summaryrefslogtreecommitdiffstats
path: root/security
diff options
context:
space:
mode:
authorNicolas Dichtel2014-04-11 15:51:19 +0200
committerDavid S. Miller2014-04-12 23:03:11 +0200
commit8d89dcdf80d88007647945a753821a06eb6cc5a5 (patch)
treef48369e48fdf6aec5d1916537e6f08574e0526d0 /security
parentgre: don't allow to add the same tunnel twice (diff)
downloadkernel-qcow2-linux-8d89dcdf80d88007647945a753821a06eb6cc5a5.tar.gz
kernel-qcow2-linux-8d89dcdf80d88007647945a753821a06eb6cc5a5.tar.xz
kernel-qcow2-linux-8d89dcdf80d88007647945a753821a06eb6cc5a5.zip
vti: don't allow to add the same tunnel twice
Before the patch, it was possible to add two times the same tunnel: ip l a vti1 type vti remote 10.16.0.121 local 10.16.0.249 key 41 ip l a vti2 type vti remote 10.16.0.121 local 10.16.0.249 key 41 It was possible, because ip_tunnel_newlink() calls ip_tunnel_find() with the argument dev->type, which was set only later (when calling ndo_init handler in register_netdevice()). Let's set this type in the setup handler, which is called before newlink handler. Introduced by commit b9959fd3b0fa ("vti: switch to new ip tunnel code"). CC: Cong Wang <amwang@redhat.com> CC: Steffen Klassert <steffen.klassert@secunet.com> Signed-off-by: Nicolas Dichtel <nicolas.dichtel@6wind.com> Signed-off-by: David S. Miller <davem@davemloft.net>
Diffstat (limited to 'security')
0 files changed, 0 insertions, 0 deletions