Hi,
On closer inspection (aka asking on the netfilter ml), it turns out that the problem I described is not with iproute, but with the source address being determined before the packet can be marked by iptables.
At least source NAT with ip6tables is now a valid workaround (even if this is not a clean solution).
Thanks for your time, Xavier -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org