summaryrefslogtreecommitdiffstats
path: root/net
diff options
context:
space:
mode:
authorPablo Neira Ayuso <pablo@netfilter.org>2014-11-07 18:48:33 +0100
committerPablo Neira Ayuso <pablo@netfilter.org>2014-11-12 12:06:24 +0100
commit2daf1b4d18e3add229d1a3b5c554331d99ac6c7e (patch)
treed46f08b7fabcf045983bee6c5750f2bc2e447c30 /net
parentipvs: Keep skb->sk when allocating headroom on tunnel xmit (diff)
downloadlinux-2daf1b4d18e3add229d1a3b5c554331d99ac6c7e.tar.xz
linux-2daf1b4d18e3add229d1a3b5c554331d99ac6c7e.zip
netfilter: nft_compat: use current net namespace
Instead of init_net when using xtables over nftables compat. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'net')
-rw-r--r--net/netfilter/nft_compat.c4
1 files changed, 2 insertions, 2 deletions
diff --git a/net/netfilter/nft_compat.c b/net/netfilter/nft_compat.c
index 9d6d6f60a80f..b92f129beade 100644
--- a/net/netfilter/nft_compat.c
+++ b/net/netfilter/nft_compat.c
@@ -117,7 +117,7 @@ nft_target_set_tgchk_param(struct xt_tgchk_param *par,
struct xt_target *target, void *info,
union nft_entry *entry, u8 proto, bool inv)
{
- par->net = &init_net;
+ par->net = ctx->net;
par->table = ctx->table->name;
switch (ctx->afi->family) {
case AF_INET:
@@ -324,7 +324,7 @@ nft_match_set_mtchk_param(struct xt_mtchk_param *par, const struct nft_ctx *ctx,
struct xt_match *match, void *info,
union nft_entry *entry, u8 proto, bool inv)
{
- par->net = &init_net;
+ par->net = ctx->net;
par->table = ctx->table->name;
switch (ctx->afi->family) {
case AF_INET: