> the report I read about that netfilter workshop inaccurate?


Unfortunately the discussion pretty much came to a halt over a year
ago because of some disagreements. I still consider merging it a
good idea, but since there is no progress in this area I will start
working on a netlink based iptables replacement myself in the next
months.




More information about the netfilter-devel mailing list