-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
yaml --- r: 6443 b: refs/heads/master c: 0ac4f89 h: refs/heads/master i: 6441: fc36921 6439: 272736c v: v3
- Loading branch information
Harald Welte
authored and
David S. Miller
committed
Aug 29, 2005
1 parent
94bff36
commit 512af29
Showing
5 changed files
with
158 additions
and
1 deletion.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,2 +1,2 @@ | ||
--- | ||
refs/heads/master: 5f2c3b910744f68e1a507f027398f404b3feb5fb | ||
refs/heads/master: 0ac4f893f20ed524198da5ebf591fc0b9e2ced2f |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,22 @@ | ||
/* Hop Limit modification module for ip6tables | ||
* Maciej Soltysiak <solt@dns.toxicfilms.tv> | ||
* Based on HW's TTL module */ | ||
|
||
#ifndef _IP6T_HL_H | ||
#define _IP6T_HL_H | ||
|
||
enum { | ||
IP6T_HL_SET = 0, | ||
IP6T_HL_INC, | ||
IP6T_HL_DEC | ||
}; | ||
|
||
#define IP6T_HL_MAXMODE IP6T_HL_DEC | ||
|
||
struct ip6t_HL_info { | ||
u_int8_t mode; | ||
u_int8_t hop_limit; | ||
}; | ||
|
||
|
||
#endif |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,118 @@ | ||
/* | ||
* Hop Limit modification target for ip6tables | ||
* Maciej Soltysiak <solt@dns.toxicfilms.tv> | ||
* Based on HW's TTL module | ||
* | ||
* This software is distributed under the terms of GNU GPL | ||
*/ | ||
|
||
#include <linux/module.h> | ||
#include <linux/skbuff.h> | ||
#include <linux/ip.h> | ||
|
||
#include <linux/netfilter_ipv6/ip6_tables.h> | ||
#include <linux/netfilter_ipv6/ip6t_HL.h> | ||
|
||
MODULE_AUTHOR("Maciej Soltysiak <solt@dns.toxicfilms.tv>"); | ||
MODULE_DESCRIPTION("IP tables Hop Limit modification module"); | ||
MODULE_LICENSE("GPL"); | ||
|
||
static unsigned int ip6t_hl_target(struct sk_buff **pskb, | ||
const struct net_device *in, | ||
const struct net_device *out, | ||
unsigned int hooknum, | ||
const void *targinfo, void *userinfo) | ||
{ | ||
struct ipv6hdr *ip6h; | ||
const struct ip6t_HL_info *info = targinfo; | ||
u_int16_t diffs[2]; | ||
int new_hl; | ||
|
||
if (!skb_make_writable(pskb, (*pskb)->len)) | ||
return NF_DROP; | ||
|
||
ip6h = (*pskb)->nh.ipv6h; | ||
|
||
switch (info->mode) { | ||
case IP6T_HL_SET: | ||
new_hl = info->hop_limit; | ||
break; | ||
case IP6T_HL_INC: | ||
new_hl = ip6h->hop_limit + info->hop_limit; | ||
if (new_hl > 255) | ||
new_hl = 255; | ||
break; | ||
case IP6T_HL_DEC: | ||
new_hl = ip6h->hop_limit - info->hop_limit; | ||
if (new_hl < 0) | ||
new_hl = 0; | ||
break; | ||
default: | ||
new_hl = ip6h->hop_limit; | ||
break; | ||
} | ||
|
||
if (new_hl != ip6h->hop_limit) { | ||
diffs[0] = htons(((unsigned)ip6h->hop_limit) << 8) ^ 0xFFFF; | ||
ip6h->hop_limit = new_hl; | ||
diffs[1] = htons(((unsigned)ip6h->hop_limit) << 8); | ||
} | ||
|
||
return IP6T_CONTINUE; | ||
} | ||
|
||
static int ip6t_hl_checkentry(const char *tablename, | ||
const struct ip6t_entry *e, | ||
void *targinfo, | ||
unsigned int targinfosize, | ||
unsigned int hook_mask) | ||
{ | ||
struct ip6t_HL_info *info = targinfo; | ||
|
||
if (targinfosize != IP6T_ALIGN(sizeof(struct ip6t_HL_info))) { | ||
printk(KERN_WARNING "ip6t_HL: targinfosize %u != %Zu\n", | ||
targinfosize, | ||
IP6T_ALIGN(sizeof(struct ip6t_HL_info))); | ||
return 0; | ||
} | ||
|
||
if (strcmp(tablename, "mangle")) { | ||
printk(KERN_WARNING "ip6t_HL: can only be called from " | ||
"\"mangle\" table, not \"%s\"\n", tablename); | ||
return 0; | ||
} | ||
|
||
if (info->mode > IP6T_HL_MAXMODE) { | ||
printk(KERN_WARNING "ip6t_HL: invalid or unknown Mode %u\n", | ||
info->mode); | ||
return 0; | ||
} | ||
|
||
if ((info->mode != IP6T_HL_SET) && (info->hop_limit == 0)) { | ||
printk(KERN_WARNING "ip6t_HL: increment/decrement doesn't " | ||
"make sense with value 0\n"); | ||
return 0; | ||
} | ||
|
||
return 1; | ||
} | ||
|
||
static struct ip6t_target ip6t_HL = { | ||
.name = "HL", | ||
.target = ip6t_hl_target, | ||
.checkentry = ip6t_hl_checkentry, | ||
.me = THIS_MODULE | ||
}; | ||
|
||
static int __init init(void) | ||
{ | ||
return ip6t_register_target(&ip6t_HL); | ||
} | ||
|
||
static void __exit fini(void) | ||
{ | ||
ip6t_unregister_target(&ip6t_HL); | ||
} | ||
|
||
module_init(init); | ||
module_exit(fini); |