Hi Pablo I would like your comments for it. I have 2 implementation ideas about fixing this patch: 1.) fix only coding style pointed out in previous mail 2.) add sysctl parameter and change NF_HOOK to NF_HOOK_COND for user to select behavior of hook call I believed SRv6 encaps/decaps operations should be tracked with conntrack like any other virtual net-device based tunneling protocols (e.g. VXLAN, IPIP), even if the forwarding performance slows down because occurred by lack of considerations. and any other tunnels also have this overhead. Therefore, I support 1st idea. However, 2nd idea is ok if the overhead caused by adding new hook isn't acceptable. Ryoga