this patchset expands libnetfilter_conntrack to send dump and flush requests that filter by conntrack zone. It is dependent on a patch to the kernel repo at https://marc.info/?l=linux-kernel&m=170108582310775 Felix Huettner (2): dump: support filtering by zone flush: support filtering include/internal/object.h | 1 + include/internal/prototypes.h | 1 + .../libnetfilter_conntrack.h | 5 ++ src/conntrack/api.c | 14 +++++ src/conntrack/build_mnl.c | 3 + src/conntrack/filter_dump.c | 17 ++++++ utils/.gitignore | 1 + utils/Makefile.am | 4 ++ utils/conntrack_dump_filter.c | 2 + utils/conntrack_flush_filter.c | 60 +++++++++++++++++++ 10 files changed, 108 insertions(+) create mode 100644 utils/conntrack_flush_filter.c -- 2.43.0