]> git.ipfire.org Git - thirdparty/ipset.git/commit
Introduce new operation to get both setname and family
authorJozsef Kadlecsik <kadlec@blackhole.kfki.hu>
Wed, 4 Sep 2013 14:49:08 +0000 (16:49 +0200)
committerJozsef Kadlecsik <kadlec@blackhole.kfki.hu>
Wed, 4 Sep 2013 14:49:08 +0000 (16:49 +0200)
commite883bb17de2b69e7f3ae9b414915aebef477f383
tree5d0899a9aa7498c44e89e5764c00641407b9729b
parent480761a3bdaa55bf8c966e4dab950ebf84775863
Introduce new operation to get both setname and family

ip[6]tables set match and SET target need to know the family of the set
in order to reject adding rules which refer to a set with a non-mathcing
family. Currently such rules are silently accepted and then ignored
instead of generating a clear error message to the user, which is not
helpful.
kernel/include/uapi/linux/netfilter/ipset/ip_set.h
kernel/net/netfilter/ipset/ip_set_core.c