/net/ipv4/netfilter/ |
H A D | nft_masq_ipv4.c | 25 unsigned int verdict; local 30 verdict = nf_nat_masquerade_ipv4(pkt->skb, pkt->ops->hooknum, 33 data[NFT_REG_VERDICT].verdict = verdict;
|
H A D | arp_tables.c | 256 unsigned int verdict = NF_DROP; local 307 v = ((struct xt_standard_target *)t)->verdict; 311 verdict = (unsigned int)(-v) - 1; 337 verdict = t->u.kernel.target->target(skb, &acpar); 342 if (verdict == XT_CONTINUE) 354 return verdict; 404 t->verdict < 0 && unconditional(&e->arp)) || 410 t->verdict < -NF_MAX_VERDICT - 1) { 412 "negative verdict (%i)\n", 413 t->verdict); 548 unsigned int verdict; local [all...] |
H A D | ip_tables.c | 235 t->verdict < 0 && 297 /* Initializing verdict to NF_DROP keeps gcc happy. */ 298 unsigned int verdict = NF_DROP; local 380 v = ((struct xt_standard_target *)t)->verdict; 384 verdict = (unsigned int)(-v) - 1; 403 verdict = NF_DROP; 418 verdict = t->u.kernel.target->target(skb, &acpar); 421 if (verdict == XT_CONTINUE) 438 else return verdict; 478 t->verdict < 710 unsigned int verdict; local [all...] |
/net/ipv6/netfilter/ |
H A D | nft_masq_ipv6.c | 26 unsigned int verdict; local 31 verdict = nf_nat_masquerade_ipv6(pkt->skb, &range, pkt->out); 33 data[NFT_REG_VERDICT].verdict = verdict;
|
H A D | ip6_tables.c | 261 t->verdict < 0 && 322 /* Initializing verdict to NF_DROP keeps gcc happy. */ 323 unsigned int verdict = NF_DROP; local 400 v = ((struct xt_standard_target *)t)->verdict; 404 verdict = (unsigned int)(-v) - 1; 417 verdict = NF_DROP; 430 verdict = t->u.kernel.target->target(skb, &acpar); 431 if (verdict == XT_CONTINUE) 448 else return verdict; 488 t->verdict < 721 unsigned int verdict; local [all...] |
/net/bridge/netfilter/ |
H A D | ebt_arp.c | 68 uint8_t verdict, i; local 77 verdict = 0; 79 verdict |= (mp[i] ^ info->smaddr[i]) & 81 if (FWINV(verdict != 0, EBT_ARP_SRC_MAC)) 91 verdict = 0; 93 verdict |= (mp[i] ^ info->dmaddr[i]) & 95 if (FWINV(verdict != 0, EBT_ARP_DST_MAC))
|
H A D | ebt_stp.c | 49 int verdict, i; local 62 verdict = 0; 64 verdict |= (stpc->root[2+i] ^ c->root_addr[i]) & 66 if (FWINV(verdict != 0, EBT_STP_ROOTADDR)) 82 verdict = 0; 84 verdict |= (stpc->sender[2+i] ^ c->sender_addr[i]) & 86 if (FWINV(verdict != 0, EBT_STP_SENDERADDR))
|
H A D | ebtables.c | 95 /* watchers don't give a verdict */ 134 int verdict, i; local 161 verdict = 0; 163 verdict |= (h->h_source[i] ^ e->sourcemac[i]) & 165 if (FWINV2(verdict != 0, EBT_ISOURCE) ) 169 verdict = 0; 171 verdict |= (h->h_dest[i] ^ e->destmac[i]) & 173 if (FWINV2(verdict != 0, EBT_IDEST) ) 194 int verdict, sp = 0; local 245 verdict 767 int i, chain_nr = -1, pos = 0, nentries = chain->nentries, verdict; local [all...] |
/net/netfilter/ipvs/ |
H A D | ip_vs_proto_ah_esp.c | 111 int *verdict, struct ip_vs_conn **cpp, 117 *verdict = NF_ACCEPT; 110 ah_esp_conn_schedule(int af, struct sk_buff *skb, struct ip_vs_proto_data *pd, int *verdict, struct ip_vs_conn **cpp, struct ip_vs_iphdr *iph) argument
