lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <ZFJ8KRKYFNxYXJ/0@corigine.com> Date: Wed, 3 May 2023 17:22:17 +0200 From: Simon Horman <simon.horman@...igine.com> To: Michal Swiatkowski <michal.swiatkowski@...ux.intel.com> Cc: intel-wired-lan@...ts.osuosl.org, netdev@...r.kernel.org, wojciech.drewek@...el.com, marcin.szycik@...el.com, Sujai Buvaneswaran <Sujai.Buvaneswaran@...el.com> Subject: Re: [PATCH net v1] ice: block LAN in case of VF to VF offload On Thu, Apr 27, 2023 at 06:57:11AM +0200, Michal Swiatkowski wrote: > VF to VF traffic shouldn't go outside. To enforce it, set only the loopback > enable bit in case of all ingress type rules added via the tc tool. > > Fixes: 0d08a441fb1a ("ice: ndo_setup_tc implementation for PF") > Reported-by: Sujai Buvaneswaran <Sujai.Buvaneswaran@...el.com> > Signed-off-by: Michal Swiatkowski <michal.swiatkowski@...ux.intel.com> Reviewed-by: Simon Horman <simon.horman@...igine.com>
Powered by blists - more mailing lists