Skip to content
  1. Feb 15, 2011
  2. Feb 14, 2011
  3. Feb 12, 2011
    • Stefan Berger's avatar
      netfilter: xt_connlimit: connlimit-above early loop termination · 44bd4de9
      Stefan Berger authored
      
      
      The patch below introduces an early termination of the loop that is
      counting matches. It terminates once the counter has exceeded the
      threshold provided by the user. There's no point in continuing the loop
      afterwards and looking at other entries.
      
      It plays together with the following code further below:
      
      return (connections > info->limit) ^ info->inverse;
      
      where connections is the result of the counted connection, which in turn
      is the matches variable in the loop. So once
      
              -> matches = info->limit + 1
      alias   -> matches > info->limit
      alias   -> matches > threshold
      
      we can terminate the loop.
      
      Signed-off-by: default avatarStefan Berger <stefanb@linux.vnet.ibm.com>
      Signed-off-by: default avatarPatrick McHardy <kaber@trash.net>
      44bd4de9
  4. Feb 10, 2011
  5. Feb 07, 2011
  6. Feb 03, 2011
  7. Feb 02, 2011
  8. Feb 01, 2011
  9. Jan 29, 2011
  10. Jan 27, 2011
  11. Jan 26, 2011
  12. Jan 25, 2011
  13. Jan 22, 2011