diff options
author | Patrick McHardy <kaber@trash.net> | 2014-02-05 15:03:39 +0000 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2014-02-06 09:44:18 +0100 |
commit | 05513e9e33dbded8124567466a444d32173eecc6 (patch) | |
tree | 175aafe01f1fe4914577ce67c8fd32ad8e0440a0 /net/netfilter/Kconfig | |
parent | cc4723ca316742891954efa346298e7c747c0d17 (diff) | |
download | op-kernel-dev-05513e9e33dbded8124567466a444d32173eecc6.zip op-kernel-dev-05513e9e33dbded8124567466a444d32173eecc6.tar.gz |
netfilter: nf_tables: add reject module for NFPROTO_INET
Add a reject module for NFPROTO_INET. It does nothing but dispatch
to the AF-specific modules based on the hook family.
Signed-off-by: Patrick McHardy <kaber@trash.net>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'net/netfilter/Kconfig')
-rw-r--r-- | net/netfilter/Kconfig | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/net/netfilter/Kconfig b/net/netfilter/Kconfig index ed8b50e..e9410d1 100644 --- a/net/netfilter/Kconfig +++ b/net/netfilter/Kconfig @@ -520,6 +520,11 @@ config NFT_REJECT explicitly deny and notify via TCP reset/ICMP informational errors unallowed traffic. +config NFT_REJECT_INET + depends on NF_TABLES_INET + default NFT_REJECT + tristate + config NFT_COMPAT depends on NF_TABLES depends on NETFILTER_XTABLES |