Re: [PATCH] bridge: make bridge-nf-call-*tables default configurable
From: David Miller <davem@davemloft.net>
Date: 2009-06-30 19:06:08
Also in:
netfilter-devel
From: David Miller <davem@davemloft.net>
Date: 2009-06-30 19:06:08
Also in:
netfilter-devel
From: Herbert Xu <herbert@gondor.apana.org.au> Date: Wed, 1 Jul 2009 01:00:27 +0800 Adding appropriate lists and persons to CC:
On Tue, Jun 30, 2009 at 05:27:47PM +0100, Mark McLoughlin wrote:quoted
However, because nf_conntrack introduces an skb_orphan(), it is now recommended that bridge-nf-call-iptables be disabled completely so as to ensure features like TUNSETSNDBUF work as expected.Patrick, does conntrack ever make sense for bridging? Perhaps we should get rid of that completely? Cheers, -- Visit Openswan at http://www.openswan.org/ Email: Herbert Xu ~{PmV>HI~} [off-list ref] Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt -- To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html