bridge: add per bridge device controls for invoking iptables
authorPatrick McHardy <kaber@trash.net>
Fri, 2 Jul 2010 07:32:57 +0000 (09:32 +0200)
committerPatrick McHardy <kaber@trash.net>
Fri, 2 Jul 2010 07:32:57 +0000 (09:32 +0200)
commit4df53d8bab65cf2c18daebd51a5a4847e03f1943
treef776c088d9d525672eac2e95ef1d183e52d88837
parent7eb9282cd0efac08b8377cbd5037ba297c77e3f7
bridge: add per bridge device controls for invoking iptables

Support more fine grained control of bridge netfilter iptables invocation
by adding seperate brnf_call_*tables parameters for each device using the
sysfs interface. Packets are passed to layer 3 netfilter when either the
global parameter or the per bridge parameter is enabled.

Acked-by: Stephen Hemminger <shemminger@vyatta.com>
Acked-by: David S. Miller <davem@davemloft.net>
Signed-off-by: Patrick McHardy <kaber@trash.net>
net/bridge/br_netfilter.c
net/bridge/br_private.h
net/bridge/br_sysfs_br.c