On 25. Juli 2014 17:48:06 GMT+01:00, Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote: >Hi Patrick, > >Would you be OK if we push this patchset into mainstream? I think we >can investigate the fetch interface address and store in register >approach that you proposed to implement masquerading later on. The >missing bits are the conntrack cleanup routine, I think that needs >some "scratchpad" area to store the last address/interface that have >been used. We can probably revisit this later once that generic state >infrastructure for nf_tables (to support stateful expressions in some >generic way) is in place? Not sure right now about the specifics, I'm out of order until my notebook has been repaired. >If you don't like the idea, please let me know, and I'll defer this >masquerading patchset. > >Thanks! Sure, please go ahead. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html