From d068b48f78e84282166c28710c21665c7aa7cbd2 Mon Sep 17 00:00:00 2001 From: "Eric W. Biederman" Date: Thu, 13 Oct 2016 20:40:39 +0200 Subject: netfilter: x_tables: Use par->net instead of computing from the passed net devices Backported from kernel tree. Signed-off-by: "Eric W. Biederman" Signed-off-by: Pablo Neira Ayuso Signed-off-by: Jozsef Kadlecsik --- kernel/include/linux/netfilter/ipset/ip_set_compat.h.in | 6 ++++++ 1 file changed, 6 insertions(+) (limited to 'kernel/include/linux/netfilter') diff --git a/kernel/include/linux/netfilter/ipset/ip_set_compat.h.in b/kernel/include/linux/netfilter/ipset/ip_set_compat.h.in index dff100a..a4a54fd 100644 --- a/kernel/include/linux/netfilter/ipset/ip_set_compat.h.in +++ b/kernel/include/linux/netfilter/ipset/ip_set_compat.h.in @@ -285,6 +285,12 @@ static inline __be16 tc_skb_protocol(const struct sk_buff *skb) } #endif +#ifdef HAVE_NET_IN_XT_ACTION_PARAM +#define IPSET_DEV_NET(par) (par)->net +#else +#define IPSET_DEV_NET(par) dev_net((par)->in ? (par)->in : (par)->out) +#endif + #ifndef smp_mb__before_atomic #define smp_mb__before_atomic() smp_mb() #define smp_mb__after_atomic() smp_mb() -- cgit v1.2.3