Hi, Is it possible to disable connection tracking for a specific interface/bridge? The particular scenario is that I have a secondary interface that collecting the traffic from a SPAN/mirror port on a busy router. This interface is enslaved into a bridge along with the virtual interfaces of a some analyser virtual machines, using setageing=0 so that the frames are forwarded to all VMs. I would rather not have the traffic that originates from the capture interface hitting the connection tracking code, if possible. Warm regards, Terry -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html