<arg>skgid</arg>
<arg>nftrace</arg>
<arg>rtclassid</arg>
- <arg>ibriport</arg>
- <arg>obriport</arg>
+ <arg>ibridgename</arg>
+ <arg>obridgename</arg>
<arg>pkttype</arg>
<arg>cpu</arg>
<arg>iifgroup</arg>
<entry>realm</entry>
</row>
<row>
- <entry>ibriport</entry>
+ <entry>ibridgename</entry>
<entry>Input bridge interface name</entry>
<entry>ifname</entry>
</row>
<row>
- <entry>obriport</entry>
+ <entry>obridgename</entry>
<entry>Output bridge interface name</entry>
<entry>ifname</entry>
</row>
1 , BYTEORDER_HOST_ENDIAN),
[NFT_META_RTCLASSID] = META_TEMPLATE("rtclassid", &realm_type,
4 * 8, BYTEORDER_HOST_ENDIAN),
- [NFT_META_BRI_IIFNAME] = META_TEMPLATE("ibriport", &ifname_type,
+ [NFT_META_BRI_IIFNAME] = META_TEMPLATE("ibridgename", &ifname_type,
IFNAMSIZ * BITS_PER_BYTE,
BYTEORDER_HOST_ENDIAN),
- [NFT_META_BRI_OIFNAME] = META_TEMPLATE("obriport", &ifname_type,
+ [NFT_META_BRI_OIFNAME] = META_TEMPLATE("obridgename", &ifname_type,
IFNAMSIZ * BITS_PER_BYTE,
BYTEORDER_HOST_ENDIAN),
[NFT_META_PKTTYPE] = META_TEMPLATE("pkttype", &pkttype_type,
case NFT_META_PRIORITY:
case NFT_META_PRANDOM:
case NFT_META_SECPATH:
+ case NFT_META_BRI_IIFNAME:
+ case NFT_META_BRI_OIFNAME:
return true;
default:
return false;
return NULL;
}
+ /* Backwards compat hack */
+ if (strcmp(str, "ibriport") == 0) {
+ *value = NFT_META_BRI_IIFNAME;
+ return NULL;
+ } else if (strcmp(str, "obriport") == 0) {
+ *value = NFT_META_BRI_OIFNAME;
+ return NULL;
+ }
+
len = (int)sizeof(buf);
size = sizeof(buf);
%token RTCLASSID "rtclassid"
%token IBRIPORT "ibriport"
%token OBRIPORT "obriport"
+%token IBRIDGENAME "ibridgename"
+%token OBRIDGENAME "obridgename"
%token PKTTYPE "pkttype"
%token CPU "cpu"
%token IIFGROUP "iifgroup"
"nftrace" { return NFTRACE; }
"rtclassid" { return RTCLASSID; }
"ibriport" { return IBRIPORT; }
+"ibridgename" { return IBRIDGENAME; }
"obriport" { return OBRIPORT; }
+"obridgename" { return OBRIDGENAME; }
"pkttype" { return PKTTYPE; }
"cpu" { return CPU; }
"iifgroup" { return IIFGROUP; }
--- /dev/null
+:input;type filter hook input priority 0
+
+*bridge;test-bridge;input
+
+meta obridgename "br0";ok;meta obridgename "br0"
+meta ibridgename "br0";ok;meta ibridgename "br0"
--- /dev/null
+# meta obridgename "br0"
+bridge test-bridge input
+ [ meta load bri_oifname => reg 1 ]
+ [ cmp eq reg 1 0x00307262 0x00000000 0x00000000 0x00000000 ]
+
+# meta ibridgename "br0"
+bridge test-bridge input
+ [ meta load bri_iifname => reg 1 ]
+ [ cmp eq reg 1 0x00307262 0x00000000 0x00000000 0x00000000 ]
+
meta nfproto ipv4 counter ip saddr 1.2.3.4;ok
meta secpath exists;ok
meta secpath missing;ok
+meta ibridgename "br0";fail
+meta obridgename "br0";fail
meta l4proto ipv6-icmp icmpv6 type nd-router-advert;ok;icmpv6 type nd-router-advert
meta l4proto 58 icmpv6 type nd-router-advert;ok;icmpv6 type nd-router-advert
icmpv6 type nd-router-advert;ok
+
+meta ibridgename "br0";fail
+meta obridgename "br0";fail