]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: nf_tables: add support for matching IPv4 options
authorStephen Suryaputra <ssuryaextr@gmail.com>
Thu, 20 Jun 2019 16:19:59 +0000 (12:19 -0400)
committerPablo Neira Ayuso <pablo@netfilter.org>
Fri, 21 Jun 2019 16:35:51 +0000 (18:35 +0200)
commita1f8a2a468bb7d8b5c845080d19c85910c0086e3
treea204da3a545973d53b5f9ae4672cc34934d86775
parent127bd87d1fe0543bc540cd57ec699df409731228
netfilter: nf_tables: add support for matching IPv4 options

This is the kernel change for the overall changes with this description:
Add capability to have rules matching IPv4 options. This is developed
mainly to support dropping of IP packets with loose and/or strict source
route route options.

Signed-off-by: Stephen Suryaputra <ssuryaextr@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
include/uapi/linux/netfilter/nf_tables.h
net/ipv4/ip_options.c
net/netfilter/nft_exthdr.c