]> git.ipfire.org Git - thirdparty/linux.git/commit
netfilter: nft_connlimit: add support to object update operation
authorFernando Fernandez Mancera <fmancera@suse.de>
Mon, 24 Nov 2025 16:36:58 +0000 (17:36 +0100)
committerPablo Neira Ayuso <pablo@netfilter.org>
Fri, 28 Nov 2025 00:06:43 +0000 (00:06 +0000)
commitc4cbe4a4df39a2cf80593f87d129cd4b04ea568d
treebbdcf4c1acca143ec4f95035991a17c3a2178c1a
parent69894e5b4c5e28cda5f32af33d4a92b7a4b93b0e
netfilter: nft_connlimit: add support to object update operation

This is useful to update the limit or flags without clearing the
connections tracked. Use READ_ONCE() on packetpath as it can be modified
on controlplane.

Signed-off-by: Fernando Fernandez Mancera <fmancera@suse.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nft_connlimit.c