On 5 February 2016 at 17:41, Jarno Rajahalme <jarno@xxxxxxx> wrote: > Repeat the nf_conntrack_in() call when it returns NF_REPEAT. This > avoids dropping a SYN packet re-opening an existing TCP connection. > > Signed-off-by: Jarno Rajahalme <jarno@xxxxxxx> Arguably this is a bugfix. Acked-by: Joe Stringer <joe@xxxxxxx> -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html