Re: [RFC PATCH 0/2 nf_tables] 32/64/128-bits word addressing in nf_tables

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, Oct 28, 2013 at 01:59:37PM +0100, Pablo Neira Ayuso wrote:
> This is a preliminary patchset to allow nf_tables to address registers
> at 32/64/128 bits word size. This is something that Patrick and I have
> been discussing for a while.
> 
> The proposed approach in this patchset adds the new register addressing
> to the nf_tables core, the overlapping register approach describe in
> patch 1/2 is backward compatible.
> 
> Still missing a kernel patch to allow set elements higher than 128 bits,
> so we can have concatenations including IPv6 addresses, but that limitation
> should be easy to remove. Explicit set type selection is also required,
> currently, it is selecting the rb-tree set type here, which is suboptimal.
> 
> Comments welcome.

Thanks for looking into this. I'll review them tonight.
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html




[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux