[Devel] Re: [PATCH 5/5] netns netfilter: per-netns FILTER, MANGLE, RAW

Patrick McHardy kaber at trash.net
Tue Jan 22 09:10:16 PST 2008


Alexey Dobriyan wrote:
> Now, iptables show and configure different set of rules in different
> netnss'. Filtering decisions are still made by consulting only
> init_net's set.
> 
> Changes are identical except naming so no splitting.
> 
> P.S.: one need to remove init_net checks in nf_sockopt.c and inet_create()
>       to see the effect.

Also applied, thanks.




More information about the Devel mailing list