From mboxrd@z Thu Jan 1 00:00:00 1970 From: Evgeniy Polyakov Subject: Re: [PATCH 00/09]IPtablestng/Kernel - New Framework For IPtables Date: Tue, 28 Oct 2008 15:43:13 +0300 Message-ID: <20081028124313.GA15127@ioremap.net> References: <20081027042834.0BA69C64087@host1.ystp.ac.ir> <20081028000044.GA16721@ioremap.net> <464293e60810280302j26112754o72c1cf3ebd6a0b1f@mail.gmail.com> <20081028104346.GA31146@ioremap.net> <4907008A.6050808@trash.net> <20081028122554.GA12945@ioremap.net> <490705D3.4040809@trash.net> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: hamid jafarian , Netfilter-devel , Netdev , Pablo Neira Ayuso , Jan Engelhardt , Rusty Russell , Harald Welte , Eric Leblond , Jozsef Kadlecsik , Amin Azez To: Patrick McHardy Return-path: Content-Disposition: inline In-Reply-To: <490705D3.4040809@trash.net> Sender: netfilter-devel-owner@vger.kernel.org List-Id: netdev.vger.kernel.org On Tue, Oct 28, 2008 at 01:30:11PM +0100, Patrick McHardy (kaber@trash.net) wrote: > >What about part which replaces rules array with a list? > >That's the main part I was interested in though. > > Thats also the part that breaks userspace compatibility and requires > to move a lot of userspace code to the kernel, at least in that > design. Its not possible to do this with iptables without breaking > userspace compability. Ok, I see. Than likely case is closed... -- Evgeniy Polyakov