Usefull for all protocols which do not add additional data, such as GRE or UDPlite. Signed-off-by: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx> Index: net-next-2.6/include/net/netfilter/nf_conntrack_l4proto.h =================================================================== --- net-next-2.6.orig/include/net/netfilter/nf_conntrack_l4proto.h +++ net-next-2.6/include/net/netfilter/nf_conntrack_l4proto.h @@ -121,6 +121,7 @@ extern int nf_ct_port_tuple_to_nlattr(st const struct nf_conntrack_tuple *tuple); extern int nf_ct_port_nlattr_to_tuple(struct nlattr *tb[], struct nf_conntrack_tuple *t); +extern int nf_ct_port_nlattr_tuple_size(void); extern const struct nla_policy nf_ct_port_nla_policy[]; #ifdef CONFIG_SYSCTL Index: net-next-2.6/net/netfilter/nf_conntrack_core.c =================================================================== --- net-next-2.6.orig/net/netfilter/nf_conntrack_core.c +++ net-next-2.6/net/netfilter/nf_conntrack_core.c @@ -902,6 +902,12 @@ int nf_ct_port_nlattr_to_tuple(struct nl return 0; } EXPORT_SYMBOL_GPL(nf_ct_port_nlattr_to_tuple); + +int nf_ct_port_nlattr_tuple_size(void) +{ + return nla_policy_len(nf_ct_port_nla_policy, CTA_PROTO_MAX + 1); +} +EXPORT_SYMBOL_GPL(nf_ct_port_nlattr_tuple_size); #endif /* Used by ipt_REJECT and ip6t_REJECT. */ -- -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html