From mboxrd@z Thu Jan 1 00:00:00 1970 From: Patrick McHardy Subject: Re: [PATCH 5/5] netns netfilter: per-netns FILTER, MANGLE, RAW Date: Tue, 22 Jan 2008 18:10:16 +0100 Message-ID: <47962378.2060904@trash.net> References: <20080121145509.GJ27615@localhost.sw.ru> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-15; format=flowed Content-Transfer-Encoding: 7bit Cc: netfilter-devel@vger.kernel.org, netdev@vger.kernel.org, devel@openvz.org To: Alexey Dobriyan Return-path: In-Reply-To: <20080121145509.GJ27615@localhost.sw.ru> Sender: netfilter-devel-owner@vger.kernel.org List-Id: netdev.vger.kernel.org Alexey Dobriyan wrote: > Now, iptables show and configure different set of rules in different > netnss'. Filtering decisions are still made by consulting only > init_net's set. > > Changes are identical except naming so no splitting. > > P.S.: one need to remove init_net checks in nf_sockopt.c and inet_create() > to see the effect. Also applied, thanks.