]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: xt_TCPMSS: SYN packets are allowed to contain data
authorSimon Arlott <simon@fire.lp0.eu>
Tue, 2 Feb 2010 14:33:38 +0000 (15:33 +0100)
committerPatrick McHardy <kaber@trash.net>
Tue, 2 Feb 2010 14:33:38 +0000 (15:33 +0100)
commit8f039dcab8ad0e670a78bfa69a447592eeacb0e6
treef10aa04cacd465e0a8120dcf8afa43441dad6ab6
parente09b20c7c92c661ef7a99b89d2a77104d934d54b
netfilter: xt_TCPMSS: SYN packets are allowed to contain data

The TCPMSS target is dropping SYN packets where:
  1) There is data, or
  2) The data offset makes the TCP header larger than the packet.

Both of these result in an error level printk. This printk has been
removed.

This change avoids dropping SYN packets containing data. If there
is also no MSS option (as well as data), one will not be added
because of possible complications due to the increased packet size.

Signed-off-by: Simon Arlott <simon@fire.lp0.eu>
Signed-off-by: Patrick McHardy <kaber@trash.net>
net/netfilter/xt_TCPMSS.c