Re: NF [PATCH 2/4] xt_TEE

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 





On Sun, 25 Nov 2007, Jan Engelhardt wrote:


On Nov 25 2007 20:39, Krzysztof Oledzki wrote:
On Sun, 25 Nov 2007, Jan Engelhardt wrote:
Netfilter: Import xt_TEE


Originally from Sebastian Classen.
xt_TEE is the logical successor to ipt_ROUTE; routing based on packet
charactersitics is done using xt_MARK/iproute2/fwmark nowadays, so
what remains of ipt_ROUTE is the --tee option, which xt_TEE implements.

IMHO it is not successor as it does not provide all ipt_ROUTE functionality. As
I appreciate your work and time spent on cleaning this code I think it would be
better not to strip it as xt_MARK/iproute2/fwmark is not always a valid option.

We've been there -
http://www.gossamer-threads.com/lists/engine?do=post_view_printable;post=68316;list=iptables

Exactly. But still, it is not a successor but rather a substitute with a stripped functionality. I wish I haven't been so busy with other tasks lately to do it myself, but I really think that a cleaned xt_ROUTE extension is not going to bite. We can even add a config option to only allow --tee by default, so no one will use --gw if xt_MARK/iproute2/fwmark works for him.

Best regards,

				Krzysztof Olędzki

[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux