Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote: > 2) When replacing the rule, the new expression starts from no history > as it will be a new expression, we'll be basically reseting it. You are right, I was only thinking of counter (where userspace can set packets/bytes), but limit would lose its state as most of that is internal only. So I think #2 makes sense. I have more concerns (sorry!) wrt user representation, I'll reply to this in a new email. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html