Vladislav Kurz wrote: >> As for the point to manuals, man iptables is usually in good shape. > > Ok, I can read this, but i just wonder what is the difference and how can I > use connmark. Just marking connections for fun? What other use they are for? > > connmark - > This module matches the netfilter mark field associated with a connection > > mark - > This module matches the netfilter mark field associated with a packet Probably this can be a nice kick off. http://home.regit.org/?page_id=7 -- "Los honestos son inadaptados sociales" -- Les Luthiers -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html