Re: [PATCH nf-next v2 7/8] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote:
> nft_pipapo_get() is called from rcu path via _GET netlink command.
> Is it safe to walk over priv->clone? Userspace could be updating
> (with mutex held) while a request to get an element can be done.
> 
> That makes me think nft_pipapo_get() should always use priv->match?

Right, that could work too.




[Index of Archives]     [Netfitler Users]     [Berkeley Packet Filter]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux