netfilter: nf_tables: add fib expression to the netdev family
authorPablo M. Bermudo Garay <pablombg@gmail.com>
Thu, 20 Jul 2017 23:54:38 +0000 (01:54 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Mon, 31 Jul 2017 17:01:40 +0000 (19:01 +0200)
commit6392c226037c2b90d3062126c65fc354e47156f7
treeec0ae365f53bffabd611a5907cabd4fde350f15a
parentf347ec852c7a83e1803192d2c1fce4e42e0715a5
netfilter: nf_tables: add fib expression to the netdev family

Add fib expression support for netdev family. Like inet family, netdev
delegates the actual decision to the corresponding backend, either ipv4
or ipv6.

This allows to perform very early reverse path filtering, among other
things.

You can find more information about fib expression in the f6d0cbcf09c5
("<netfilter: nf_tables: add fib expression>") commit message.

Signed-off-by: Pablo M. Bermudo Garay <pablombg@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/Kconfig
net/netfilter/Makefile
net/netfilter/nft_fib_netdev.c [new file with mode: 0644]