mirror of
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
synced 2024-09-30 06:10:56 +00:00
netfilter: nf_tables: add rescheduling points during loop detection walks
[ Upstream commit 81ea010667
]
Add explicit rescheduling points during ruleset walk.
Switching to a faster algorithm is possible but this is a much
smaller change, suitable for nf tree.
Link: https://bugzilla.netfilter.org/show_bug.cgi?id=1460
Signed-off-by: Florian Westphal <fw@strlen.de>
Acked-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
This commit is contained in:
parent
a022c339af
commit
de2efb42d6
1 changed files with 6 additions and 0 deletions
|
@ -3442,6 +3442,8 @@ int nft_chain_validate(const struct nft_ctx *ctx, const struct nft_chain *chain)
|
||||||
if (err < 0)
|
if (err < 0)
|
||||||
return err;
|
return err;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
cond_resched();
|
||||||
}
|
}
|
||||||
|
|
||||||
return 0;
|
return 0;
|
||||||
|
@ -10041,9 +10043,13 @@ static int nf_tables_check_loops(const struct nft_ctx *ctx,
|
||||||
break;
|
break;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
cond_resched();
|
||||||
}
|
}
|
||||||
|
|
||||||
list_for_each_entry(set, &ctx->table->sets, list) {
|
list_for_each_entry(set, &ctx->table->sets, list) {
|
||||||
|
cond_resched();
|
||||||
|
|
||||||
if (!nft_is_active_next(ctx->net, set))
|
if (!nft_is_active_next(ctx->net, set))
|
||||||
continue;
|
continue;
|
||||||
if (!(set->flags & NFT_SET_MAP) ||
|
if (!(set->flags & NFT_SET_MAP) ||
|
||||||
|
|
Loading…
Reference in a new issue