Lines Matching refs:be
79 Address Translation. It can also be used to enhance packet
93 If both are enabled the backend to use can be configured at run-time
114 This option enables security markings to be applied to
140 to be shown in procfs under net/netfilter/nf_conntrack. This
149 provide a notifier chain that can be used by other kernel code
179 to connection tracking entries. It can be used with xtables connlabel
188 tracking code will be able to do state tracking on DCCP connections.
202 tracking code will be able to do state tracking on SCTP connections.
212 tracking code will be able to do state tracking on UDP-Lite
224 on this machine or machines that will be MASQUERADED through this
418 forms of full Network Address Port Translation. This can be
624 The lookup will be delegated to the IPv4 or IPv6 FIB depending
697 The lookup will be delegated to the IPv4 or IPv6 FIB depending
706 The return packet generation will be delegated to the IPv4
765 also be used by other subsystems to change their behavior.
800 This option adds a 'AUDIT' target, which can be used to create
810 This option adds a `CHECKSUM' target, which can be used in the iptables mangle
814 that the checksum would normally be offloaded to hardware and
815 thus should be considered valid.
816 This target can be used to fill in the checksum using iptables
851 normally be used in conjunction with the SECMARK target.
862 connection tracking parameters like events to be delivered and
863 the helper to be used.
907 range. The nfmark can influence the routing method and can also be used
920 The remaining time for expiration can be read via sysfs.
932 This can be used to turn a spare LED into a network activity LED,
1020 rates similar to TC estimators. The `rateest' match can be
1047 address will be different on next dialup).
1060 This option adds a "TEE" target with which a packet can be cloned and
1061 this clone be rerouted to another nexthop.
1076 REDIRECT. It can only be used in the mangle table and is useful
1183 true when the packet must be handled by this cluster node. Thus,
1222 Unlike connmark, more than 32 flag bits may be assigned to a
1271 With this option enabled, you will be able to use the iptables
1405 limit matching allows you to control the rate at which a rule can be
1458 Rules and loading software can be downloaded from
1478 be used during encapsulation.
1576 With this option enabled, you will be able to use the
1594 This option adds a `socket' match, which can be used to match
1596 It can be used in combination with the MARK target and policy