OSDN Git Service

netfilter: nf_tables: reintroduce the NFT_SET_CONCAT flag
authorPablo Neira Ayuso <pablo@netfilter.org>
Tue, 7 Apr 2020 12:10:38 +0000 (14:10 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Tue, 7 Apr 2020 16:23:04 +0000 (18:23 +0200)
commitef516e8625ddea90b3a0313f3a0b0baa83db7ac2
tree8467bbd448f09238f57c4f080f8eec074de7af5b
parentd9583cdf2f38d0f526d9a8c8564dd2e35e649bc7
netfilter: nf_tables: reintroduce the NFT_SET_CONCAT flag

Stefano originally proposed to introduce this flag, users hit EOPNOTSUPP
in new binaries with old kernels when defining a set with ranges in
a concatenation.

Fixes: f3a2181e16f1 ("netfilter: nf_tables: Support for sets with multiple ranged fields")
Reviewed-by: Stefano Brivio <sbrivio@redhat.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
include/uapi/linux/netfilter/nf_tables.h
net/netfilter/nf_tables_api.c