Skip to content

Commit

Permalink
---
Browse files Browse the repository at this point in the history
yaml
---
r: 112120
b: refs/heads/master
c: 5365f80
h: refs/heads/master
v: v3
  • Loading branch information
Jan Engelhardt authored and Patrick McHardy committed Oct 8, 2008
1 parent f8ca1cb commit 7550968
Show file tree
Hide file tree
Showing 2 changed files with 11 additions and 4 deletions.
2 changes: 1 addition & 1 deletion [refs]
Original file line number Diff line number Diff line change
@@ -1,2 +1,2 @@
---
refs/heads/master: f2ff525c8dae57b3cda51d76443f60f764f34202
refs/heads/master: 5365f8022e04310f0276c95e82548da917d514db
13 changes: 10 additions & 3 deletions trunk/net/bridge/netfilter/ebtables.c
Original file line number Diff line number Diff line change
Expand Up @@ -78,9 +78,10 @@ static inline int ebt_do_watcher (struct ebt_entry_watcher *w,

static inline int ebt_do_match (struct ebt_entry_match *m,
const struct sk_buff *skb, const struct net_device *in,
const struct net_device *out)
const struct net_device *out, bool *hotdrop)
{
return m->u.match->match(skb, in, out, m->u.match, m->data, 0, 0, NULL);
return m->u.match->match(skb, in, out, m->u.match,
m->data, 0, 0, hotdrop);
}

static inline int ebt_dev_check(char *entry, const struct net_device *device)
Expand Down Expand Up @@ -156,6 +157,7 @@ unsigned int ebt_do_table (unsigned int hook, struct sk_buff *skb,
struct ebt_entries *chaininfo;
char *base;
struct ebt_table_info *private;
bool hotdrop = false;

read_lock_bh(&table->lock);
private = table->private;
Expand All @@ -176,8 +178,13 @@ unsigned int ebt_do_table (unsigned int hook, struct sk_buff *skb,
if (ebt_basic_match(point, eth_hdr(skb), in, out))
goto letscontinue;

if (EBT_MATCH_ITERATE(point, ebt_do_match, skb, in, out) != 0)
if (EBT_MATCH_ITERATE(point, ebt_do_match, skb,
in, out, &hotdrop) != 0)
goto letscontinue;
if (hotdrop) {
read_unlock_bh(&table->lock);
return NF_DROP;
}

/* increase counter */
(*(counter_base + i)).pcnt++;
Expand Down

0 comments on commit 7550968

Please sign in to comment.