netfilter: fix compilation when conntrack is disabled but tproxy is enabled
The IPv6 tproxy patches split IPv6 defragmentation off of conntrack, but failed to update the #ifdef stanzas guarding the defragmentation related fields and code in skbuff and conntrack related code in nf_defrag_ipv6.c. This patch adds the required #ifdefs so that IPv6 tproxy can truly be used without connection tracking. Original report: http://marc.info/?l=linux-netdev&m=129010118516341&w=2 Reported-by:Randy Dunlap <randy.dunlap@oracle.com> Acked-by:
Randy Dunlap <randy.dunlap@oracle.com> Signed-off-by:
KOVACS Krisztian <hidden@balabit.hu> Signed-off-by:
Pablo Neira Ayuso <pablo@netfilter.org>
Showing
- include/linux/skbuff.h 15 additions, 0 deletionsinclude/linux/skbuff.h
- include/net/netfilter/ipv6/nf_conntrack_ipv6.h 0 additions, 10 deletionsinclude/net/netfilter/ipv6/nf_conntrack_ipv6.h
- include/net/netfilter/ipv6/nf_defrag_ipv6.h 10 additions, 0 deletionsinclude/net/netfilter/ipv6/nf_defrag_ipv6.h
- net/core/skbuff.c 2 additions, 0 deletionsnet/core/skbuff.c
- net/ipv6/netfilter/nf_defrag_ipv6_hooks.c 7 additions, 1 deletionnet/ipv6/netfilter/nf_defrag_ipv6_hooks.c
Loading
Please register or sign in to comment