netfilter: flowtable: populate addr_type mask
nf_flow_rule_match() sets control.addr_type in key, so needs to also set
the corresponding mask. An exact match is wanted, so mask is all ones.
Fixes: c29f74e0df
("netfilter: nf_flow_table: hardware offload support")
Signed-off-by: Edward Cree <ecree@solarflare.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
Родитель
c921ffe853
Коммит
15ff197237
|
@ -87,6 +87,7 @@ static int nf_flow_rule_match(struct nf_flow_match *match,
|
|||
default:
|
||||
return -EOPNOTSUPP;
|
||||
}
|
||||
mask->control.addr_type = 0xffff;
|
||||
match->dissector.used_keys |= BIT(key->control.addr_type);
|
||||
mask->basic.n_proto = 0xffff;
|
||||
|
||||
|
|
Загрузка…
Ссылка в новой задаче