OSDN Git Service

ice: block LAN in case of VF to VF offload
authorMichal Swiatkowski <michal.swiatkowski@linux.intel.com>
Wed, 3 May 2023 15:39:35 +0000 (08:39 -0700)
committerDavid S. Miller <davem@davemloft.net>
Fri, 5 May 2023 08:29:21 +0000 (09:29 +0100)
commit9f699b71c2f31c51bd1483a20e1c8ddc5986a8c9
tree4e533cc15aac5cceda450b5818101f43bb601ebd
parent120a56b01beed51ab5956a734adcfd2760307107
ice: block LAN in case of VF to VF offload

VF to VF traffic shouldn't go outside. To enforce it, set only the loopback
enable bit in case of all ingress type rules added via the tc tool.

Fixes: 0d08a441fb1a ("ice: ndo_setup_tc implementation for PF")
Reported-by: Sujai Buvaneswaran <Sujai.Buvaneswaran@intel.com>
Signed-off-by: Michal Swiatkowski <michal.swiatkowski@linux.intel.com>
Tested-by: George Kuruvinakunnel <george.kuruvinakunnel@intel.com>
Reviewed-by: Simon Horman <simon.horman@corigine.com>
Signed-off-by: Tony Nguyen <anthony.l.nguyen@intel.com>
Reviewed-by: Leon Romanovsky <leonro@nvidia.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
drivers/net/ethernet/intel/ice/ice_tc_lib.c