CONFIG_IP_NF_MATCH_TOS condition match support CONFIG_IP_NF_MATCH_CONDITION This option allows you to match firewall rules against condition variables stored in the /proc/net/ipt_condition directory. This module also supports IPv6. Condition variables can be shared by IPv4 and IPv6 firewall rules. If you want to compile it as a module, say M here and read Documentation/modules.txt. If unsure, say `N'.