On Wed, Mar 06, 2002 at 09:01:05PM +0100, Patrick Schaaf wrote: > > That could certainly be implemented. Can you think of other situations > where the networking stack is dropping packets?
None that I'm currently aware of. Of course, packets with a bad checksum or other problems, but that's nothing what iptables should deal with (imho). Untracked TCP packets, but that's already handled by iptables, isn't it? regards Hadmut