]> git.ipfire.org Git - thirdparty/suricata.git/commitdiff
nfq: don't try to verdict detect/log flush pkts
authorVictor Julien <victor@inliniac.net>
Mon, 8 May 2017 11:26:13 +0000 (13:26 +0200)
committerVictor Julien <victor@inliniac.net>
Mon, 8 May 2017 11:29:34 +0000 (13:29 +0200)
src/source-nfq.c

index 9059e552a12f0d791917d222f9a268d5f49eef8c..2a8a2884890da8515e0d56741a755a5a61c0ffc6 100644 (file)
@@ -1009,7 +1009,7 @@ TmEcode NFQSetVerdict(Packet *p)
     p->nfq_v.verdicted = 1;
 
     /* can't verdict a "fake" packet */
-    if (p->flags & PKT_PSEUDO_STREAM_END) {
+    if (PKT_IS_PSEUDOPKT(p)) {
         return TM_ECODE_OK;
     }
 
@@ -1192,7 +1192,7 @@ TmEcode DecodeNFQ(ThreadVars *tv, Packet *p, void *data, PacketQueue *pq, Packet
 
     /* XXX HACK: flow timeout can call us for injected pseudo packets
      *           see bug: https://redmine.openinfosecfoundation.org/issues/1107 */
-    if (p->flags & PKT_PSEUDO_STREAM_END)
+    if (PKT_IS_PSEUDOPKT(p))
         return TM_ECODE_OK;
 
     DecodeUpdatePacketCounters(tv, dtv, p);