| /tools/testing/selftests/net/netfilter/ |
| A D | conntrack_resize.sh | 23 if ! sysctl -q net.netfilter.nf_conntrack_max >/dev/null;then 28 init_net_max=$(sysctl -n net.netfilter.nf_conntrack_max) || exit 1 29 ct_buckets=$(sysctl -n net.netfilter.nf_conntrack_buckets) || exit 1 37 sysctl -q net.netfilter.nf_conntrack_max=$init_net_max 38 sysctl -q net.netfilter.nf_conntrack_buckets=$ct_buckets 95 sysctl -q net.netfilter.nf_conntrack_buckets=$RANDOM 438 sysctl -q net.netfilter.nf_conntrack_max=100 445 sysctl -q net.netfilter.nf_conntrack_max=$init_net_max 468 init_net_max=$(sysctl -n net.netfilter.nf_conntrack_max) 472 sysctl -q net.netfilter.nf_conntrack_max="262000" [all …]
|
| A D | nft_zones_many.sh | 51 ip netns exec "$ns1" sysctl -q net.netfilter.nf_conntrack_udp_timeout=3600
|
| A D | nft_synproxy.sh | 36 ip netns exec "$nsr" sysctl -q net.netfilter.nf_conntrack_tcp_loose=0
|
| A D | conntrack_tcp_unreplied.sh | 101 ip netns exec "$ns2" sysctl -q net.netfilter.nf_conntrack_tcp_timeout_syn_sent=10
|
| A D | nft_flowtable.sh | 26 log_netns=$(sysctl -n net.netfilter.nf_log_all_netns) 41 [ "$log_netns" -eq 0 ] && sysctl -q net.netfilter.nf_log_all_netns="$log_netns" 46 sysctl -q net.netfilter.nf_log_all_netns=1
|
| A D | nft_fib.sh | 17 log_netns=$(sysctl -n net.netfilter.nf_log_all_netns) 23 [ "$log_netns" -eq 0 ] && sysctl -q net.netfilter.nf_log_all_netns=$log_netns 37 sysctl -q net.netfilter.nf_log_all_netns=1
|
| /tools/testing/selftests/bpf/prog_tests/ |
| A D | netfilter_link_attach.c | 60 ASSERT_EQ(info.netfilter.pf, nf_expected.pf, "info nf protocol family"); in verify_netfilter_link_info() 61 ASSERT_EQ(info.netfilter.hooknum, nf_expected.hooknum, "info nf hooknum"); in verify_netfilter_link_info() 62 ASSERT_EQ(info.netfilter.priority, nf_expected.priority, "info nf priority"); in verify_netfilter_link_info() 63 ASSERT_EQ(info.netfilter.flags, nf_expected.flags, "info nf flags"); in verify_netfilter_link_info()
|
| /tools/testing/selftests/net/ |
| A D | ip_defrag.sh | 25 …ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_high_thresh=9000000 >/dev/null… 26 …ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_low_thresh=7000000 >/dev/null… 27 ip netns exec "${NETNS}" sysctl -w net.netfilter.nf_conntrack_frag6_timeout=1 >/dev/null 2>&1
|
| A D | srv6_end_dx4_netfilter_test.sh | 203 ip netns exec ${nsname} sysctl -wq net.netfilter.nf_hooks_lwtunnel=1
|
| A D | srv6_end_dx6_netfilter_test.sh | 202 ip netns exec ${nsname} sysctl -wq net.netfilter.nf_hooks_lwtunnel=1
|
| /tools/bpf/bpftool/ |
| A D | net.c | 806 delta = nfa->netfilter.pf - nfb->netfilter.pf; in netfilter_link_compar() 810 delta = nfa->netfilter.hooknum - nfb->netfilter.hooknum; in netfilter_link_compar() 814 if (nfa->netfilter.priority < nfb->netfilter.priority) in netfilter_link_compar() 816 if (nfa->netfilter.priority > nfb->netfilter.priority) in netfilter_link_compar() 819 return nfa->netfilter.flags - nfb->netfilter.flags; in netfilter_link_compar()
|
| A D | link.c | 226 info->netfilter.pf); in netfilter_dump_json() 228 info->netfilter.hooknum); in netfilter_dump_json() 230 info->netfilter.priority); in netfilter_dump_json() 232 info->netfilter.flags); in netfilter_dump_json() 681 unsigned int hook = info->netfilter.hooknum; in netfilter_dump_plain() 682 unsigned int pf = info->netfilter.pf; in netfilter_dump_plain() 712 printf(" prio %d", info->netfilter.priority); in netfilter_dump_plain() 714 if (info->netfilter.flags) in netfilter_dump_plain() 715 printf(" flags 0x%x", info->netfilter.flags); in netfilter_dump_plain()
|
| /tools/testing/selftests/net/netfilter/packetdrill/ |
| A D | common.sh | 7 sysctl -q net.netfilter.nf_conntrack_log_invalid=6
|
| /tools/lib/bpf/ |
| A D | bpf.c | 801 attr.link_create.netfilter.pf = OPTS_GET(opts, netfilter.pf, 0); in bpf_link_create() 802 attr.link_create.netfilter.hooknum = OPTS_GET(opts, netfilter.hooknum, 0); in bpf_link_create() 803 attr.link_create.netfilter.priority = OPTS_GET(opts, netfilter.priority, 0); in bpf_link_create() 804 attr.link_create.netfilter.flags = OPTS_GET(opts, netfilter.flags, 0); in bpf_link_create() 805 if (!OPTS_ZEROED(opts, netfilter)) in bpf_link_create()
|
| A D | bpf.h | 430 } netfilter; member
|
| A D | libbpf.c | 13059 lopts.netfilter.pf = OPTS_GET(opts, pf, 0); in bpf_program__attach_netfilter() 13060 lopts.netfilter.hooknum = OPTS_GET(opts, hooknum, 0); in bpf_program__attach_netfilter() 13061 lopts.netfilter.priority = OPTS_GET(opts, priority, 0); in bpf_program__attach_netfilter() 13062 lopts.netfilter.flags = OPTS_GET(opts, flags, 0); in bpf_program__attach_netfilter()
|
| /tools/bpf/bpftool/Documentation/ |
| A D | bpftool-net.rst | 40 classifier/action attachments, flow_dissector as well as netfilter 54 flow_dissector and finally netfilter programs. Both xdp programs and
|
| /tools/testing/selftests/ |
| A D | Makefile | 74 TARGETS += net/netfilter
|
| /tools/include/uapi/linux/ |
| A D | bpf.h | 1791 } netfilter; member 6741 } netfilter; member
|
| /tools/testing/selftests/wireguard/qemu/ |
| A D | Makefile | 43 $(eval $(call tar_download,IPTABLES,iptables,1.8.7,.tar.bz2,https://www.netfilter.org/projects/ipta…
|
| /tools/testing/selftests/wireguard/ |
| A D | netns.sh | 335 [[ -e /proc/sys/net/netfilter/nf_conntrack_udp_timeout ]] || modprobe nf_conntrack
|