Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | nft: swap key and direction in ct_dir syntax | Florian Westphal | 2016-01-07 | 1 | -11/+11 |
| | | | | | | | | | | | | | | | old: ct saddr original 1.2.3.4 new: ct original saddr 1.2.3.4 The advantage is that this allows to add ct keys where direction is optional without creating ambiguities in the parser. So we can have ct packets gt 42 ct original packets gt 42 Signed-off-by: Florian Westphal <fw@strlen.de> Acked-by: Pablo Neira Ayuso <pablo@netfilter.org> | ||||
* | tests: add ct tests for ip family | Florian Westphal | 2016-01-04 | 1 | -0/+62 |
Cannot check e.g. saddr for 192.168.0.1 for 'any' protocol, nft needs to expect arguments of a specific address type. So e.g. when using 'inet' we need to add a rule that makes the expected family explicit, e.g. 'meta nfproto ipv4'. Signed-off-by: Florian Westphal <fw@strlen.de> |