On 2020-11-26 12:03 a.m., Cong Wang wrote:
On Wed, Nov 25, 2020 at 11:11 AM Jakub Kicinski <[email protected]> wrote:
On Wed, 25 Nov 2020 12:01:23 +0800 [email protected] wrote:
From: wenxu <[email protected]>
Currently kernel tc subsystem can do conntrack in cat_ct. But when several
fragment packets go through the act_ct, function tcf_ct_handle_fragments
will defrag the packets to a big one. But the last action will redirect
mirred to a device which maybe lead the reassembly big packet over the mtu
of target device.
This patch add support for a xmit hook to mirred, that gets executed before
xmiting the packet. Then, when act_ct gets loaded, it configs that hook.
The frag xmit hook maybe reused by other modules.
Signed-off-by: wenxu <[email protected]>
LGMT. Cong, Jamal still fine by you guys?
Yes, I do not look much into detail, but overall it definitely looks good.
This is targeting net-next, so it is fine to fix anything we miss later.
Acked-by: Cong Wang <[email protected]>
Same here.
Acked-by: Jamal Hadi Salim <[email protected]>
cheers,
jamal