Re: Order of iptables vs. ip6tables chains

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Thomas Preissler a écrit :
> 
> On Fri, Jan 23, 2015 at 11:38:28PM +0100, Noel Kuntze wrote:
>> Also, IPv4 traffic is only handled by iptables rules and IPv6 traffic
>> obviously only by ip6tables rules. iptables only handles ip traffic, not decnet or any
>> other fancy layer three protocol.
> 
> But where does ip6tables fit in here?

In the same places as iptables.

> Does it first run through the
> whole netfilter stack as in [1], and then for v6, or is it doing it
> in some mixed way:
> 
> 1) mangle PREROUTING v4
> 2) mangle PREROUTING v6
> 3) mangle INPUT v4
> 4) mangle INPUT v6
> 5) filter INPUT v4
> 6) filter INPUT v6

What is unclear in "IPv4 traffic is only handled by iptables rules and
IPv6 traffic obviously only by ip6tables rules" ?

> and so on (I skipped NAT... as there is no v6 NAT (haha - I know)).

There is.
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux