Big netfilter newnat patch for 2.5.7:
- support for multiple expected connections (necessary for protocols like H.323, SIP, PPTP) - helper-definable limit of unconfirmed expectations - timeouts for expectations - full graph of connection relations, even after expectation confirmed - various changes in the API towards conntrack and NAT helper - automatic conntrack helper loading when at helper is loaded - NAT mangling of TCP SACK in case of sequence number alteration (no need to delete SACKPERM anymore, I hope Alexey is happy now)
Showing
Please register or sign in to comment