]> git.baikalelectronics.ru Git - kernel.git/commit
selftests: nft_nat: Simplify port shadow notrack test
authorPhil Sutter <phil@nwl.cc>
Wed, 3 Nov 2021 18:53:43 +0000 (19:53 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Mon, 8 Nov 2021 10:26:57 +0000 (11:26 +0100)
commit936a32054e17fc6d5ef9d5774b8971f77db44963
treee3bcb99e35989f48522df42877881a4d7cca91d5
parentaa821197123b084d9e79c4d8ab48f5afa8b655e6
selftests: nft_nat: Simplify port shadow notrack test

The second rule in prerouting chain was probably a leftover: The router
listens on veth0, so not tracking connections via that interface is
sufficient. Likewise, the rule in output chain can be limited to that
interface as well.

Signed-off-by: Phil Sutter <phil@nwl.cc>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
tools/testing/selftests/netfilter/nft_nat.sh