Message ID | 1424351483-27617-2-git-send-email-fw@strlen.de |
---|---|
State | Accepted |
Delegated to: | Florian Westphal |
Headers | show |
On Thursday 2015-02-19 14:11, Florian Westphal wrote:
>removed from the kernel back in 2003.
Last time I remember, Pablo wanted to keep this. Because modern iptables
may still be used with overly old preexisting kernels.
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Jan Engelhardt <jengelh@inai.de> wrote: > On Thursday 2015-02-19 14:11, Florian Westphal wrote: > > >removed from the kernel back in 2003. > > Last time I remember, Pablo wanted to keep this. Because modern iptables > may still be used with overly old preexisting kernels. Fair enough, I can just omit the target/match removal patches when pushing the changes. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html
On Thu, Feb 19, 2015 at 02:28:53PM +0100, Jan Engelhardt wrote: > On Thursday 2015-02-19 14:11, Florian Westphal wrote: > > >removed from the kernel back in 2003. > > Last time I remember, Pablo wanted to keep this. Because modern iptables > may still be used with overly old preexisting kernels. No objections from my side to get rid of these old extensions. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html
diff --git a/extensions/libipt_MIRROR.c b/extensions/libipt_MIRROR.c deleted file mode 100644 index fb78751..0000000 --- a/extensions/libipt_MIRROR.c +++ /dev/null @@ -1,15 +0,0 @@ -/* Shared library add-on to iptables to add MIRROR target support. */ -#include <xtables.h> - -static struct xtables_target mirror_tg_reg = { - .name = "MIRROR", - .version = XTABLES_VERSION, - .family = NFPROTO_IPV4, - .size = XT_ALIGN(0), - .userspacesize = XT_ALIGN(0), -}; - -void _init(void) -{ - xtables_register_target(&mirror_tg_reg); -} diff --git a/extensions/libipt_MIRROR.man b/extensions/libipt_MIRROR.man deleted file mode 100644 index 7b720bc..0000000 --- a/extensions/libipt_MIRROR.man +++ /dev/null @@ -1,12 +0,0 @@ -This is an experimental demonstration target which inverts the source -and destination fields in the IP header and retransmits the packet. -It is only valid in the -.BR INPUT , -.B FORWARD -and -.B PREROUTING -chains, and user-defined chains which are only called from those -chains. Note that the outgoing packets are -.B NOT -seen by any packet filtering chains, connection tracking or NAT, to -avoid loops and other problems.
removed from the kernel back in 2003. Signed-off-by: Florian Westphal <fw@strlen.de> --- extensions/libipt_MIRROR.c | 15 --------------- extensions/libipt_MIRROR.man | 12 ------------ 2 files changed, 27 deletions(-) delete mode 100644 extensions/libipt_MIRROR.c delete mode 100644 extensions/libipt_MIRROR.man