Hi Jan, On Sunday 30 September 2007, Jan Engelhardt wrote: > On Sep 30 2007 23:18, KOVACS Krisztian wrote: > >Hi Patrick, > > > >Here is the patch adding iptables components of the 'socket' match > >and the 'TPROXY' target. The code is pretty straightforward and basic > >manual pages describing what the two modules do are included in the > >patch. > > Hm, you asked me for my kernel patch, well you could have also asked > for the iptables part :-p > > Uses the kernel-level xt_TPROXY. Thanks, but this one is old: the userspace patch I've sent has received significant updates since than. As Attila has already done the userspace ipt->xt conversion we could update it to xt_* anytime: it's just that I don't think it's worth it -- it's heavily IPv4 dependent anyway. The 'socket' match does not support IPv6 either, however, we could add support _without_ any changes to the userspace, so that's why it's an x_tables match. -- KOVACS Krisztian - To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html