ipt_MARK/xt_MARK usage problem

From: Jan Engelhardt
Date: Tue Aug 22 2006 - 02:19:20 EST


kernel 2.6.17 ships with xt_MARK, but iptables 1.3.5 still uses ipt_MARK.
In essence, I cannot use `iptables -j MARK` giving me

# iptables -A INPUT -j MARK --set-mark 1
iptables: Unknown error 4294967295

I have seen this before and the problem behind this strange error (-1) is
that the .targetsize/.matchsize variables in the kernel modules do not
match their userspace parts.

However, this time it seems to be something different:

# iptables -t mangle -A INPUT -j MARK --set-mark 1

Works without problems. Am I missing something?
How do I get MARK back to work in -t filter -- possibly without hacking in

Jan Engelhardt
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/