Linux Audio

Check our new training course

Loading...
v4.10.11
 
 1/*
 2 *	xt_mark - Netfilter module to match NFMARK value
 3 *
 4 *	(C) 1999-2001 Marc Boucher <marc@mbsi.ca>
 5 *	Copyright © CC Computer Consultants GmbH, 2007 - 2008
 6 *	Jan Engelhardt <jengelh@medozas.de>
 7 *
 8 *	This program is free software; you can redistribute it and/or modify
 9 *	it under the terms of the GNU General Public License version 2 as
10 *	published by the Free Software Foundation.
11 */
12
13#include <linux/module.h>
14#include <linux/skbuff.h>
15
16#include <linux/netfilter/xt_mark.h>
17#include <linux/netfilter/x_tables.h>
18
19MODULE_LICENSE("GPL");
20MODULE_AUTHOR("Marc Boucher <marc@mbsi.ca>");
21MODULE_DESCRIPTION("Xtables: packet mark operations");
22MODULE_ALIAS("ipt_mark");
23MODULE_ALIAS("ip6t_mark");
24MODULE_ALIAS("ipt_MARK");
25MODULE_ALIAS("ip6t_MARK");
26MODULE_ALIAS("arpt_MARK");
27
28static unsigned int
29mark_tg(struct sk_buff *skb, const struct xt_action_param *par)
30{
31	const struct xt_mark_tginfo2 *info = par->targinfo;
32
33	skb->mark = (skb->mark & ~info->mask) ^ info->mark;
34	return XT_CONTINUE;
35}
36
37static bool
38mark_mt(const struct sk_buff *skb, struct xt_action_param *par)
39{
40	const struct xt_mark_mtinfo1 *info = par->matchinfo;
41
42	return ((skb->mark & info->mask) == info->mark) ^ info->invert;
43}
44
45static struct xt_target mark_tg_reg __read_mostly = {
46	.name           = "MARK",
47	.revision       = 2,
48	.family         = NFPROTO_UNSPEC,
49	.target         = mark_tg,
50	.targetsize     = sizeof(struct xt_mark_tginfo2),
51	.me             = THIS_MODULE,
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
52};
53
54static struct xt_match mark_mt_reg __read_mostly = {
55	.name           = "mark",
56	.revision       = 1,
57	.family         = NFPROTO_UNSPEC,
58	.match          = mark_mt,
59	.matchsize      = sizeof(struct xt_mark_mtinfo1),
60	.me             = THIS_MODULE,
61};
62
63static int __init mark_mt_init(void)
64{
65	int ret;
66
67	ret = xt_register_target(&mark_tg_reg);
68	if (ret < 0)
69		return ret;
70	ret = xt_register_match(&mark_mt_reg);
71	if (ret < 0) {
72		xt_unregister_target(&mark_tg_reg);
73		return ret;
74	}
75	return 0;
76}
77
78static void __exit mark_mt_exit(void)
79{
80	xt_unregister_match(&mark_mt_reg);
81	xt_unregister_target(&mark_tg_reg);
82}
83
84module_init(mark_mt_init);
85module_exit(mark_mt_exit);
v6.13.7
  1// SPDX-License-Identifier: GPL-2.0-only
  2/*
  3 *	xt_mark - Netfilter module to match NFMARK value
  4 *
  5 *	(C) 1999-2001 Marc Boucher <marc@mbsi.ca>
  6 *	Copyright © CC Computer Consultants GmbH, 2007 - 2008
  7 *	Jan Engelhardt <jengelh@medozas.de>
 
 
 
 
  8 */
  9
 10#include <linux/module.h>
 11#include <linux/skbuff.h>
 12
 13#include <linux/netfilter/xt_mark.h>
 14#include <linux/netfilter/x_tables.h>
 15
 16MODULE_LICENSE("GPL");
 17MODULE_AUTHOR("Marc Boucher <marc@mbsi.ca>");
 18MODULE_DESCRIPTION("Xtables: packet mark operations");
 19MODULE_ALIAS("ipt_mark");
 20MODULE_ALIAS("ip6t_mark");
 21MODULE_ALIAS("ipt_MARK");
 22MODULE_ALIAS("ip6t_MARK");
 23MODULE_ALIAS("arpt_MARK");
 24
 25static unsigned int
 26mark_tg(struct sk_buff *skb, const struct xt_action_param *par)
 27{
 28	const struct xt_mark_tginfo2 *info = par->targinfo;
 29
 30	skb->mark = (skb->mark & ~info->mask) ^ info->mark;
 31	return XT_CONTINUE;
 32}
 33
 34static bool
 35mark_mt(const struct sk_buff *skb, struct xt_action_param *par)
 36{
 37	const struct xt_mark_mtinfo1 *info = par->matchinfo;
 38
 39	return ((skb->mark & info->mask) == info->mark) ^ info->invert;
 40}
 41
 42static struct xt_target mark_tg_reg[] __read_mostly = {
 43	{
 44		.name           = "MARK",
 45		.revision       = 2,
 46		.family         = NFPROTO_IPV4,
 47		.target         = mark_tg,
 48		.targetsize     = sizeof(struct xt_mark_tginfo2),
 49		.me             = THIS_MODULE,
 50	},
 51#if IS_ENABLED(CONFIG_IP_NF_ARPTABLES)
 52	{
 53		.name           = "MARK",
 54		.revision       = 2,
 55		.family         = NFPROTO_ARP,
 56		.target         = mark_tg,
 57		.targetsize     = sizeof(struct xt_mark_tginfo2),
 58		.me             = THIS_MODULE,
 59	},
 60#endif
 61#if IS_ENABLED(CONFIG_IP6_NF_IPTABLES)
 62	{
 63		.name           = "MARK",
 64		.revision       = 2,
 65		.family         = NFPROTO_IPV6,
 66		.target         = mark_tg,
 67		.targetsize     = sizeof(struct xt_mark_tginfo2),
 68		.me             = THIS_MODULE,
 69	},
 70#endif
 71};
 72
 73static struct xt_match mark_mt_reg __read_mostly = {
 74	.name           = "mark",
 75	.revision       = 1,
 76	.family         = NFPROTO_UNSPEC,
 77	.match          = mark_mt,
 78	.matchsize      = sizeof(struct xt_mark_mtinfo1),
 79	.me             = THIS_MODULE,
 80};
 81
 82static int __init mark_mt_init(void)
 83{
 84	int ret;
 85
 86	ret = xt_register_targets(mark_tg_reg, ARRAY_SIZE(mark_tg_reg));
 87	if (ret < 0)
 88		return ret;
 89	ret = xt_register_match(&mark_mt_reg);
 90	if (ret < 0) {
 91		xt_unregister_targets(mark_tg_reg, ARRAY_SIZE(mark_tg_reg));
 92		return ret;
 93	}
 94	return 0;
 95}
 96
 97static void __exit mark_mt_exit(void)
 98{
 99	xt_unregister_match(&mark_mt_reg);
100	xt_unregister_targets(mark_tg_reg, ARRAY_SIZE(mark_tg_reg));
101}
102
103module_init(mark_mt_init);
104module_exit(mark_mt_exit);