]> www.infradead.org Git - users/dwmw2/linux.git/commit
netfilter: conntrack: make sysctls per-namespace again
authorFlorian Westphal <fw@strlen.de>
Tue, 27 Aug 2019 11:24:52 +0000 (13:24 +0200)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Sat, 21 Sep 2019 05:18:37 +0000 (07:18 +0200)
commitf5c6d0245f975d23740f2913f222d75a47b823a0
treedee2b570793c5c243ddd92d452aa5feaef35e089
parent6612f6edf1f10bed542b205cc8e41fa7ef6dff88
netfilter: conntrack: make sysctls per-namespace again

[ Upstream commit 478553fd1b6f819390b64a2e13ac756c4d1a2836 ]

When I merged the extension sysctl tables with the main one I forgot to
reset them on netns creation.  They currently read/write init_net settings.

Fixes: d912dec12428 ("netfilter: conntrack: merge acct and helper sysctl table with main one")
Fixes: cb2833ed0044 ("netfilter: conntrack: merge ecache and timestamp sysctl tables with main one")
Reported-by: Shmulik Ladkani <shmulik.ladkani@gmail.com>
Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
net/netfilter/nf_conntrack_standalone.c