IPsec "policy" match support

modulename: xt_policy.ko

configname: CONFIG_NETFILTER_XT_MATCH_POLICY

Linux Kernel Configuration
└─>Networking support
└─>Networking options
└─>Network packet filtering framework (Netfilter)
└─>Core Netfilter Configuration
└─>IPsec "policy" match support
In linux kernel since version 2.6.17 (release Date: 2006-06-17)  
Policy matching allows you to match packets based on the
IPsec policy that was used during decapsulation/will
be used during encapsulation.

To compile it as a module, choose M here. If unsure, say N.

source code: