netfilter: nf_nat: don't bug when mapping already exists
It seems preferrable to limp along if we have a conflicting mapping, its certainly better than a BUG(). Signed-off-by: Florian Westphal <fw@strlen.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
parent
68913a018f
commit
75c2631468
|
@ -416,7 +416,9 @@ nf_nat_setup_info(struct nf_conn *ct,
|
|||
|
||||
WARN_ON(maniptype != NF_NAT_MANIP_SRC &&
|
||||
maniptype != NF_NAT_MANIP_DST);
|
||||
BUG_ON(nf_nat_initialized(ct, maniptype));
|
||||
|
||||
if (WARN_ON(nf_nat_initialized(ct, maniptype)))
|
||||
return NF_DROP;
|
||||
|
||||
/* What we've got will look like inverse of reply. Normally
|
||||
* this is what is in the conntrack, except for prior
|
||||
|
|
Loading…
Reference in New Issue