[BRIDGE-NF]: Fix iptables redirect on bridge interface
Here's a slightly altered patch, originally from Mark Glines who diagnosed and fixed the problem. Signed-off-by: Bart De Schuymer <bdschuym@pandora.be> Signed-off-by: David S. Miller <davem@davemloft.net>
This commit is contained in:
committed by
David S. Miller
parent
de9daad90e
commit
1c011bed5f
@@ -214,9 +214,11 @@ static int br_nf_pre_routing_finish(struct sk_buff *skb)
|
|||||||
.tos = RT_TOS(iph->tos)} }, .proto = 0};
|
.tos = RT_TOS(iph->tos)} }, .proto = 0};
|
||||||
|
|
||||||
if (!ip_route_output_key(&rt, &fl)) {
|
if (!ip_route_output_key(&rt, &fl)) {
|
||||||
/* Bridged-and-DNAT'ed traffic doesn't
|
/* - Bridged-and-DNAT'ed traffic doesn't
|
||||||
* require ip_forwarding. */
|
* require ip_forwarding.
|
||||||
if (((struct dst_entry *)rt)->dev == dev) {
|
* - Deal with redirected traffic. */
|
||||||
|
if (((struct dst_entry *)rt)->dev == dev ||
|
||||||
|
rt->rt_type == RTN_LOCAL) {
|
||||||
skb->dst = (struct dst_entry *)rt;
|
skb->dst = (struct dst_entry *)rt;
|
||||||
goto bridged_dnat;
|
goto bridged_dnat;
|
||||||
}
|
}
|
||||||
|
Reference in New Issue
Block a user