1. 11 Feb, 2011 1 commit
    • Stefan Berger's avatar
      netfilter: xt_connlimit: connlimit-above early loop termination · 44bd4de9
      Stefan Berger authored
      The patch below introduces an early termination of the loop that is
      counting matches. It terminates once the counter has exceeded the
      threshold provided by the user. There's no point in continuing the loop
      afterwards and looking at other entries.
      
      It plays together with the following code further below:
      
      return (connections > info->limit) ^ info->inverse;
      
      where connections is the result of the counted connection, which in turn
      is the matches variable in the loop. So once
      
              -> matches = info->limit + 1
      alias   -> matches > info->limit
      alias   -> matches > threshold
      
      we can terminate the loop.
      Signed-off-by: default avatarStefan Berger <stefanb@linux.vnet.ibm.com>
      Signed-off-by: default avatarPatrick McHardy <kaber@trash.net>
      44bd4de9
  2. 10 Feb, 2011 1 commit
  3. 07 Feb, 2011 1 commit
  4. 03 Feb, 2011 1 commit
  5. 02 Feb, 2011 4 commits
  6. 01 Feb, 2011 22 commits
  7. 28 Jan, 2011 1 commit
  8. 27 Jan, 2011 1 commit
  9. 26 Jan, 2011 2 commits
  10. 25 Jan, 2011 2 commits
  11. 22 Jan, 2011 2 commits
  12. 20 Jan, 2011 2 commits