[NETFILTER]: Remove ipt_unclean match from 2.6.x
We have decided to remove the unclean match, since it is considered a potentially dangerous function of the current iptables code. The match is used by lots of users who don't really undestand what kind of danger they are imposing on the future-compatibility of their networks. (just think of the ECN issue resulting from this kind of filtering) We'd rather keep it in patch-o-matic, where lots of other modules that are only useful in experimental scenarios are kept. Now that we don't have to keep it for compatibility reasons, we'd like to remove it before 2.6.0 final is released.
Showing
This diff is collapsed.
Please register or sign in to comment