netfilter: xtables: use "if" blocks in Kconfig
[deliverable/linux.git] / net / netfilter / xt_pkttype.c
CommitLineData
1da177e4
LT
1/* (C) 1999-2001 Michal Ludvig <michal@logix.cz>
2 *
3 * This program is free software; you can redistribute it and/or modify
4 * it under the terms of the GNU General Public License version 2 as
5 * published by the Free Software Foundation.
6 */
7
8#include <linux/module.h>
9#include <linux/skbuff.h>
10#include <linux/if_ether.h>
11#include <linux/if_packet.h>
28658c89
PO
12#include <linux/in.h>
13#include <linux/ip.h>
57de0abb 14#include <linux/ipv6.h>
1da177e4 15
2e4e6a17
HW
16#include <linux/netfilter/xt_pkttype.h>
17#include <linux/netfilter/x_tables.h>
1da177e4
LT
18
19MODULE_LICENSE("GPL");
20MODULE_AUTHOR("Michal Ludvig <michal@logix.cz>");
2ae15b64 21MODULE_DESCRIPTION("Xtables: link layer packet type match");
2e4e6a17
HW
22MODULE_ALIAS("ipt_pkttype");
23MODULE_ALIAS("ip6t_pkttype");
1da177e4 24
d3c5ee6d
JE
25static bool
26pkttype_mt(const struct sk_buff *skb, const struct net_device *in,
27 const struct net_device *out, const struct xt_match *match,
28 const void *matchinfo, int offset, unsigned int protoff,
29 bool *hotdrop)
1da177e4 30{
2e4e6a17 31 const struct xt_pkttype_info *info = matchinfo;
57de0abb 32 u_int8_t type;
1da177e4 33
57de0abb 34 if (skb->pkt_type != PACKET_LOOPBACK)
28658c89 35 type = skb->pkt_type;
ee999d8b 36 else if (match->family == NFPROTO_IPV4 &&
57de0abb
JE
37 ipv4_is_multicast(ip_hdr(skb)->daddr))
38 type = PACKET_MULTICAST;
ee999d8b 39 else if (match->family == NFPROTO_IPV6 &&
57de0abb
JE
40 ipv6_hdr(skb)->daddr.s6_addr[0] == 0xFF)
41 type = PACKET_MULTICAST;
42 else
43 type = PACKET_BROADCAST;
28658c89
PO
44
45 return (type == info->pkttype) ^ info->invert;
1da177e4
LT
46}
47
d3c5ee6d 48static struct xt_match pkttype_mt_reg[] __read_mostly = {
4470bbc7
PM
49 {
50 .name = "pkttype",
ee999d8b 51 .family = NFPROTO_IPV4,
d3c5ee6d 52 .match = pkttype_mt,
4470bbc7
PM
53 .matchsize = sizeof(struct xt_pkttype_info),
54 .me = THIS_MODULE,
55 },
56 {
57 .name = "pkttype",
ee999d8b 58 .family = NFPROTO_IPV6,
d3c5ee6d 59 .match = pkttype_mt,
4470bbc7
PM
60 .matchsize = sizeof(struct xt_pkttype_info),
61 .me = THIS_MODULE,
62 },
2e4e6a17
HW
63};
64
d3c5ee6d 65static int __init pkttype_mt_init(void)
1da177e4 66{
d3c5ee6d 67 return xt_register_matches(pkttype_mt_reg, ARRAY_SIZE(pkttype_mt_reg));
1da177e4
LT
68}
69
d3c5ee6d 70static void __exit pkttype_mt_exit(void)
1da177e4 71{
d3c5ee6d 72 xt_unregister_matches(pkttype_mt_reg, ARRAY_SIZE(pkttype_mt_reg));
1da177e4
LT
73}
74
d3c5ee6d
JE
75module_init(pkttype_mt_init);
76module_exit(pkttype_mt_exit);
This page took 0.406215 seconds and 5 git commands to generate.