I have a situation where I need to be able to mark packets on the NF_IP_LOCAL_IN hook that match certain patterns we will be watching for. This because after accept the packet and the response packet is generated (NF_IP_LOCAL_OUT), we must be able to know how to modify this packet depending on the results from that incoming packet. Does anyone have some advice how to properly mark these packets so we can do this? Any tips or direction on where to look would be most appreciated.
TIA, Jeff Shipman - CCD Sandia National Laboratories (505) 844-1158 / MS-1372