diff options
Diffstat (limited to 'extensions')
-rw-r--r-- | extensions/libxt_CONNMARK.man | 3 | ||||
-rw-r--r-- | extensions/libxt_MARK.man | 3 | ||||
-rw-r--r-- | extensions/libxt_SECMARK.man | 2 |
3 files changed, 5 insertions, 3 deletions
diff --git a/extensions/libxt_CONNMARK.man b/extensions/libxt_CONNMARK.man index 571ce370..13c6b4bd 100644 --- a/extensions/libxt_CONNMARK.man +++ b/extensions/libxt_CONNMARK.man @@ -1,4 +1,5 @@ -This module sets the netfilter mark value associated with a connection. +This module sets the netfilter mark value associated with a connection. The +mark is 32 bits wide. .TP \fB\-\-set\-xmark\fP \fIvalue\fP[\fB/\fP\fImask\fP] Zero out the bits given by \fImask\fR and XOR \fIvalue\fR into the ctmark. diff --git a/extensions/libxt_MARK.man b/extensions/libxt_MARK.man index 7bb05bed..98be812b 100644 --- a/extensions/libxt_MARK.man +++ b/extensions/libxt_MARK.man @@ -1,6 +1,7 @@ This target is used to set the Netfilter mark value associated with the packet. The target can only be used in the \fBmangle\fR table. It can, for example, be -used in conjunction with routing based on fwmark (needs iproute2). +used in conjunction with routing based on fwmark (needs iproute2). The mark +field is 32 bits wide. .TP \fB\-\-set\-xmark\fP \fIvalue\fP[\fB/\fP\fImask\fP] Zeroes out the bits given by \fImask\fR and XORs \fIvalue\fR into the packet diff --git a/extensions/libxt_SECMARK.man b/extensions/libxt_SECMARK.man index f58bb432..e44efced 100644 --- a/extensions/libxt_SECMARK.man +++ b/extensions/libxt_SECMARK.man @@ -2,6 +2,6 @@ This is used to set the security mark value associated with the packet for use by security subsystems such as SELinux. It is only valid in the .B mangle -table. +table. The mark is 32 bits wide. .TP \fB\-\-selctx\fP \fIsecurity_context\fP |