netfilter: Remove NOTRACK/RAW dependency on NETFILTER_ADVANCED.
Distributions are using this in their default scripts, so don't hide them behind the advanced setting. Reported-by: Linus Torvalds <torvalds@linux-foundation.org> Signed-off-by: David S. Miller <davem@davemloft.net>
This commit is contained in:
@@ -325,7 +325,6 @@ config IP_NF_TARGET_TTL
|
|||||||
# raw + specific targets
|
# raw + specific targets
|
||||||
config IP_NF_RAW
|
config IP_NF_RAW
|
||||||
tristate 'raw table support (required for NOTRACK/TRACE)'
|
tristate 'raw table support (required for NOTRACK/TRACE)'
|
||||||
depends on NETFILTER_ADVANCED
|
|
||||||
help
|
help
|
||||||
This option adds a `raw' table to iptables. This table is the very
|
This option adds a `raw' table to iptables. This table is the very
|
||||||
first in the netfilter framework and hooks in at the PREROUTING
|
first in the netfilter framework and hooks in at the PREROUTING
|
||||||
|
@@ -186,7 +186,6 @@ config IP6_NF_MANGLE
|
|||||||
|
|
||||||
config IP6_NF_RAW
|
config IP6_NF_RAW
|
||||||
tristate 'raw table support (required for TRACE)'
|
tristate 'raw table support (required for TRACE)'
|
||||||
depends on NETFILTER_ADVANCED
|
|
||||||
help
|
help
|
||||||
This option adds a `raw' table to ip6tables. This table is the very
|
This option adds a `raw' table to ip6tables. This table is the very
|
||||||
first in the netfilter framework and hooks in at the PREROUTING
|
first in the netfilter framework and hooks in at the PREROUTING
|
||||||
|
@@ -542,7 +542,6 @@ config NETFILTER_XT_TARGET_NOTRACK
|
|||||||
tristate '"NOTRACK" target support'
|
tristate '"NOTRACK" target support'
|
||||||
depends on IP_NF_RAW || IP6_NF_RAW
|
depends on IP_NF_RAW || IP6_NF_RAW
|
||||||
depends on NF_CONNTRACK
|
depends on NF_CONNTRACK
|
||||||
depends on NETFILTER_ADVANCED
|
|
||||||
help
|
help
|
||||||
The NOTRACK target allows a select rule to specify
|
The NOTRACK target allows a select rule to specify
|
||||||
which packets *not* to enter the conntrack/NAT
|
which packets *not* to enter the conntrack/NAT
|
||||||
|
Reference in New Issue
Block a user