Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
openanolis
cloud-kernel
提交
0bc0be7f
cloud-kernel
项目概览
openanolis
/
cloud-kernel
1 年多 前同步成功
通知
161
Star
36
Fork
7
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
10
列表
看板
标记
里程碑
合并请求
2
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
cloud-kernel
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
10
Issue
10
列表
看板
标记
里程碑
合并请求
2
合并请求
2
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
提交
0bc0be7f
编写于
13年前
作者:
D
David S. Miller
浏览文件
操作
浏览文件
下载
差异文件
Merge branch 'master' of
git://git.kernel.org/pub/scm/linux/kernel/git/kaber/nf-2.6
上级
34a6ef38
3db7e93d
变更
5
显示空白变更内容
内联
并排
Showing
5 changed file
with
14 addition
and
15 deletion
+14
-15
include/net/netfilter/nf_conntrack_ecache.h
include/net/netfilter/nf_conntrack_ecache.h
+0
-3
net/ipv4/netfilter/arpt_mangle.c
net/ipv4/netfilter/arpt_mangle.c
+3
-3
net/netfilter/nf_conntrack_ecache.c
net/netfilter/nf_conntrack_ecache.c
+3
-0
net/netfilter/nf_conntrack_netlink.c
net/netfilter/nf_conntrack_netlink.c
+1
-0
net/netfilter/xt_iprange.c
net/netfilter/xt_iprange.c
+7
-9
未找到文件。
include/net/netfilter/nf_conntrack_ecache.h
浏览文件 @
0bc0be7f
...
...
@@ -77,9 +77,6 @@ nf_conntrack_event_cache(enum ip_conntrack_events event, struct nf_conn *ct)
if
(
e
==
NULL
)
return
;
if
(
!
(
e
->
ctmask
&
(
1
<<
event
)))
return
;
set_bit
(
event
,
&
e
->
cache
);
}
...
...
This diff is collapsed.
Click to expand it.
net/ipv4/netfilter/arpt_mangle.c
浏览文件 @
0bc0be7f
...
...
@@ -60,12 +60,12 @@ static int checkentry(const struct xt_tgchk_param *par)
if
(
mangle
->
flags
&
~
ARPT_MANGLE_MASK
||
!
(
mangle
->
flags
&
ARPT_MANGLE_MASK
))
return
false
;
return
-
EINVAL
;
if
(
mangle
->
target
!=
NF_DROP
&&
mangle
->
target
!=
NF_ACCEPT
&&
mangle
->
target
!=
XT_CONTINUE
)
return
false
;
return
true
;
return
-
EINVAL
;
return
0
;
}
static
struct
xt_target
arpt_mangle_reg
__read_mostly
=
{
...
...
This diff is collapsed.
Click to expand it.
net/netfilter/nf_conntrack_ecache.c
浏览文件 @
0bc0be7f
...
...
@@ -63,6 +63,9 @@ void nf_ct_deliver_cached_events(struct nf_conn *ct)
* this does not harm and it happens very rarely. */
unsigned
long
missed
=
e
->
missed
;
if
(
!
((
events
|
missed
)
&
e
->
ctmask
))
goto
out_unlock
;
ret
=
notify
->
fcn
(
events
|
missed
,
&
item
);
if
(
unlikely
(
ret
<
0
||
missed
))
{
spin_lock_bh
(
&
ct
->
lock
);
...
...
This diff is collapsed.
Click to expand it.
net/netfilter/nf_conntrack_netlink.c
浏览文件 @
0bc0be7f
...
...
@@ -667,6 +667,7 @@ ctnetlink_dump_table(struct sk_buff *skb, struct netlink_callback *cb)
if
(
ctnetlink_fill_info
(
skb
,
NETLINK_CB
(
cb
->
skb
).
pid
,
cb
->
nlh
->
nlmsg_seq
,
IPCTNL_MSG_CT_NEW
,
ct
)
<
0
)
{
nf_conntrack_get
(
&
ct
->
ct_general
);
cb
->
args
[
1
]
=
(
unsigned
long
)
ct
;
goto
out
;
}
...
...
This diff is collapsed.
Click to expand it.
net/netfilter/xt_iprange.c
浏览文件 @
0bc0be7f
...
...
@@ -53,15 +53,13 @@ iprange_mt4(const struct sk_buff *skb, struct xt_action_param *par)
}
static
inline
int
iprange_ipv6_
sub
(
const
struct
in6_addr
*
a
,
const
struct
in6_addr
*
b
)
iprange_ipv6_
lt
(
const
struct
in6_addr
*
a
,
const
struct
in6_addr
*
b
)
{
unsigned
int
i
;
int
r
;
for
(
i
=
0
;
i
<
4
;
++
i
)
{
r
=
ntohl
(
a
->
s6_addr32
[
i
])
-
ntohl
(
b
->
s6_addr32
[
i
]);
if
(
r
!=
0
)
return
r
;
if
(
a
->
s6_addr32
[
i
]
!=
b
->
s6_addr32
[
i
])
return
ntohl
(
a
->
s6_addr32
[
i
])
<
ntohl
(
b
->
s6_addr32
[
i
]);
}
return
0
;
...
...
@@ -75,15 +73,15 @@ iprange_mt6(const struct sk_buff *skb, struct xt_action_param *par)
bool
m
;
if
(
info
->
flags
&
IPRANGE_SRC
)
{
m
=
iprange_ipv6_
sub
(
&
iph
->
saddr
,
&
info
->
src_min
.
in6
)
<
0
;
m
|=
iprange_ipv6_
sub
(
&
iph
->
saddr
,
&
info
->
src_max
.
in6
)
>
0
;
m
=
iprange_ipv6_
lt
(
&
iph
->
saddr
,
&
info
->
src_min
.
in6
)
;
m
|=
iprange_ipv6_
lt
(
&
info
->
src_max
.
in6
,
&
iph
->
saddr
)
;
m
^=
!!
(
info
->
flags
&
IPRANGE_SRC_INV
);
if
(
m
)
return
false
;
}
if
(
info
->
flags
&
IPRANGE_DST
)
{
m
=
iprange_ipv6_
sub
(
&
iph
->
daddr
,
&
info
->
dst_min
.
in6
)
<
0
;
m
|=
iprange_ipv6_
sub
(
&
iph
->
daddr
,
&
info
->
dst_max
.
in6
)
>
0
;
m
=
iprange_ipv6_
lt
(
&
iph
->
daddr
,
&
info
->
dst_min
.
in6
)
;
m
|=
iprange_ipv6_
lt
(
&
info
->
dst_max
.
in6
,
&
iph
->
daddr
)
;
m
^=
!!
(
info
->
flags
&
IPRANGE_DST_INV
);
if
(
m
)
return
false
;
...
...
This diff is collapsed.
Click to expand it.
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录
新手
引导
客服
返回
顶部