diff options
author | Pablo Neira Ayuso <pablo@netfilter.org> | 2015-05-26 19:41:40 +0300 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2015-05-26 19:41:23 +0300 |
commit | ed6c4136f1571bd6ab362afc3410905a8a69ca42 (patch) | |
tree | 4b8e910c631dce906891caf07a6ab88ec7e12c4f /include/net/netns | |
parent | ebddf1a8d78aa3436353fae75c4396e50cb2d6cf (diff) | |
download | linux-ed6c4136f1571bd6ab362afc3410905a8a69ca42.tar.xz |
netfilter: nf_tables: add netdev table to filter from ingress
This allows us to create netdev tables that contain ingress chains. Use
skb_header_pointer() as we may see shared sk_buffs at this stage.
This change provides access to the existing nf_tables features from the ingress
hook.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'include/net/netns')
-rw-r--r-- | include/net/netns/nftables.h | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/include/net/netns/nftables.h b/include/net/netns/nftables.h index eee608b12cc9..c80781146019 100644 --- a/include/net/netns/nftables.h +++ b/include/net/netns/nftables.h @@ -13,6 +13,7 @@ struct netns_nftables { struct nft_af_info *inet; struct nft_af_info *arp; struct nft_af_info *bridge; + struct nft_af_info *netdev; unsigned int base_seq; u8 gencursor; }; |