Recommended update for iptables

This recommended update for iptables fixes the following issues:

- Update to new upstream release 1.4.21
* Introduce a new revision for the set match with the counters support
* Add locking to prevent concurrent instances
* --nowildcard option for xt_socket, available since Linux kernel 3.11
* SYNPROXY support, available since Linux kernel 3.12
* Only convert netmasks to /prefixlen notation when representable [bnc#914285]

Fixed bugs
bnc#914285
iptables -L : libxtables: xtables_ipmask_to_numeric incorrect with non-CIDR masks
Selected Binaries
openSUSE Build Service is sponsored by