Hello,

While browsing ChangeLog-2.6.17-rc1 from kernel.org, I stumbled upon the 
following entry:

commit a89ecb6a2ef732d04058d87801e2b6bd7e5c7089
Author: Yasuyuki Kozakai <[EMAIL PROTECTED]>
Date:   Sat Apr 1 02:22:54 2006 -0800

    [NETFILTER]: x_tables: unify IPv4/IPv6 multiport match
    
    This unifies ipt_multiport and ip6t_multiport to xt_multiport.
    As a result, this addes support for inversion and port range match
    to IPv6 packets.


As far as I understand, this implies the IPv6 multiport problem is 
actually a (known) kernel/NetFilter limitation, rather than an 
userland/iptables bug. Or maybe it has to be fixed in both kernel and 
userland. In any case, unless someone confirm that the problem is still 
there with a post-2.6.17-rc1 kernel, this would seem not to be an 
iptables package bug.

-- 
Rémi Denis-Courmont

Attachment: pgppZto1bqdaU.pgp
Description: PGP signature

Reply via email to