mirror of
https://github.com/AuxXxilium/linux_dsm_epyc7002.git
synced 2024-11-24 16:20:55 +07:00
netfilter: add nf_hook_list_active()
In preparation to have netfilter ingress per-device hook list. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org> Signed-off-by: David S. Miller <davem@davemloft.net>
This commit is contained in:
parent
f719148346
commit
b8d0aad0c7
@ -134,26 +134,33 @@ extern struct list_head nf_hooks[NFPROTO_NUMPROTO][NF_MAX_HOOKS];
|
|||||||
#ifdef HAVE_JUMP_LABEL
|
#ifdef HAVE_JUMP_LABEL
|
||||||
extern struct static_key nf_hooks_needed[NFPROTO_NUMPROTO][NF_MAX_HOOKS];
|
extern struct static_key nf_hooks_needed[NFPROTO_NUMPROTO][NF_MAX_HOOKS];
|
||||||
|
|
||||||
static inline bool nf_hooks_active(u_int8_t pf, unsigned int hook)
|
static inline bool nf_hook_list_active(struct list_head *nf_hook_list,
|
||||||
|
u_int8_t pf, unsigned int hook)
|
||||||
{
|
{
|
||||||
if (__builtin_constant_p(pf) &&
|
if (__builtin_constant_p(pf) &&
|
||||||
__builtin_constant_p(hook))
|
__builtin_constant_p(hook))
|
||||||
return static_key_false(&nf_hooks_needed[pf][hook]);
|
return static_key_false(&nf_hooks_needed[pf][hook]);
|
||||||
|
|
||||||
return !list_empty(&nf_hooks[pf][hook]);
|
return !list_empty(nf_hook_list);
|
||||||
}
|
}
|
||||||
#else
|
#else
|
||||||
static inline bool nf_hooks_active(u_int8_t pf, unsigned int hook)
|
static inline bool nf_hook_list_active(struct list_head *nf_hook_list,
|
||||||
|
u_int8_t pf, unsigned int hook)
|
||||||
{
|
{
|
||||||
return !list_empty(&nf_hooks[pf][hook]);
|
return !list_empty(nf_hook_list);
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
static inline bool nf_hooks_active(u_int8_t pf, unsigned int hook)
|
||||||
|
{
|
||||||
|
return nf_hook_list_active(&nf_hooks[pf][hook], pf, hook);
|
||||||
|
}
|
||||||
|
|
||||||
int nf_hook_slow(struct sk_buff *skb, struct nf_hook_state *state);
|
int nf_hook_slow(struct sk_buff *skb, struct nf_hook_state *state);
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* nf_hook_thresh - call a netfilter hook
|
* nf_hook_thresh - call a netfilter hook
|
||||||
*
|
*
|
||||||
* Returns 1 if the hook has allowed the packet to pass. The function
|
* Returns 1 if the hook has allowed the packet to pass. The function
|
||||||
* okfn must be invoked by the caller in this case. Any other return
|
* okfn must be invoked by the caller in this case. Any other return
|
||||||
* value indicates the packet has been consumed by the hook.
|
* value indicates the packet has been consumed by the hook.
|
||||||
|
Loading…
Reference in New Issue
Block a user