The offset variable (undefined) is passed to DEBUGP function, so you get a compilation error if you try to build iptables with debug enabled Signed-off-by: Giuseppe Longo <giuseppelng@xxxxxxxxx> --- iptables/nft-ipv4.c | 2 +- iptables/nft-ipv6.c | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/iptables/nft-ipv4.c b/iptables/nft-ipv4.c index eedcb50..a2c5806 100644 --- a/iptables/nft-ipv4.c +++ b/iptables/nft-ipv4.c @@ -205,7 +205,7 @@ static void nft_ipv4_parse_payload(struct nft_xt_ctx *ctx, cs->fw.ip.invflags |= IPT_INV_FRAG; break; default: - DEBUGP("unknown payload offset %d\n", offset); + DEBUGP("unknown payload offset %d\n", ctx->payload.offset); break; } } diff --git a/iptables/nft-ipv6.c b/iptables/nft-ipv6.c index 2e50627..5489398 100644 --- a/iptables/nft-ipv6.c +++ b/iptables/nft-ipv6.c @@ -142,7 +142,7 @@ static void nft_ipv6_parse_payload(struct nft_xt_ctx *ctx, if (inv) cs->fw6.ipv6.invflags |= IPT_INV_PROTO; default: - DEBUGP("unknown payload offset %d\n", offset); + DEBUGP("unknown payload offset %d\n", ctx->payload.offset); break; } } -- 1.9.1 -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html