Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote: > > I'm mainly interested if you think timer removal is worthwile, > > it works well in practice from usability POV. > > Thanks for looking again into this. We definitely have to get rid of > that timer. > > Regarding the new flag, perhaps we can avoid exposing this to > userspace? I mean, we can define some mask of internal flags that we > don't include via dump_status in ctnetlink. What is your rationale for supressing this information? [ or, why is exposing this to userspace bad? ] Is it so we don't have to keep dummy flag when we find a different solution later? -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html