[netfilter-cvslog] r7028 - in trunk/iptables: extensions include/linux/netfilter_ipv6

kaber at trash.net kaber at trash.net
Wed Sep 5 15:56:31 CEST 2007


Author: kaber at trash.net
Date: 2007-09-05 15:56:30 +0200 (Wed, 05 Sep 2007)
New Revision: 7028

Removed:
   trunk/iptables/extensions/.frag-test6
Modified:
   trunk/iptables/extensions/Makefile
   trunk/iptables/include/linux/netfilter_ipv6/ip6t_frag.h
Log:
Resync header files and build IPv6 frag match unconditionally


Deleted: trunk/iptables/extensions/.frag-test6
===================================================================
--- trunk/iptables/extensions/.frag-test6	2007-09-05 13:55:27 UTC (rev 7027)
+++ trunk/iptables/extensions/.frag-test6	2007-09-05 13:56:30 UTC (rev 7028)
@@ -1,2 +0,0 @@
-#!/bin/sh
-[ -f $KERNEL_DIR/net/ipv6/netfilter/ip6t_frag.c -a -f $KERNEL_DIR/include/linux/netfilter_ipv6/ip6t_frag.h ] && echo frag

Modified: trunk/iptables/extensions/Makefile
===================================================================
--- trunk/iptables/extensions/Makefile	2007-09-05 13:55:27 UTC (rev 7027)
+++ trunk/iptables/extensions/Makefile	2007-09-05 13:56:30 UTC (rev 7028)
@@ -6,7 +6,7 @@
 # package (HW)
 #
 PF_EXT_SLIB:=ah addrtype conntrack ecn icmp iprange owner policy realm recent tos ttl unclean CLUSTERIP DNAT ECN LOG MASQUERADE MIRROR NETMAP REDIRECT REJECT SAME SNAT TOS TTL ULOG
-PF6_EXT_SLIB:=ah eui64 hl icmp6 owner policy HL LOG REJECT
+PF6_EXT_SLIB:=ah eui64 frag hl icmp6 owner policy HL LOG REJECT
 PFX_EXT_SLIB:=connbytes connmark connlimit comment dccp dscp esp hashlimit helper length limit mac mark multiport physdev pkttype quota sctp state statistic standard string tcp tcpmss udp CLASSIFY CONNMARK DSCP MARK NFLOG NFQUEUE NOTRACK TCPMSS TRACE
 
 ifeq ($(DO_SELINUX), 1)

Modified: trunk/iptables/include/linux/netfilter_ipv6/ip6t_frag.h
===================================================================
--- trunk/iptables/include/linux/netfilter_ipv6/ip6t_frag.h	2007-09-05 13:55:27 UTC (rev 7027)
+++ trunk/iptables/include/linux/netfilter_ipv6/ip6t_frag.h	2007-09-05 13:56:30 UTC (rev 7028)
@@ -21,13 +21,4 @@
 #define IP6T_FRAG_INV_LEN	0x02	/* Invert the sense of length. */
 #define IP6T_FRAG_INV_MASK	0x03	/* All possible flags. */
 
-#define MASK_HOPOPTS    128
-#define MASK_DSTOPTS    64
-#define MASK_ROUTING    32
-#define MASK_FRAGMENT   16
-#define MASK_AH         8
-#define MASK_ESP        4
-#define MASK_NONE       2
-#define MASK_PROTO      1
-
 #endif /*_IP6T_FRAG_H*/




More information about the netfilter-cvslog mailing list