On Fri, Apr 05, 2013 at 06:41:09PM +0200, Patrick McHardy wrote: > These patches fix a long standing annoyance: netfilter will return > EPERM for all errors during rerouting or XFRM policy lookups. > > These patches change {ip,ip6}_route_me_harder() and nf_xfrm_me_harder() > to return errno codes and use NF_DROP_ERR() to propagate those back > to userspace. Applied, thanks Patrick! -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html