netdev
[Top] [All Lists]

Re: [netfilter-core] [NETFILTER] Apply IPsec to ipt_REJECT packets

To: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Subject: Re: [netfilter-core] [NETFILTER] Apply IPsec to ipt_REJECT packets
From: "David S. Miller" <davem@xxxxxxxxxxxxx>
Date: Wed, 24 Nov 2004 00:32:11 -0800
Cc: kaber@xxxxxxxxx, netdev@xxxxxxxxxxx, coreteam@xxxxxxxxxxxxx
In-reply-to: <20041124062747.GA13522@gondor.apana.org.au>
References: <20041123084225.GA3514@gondor.apana.org.au> <41A37EC0.8010901@trash.net> <20041123211630.GA9805@gondor.apana.org.au> <41A3AF41.4010700@trash.net> <20041123221900.GA10099@gondor.apana.org.au> <41A3E9D6.9060904@trash.net> <20041124062747.GA13522@gondor.apana.org.au>
Sender: netdev-bounce@xxxxxxxxxxx
On Wed, 24 Nov 2004 17:27:47 +1100
Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> wrote:

> On Wed, Nov 24, 2004 at 02:54:30AM +0100, Patrick McHardy wrote:
> >
> > >   if (rt->u.dst.error) {
> > >@@ -82,6 +88,15 @@
> > >           rt = NULL;
> > >
> > ^ you should return here so xfrm_lookup isn't called without a dst_entry 
> > below.
> 
> Good point.  Fixed in the following patch.
> 
> Signed-off-by: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
> 
> Thanks for all your help, Patrick.

Applied for 2.6.10, thanks everyone.

<Prev in Thread] Current Thread [Next in Thread>