bridge: fix forwarding of IPv6
The commit 6b1e960fdb
bridge: Reset IPCB when entering IP stack on NF_FORWARD
broke forwarding of IPV6 packets in bridge because it would
call bp_parse_ip_options with an IPV6 packet.
Reported-by: Noah Meyerhans <noahm@debian.org>
Signed-off-by: Stephen Hemminger <shemminger@vyatta.com>
Reviewed-by: Eric Dumazet <eric.dumazet@gmail.com>
Signed-off-by: David S. Miller <davem@davemloft.net>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
parent
a10e146676
commit
d8083deb4f
|
@ -737,7 +737,7 @@ static unsigned int br_nf_forward_ip(unsigned int hook, struct sk_buff *skb,
|
||||||
nf_bridge->mask |= BRNF_PKT_TYPE;
|
nf_bridge->mask |= BRNF_PKT_TYPE;
|
||||||
}
|
}
|
||||||
|
|
||||||
if (br_parse_ip_options(skb))
|
if (pf == PF_INET && br_parse_ip_options(skb))
|
||||||
return NF_DROP;
|
return NF_DROP;
|
||||||
|
|
||||||
/* The physdev module checks on this */
|
/* The physdev module checks on this */
|
||||||
|
|
Loading…
Reference in New Issue