--=-+8rfWZZ48tLjsnfCcfEy Content-Type: text/plain Content-Transfer-Encoding: quoted-printable On Wed, 2003-08-20 at 10:48, Wayne wrote: > Hello, >=20 > I have a box running as a bridge and am trying to track the passive > FTP sessions by marking them with iptables (CONNMARK option installed) > and then trying to pick up the mark using tc filter fwmark. This is > not working. Are you setting the mark (std fw mark) ? the connmark is not saved when leaving netfilter and reaching the QOS system. See : http://home.regit.org/connmark.html for details BR, --=20 Eric Leblond <eric@xxxxxxxxx> Regit.org --=-+8rfWZZ48tLjsnfCcfEy Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.2 (GNU/Linux) iD8DBQA/QzkQnxA7CdMWjzIRAh6VAJ4rJhRdKJeIwugPX8fkMho+2ZEkCwCggzEA gnXX7SoX5CafbC09QZj2xrk= =wpD5 -----END PGP SIGNATURE----- --=-+8rfWZZ48tLjsnfCcfEy--