Re: [iptables PATCH v2 2/2] extensions: libxt_conntrack: print xlate status as set

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi, Florian,

On Tue, 30 Mar 2021 20:21:36 +0200
Florian Westphal <fw@xxxxxxxxx> wrote:

> Alexander Mikhalitsyn <alexander.mikhalitsyn@xxxxxxxxxxxxx> wrote:
> > Hi Florian,
> > 
> > Thank you!
> > So, I need to fix nft and support that syntax?
> 
> That would be one way.  The other is to fix the != translation
> to use binary logic (the example i gave).

I've prepared 3rd version of patchset.

> 
> > Do I understand correctly, that the same issue for state flags like
> > "established, related, ..."?
> 
> Yes and no.  A connection can't be both established and related at the
> same time, so anonymous set will work in that case.

Got it.

Thank you very much!

Regards,
Alex



[Index of Archives]     [Netfitler Users]     [Berkeley Packet Filter]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux