netfilter: revert a2361c8735
This patch reverts a2361c8735e07322023aedc36e4938b35af31eb0: "[PATCH] netfilter: xt_conntrack: warn about use in raw table" Florian Wesphal says: "... when the packet was sent from the local machine the skb already has ->nfct attached, and -m conntrack seems to do the right thing." Acked-by: Jan Engelhardt <jengelh@medozas.de> Reported-by: Florian Wesphal <fw@strlen.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
parent
1ed2f73d90
commit
93bbce1ad0
|
@ -272,11 +272,6 @@ static int conntrack_mt_check(const struct xt_mtchk_param *par)
|
|||
{
|
||||
int ret;
|
||||
|
||||
if (strcmp(par->table, "raw") == 0) {
|
||||
pr_info("state is undetermined at the time of raw table\n");
|
||||
return -EINVAL;
|
||||
}
|
||||
|
||||
ret = nf_ct_l3proto_try_module_get(par->family);
|
||||
if (ret < 0)
|
||||
pr_info("cannot load conntrack support for proto=%u\n",
|
||||
|
|
Loading…
Reference in New Issue