Re: [PATCH iptables 1/2] extensions: libxt_NFLOG: display nflog-size even if it is zero

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



At 2016-07-20 02:17:15, "Pablo Neira Ayuso" <pablo@xxxxxxxxxxxxx> wrote:
>On Mon, Jul 18, 2016 at 10:14:27PM +0800, Liping Zhang wrote:
>> From: Liping Zhang <liping.zhang@xxxxxxxxxxxxxx>
>> 
>> The following iptables rules have the different semantics:
>>   # iptables -A INPUT -j NFLOG
>>   # iptables -A INPUT -j NFLOG --nflog-size 0
>> 
>> But they are all displayed as "-A INPUT -j NFLOG", so if
>> the user input the following commands, the original semantics
>> will be broken.
>>   # iptables-save | iptables-restore
>
>Applied, thanks.
>
>Would you also send me a patch to add a test to libxt_NFLOG.t so we
>make sure this problem never comes back again?

OK, will update libxt_NFLOG.t later?韬{.n?壏煯壄?%娝?檩?w?{.n?壏租栕庄z_鉃豝n噐■?侂h櫒璀?{鄗夸z罐楘+€?zf"穐殘啳嗃i?飦?戧鐉_璁鎗:+v墾?撸鴐




[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux