summaryrefslogtreecommitdiff
path: root/COPYING
diff options
context:
space:
mode:
authorPablo Neira Ayuso <pablo@netfilter.org>2008-12-06 21:54:43 +0100
committerPablo Neira Ayuso <pablo@netfilter.org>2008-12-06 21:54:43 +0100
commit65ad316d921930c9d5c1c8640fbf2f05ecd0ca49 (patch)
tree9fc0427a023eaaba9a4619576dc979e2dae51ded /COPYING
parent567222194512c6d42c7e253fc69c3837fe7b078c (diff)
downloadconntrack-tools-65ad316d921930c9d5c1c8640fbf2f05ecd0ca49.tar.gz
conntrack-tools-65ad316d921930c9d5c1c8640fbf2f05ecd0ca49.zip
netlink: clone conntrack object while creation/update
This patch changes the behaviour of nl_create_conntrack() and nl_update_conntrack() which now clone the conntrack object received as parameter. This was not required as these functions were called inside fork(), thus, they modified a copy of the real conntrack objects in the child process. However, this behaviour is broken following the try-again logic in __do_commit_step. For example, if we try to update an expected conntrack object that has vanished for whatever reason, since nl_update_conntrack() modifies the object (unset the master conntrack information), nl_create_conntrak() will create an entry without the master conntrack information. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'COPYING')
0 files changed, 0 insertions, 0 deletions