On 2019-05-04, at 19:35:41 +0200, Stéphane Veyret wrote: > This patch allows to add, list and delete expectations via nft objref > infrastructure and assigning these expectations via nft rule. > > Signed-off-by: Stéphane Veyret <sveyret@xxxxxxxxx> > --- > include/uapi/linux/netfilter/nf_tables.h | 15 ++- > net/netfilter/nft_ct.c | 124 ++++++++++++++++++++++- > 2 files changed, 136 insertions(+), 3 deletions(-) > > diff --git a/include/uapi/linux/netfilter/nf_tables.h > b/include/uapi/linux/netfilter/nf_tables.h > index f0cf7b0f4f35..0a3452ca684c 100644 > --- a/include/uapi/linux/netfilter/nf_tables.h > +++ b/include/uapi/linux/netfilter/nf_tables.h > @@ -968,6 +968,7 @@ enum nft_socket_keys { > * @NFT_CT_DST_IP6: conntrack layer 3 protocol destination (IPv6 address) > * @NFT_CT_TIMEOUT: connection tracking timeout policy assigned to conntrack > * @NFT_CT_ID: conntrack id > + * @NFT_CT_EXPECT: connection tracking expectation > */ > enum nft_ct_keys { > NFT_CT_STATE, > @@ -995,6 +996,7 @@ enum nft_ct_keys { > NFT_CT_DST_IP6, > NFT_CT_TIMEOUT, > NFT_CT_ID, > + NFT_CT_EXPECT, > __NFT_CT_MAX > }; > #define NFT_CT_MAX (__NFT_CT_MAX - 1) Your patch has been mangled. J.
Attachment:
signature.asc
Description: PGP signature