Please give possibility of not using conntrack

Tommi Virtanen tv@havoc.fi
Mon, 27 Mar 2000 13:55:25 +0300


	Hi. As of 2.3.99-pre2, CONFIG_NETFILTER also makes the skbuff
	handling functions care about the nfct pointer, calling
	desctructors etc. This is bad because it lessens the
	modularity of the Netfilter framework. All the others are
	modules, and can just be left not loaded, but conntrack, or
	atleast some parts of it, is thus now fixed. Could this be
	separated into CONFIG_NETFILTER_CONNTRACK, that would default
	to y if CONFIG_NETFILTER is y?

	I have a specific application for the hook routines, and I'd
	rather not see Netfilter conntrack there. Not even the few
	if's in case nfct is null.

	I'd be happy to do the work; just say yes.

-- 
tv@{{hq.yok.utu,havoc,gaeshido}.fi,{debian,wanderer}.org,stonesoft.com}
unix, linux, debian, networks, security, | First snow, then silence.
kernel, TCP/IP, C, perl, free software,  | This thousand dollar screen dies
mail, www, sw devel, unix admin, hacks.  | so beautifully.