On Sun, 25 Nov 2007, Jan Engelhardt wrote:
On Nov 25 2007 20:39, Krzysztof Oledzki wrote:
On Sun, 25 Nov 2007, Jan Engelhardt wrote:
Netfilter: Import xt_TEE
Originally from Sebastian Classen.
xt_TEE is the logical successor to ipt_ROUTE; routing based on packet
charactersitics is done using xt_MARK/iproute2/fwmark nowadays, so
what remains of ipt_ROUTE is the --tee option, which xt_TEE implements.
IMHO it is not successor as it does not provide all ipt_ROUTE functionality. As
I appreciate your work and time spent on cleaning this code I think it would be
better not to strip it as xt_MARK/iproute2/fwmark is not always a valid option.
We've been there -
http://www.gossamer-threads.com/lists/engine?do=post_view_printable;post=68316;list=iptables
Exactly. But still, it is not a successor but rather a substitute with a
stripped functionality. I wish I haven't been so busy with other tasks
lately to do it myself, but I really think that a cleaned xt_ROUTE
extension is not going to bite. We can even add a config option to only
allow --tee by default, so no one will use --gw if xt_MARK/iproute2/fwmark
works for him.
Best regards,
Krzysztof Olędzki