From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx> Date: Sun, 18 Nov 2007 14:21:20 +0100 (CET) > I think the other way around would be better: > > CONFIG_NETFILTER enable everyting > CONFIG_NETFILTER_WITHOUT_NAT everything except NAT > CONFIG_NETFILTER_ADVANCED select modules manually > > This is more or less the most usual cases: typically almost everyone wants > NAT and the wide range of matches and targets. Some places don't use NAT. > And if someone wants to exclude modules or disable settings like > conntrack flow accounting, in advanced mode it'd be possible to do so. This leaves no choice for the original purpose my proposal was meant to address. People like Linus who want one config option to choose which gives them the basics but not "all the other random crap" that he'll never use. - To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html