]> git.proxmox.com Git - mirror_ubuntu-bionic-kernel.git/blame - net/bridge/netfilter/ebt_redirect.c
virtio-net: fail XDP set if guest csum is negotiated
[mirror_ubuntu-bionic-kernel.git] / net / bridge / netfilter / ebt_redirect.c
CommitLineData
1da177e4
LT
1/*
2 * ebt_redirect
3 *
4 * Authors:
5 * Bart De Schuymer <bdschuym@pandora.be>
6 *
7 * April, 2002
8 *
9 */
1da177e4
LT
10#include <linux/module.h>
11#include <net/sock.h>
12#include "../br_private.h"
18219d3f
JE
13#include <linux/netfilter.h>
14#include <linux/netfilter/x_tables.h>
15#include <linux/netfilter_bridge/ebtables.h>
16#include <linux/netfilter_bridge/ebt_redirect.h>
1da177e4 17
2d06d4a5 18static unsigned int
4b560b44 19ebt_redirect_tg(struct sk_buff *skb, const struct xt_action_param *par)
1da177e4 20{
7eb35586 21 const struct ebt_redirect_info *info = par->targinfo;
1da177e4 22
eb1197bc 23 if (!skb_make_writable(skb, 0))
1b04ab45 24 return EBT_DROP;
1da177e4 25
613dbd95 26 if (xt_hooknum(par) != NF_BR_BROUTING)
e2361cb9 27 /* rcu_read_lock()ed by nf_hook_thresh */
04091142 28 ether_addr_copy(eth_hdr(skb)->h_dest,
613dbd95 29 br_port_get_rcu(xt_in(par))->br->dev->dev_addr);
1da177e4 30 else
613dbd95 31 ether_addr_copy(eth_hdr(skb)->h_dest, xt_in(par)->dev_addr);
3db05fea 32 skb->pkt_type = PACKET_HOST;
1da177e4
LT
33 return info->target;
34}
35
135367b8 36static int ebt_redirect_tg_check(const struct xt_tgchk_param *par)
1da177e4 37{
af5d6dc2
JE
38 const struct ebt_redirect_info *info = par->targinfo;
39 unsigned int hook_mask;
1da177e4 40
1da177e4 41 if (BASE_CHAIN && info->target == EBT_RETURN)
d6b00a53 42 return -EINVAL;
af5d6dc2
JE
43
44 hook_mask = par->hook_mask & ~(1 << NF_BR_NUMHOOKS);
45 if ((strcmp(par->table, "nat") != 0 ||
46 hook_mask & ~(1 << NF_BR_PRE_ROUTING)) &&
47 (strcmp(par->table, "broute") != 0 ||
48 hook_mask & ~(1 << NF_BR_BROUTING)))
d6b00a53 49 return -EINVAL;
e15b9c50 50 if (ebt_invalid_target(info->target))
d6b00a53
JE
51 return -EINVAL;
52 return 0;
1da177e4
LT
53}
54
043ef46c
JE
55static struct xt_target ebt_redirect_tg_reg __read_mostly = {
56 .name = "redirect",
001a18d3
JE
57 .revision = 0,
58 .family = NFPROTO_BRIDGE,
f2ff525c
JE
59 .hooks = (1 << NF_BR_NUMHOOKS) | (1 << NF_BR_PRE_ROUTING) |
60 (1 << NF_BR_BROUTING),
2d06d4a5
JE
61 .target = ebt_redirect_tg,
62 .checkentry = ebt_redirect_tg_check,
fc0e3df4 63 .targetsize = sizeof(struct ebt_redirect_info),
1da177e4
LT
64 .me = THIS_MODULE,
65};
66
65b4b4e8 67static int __init ebt_redirect_init(void)
1da177e4 68{
043ef46c 69 return xt_register_target(&ebt_redirect_tg_reg);
1da177e4
LT
70}
71
65b4b4e8 72static void __exit ebt_redirect_fini(void)
1da177e4 73{
043ef46c 74 xt_unregister_target(&ebt_redirect_tg_reg);
1da177e4
LT
75}
76
65b4b4e8
AM
77module_init(ebt_redirect_init);
78module_exit(ebt_redirect_fini);
f776c4cd 79MODULE_DESCRIPTION("Ebtables: Packet redirection to localhost");
1da177e4 80MODULE_LICENSE("GPL");