netfilter-devel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Socket match with transparent option, take 2
@ 2009-06-04 12:37 Laszlo Attila Toth
  2009-06-04 12:37 ` [net-next] socket: Added 'transparent' option Laszlo Attila Toth
  0 siblings, 1 reply; 5+ messages in thread
From: Laszlo Attila Toth @ 2009-06-04 12:37 UTC (permalink / raw)
  To: netfilter-devel; +Cc: kaber, Laszlo Attila Toth

Hi,

this is the latest version of the new socket match option, '--transparent':
if this option is used, only sockets with enabled transparent socket option
are matched.

As I wrote earlier, the original, default behaviour of the match is unwanted,
because not only a transparent socket, but also any socket can be matched,
such as a simple SSH or web server's.

The kernel part is on the top net-next-2.6.

The match info is type contains the revision of the socket match,
struct xt_socket_match_info1 which was missing from the previous patches.

Regards,
Attila

^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2009-06-04 13:33 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-06-04 12:37 Socket match with transparent option, take 2 Laszlo Attila Toth
2009-06-04 12:37 ` [net-next] socket: Added 'transparent' option Laszlo Attila Toth
2009-06-04 12:37   ` [iptables] socket match: new revision, match transparent sockets Laszlo Attila Toth
2009-06-04 12:45   ` [net-next] socket: Added 'transparent' option Jan Engelhardt
2009-06-04 13:33     ` Laszlo Attila Toth

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).