Eric Leblond wrote: > The following feature was submitted some months ago. It forces the dump > of mark during the connection destruction event. The induced load is > quiet small and the patch is usefull to provide an easy way to filter > event on user side without having to keep an hash in userspace. I think that I told you that I'm against this patch. You may use the id for this, although I'm not a big fun of it. I prefer having the hash table or whatever structure in userspace, why don't you consider this? If you keep the conntrack entries in a list and you have tons of them your performance would be harmed anyway. -- "Los honestos son inadaptados sociales" -- Les Luthiers - To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html