Jon Masters wrote: > On Tue, 2010-02-02 at 19:58 +0200, Alexey Dobriyan wrote: > >> Yes, moving to init_net-only function is fine. > > So moving the "setup up fake conntrack" bits to init_init_net from > init_net still results in the panic, which means that the use count > really is dropping to zero and we really are trying to free it when > using multiple namespaces. Per ns is probably an easier way to go. Agreed, that will also avoid problems in the future with the ct_net pointer pointing to &init_net. I'll take care of this tommorrow. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html