nfmark routing in ip_route_output()
Rusty Russell
rusty@linuxcare.com.au
Fri, 08 Sep 2000 11:52:47 +1100
In message <200009051657.UAA30330@ms2.inr.ac.ru> you write:
> Hello!
Hi Alexey!
> BTW, Paul, we can make one interesting thing now.
> Namely, something sort of setsockopt(SO_NFMARK).
There are so many approaches, and I'm not clever enough to know which
is right: for user rate limiting we have the iptables `owner' match,
but it's fooled by setuid like ping; Andi's idea would make it
reliable. Your idea would be useful maybe for some other stuff.
So I'll wait until someone has a need, and then they can read these
archives, then write a patch how they prefer. 8)
Cheers,
Rusty.
--
Hacking time.