netfilter: nft_dynset: allow dynamic updates of non-anonymous set
authorPablo Neira Ayuso <pablo@netfilter.org>
Wed, 15 Aug 2018 13:37:23 +0000 (15:37 +0200)
committerPablo Neira Ayuso <pablo@netfilter.org>
Thu, 16 Aug 2018 17:37:11 +0000 (19:37 +0200)
This check is superfluous since it breaks valid configurations, remove it.

Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/nft_dynset.c

index 81184c2..6e91a37 100644 (file)
@@ -187,8 +187,6 @@ static int nft_dynset_init(const struct nft_ctx *ctx,
        if (tb[NFTA_DYNSET_EXPR] != NULL) {
                if (!(set->flags & NFT_SET_EVAL))
                        return -EINVAL;
-               if (!nft_set_is_anonymous(set))
-                       return -EOPNOTSUPP;
 
                priv->expr = nft_expr_init(ctx, tb[NFTA_DYNSET_EXPR]);
                if (IS_ERR(priv->expr))