netfilter: nf_conntrack: don't send destroy events from iterator
Let nf_ct_delete handle delivery of the DESTROY event. Based on earlier patch from Pablo Neira. Signed-off-by:Florian Westphal <fw@strlen.de> Signed-off-by:
Pablo Neira Ayuso <pablo@netfilter.org>
Showing
- include/net/netfilter/nf_conntrack.h 3 additions, 1 deletioninclude/net/netfilter/nf_conntrack.h
- net/ipv4/netfilter/ipt_MASQUERADE.c 1 addition, 1 deletionnet/ipv4/netfilter/ipt_MASQUERADE.c
- net/ipv6/netfilter/ip6t_MASQUERADE.c 1 addition, 1 deletionnet/ipv6/netfilter/ip6t_MASQUERADE.c
- net/netfilter/nf_conntrack_core.c 4 additions, 32 deletionsnet/netfilter/nf_conntrack_core.c
- net/netfilter/nf_conntrack_proto.c 2 additions, 2 deletionsnet/netfilter/nf_conntrack_proto.c
- net/netfilter/nf_nat_core.c 3 additions, 3 deletionsnet/netfilter/nf_nat_core.c
Loading
Please register or sign in to comment