summaryrefslogtreecommitdiffstats
path: root/include
diff options
context:
space:
mode:
authorAlvaro Neira <alvaroneay@gmail.com>2014-11-26 10:21:36 +0100
committerPablo Neira Ayuso <pablo@netfilter.org>2014-11-27 12:58:05 +0100
commit68b0faa87d167ec87ba2a26be62241ad94eb449b (patch)
tree19467fee936ffdb3de713ce73ba48c38823288ca /include
parentnetfilter: conntrack: avoid zeroing timer (diff)
downloadlinux-68b0faa87d167ec87ba2a26be62241ad94eb449b.tar.xz
linux-68b0faa87d167ec87ba2a26be62241ad94eb449b.zip
netfilter: nf_tables_bridge: export nft_reject_ip*hdr_validate functions
This patch exports the functions nft_reject_iphdr_validate and nft_reject_ip6hdr_validate to use it in follow up patches. These functions check if the IPv4/IPv6 header is correct. Signed-off-by: Alvaro Neira Ayuso <alvaroneay@gmail.com> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'include')
-rw-r--r--include/net/netfilter/nf_tables_bridge.h7
1 files changed, 7 insertions, 0 deletions
diff --git a/include/net/netfilter/nf_tables_bridge.h b/include/net/netfilter/nf_tables_bridge.h
new file mode 100644
index 000000000000..511fb79f6dad
--- /dev/null
+++ b/include/net/netfilter/nf_tables_bridge.h
@@ -0,0 +1,7 @@
+#ifndef _NET_NF_TABLES_BRIDGE_H
+#define _NET_NF_TABLES_BRIDGE_H
+
+int nft_bridge_iphdr_validate(struct sk_buff *skb);
+int nft_bridge_ip6hdr_validate(struct sk_buff *skb);
+
+#endif /* _NET_NF_TABLES_BRIDGE_H */