]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: xt_socket: use IP early demux
authorEric Dumazet <edumazet@google.com>
Wed, 22 May 2013 11:01:06 +0000 (11:01 +0000)
committerPablo Neira Ayuso <pablo@netfilter.org>
Thu, 23 May 2013 09:09:53 +0000 (11:09 +0200)
commitced68bb90f7723bcaecd3da76f44922d6344f42b
tree2b05baf2eade229d2c82e0c78f798fd123af7673
parentf728ee1ea3fb9ad0fbb8f35429f5859777d0998f
netfilter: xt_socket: use IP early demux

With IP early demux added in linux-3.6, we perform TCP lookup in IP
layer before iptables hooks.

We can avoid doing a second lookup in xt_socket.

Signed-off-by: Eric Dumazet <edumazet@google.com>
Acked-by: David S. Miller <davem@davemloft.net>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/xt_socket.c