|
H A D | ip_vs_proto_udp.c | 33 int *verdict, struct ip_vs_conn **cpp, 43 *verdict = NF_DROP; 59 *verdict = NF_DROP; 70 *verdict = ip_vs_leave(svc, skb, pd, iph); 72 *verdict = NF_DROP; 32 udp_conn_schedule(int af, struct sk_buff *skb, struct ip_vs_proto_data *pd, int *verdict, struct ip_vs_conn **cpp, struct ip_vs_iphdr *iph) argument
|
H A D | ip_vs_proto_sctp.c | 13 int *verdict, struct ip_vs_conn **cpp, 24 *verdict = NF_DROP; 31 *verdict = NF_DROP; 49 *verdict = NF_DROP; 59 *verdict = ip_vs_leave(svc, skb, pd, iph); 61 *verdict = NF_DROP; 12 sctp_conn_schedule(int af, struct sk_buff *skb, struct ip_vs_proto_data *pd, int *verdict, struct ip_vs_conn **cpp, struct ip_vs_iphdr *iph) argument
|
H A D | ip_vs_proto_tcp.c | 36 int *verdict, struct ip_vs_conn **cpp, 46 *verdict = NF_DROP; 64 *verdict = NF_DROP; 75 *verdict = ip_vs_leave(svc, skb, pd, iph); 77 *verdict = NF_DROP; 35 tcp_conn_schedule(int af, struct sk_buff *skb, struct ip_vs_proto_data *pd, int *verdict, struct ip_vs_conn **cpp, struct ip_vs_iphdr *iph) argument
|
H A D | ip_vs_core.c | 796 unsigned int verdict = NF_DROP; local 835 verdict = NF_ACCEPT; 840 return verdict; 1145 int verdict = ip_vs_out_icmp_v6(skb, &related, local 1149 return verdict; 1155 int verdict = ip_vs_out_icmp(skb, &related, hooknum); local 1158 return verdict; 1302 unsigned int offset, offset2, ihl, verdict; local 1384 verdict = NF_DROP; 1447 verdict 1475 unsigned int offs_ciph, writable, verdict; local 1619 int verdict = ip_vs_in_icmp_v6(skb, &related, hooknum, local 1629 int verdict = ip_vs_in_icmp(skb, &related, hooknum); local [all...] |
/net/netfilter/ |
H A D | nf_queue.c | 169 void nf_reinject(struct nf_queue_entry *entry, unsigned int verdict) argument 181 if (verdict == NF_REPEAT) { 183 verdict = NF_ACCEPT; 186 if (verdict == NF_ACCEPT) { 189 verdict = NF_DROP; 192 if (verdict == NF_ACCEPT) { 194 verdict = nf_iterate(&nf_hooks[entry->pf][entry->hook], 200 switch (verdict & NF_VERDICT_MASK) { 210 verdict >> NF_VERDICT_QBITS); 215 (verdict [all...] |
H A D | core.c | 129 unsigned int verdict; local 142 verdict = (*elemp)->hook(*elemp, skb, indev, outdev, okfn); 143 if (verdict != NF_ACCEPT) { 145 if (unlikely((verdict & NF_VERDICT_MASK) 152 if (verdict != NF_REPEAT) 153 return verdict; 170 unsigned int verdict; local 178 verdict = nf_iterate(&nf_hooks[pf][hook], skb, hook, indev, 180 if (verdict == NF_ACCEPT || verdict [all...] |
H A D | nfnetlink_queue_core.c | 881 unsigned int verdict; local 887 verdict = ntohl(vhdr->verdict) & NF_VERDICT_MASK; 888 if (verdict > NF_MAX_VERDICT || verdict == NF_STOLEN) 905 unsigned int verdict, maxid; local 923 verdict = ntohl(vhdr->verdict); 943 nf_reinject(entry, verdict); 958 unsigned int verdict; local [all...] |