]> git.kernelconcepts.de Git - karo-tx-linux.git/blob - net/ipv6/netfilter/ip6table_raw.c
netfilter: xtables: prepare for on-demand hook register
[karo-tx-linux.git] / net / ipv6 / netfilter / ip6table_raw.c
1 /*
2  * IPv6 raw table, a port of the IPv4 raw table to IPv6
3  *
4  * Copyright (C) 2003 Jozsef Kadlecsik <kadlec@blackhole.kfki.hu>
5  */
6 #include <linux/module.h>
7 #include <linux/netfilter_ipv6/ip6_tables.h>
8 #include <linux/slab.h>
9
10 #define RAW_VALID_HOOKS ((1 << NF_INET_PRE_ROUTING) | (1 << NF_INET_LOCAL_OUT))
11
12 static const struct xt_table packet_raw = {
13         .name = "raw",
14         .valid_hooks = RAW_VALID_HOOKS,
15         .me = THIS_MODULE,
16         .af = NFPROTO_IPV6,
17         .priority = NF_IP6_PRI_RAW,
18 };
19
20 /* The work comes in here from netfilter.c. */
21 static unsigned int
22 ip6table_raw_hook(void *priv, struct sk_buff *skb,
23                   const struct nf_hook_state *state)
24 {
25         return ip6t_do_table(skb, state, state->net->ipv6.ip6table_raw);
26 }
27
28 static struct nf_hook_ops *rawtable_ops __read_mostly;
29
30 static int __net_init ip6table_raw_net_init(struct net *net)
31 {
32         struct ip6t_replace *repl;
33         int ret;
34
35         repl = ip6t_alloc_initial_table(&packet_raw);
36         if (repl == NULL)
37                 return -ENOMEM;
38         ret = ip6t_register_table(net, &packet_raw, repl, rawtable_ops,
39                                   &net->ipv6.ip6table_raw);
40         kfree(repl);
41         return ret;
42 }
43
44 static void __net_exit ip6table_raw_net_exit(struct net *net)
45 {
46         ip6t_unregister_table(net, net->ipv6.ip6table_raw, rawtable_ops);
47 }
48
49 static struct pernet_operations ip6table_raw_net_ops = {
50         .init = ip6table_raw_net_init,
51         .exit = ip6table_raw_net_exit,
52 };
53
54 static int __init ip6table_raw_init(void)
55 {
56         int ret;
57
58         ret = register_pernet_subsys(&ip6table_raw_net_ops);
59         if (ret < 0)
60                 return ret;
61
62         /* Register hooks */
63         rawtable_ops = xt_hook_link(&packet_raw, ip6table_raw_hook);
64         if (IS_ERR(rawtable_ops)) {
65                 ret = PTR_ERR(rawtable_ops);
66                 goto cleanup_table;
67         }
68
69         return ret;
70
71  cleanup_table:
72         unregister_pernet_subsys(&ip6table_raw_net_ops);
73         return ret;
74 }
75
76 static void __exit ip6table_raw_fini(void)
77 {
78         xt_hook_unlink(&packet_raw, rawtable_ops);
79         unregister_pernet_subsys(&ip6table_raw_net_ops);
80 }
81
82 module_init(ip6table_raw_init);
83 module_exit(ip6table_raw_fini);
84 MODULE_LICENSE("GPL");