From mboxrd@z Thu Jan 1 00:00:00 1970 From: Pablo Neira Ayuso Subject: Re: [PATCH] net: ICMPv6 packets transmitted on wrong interface if nfmark is mangled Date: Tue, 4 Dec 2012 00:52:16 +0100 Message-ID: <20121203235216.GA11723@1984> References: <20121130.122243.710720011890818822.davem@davemloft.net> <1354538763-2678-1-git-send-email-dries.dewinter@gmail.com> <20121203.141128.206409637987621093.davem@davemloft.net> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: Dries De Winter , David Miller , kaber@trash.net, netdev@vger.kernel.org, netfilter-devel@vger.kernel.org To: Jan Engelhardt Return-path: Content-Disposition: inline In-Reply-To: Sender: netdev-owner@vger.kernel.org List-Id: netfilter-devel.vger.kernel.org On Tue, Dec 04, 2012 at 12:38:25AM +0100, Jan Engelhardt wrote: > > On Monday 2012-12-03 22:31, Dries De Winter wrote: > > > >Not fixing this means that skb->mark is unavailable for use on ICMPv6 > >packets because it will inevitably put those packets on the wrong > >interface. [...] > > > >I use skb->mark for QoS, not for routing so I don't expect > >the outgoing interface to be affected by my markers. > > Why would it do that, if one has no routes joined to a fwmark NNN > routing rule? iptables_mangle assumes that ip_route_me_harder needs to be called if the mark has changed.