From mboxrd@z Thu Jan 1 00:00:00 1970 From: Andy Furniss Date: Thu, 25 Sep 2014 19:56:37 +0000 Subject: Re: Ingress filtering Message-Id: <54247375.60000@gmail.com> List-Id: References: <20140925121920.5bd32939@lobo.lobo.dom> In-Reply-To: <20140925121920.5bd32939@lobo.lobo.dom> MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: lartc@vger.kernel.org marco@nucleus.it wrote: > Hi to all, > i read some stuff about ingress filtering with ifb module. > > According to someone it is impossible but for someone not. > > possible: > https://wiki.archlinux.org/index.php/Advanced_traffic_control > > no possible: > http://www.mail-archive.com/lartc@mailman.ds9a.nl/msg15545.html > http://www.spinics.net/lists/netfilter/msg53729.html > http://www.spinics.net/lists/lartc/msg22358.html > > It is possible to use connection mark (ctmark) or packet mark (nfmark) > with the tc filter on ifb or the only possibility is with the patch > provided by these links ? > https://aur.archlinux.org/packages/act_connmark/ > https://aur.archlinux.org/packages/iproute2-connmark/ > > or im missing something ? Those patches are new to me and look useful - I haven't tried though. "First Submitted: 2014-08-14 09:56"