netfilter: ipset: Collapse same condition body to a single one
authorJozsef Kadlecsik <kadlec@blackhole.kfki.hu>
Mon, 2 Nov 2015 19:27:58 +0000 (20:27 +0100)
committerJozsef Kadlecsik <kadlec@blackhole.kfki.hu>
Thu, 10 Nov 2016 12:28:48 +0000 (13:28 +0100)
The set full case (with net_ratelimit()-ed pr_warn()) is already
handled, simply jump there.

Signed-off-by: Jozsef Kadlecsik <kadlec@blackhole.kfki.hu>
net/netfilter/ipset/ip_set_hash_gen.h

index c600f6d9f15eaf09143798698e51faf0efa50ed3..1c9b84e53dcc295db3ac4ddcf8b0744b430710ee 100644 (file)
@@ -719,14 +719,8 @@ mtype_add(struct ip_set *set, void *value, const struct ip_set_ext *ext,
        key = HKEY(value, h->initval, t->htable_bits);
        n = __ipset_dereference_protected(hbucket(t, key), 1);
        if (!n) {
-               if (forceadd) {
-                       if (net_ratelimit())
-                               pr_warn("Set %s is full, maxelem %u reached\n",
-                                       set->name, h->maxelem);
-                       return -IPSET_ERR_HASH_FULL;
-               } else if (set->elements >= h->maxelem) {
+               if (forceadd || set->elements >= h->maxelem)
                        goto set_full;
-               }
                old = NULL;
                n = kzalloc(sizeof(*n) + AHASH_INIT_SIZE * set->dsize,
                            GFP_ATOMIC);