From: Fedora Kernel Team <kernel-team@xxxxxxxxxxxxxxxxx> [redhat] New configs in net/netfilter Hi, As part of the ongoing rebase effort, the following configuration options need to be reviewed. As a reminder, the ARK configuration flow involves moving unreviewed configuration options from the pending directory to the ark directory. In the diff below, options are removed from the pending directory and added to the ark hierarchy. The final options that need to be ACKed are the files that are being added to the ark hierarchy. If the value for a file that is added should be changed, please reply with a better option. CONFIG_NFT_REJECT_NETDEV: This option enables the REJECT support from the netdev table. The return packet generation will be delegated to the IPv4 or IPv6 ICMP or TCP RST implementation depending on the protocol of the packet. Symbol: NFT_REJECT_NETDEV [=n] Type : tristate Defined at net/netfilter/Kconfig:685 Prompt: Netfilter nf_tables netdev REJECT support Depends on: NET [=y] && INET [=y] && NETFILTER [=y] && NF_TABLES [=m] && NF_TABLES_NETDEV [=y] && NFT_REJECT_IPV4 [=m] && NFT_REJECT_IPV6 [=m] Location: -> Networking support (NET [=y]) -> Networking options -> Network packet filtering framework (Netfilter) (NETFILTER [=y]) -> Core Netfilter Configuration -> Netfilter nf_tables support (NF_TABLES [=m]) --- Cc: Florian Westphal <fwestpha@xxxxxxxxxx> Cc: Jiri Benc <jbenc@xxxxxxxxxx> Cc: Marcelo Leitner <mleitner@xxxxxxxxxx> Cc: Davide Caratti <dcaratti@xxxxxxxxxx> Cc: Eric Garver <egarver@xxxxxxxxxx> Cc: Flavio Leitner <fbl@xxxxxxxxxx> Cc: Guillaume Nault <gnault@xxxxxxxxxx> Cc: Hangbin Liu <haliu@xxxxxxxxxx> Cc: Ivan Vecera <ivecera@xxxxxxxxxx> Cc: Jarod Wilson <jarod@xxxxxxxxxx> Cc: Lorenzo Bianconi <lorenzo.bianconi@xxxxxxxxxx> Cc: Paolo Abeni <pabeni@xxxxxxxxxx> Cc: Phil Sutter <psutter@xxxxxxxxxx> Cc: Sabrina Dubroca <sdubroca@xxxxxxxxxx> Cc: Stefano Brivio <sbrivio@xxxxxxxxxx> Cc: Xin Long <lxin@xxxxxxxxxx> Signed-off-by: Fedora Kernel Team <kernel-team@xxxxxxxxxxxxxxxxx> diff a/redhat/configs/common/generic/CONFIG_NFT_REJECT_NETDEV b/redhat/configs/common/generic/CONFIG_NFT_REJECT_NETDEV --- /dev/null +++ b/redhat/configs/common/generic/CONFIG_NFT_REJECT_NETDEV @@ -0,0 +1 @@ +# CONFIG_NFT_REJECT_NETDEV is not set diff a/redhat/configs/pending-common/generic/CONFIG_NFT_REJECT_NETDEV b/redhat/configs/pending-common/generic/CONFIG_NFT_REJECT_NETDEV --- a/redhat/configs/pending-common/generic/CONFIG_NFT_REJECT_NETDEV +++ /dev/null @@ -1,22 +0,0 @@ -# CONFIG_NFT_REJECT_NETDEV: -# -# This option enables the REJECT support from the netdev table. -# The return packet generation will be delegated to the IPv4 -# or IPv6 ICMP or TCP RST implementation depending on the -# protocol of the packet. -# -# Symbol: NFT_REJECT_NETDEV [=n] -# Type : tristate -# Defined at net/netfilter/Kconfig:685 -# Prompt: Netfilter nf_tables netdev REJECT support -# Depends on: NET [=y] && INET [=y] && NETFILTER [=y] && NF_TABLES [=m] && NF_TABLES_NETDEV [=y] && NFT_REJECT_IPV4 [=m] && NFT_REJECT_IPV6 [=m] -# Location: -# -> Networking support (NET [=y]) -# -> Networking options -# -> Network packet filtering framework (Netfilter) (NETFILTER [=y]) -# -> Core Netfilter Configuration -# -> Netfilter nf_tables support (NF_TABLES [=m]) -# -# -# -# CONFIG_NFT_REJECT_NETDEV is not set -- https://gitlab.com/cki-project/kernel-ark/-/merge_requests/812 _______________________________________________ kernel mailing list -- kernel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to kernel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/kernel@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure