diff options
author | Pablo Neira Ayuso <pablo@netfilter.org> | 2013-07-08 19:34:12 +0200 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2013-07-08 19:42:04 +0200 |
commit | d7aeda5ed45ac7ca959f12180690caa371b5b14b (patch) | |
tree | 27985d6b1cdd576c22ee35b7f7fbc69eabdfd2f2 /include/iptables.h | |
parent | 945353a25bbb2dbf88128c27a9169851da6ebf05 (diff) |
ip{6}tables-restore: fix breakage due to new locking approach
Since (93587a0 ip[6]tables: Add locking to prevent concurrent instances),
ip{6}tables-restore does not work anymore:
iptables-restore < x
Another app is currently holding the xtables lock. Perhaps you want to use the -w option?
do_command{6}(...) is called from ip{6}tables-restore for every iptables
command contained in the rule-set file. Thus, hitting the lock error
after the second command.
Fix it by bypassing the locking in the ip{6}tables-restore path.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'include/iptables.h')
-rw-r--r-- | include/iptables.h | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/include/iptables.h b/include/iptables.h index c42613c9..ac9dc0e5 100644 --- a/include/iptables.h +++ b/include/iptables.h @@ -8,7 +8,7 @@ /* Your shared library should call one of these. */ extern int do_command4(int argc, char *argv[], char **table, - struct xtc_handle **handle); + struct xtc_handle **handle, bool restore); extern int delete_chain4(const xt_chainlabel chain, int verbose, struct xtc_handle *handle); extern int flush_entries4(const xt_chainlabel chain, int verbose, |