Re: patch net-restore-ip-source-validation.patch added to 2.6.32-stable tree

From: Stefan Lippers-Hollmann
Date: Thu Feb 04 2010 - 13:33:01 EST


Hi

On Thursday 04 February 2010, jamal wrote:
> On Thu, 2010-02-04 at 18:50 +0100, Stefan Lippers-Hollmann wrote:
> > sysctl table check failed
>
> Can you look at your patched source include/linux/sysctl.h
> and see whether you see the following lines:
> ----
> NET_IPV4_CONF_ARP_ACCEPT=21,
> NET_IPV4_CONF_ARP_NOTIFY=22,
> NET_IPV4_CONF_ACCEPT_LOCAL=23,
> NET_IPV4_CONF_SRC_VMARK=24,
> __NET_IPV4_CONF_MAX
> ---
>
> I have a feeling you are missing NET_IPV4_CONF_ACCEPT_LOCAL

Yes, you're 100% right - such a hunk is missing from queue-2.6.32 [1]

http://git.kernel.org/?p=linux/kernel/git/stable/stable-queue.git;a=blob;f=queue-2.6.32/net-restore-ip-source-validation.patch;h=8cc634adad59c2f67626f853e0fcce5ca8f1d579;hb=HEAD

and from 2.6.32.8-rc1 [2]

$ wget -qO- kernel.org/pub/linux/kernel/v2.6/stable-review/patch-2.6.32.8-rc1.gz | zgrep NET_IPV4_CONF_ACCEPT_LOCAL
$

Regards
Stefan Lippers-Hollmann

[1] git://git.kernel.org/pub/scm/linux/kernel/git/stable/stable-queue.git
[2] [46/74] net: restore ip source validation, Message-Id: <20100204171514.263483751@xxxxxxxxxx>
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/