Shreyas Bhatewara <shreyas.bhatewara@xxxxxxxxx> writes: > > I am composing a proposal for this project to be submitted at Google > SoC. Could anyone brief me about what you mean by "dynamic code > generation" (https://www.linuxfoundation.org/en/Google_Summer_of_Code_2009#Optimized_netfilter_implementation). I believe it refers to generate machine code for firewall rules. So instead of interpreting a data structure the dynamically generated code would just check the rules directly. This was done by some kernels before, e.g. OSF/Mach had code to compile BPF rules into machine code. Doing something like this would be likely interesting, but I expect it would be far too much general work for a single SoC. So if you wanted to do anything like that you would need to select a very narrow doable subset. -Andi -- ak@xxxxxxxxxxxxxxx -- Speaking for myself only. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html