Currently its not possibe to only dump entries that are e.g. in UNREPLIED state. Patches to extend libnetfilter_conntrack and conntrack-tools will be sent separately. Florian Westphal (2): netfilter: ctnetlink: add and use a helper for mark parsing netfilter: ctnetlink: allow to filter dump by status bits .../linux/netfilter/nfnetlink_conntrack.h | 1 + net/netfilter/nf_conntrack_netlink.c | 76 +++++++++++++++---- 2 files changed, 61 insertions(+), 16 deletions(-) -- 2.31.1