[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-Id: <20180216.173354.347842978561257782.davem@davemloft.net>
Date: Fri, 16 Feb 2018 17:33:54 -0500 (EST)
From: David Miller <davem@...emloft.net>
To: fw@...len.de
Cc: daniel@...earbox.net, netdev@...r.kernel.org,
netfilter-devel@...r.kernel.org, alexei.starovoitov@...il.com
Subject: Re: [PATCH RFC 0/4] net: add bpfilter
From: Florian Westphal <fw@...len.de>
Date: Fri, 16 Feb 2018 17:14:08 +0100
> Any particular reason why translating iptables rather than nftables
> (it should be possible to monitor the nftables changes that are
> announced by kernel and act on those)?
As Daniel said, iptables is by far the most deployed of the two
technologies. Therefore it provides the largest environment for
testing and coverage.
Powered by blists - more mailing lists