On Thu, 2 May 2013, Franco Fichtner wrote: > as stated before, breaking down complexity to the bare minimum is my > requirement for this to be happening at all. You all get to be the > judges. I'm just trying to work on something worth doing.
Well, bare minimum complexity per-protocol * large_number_of_protocols = a lot of complexity. The incentive is always going to be to add more protocols and never retire them. Also, doesn't IPPROTO_DIVERT or SO_BINDANY+SO_SPLICE allow you to do near zero-overhead DPI completely in userspace? -d