| /linux-6.15/net/netfilter/ |
| H A D | nf_bpf_link.c | 157 info->netfilter.pf = nf_link->hook_ops.pf; in bpf_nf_link_fill_link_info() 158 info->netfilter.hooknum = nf_link->hook_ops.hooknum; in bpf_nf_link_fill_link_info() 159 info->netfilter.priority = nf_link->hook_ops.priority; in bpf_nf_link_fill_link_info() 160 info->netfilter.flags = hook ? BPF_F_NETFILTER_IP_DEFRAG : 0; in bpf_nf_link_fill_link_info() 184 switch (attr->link_create.netfilter.pf) { in bpf_nf_check_pf_and_hooks() 187 if (attr->link_create.netfilter.hooknum >= NF_INET_NUMHOOKS) in bpf_nf_check_pf_and_hooks() 194 if (attr->link_create.netfilter.flags & ~BPF_F_NETFILTER_IP_DEFRAG) in bpf_nf_check_pf_and_hooks() 198 prio = attr->link_create.netfilter.priority; in bpf_nf_check_pf_and_hooks() 234 link->hook_ops.pf = attr->link_create.netfilter.pf; in bpf_nf_link_attach() 235 link->hook_ops.priority = attr->link_create.netfilter.priority; in bpf_nf_link_attach() [all …]
|
| /linux-6.15/tools/testing/selftests/bpf/prog_tests/ |
| H A D | netfilter_link_attach.c | 60 ASSERT_EQ(info.netfilter.pf, nf_expected.pf, "info nf protocol family"); in verify_netfilter_link_info() 61 ASSERT_EQ(info.netfilter.hooknum, nf_expected.hooknum, "info nf hooknum"); in verify_netfilter_link_info() 62 ASSERT_EQ(info.netfilter.priority, nf_expected.priority, "info nf priority"); in verify_netfilter_link_info() 63 ASSERT_EQ(info.netfilter.flags, nf_expected.flags, "info nf flags"); in verify_netfilter_link_info()
|
| /linux-6.15/tools/testing/selftests/net/ |
| H A D | ip_defrag.sh | 25 …ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_high_thresh=9000000 >/dev/null… 26 …ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_low_thresh=7000000 >/dev/null… 27 ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_timeout=1 >/dev/null 2>&1
|
| /linux-6.15/tools/bpf/bpftool/ |
| H A D | net.c | 803 delta = nfa->netfilter.pf - nfb->netfilter.pf; in netfilter_link_compar() 807 delta = nfa->netfilter.hooknum - nfb->netfilter.hooknum; in netfilter_link_compar() 811 if (nfa->netfilter.priority < nfb->netfilter.priority) in netfilter_link_compar() 813 if (nfa->netfilter.priority > nfb->netfilter.priority) in netfilter_link_compar() 816 return nfa->netfilter.flags - nfb->netfilter.flags; in netfilter_link_compar()
|
| H A D | link.c | 226 info->netfilter.pf); in netfilter_dump_json() 228 info->netfilter.hooknum); in netfilter_dump_json() 230 info->netfilter.priority); in netfilter_dump_json() 232 info->netfilter.flags); in netfilter_dump_json() 678 unsigned int hook = info->netfilter.hooknum; in netfilter_dump_plain() 679 unsigned int pf = info->netfilter.pf; in netfilter_dump_plain() 709 printf(" prio %d", info->netfilter.priority); in netfilter_dump_plain() 711 if (info->netfilter.flags) in netfilter_dump_plain() 712 printf(" flags 0x%x", info->netfilter.flags); in netfilter_dump_plain()
|
| /linux-6.15/net/ipv6/ |
| H A D | Makefile | 20 ipv6-$(CONFIG_NETFILTER) += netfilter.o 38 obj-$(CONFIG_NETFILTER) += netfilter/
|
| /linux-6.15/Documentation/translations/zh_TW/dev-tools/ |
| H A D | gdb-kernel-debugging.rst | 69 loading @0xffffffffa0020000: /home/user/linux/build/net/netfilter/xt_tcpudp.ko 70 loading @0xffffffffa0016000: /home/user/linux/build/net/netfilter/xt_pkttype.ko 71 loading @0xffffffffa0002000: /home/user/linux/build/net/netfilter/xt_limit.ko
|
| /linux-6.15/Documentation/translations/zh_CN/dev-tools/ |
