lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Fri, 6 Nov 2020 06:24:19 -0300 From: Marcelo Ricardo Leitner <marcelo.leitner@...il.com> To: wenxu@...oud.cn Cc: kuba@...nel.org, dcaratti@...hat.com, netdev@...r.kernel.org Subject: Re: [PATCH v4 net-next 2/2] net/sched: act_frag: add implict packet fragment support. On Fri, Nov 06, 2020 at 05:14:16PM +0800, wenxu@...oud.cn wrote: > From: wenxu <wenxu@...oud.cn> > > Currently kernel tc subsystem can do conntrack in act_ct. But when several > fragment packets go through the act_ct, function tcf_ct_handle_fragments > will defrag the packets to a big one. But the last action will redirect > mirred to a device which maybe lead the reassembly big packet over the mtu > of target device. > > This patch add support for a xmit hook to mirred, that gets executed before > xmiting the packet. Then, when act_ct gets loaded, it configs that hook. > The frag xmit hook maybe reused by other modules. > > Signed-off-by: wenxu <wenxu@...oud.cn> Acked-by: Marcelo Ricardo Leitner <marcelo.leitner@...il.com> Thanks wenxu.
Powered by blists - more mailing lists