Pablo Neira Ayuso wrote: > I just send the patch attached to Patrick, since I can't commit to SVN > anymore since my certificate expired. It provides low-level functions > for those that want to work with libnfnetlink (or someday libnl) that is > what I'm currently doing with conntrackd. Uh, I forgot to attach the patch that I sent to Patrick. It implements a set of functions to build/parse netlink messages for ctnetlink, so you can implement your own functions that do specific things with libnfnetlink and them, I think this is way more flexible. -- The dawn of the fourth age of Linux firewalling is coming; a time of great struggle and heroic deeds -- J.Kadlecsik got inspired by J.Morris