| H A D | gdb-kernel-debugging.rst | 73 loading @0xffffffffa0020000: /home/user/linux/build/net/netfilter/xt_tcpudp.ko 74 loading @0xffffffffa0016000: /home/user/linux/build/net/netfilter/xt_pkttype.ko 75 loading @0xffffffffa0002000: /home/user/linux/build/net/netfilter/xt_limit.ko
|
| /linux-6.15/include/linux/ |
| H A D | bpf_types.h | 83 BPF_PROG_TYPE(BPF_PROG_TYPE_NETFILTER, netfilter, 146 BPF_LINK_TYPE(BPF_LINK_TYPE_NETFILTER, netfilter)
|
| /linux-6.15/Documentation/ABI/removed/ |
| H A D | ip_queue | 3 Contact: Pablo Neira Ayuso <pablo@netfilter.org>
|
| /linux-6.15/net/ipv4/ |
| H A D | Makefile | 42 obj-$(CONFIG_NETFILTER) += netfilter.o netfilter/
|
| /linux-6.15/tools/testing/selftests/net/netfilter/ |
| H A D | nft_fib.sh | 13 log_netns=$(sysctl -n net.netfilter.nf_log_all_netns) 19 [ "$log_netns" -eq 0 ] && sysctl -q net.netfilter.nf_log_all_netns=$log_netns 33 sysctl -q net.netfilter.nf_log_all_netns=1
|
| H A D | nft_zones_many.sh | 51 ip netns exec "$ns1" sysctl -q net.netfilter.nf_conntrack_udp_timeout=3600
|
| H A D | nft_synproxy.sh | 36 ip netns exec "$nsr" sysctl -q net.netfilter.nf_conntrack_tcp_loose=0
|
| /linux-6.15/tools/testing/selftests/net/netfilter/packetdrill/ |
| H A D | common.sh | 7 sysctl -q net.netfilter.nf_conntrack_log_invalid=6
|
| /linux-6.15/Documentation/networking/ |
| H A D | netfilter-sysctl.rst | 7 /proc/sys/net/netfilter/* Variables:
|
| H A D | tproxy.rst | 52 http://people.netfilter.org/hidden/tproxy/netcat-ip_transparent-support.patch 104 '--enable-linux-netfilter' to configure and set the 'tproxy' option on
|
| H A D | index.rst | 88 netfilter-sysctl
|
| H A D | nf_conntrack-sysctl.rst | 7 /proc/sys/net/netfilter/nf_conntrack_* Variables: 217 If this option is enabled, the lightweight tunnel netfilter hooks are
|
| /linux-6.15/net/ |
| H A D | Kconfig | 203 protocols over the bridge, use ebtables (under bridge netfilter 206 Various modules exist for netfilter which replace the previous 215 bool "Advanced netfilter configuration" 219 If you say Y here you can select between all the netfilter modules. 241 source "net/netfilter/Kconfig" 242 source "net/ipv4/netfilter/Kconfig" 243 source "net/ipv6/netfilter/Kconfig" 244 source "net/bridge/netfilter/Kconfig" 344 being used in cls_cgroup and for netfilter matching.
|
| H A D | Makefile | 16 obj-$(CONFIG_NETFILTER) += netfilter/
|
| /linux-6.15/net/bridge/ |
| H A D | Makefile | 27 obj-$(CONFIG_NETFILTER) += netfilter/
|
| /linux-6.15/Documentation/process/debugging/ |
| H A D | gdb-kernel-debugging.rst | 79 loading @0xffffffffa0020000: /home/user/linux/build/net/netfilter/xt_tcpudp.ko 80 loading @0xffffffffa0016000: /home/user/linux/build/net/netfilter/xt_pkttype.ko 81 loading @0xffffffffa0002000: /home/user/linux/build/net/netfilter/xt_limit.ko
|
| /linux-6.15/tools/lib/bpf/ |
| H A D | bpf.c | 801 attr.link_create.netfilter.pf = OPTS_GET(opts, netfilter.pf, 0); in bpf_link_create() 802 attr.link_create.netfilter.hooknum = OPTS_GET(opts, netfilter.hooknum, 0); in bpf_link_create() 803 attr.link_create.netfilter.priority = OPTS_GET(opts, netfilter.priority, 0); in bpf_link_create() 804 attr.link_create.netfilter.flags = OPTS_GET(opts, netfilter.flags, 0); in bpf_link_create() 805 if (!OPTS_ZEROED(opts, netfilter)) in bpf_link_create()
|
| /linux-6.15/tools/bpf/bpftool/Documentation/ |
| H A D | bpftool-net.rst | 40 classifier/action attachments, flow_dissector as well as netfilter 54 flow_dissector and finally netfilter programs. Both xdp programs and
|