On 9/20/2018 12:18 AM, Christian Göttsche wrote: >> I've only had a cursory look at your patch, but how is it >> different from what's in xt_SECMARK.c ? > xt_SEXMARK.c is for xtables, use-able in iptables; this is for nftables (nft) Thank you. I am enlightened.