summaryrefslogtreecommitdiffstats
path: root/sys/netinet/sctp_input.c
diff options
context:
space:
mode:
authorLuiz Otavio O Souza <luiz@netgate.com>2015-09-15 14:56:06 -0500
committerLuiz Otavio O Souza <luiz@netgate.com>2015-10-20 11:59:00 -0500
commit82ee4ca3e0bb2f1da94a38331871a29f2760aea8 (patch)
treef496de9a4cb7ec420985bf19d128ff7ef82d11bb /sys/netinet/sctp_input.c
parent41f40988afa849dd84147add3a2430fe8d0ba788 (diff)
downloadFreeBSD-src-82ee4ca3e0bb2f1da94a38331871a29f2760aea8.zip
FreeBSD-src-82ee4ca3e0bb2f1da94a38331871a29f2760aea8.tar.gz
MFC r275716:
Do not count security policy violation twice. ipsec*_in_reject() do this by their own. Obtained from: Yandex LLC Sponsored by: Yandex LLC TAG: IPSEC-HEAD Issue: #4841
Diffstat (limited to 'sys/netinet/sctp_input.c')
-rw-r--r--sys/netinet/sctp_input.c2
1 files changed, 0 insertions, 2 deletions
diff --git a/sys/netinet/sctp_input.c b/sys/netinet/sctp_input.c
index 099742f..0986293 100644
--- a/sys/netinet/sctp_input.c
+++ b/sys/netinet/sctp_input.c
@@ -5738,7 +5738,6 @@ sctp_common_input_processing(struct mbuf **mm, int iphlen, int offset, int lengt
#ifdef INET
case AF_INET:
if (ipsec4_in_reject(m, &inp->ip_inp.inp)) {
- IPSECSTAT_INC(ips_in_polvio);
SCTP_STAT_INCR(sctps_hdrops);
goto out;
}
@@ -5747,7 +5746,6 @@ sctp_common_input_processing(struct mbuf **mm, int iphlen, int offset, int lengt
#ifdef INET6
case AF_INET6:
if (ipsec6_in_reject(m, &inp->ip_inp.inp)) {
- IPSEC6STAT_INC(ips_in_polvio);
SCTP_STAT_INCR(sctps_hdrops);
goto out;
}
OpenPOWER on IntegriCloud