Florian Westphal wrote: > Patrick McHardy <kaber@xxxxxxxxx> wrote: >>> This happens because the compat delta is using a short int. >>> Easily reproducible via "iptables -m limit" ; after about 2050 >>> rules inserting new ones fails with -ELOOP. >>> >>> Note that compat_delta included 2 bytes of padding on x86_64, so >>> structure size remains the same. >> The first three patches already look fine, I'll apply those >> after a bit of testing. The remaining ones should get submitted >> very soon in order to still make the 2.6.34 merge window. > > Thanks, I'll send out v3 of the patches (only changes are the ones suggested > by Bart) once those three appear in nf-next-2.6. Great, thanks. They should be in the tree within the next two or three hours. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html