Thanks for the info. nftables set infra lacks lot of things specially interfaces. Besides, I just dont want to develop new ipsets, but also want to extend its functionality so as to include rule decision, natted ips, etc. As you have already asked the question in place of me, I appreciate your effort once again. On 8/9/18, Jesper Dangaard Brouer <brouer@xxxxxxxxxx> wrote: > > On Thu, 9 Aug 2018 13:59:59 +0530 Akshat Kakkar <akshat.1984@xxxxxxxxx> > wrote: > >> I want to create custom ipsets like hash: iface,iface ,etc. >> >> Can anybody guide which is the best place to start development for the >> same? Any documents, etc. > > You should likely ask your question on netfilter-devel@xxxxxxxxxxxxxxx > > And Cc the ipset maintainer: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx> > (ipset homepage: http://ipset.netfilter.org/index.html) > > Don't be surprised if people recommend that you instead look at using > nftables, and the more flexible set infra structure. E.g see docs > here https://wiki.nftables.org/wiki-nftables/index.php/Sets > >> Also, can we store some IP in skbinfo? > > > -- > Best regards, > Jesper Dangaard Brouer > MSc.CS, Principal Kernel Engineer at Red Hat > LinkedIn: http://www.linkedin.com/in/brouer > -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html