On Tuesday 2008-03-25 13:57, Patrick McHardy wrote: >> > >> > which means ebtables actually comes after iptables, and hence, >> > your mark 3 will not show up as you expected. > > Indeed, on output bridge netfilter will run after IPv4 netfilter. > Does that explain things? It explains things, but having the feature removed is not nice. I cannot deny that the previous code was real a hook spaghetteria, but how could it be done better? -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html