Am 20.10.2010 13:21, schrieb KOVACS Krisztian: > When __inet_inherit_port() is called on a tproxy connection the wrong locks are > held for the inet_bind_bucket it is added to. __inet_inherit_port() made an > implicit assumption that the listener's port number (and thus its bind bucket). > Unfortunately, if you're using the TPROXY target to redirect skbs to a > transparent proxy that assumption is not true anymore and things break. > > This patch adds code to __inet_inherit_port() so that it can handle this case > by looking up or creating a new bind bucket for the child socket and updates > callers of __inet_inherit_port() to gracefully handle __inet_inherit_port() > failing. > > Reported by and original patch from Stephen Buck <stephen.buck@xxxxxxxxxx>. > See http://marc.info/?t=128169268200001&r=1&w=2 for the original discussion. Applied, thanks. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html