netfilter: cttimeout: allow to set/get default protocol timeouts
Default timeouts are currently set via proc/sysctl interface, the typical pattern is a file name like: /proc/sys/net/netfilter/nf_conntrack_PROTOCOL_timeout_STATE This results in one entry per default protocol state timeout. This patch simplifies this by allowing to set default protocol timeouts via cttimeout netlink interface. This should allow us to get rid of the existing proc/sysctl code in the midterm. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
		
					parent
					
						
							
								180cf72f56
							
						
					
				
			
			
				commit
				
					
						91cb498e6a
					
				
			
		
					 2 changed files with 155 additions and 8 deletions
				
			
		|  | @ -6,6 +6,8 @@ enum ctnl_timeout_msg_types { | |||
| 	IPCTNL_MSG_TIMEOUT_NEW, | ||||
| 	IPCTNL_MSG_TIMEOUT_GET, | ||||
| 	IPCTNL_MSG_TIMEOUT_DELETE, | ||||
| 	IPCTNL_MSG_TIMEOUT_DEFAULT_SET, | ||||
| 	IPCTNL_MSG_TIMEOUT_DEFAULT_GET, | ||||
| 
 | ||||
| 	IPCTNL_MSG_TIMEOUT_MAX | ||||
| }; | ||||
|  |  | |||
		Loading…
	
	Add table
		Add a link
		
	
		Reference in a new issue
	
	 Pablo Neira Ayuso
				Pablo Neira Ayuso