Please give possibility of not using conntrack
Tommi Virtanen
tv@havoc.fi
Mon, 27 Mar 2000 13:55:25 +0300
Hi. As of 2.3.99-pre2, CONFIG_NETFILTER also makes the skbuff
handling functions care about the nfct pointer, calling
desctructors etc. This is bad because it lessens the
modularity of the Netfilter framework. All the others are
modules, and can just be left not loaded, but conntrack, or
atleast some parts of it, is thus now fixed. Could this be
separated into CONFIG_NETFILTER_CONNTRACK, that would default
to y if CONFIG_NETFILTER is y?
I have a specific application for the hook routines, and I'd
rather not see Netfilter conntrack there. Not even the few
if's in case nfct is null.
I'd be happy to do the work; just say yes.
--
tv@{{hq.yok.utu,havoc,gaeshido}.fi,{debian,wanderer}.org,stonesoft.com}
unix, linux, debian, networks, security, | First snow, then silence.
kernel, TCP/IP, C, perl, free software, | This thousand dollar screen dies
mail, www, sw devel, unix admin, hacks. | so beautifully.