[netfilter-cvslog] r7416 - trunk/libnetfilter_conntrack/src/conntrack
pablo at netfilter.org
pablo at netfilter.org
Tue Mar 25 15:32:49 CET 2008
Author: pablo at netfilter.org
Date: 2008-03-25 15:32:49 +0100 (Tue, 25 Mar 2008)
New Revision: 7416
Modified:
trunk/libnetfilter_conntrack/src/conntrack/build.c
trunk/libnetfilter_conntrack/src/conntrack/parse.c
trunk/libnetfilter_conntrack/src/conntrack/snprintf_default.c
trunk/libnetfilter_conntrack/src/conntrack/snprintf_xml.c
Log:
This rather trivial patch adds ICMPv6 support for libnetfilter_conntrack,
but only for the new API - deprecated/extensions was left unchanged.
Signed-off-by: Krzysztof Oledzki <ole at ans.pl>
Modified: trunk/libnetfilter_conntrack/src/conntrack/build.c
===================================================================
--- trunk/libnetfilter_conntrack/src/conntrack/build.c 2008-03-25 10:09:06 UTC (rev 7415)
+++ trunk/libnetfilter_conntrack/src/conntrack/build.c 2008-03-25 14:32:49 UTC (rev 7416)
@@ -55,6 +55,7 @@
nfnl_addattr_l(&req->nlh, size, CTA_PROTO_DST_PORT,
&t->l4dst.tcp.port, sizeof(u_int16_t));
break;
+
case IPPROTO_ICMP:
nfnl_addattr_l(&req->nlh, size, CTA_PROTO_ICMP_CODE,
&t->l4dst.icmp.code, sizeof(u_int8_t));
@@ -63,6 +64,16 @@
nfnl_addattr_l(&req->nlh, size, CTA_PROTO_ICMP_ID,
&t->l4src.icmp.id, sizeof(u_int16_t));
break;
+
+ case IPPROTO_ICMPV6:
+ nfnl_addattr_l(&req->nlh, size, CTA_PROTO_ICMPV6_CODE,
+ &t->l4dst.icmp.code, sizeof(u_int8_t));
+ nfnl_addattr_l(&req->nlh, size, CTA_PROTO_ICMPV6_TYPE,
+ &t->l4dst.icmp.type, sizeof(u_int8_t));
+ nfnl_addattr_l(&req->nlh, size, CTA_PROTO_ICMPV6_ID,
+ &t->l4src.icmp.id, sizeof(u_int16_t));
+ break;
+
default:
break;
}
Modified: trunk/libnetfilter_conntrack/src/conntrack/parse.c
===================================================================
--- trunk/libnetfilter_conntrack/src/conntrack/parse.c 2008-03-25 10:09:06 UTC (rev 7415)
+++ trunk/libnetfilter_conntrack/src/conntrack/parse.c 2008-03-25 14:32:49 UTC (rev 7416)
@@ -152,6 +152,24 @@
*(u_int16_t *)NFA_DATA(tb[CTA_PROTO_ICMP_ID-1]);
set_bit(ATTR_ICMP_ID, set);
}
+
+ if (tb[CTA_PROTO_ICMPV6_TYPE-1]) {
+ tuple->l4dst.icmp.type =
+ *(u_int8_t *)NFA_DATA(tb[CTA_PROTO_ICMPV6_TYPE-1]);
+ set_bit(ATTR_ICMP_TYPE, set);
+ }
+
+ if (tb[CTA_PROTO_ICMPV6_CODE-1]) {
+ tuple->l4dst.icmp.code =
+ *(u_int8_t *)NFA_DATA(tb[CTA_PROTO_ICMPV6_CODE-1]);
+ set_bit(ATTR_ICMP_CODE, set);
+ }
+
+ if (tb[CTA_PROTO_ICMPV6_ID-1]) {
+ tuple->l4src.icmp.id =
+ *(u_int16_t *)NFA_DATA(tb[CTA_PROTO_ICMPV6_ID-1]);
+ set_bit(ATTR_ICMP_ID, set);
+ }
}
void __parse_tuple(const struct nfattr *attr,
Modified: trunk/libnetfilter_conntrack/src/conntrack/snprintf_default.c
===================================================================
--- trunk/libnetfilter_conntrack/src/conntrack/snprintf_default.c 2008-03-25 10:09:06 UTC (rev 7415)
+++ trunk/libnetfilter_conntrack/src/conntrack/snprintf_default.c 2008-03-25 14:32:49 UTC (rev 7416)
@@ -12,6 +12,7 @@
[IPPROTO_UDP] = "udp",
[IPPROTO_UDPLITE] = "udplite",
[IPPROTO_ICMP] = "icmp",
+ [IPPROTO_ICMPV6] = "icmpv6",
[IPPROTO_SCTP] = "sctp"
};
@@ -144,7 +145,9 @@
ntohs(tuple->l4src.tcp.port),
ntohs(tuple->l4dst.tcp.port));
break;
+
case IPPROTO_ICMP:
+ case IPPROTO_ICMPV6:
/* The ID only makes sense some ICMP messages but we want to
* display the same output that /proc/net/ip_conntrack does */
return (snprintf(buf, len, "type=%d code=%d id=%d ",
Modified: trunk/libnetfilter_conntrack/src/conntrack/snprintf_xml.c
===================================================================
--- trunk/libnetfilter_conntrack/src/conntrack/snprintf_xml.c 2008-03-25 10:09:06 UTC (rev 7415)
+++ trunk/libnetfilter_conntrack/src/conntrack/snprintf_xml.c 2008-03-25 14:32:49 UTC (rev 7416)
@@ -57,6 +57,7 @@
[IPPROTO_UDP] = "udp",
[IPPROTO_UDPLITE] = "udplite",
[IPPROTO_ICMP] = "icmp",
+ [IPPROTO_ICMPV6] = "icmp6",
[IPPROTO_SCTP] = "sctp"
};
static char *l3proto2str[AF_MAX] = {
More information about the netfilter-cvslog
mailing list