commit | 504882db833b570ea55b25fc194b09e950f2c84f | [log] [tgz] |
---|---|---|
author | wenxu <wenxu@ucloud.cn> | Wed Sep 11 12:53:21 2019 +0800 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Fri Sep 13 01:09:15 2019 +0200 |
tree | 76a6cdd05c5160666d50ebca4197f60220483aa6 | |
parent | be2861dc36d77ff3778979b9c3c79ada4affa131 [diff] |
netfilter: nf_tables_offload: add __nft_offload_get_chain function Add __nft_offload_get_chain function to get basechain from device. This function requires that caller holds the per-netns nftables mutex. This patch implicitly fixes missing offload flags check and proper mutex from nft_indr_block_cb(). Fixes: 9a32669fecfb ("netfilter: nf_tables_offload: support indr block call") Signed-off-by: wenxu <wenxu@ucloud.cn> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>