netfilter_ipv6.h revision 491c1660fced08e2d1a08c101c63af04250275d0
1#ifndef __LINUX_IP6_NETFILTER_H
2#define __LINUX_IP6_NETFILTER_H
3
4/* IPv6-specific defines for netfilter.
5 * (C)1998 Rusty Russell -- This code is GPL.
6 * (C)1999 David Jeffery
7 *   this header was blatantly ripped from netfilter_ipv4.h
8 *   it's amazing what adding a bunch of 6s can do =8^)
9 */
10
11#include <linux/netfilter.h>
12
13/* only for userspace compatibility */
14/* IP Cache bits. */
15/* Src IP address. */
16#define NFC_IP6_SRC              0x0001
17/* Dest IP address. */
18#define NFC_IP6_DST              0x0002
19/* Input device. */
20#define NFC_IP6_IF_IN            0x0004
21/* Output device. */
22#define NFC_IP6_IF_OUT           0x0008
23/* TOS. */
24#define NFC_IP6_TOS              0x0010
25/* Protocol. */
26#define NFC_IP6_PROTO            0x0020
27/* IP options. */
28#define NFC_IP6_OPTIONS          0x0040
29/* Frag & flags. */
30#define NFC_IP6_FRAG             0x0080
31
32
33/* Per-protocol information: only matters if proto match. */
34/* TCP flags. */
35#define NFC_IP6_TCPFLAGS         0x0100
36/* Source port. */
37#define NFC_IP6_SRC_PT           0x0200
38/* Dest port. */
39#define NFC_IP6_DST_PT           0x0400
40/* Something else about the proto */
41#define NFC_IP6_PROTO_UNKNOWN    0x2000
42
43/* IP6 Hooks */
44/* After promisc drops, checksum checks. */
45#define NF_IP6_PRE_ROUTING	0
46/* If the packet is destined for this box. */
47#define NF_IP6_LOCAL_IN		1
48/* If the packet is destined for another interface. */
49#define NF_IP6_FORWARD		2
50/* Packets coming from a local process. */
51#define NF_IP6_LOCAL_OUT		3
52/* Packets about to hit the wire. */
53#define NF_IP6_POST_ROUTING	4
54#define NF_IP6_NUMHOOKS		5
55
56
57enum nf_ip6_hook_priorities {
58	NF_IP6_PRI_FIRST = INT_MIN,
59	NF_IP6_PRI_CONNTRACK_DEFRAG = -400,
60	NF_IP6_PRI_RAW = -300,
61	NF_IP6_PRI_SELINUX_FIRST = -225,
62	NF_IP6_PRI_CONNTRACK = -200,
63	NF_IP6_PRI_MANGLE = -150,
64	NF_IP6_PRI_NAT_DST = -100,
65	NF_IP6_PRI_FILTER = 0,
66	NF_IP6_PRI_SECURITY = 50,
67	NF_IP6_PRI_NAT_SRC = 100,
68	NF_IP6_PRI_SELINUX_LAST = 225,
69	NF_IP6_PRI_LAST = INT_MAX,
70};
71
72
73#endif /*__LINUX_IP6_NETFILTER_H*/
74