Re: netfilter IPv6 support

From: Jeff Garzik
Date: Thu Aug 26 2004 - 15:39:26 EST


Thomas Zehetbauer wrote:
Although linux was one of the first to support IPv6 it seems to me that
netfilter support has almost stuck. There is still not even a REJECT
target not to mention stateful filtering for IPv6.


google found for me an ip6_conntrack module, but... some people make a credible argument that stateful filtering doesn't scale beyond small networks and small amounts of connections. As Andi puts it, there is no infinite hash.

Jeff


-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/