commit | e77e6ff502ea3d193872b5b9033bfd9717b36447 | [log] [tgz] |
---|---|---|
author | Liping Zhang <liping.zhang@spreadtrum.com> | Mon Aug 15 21:50:35 2016 +0800 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Wed Aug 17 17:41:58 2016 +0200 |
tree | de6d9d933936650e25f957ba5084a582fd709c05 | |
parent | a1560dd7a47f983419760aa7f6a481e3b910b54b [diff] |
netfilter: conntrack: do not dump other netns's conntrack entries via proc We should skip the conntracks that belong to a different namespace, otherwise other unrelated netns's conntrack entries will be dumped via /proc/net/nf_conntrack. Fixes: 56d52d4892d0 ("netfilter: conntrack: use a single hashtable for all namespaces") Signed-off-by: Liping Zhang <liping.zhang@spreadtrum.com> Reviewed-by: Florian Westphal <fw@strlen.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>