[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <20130904125626.GA4520@localhost>
Date: Wed, 4 Sep 2013 14:56:26 +0200
From: Pablo Neira Ayuso <pablo@...filter.org>
To: Jesper Dangaard Brouer <brouer@...hat.com>
Cc: Patrick McHardy <kaber@...sh.net>, netfilter-devel@...r.kernel.org,
netdev@...r.kernel.org, mph@....com, as@....com
Subject: Re: [nf-next PATCH] netfilter: SYNPROXY let unrelated packets
continue
On Thu, Aug 29, 2013 at 12:18:46PM +0200, Jesper Dangaard Brouer wrote:
> Packets reaching SYNPROXY were default dropped, as they were most
> likely invalid (given the recommended state matching). This
> patch, changes SYNPROXY target to let packets, not consumed,
> continue being processed by the stack.
>
> This will be more in line other target modules. As it will allow
> more flexible configurations of handling, logging or matching on
> packets in INVALID states.
Applied, thanks.
--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Powered by blists - more mailing lists