netfilter: nfnetlink_queue: add security context information
authorRoman Kubiak <r.kubiak@samsung.com>
Fri, 12 Jun 2015 10:32:57 +0000 (12:32 +0200)
committerSeung-Woo Kim <sw0312.kim@samsung.com>
Wed, 14 Dec 2016 04:49:46 +0000 (13:49 +0900)
commit70c565e359cbf095be4612678de18b20f1dee596
treed0ba181a438f998034dc391983a8e637e89163e7
parent4f9bcded03f9bab17e496a6d70045e45c5518186
netfilter: nfnetlink_queue: add security context information

This patch adds an additional attribute when sending
packet information via netlink in netfilter_queue module.
It will send additional security context data, so that
userspace applications can verify this context against
their own security databases.

Signed-off-by: Roman Kubiak <r.kubiak@samsung.com>
Acked-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
[backport from mainline for security nether service]
Signed-off-by: Seung-Woo Kim <sw0312.kim@samsung.com>
include/uapi/linux/netfilter/nfnetlink_queue.h
net/netfilter/nfnetlink_queue_core.c