On Thu, Dec 13, 2012 at 02:08:03PM +0100, Jan Engelhardt wrote: > On Thursday 2012-12-13 13:05, Pablo Neira Ayuso wrote: > >> >[...] > >> >> Please consider for merging. > >> > > >> >nftables and its compatibility layer already provide this and we will > >> >not have to maintain two different netlink interfaces, which is too > >> >much overhead. > >> > >> I refer you to our previous discussion on the topic > >> for the justifications: > >> > >> http://www.spinics.net/lists/netfilter-devel/msg23919.html > > > >I don't think that feature-set provides compelling reasons to push > >this mainstream. > > Well, if not that, then what - documentation, code size? Not only that. Xtables2 (in its feature-set) inherits many of the design decisions that were taken while designing iptables back in the late nineties. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html