]> git.baikalelectronics.ru Git - kernel.git/commit
netfilter: xt_socket: use IP early demux
authorEric Dumazet <edumazet@google.com>
Wed, 22 May 2013 11:01:06 +0000 (11:01 +0000)
committerPablo Neira Ayuso <pablo@netfilter.org>
Thu, 23 May 2013 09:09:53 +0000 (11:09 +0200)
commita0af16eac8a3febc53e385a3b89829028381b3b1
tree2b05baf2eade229d2c82e0c78f798fd123af7673
parent7b70a20721340b1b865955ed9e33c50489e03f10
netfilter: xt_socket: use IP early demux

With IP early demux added in linux-3.6, we perform TCP lookup in IP
layer before iptables hooks.

We can avoid doing a second lookup in xt_socket.

Signed-off-by: Eric Dumazet <edumazet@google.com>
Acked-by: David S. Miller <davem@davemloft.net>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/xt_socket.c