Re: nftables: bridge filter with queue to userspace

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Oct 29, 2015 at 10:23:44PM +0100, Martin Gröger wrote:
> I'm trying to build a transparent filter with application level filtering.
> First experiment with ip and output hook and queue to userspace was
> successful. Then I changed to bridge filtering with forward hook. With
> counter action I see that the packets match the rule, but the queue to the
> usersapce doesn't work.
> 
> Am I right, that this fuction should work?

I guess you're using the 'bridge_netfilter' module?

Florian told me he will come up sooner or later with native queue
support for nft (ie. no bridge_netfilter required anymore).

> I'm using Fedora 22 with nftables 0.4.

Not related to this problem, but it's a good idea to stick to latest.
Lots of fixes and updates have happened between 0.4 and 0.5.
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux