On Mon, Jan 08, 2018 at 08:55:58PM -0500, David Miller wrote: > From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> > Date: Mon, 8 Jan 2018 21:19:08 +0100 > > > The following patchset contains Netfilter/IPVS updates for your > > net-next tree: > ... > > 4) Add generic flow table offload infrastructure for nf_tables, this > > includes the netlink control plane and support for IPv4, IPv6 and > > mixed IPv4/IPv6 dataplanes. This comes with NAT support too. This > > patchset adds the IPS_OFFLOAD conntrack status bit to indicate that > > this flow has been offloaded. > > Have driver maintainers signed off on your offload design and driver > interfaces? > > I've pulled, but the above is really important to indicate when a new > offload feature is added. Patch that adds driver interfaces have been kept back: http://patchwork.ozlabs.org/patch/852537/ until there's an initial driver that uses the net_device hooks, as notes in the cover letter [1]. So far, this is a generic software flow table representation, that matches basic flow table hardware semantics but that also provides a software faster path. So you can use it to purely forward packets between two nics even if they come with no hardware offload support. Numbers are available in my last NetDev 2.2 presentation Regarding the design, feedback from vendors has been positive. Thanks ! [1] https://lwn.net/Articles/742164/ [2] https://www.netdevconf.org/2.2/slides/ayuso-netfilter-workshop.pdf (slide number 19). -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html