netpfil with if_output and ip(6)_output
Franco Fichtner
franco at lastsummer.de
Mon Nov 14 14:12:15 UTC 2016
> On 14 Nov 2016, at 2:36 PM, Andrey V. Elsukov <butcher at yandex-team.ru> wrote:
>
> On 14.11.2016 16:13, Franco Fichtner wrote:
>>> void ip6_flush_fwdtag(struct mbuf *m);
>>
>> This looks reasonable, thank you. How would we proceed with the
>> implementation / porting of ipfw to the new framework?
>>
>
> Both ipfw and pf needs some patches. Also the generic *proto*_output
> should be modified. Currently I'm busy with IPsec related work, so if
> you will do this it will be very cool :)
> But if not, I can do some work after 2-3 weeks.
I will close the previous review and start on your proposal. Should
have something concrete next week.
Many thanks,
Franco
More information about the freebsd-current
mailing list