Lewis Shobbrook wrote:
Hi all, Much to my surprise, I've not been able to mark esp packets in the mangle table. Although esp packets are traversing as they should, the iptables counters are unmoved from zero and as you'd expect rules applied against the mark fail also.
That indicates a problem in the matching rules, the counters are unaffected by the target. I'd suggest to use the TRACE target to figure out what is happening. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html