1 /* This is a module which is used for setting the NFMARK field of an skb. */
3 /* (C) 1999-2001 Marc Boucher <marc@mbsi.ca>
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License version 2 as
7 * published by the Free Software Foundation.
10 #include <linux/module.h>
11 #include <linux/skbuff.h>
13 #include <net/checksum.h>
15 #include <linux/netfilter_ipv4/ip_tables.h>
16 #include <linux/netfilter_ipv4/ipt_MARK.h>
18 MODULE_LICENSE("GPL");
19 MODULE_AUTHOR("Marc Boucher <marc@mbsi.ca>");
20 MODULE_DESCRIPTION("iptables MARK modification module");
23 target(struct sk_buff **pskb,
24 const struct net_device *in,
25 const struct net_device *out,
30 const struct ipt_mark_target_info *markinfo = targinfo;
32 if((*pskb)->nfmark != markinfo->mark) {
33 (*pskb)->nfmark = markinfo->mark;
34 (*pskb)->nfcache |= NFC_ALTERED;
40 checkentry(const char *tablename,
41 const struct ipt_entry *e,
43 unsigned int targinfosize,
44 unsigned int hook_mask)
46 if (targinfosize != IPT_ALIGN(sizeof(struct ipt_mark_target_info))) {
47 printk(KERN_WARNING "MARK: targinfosize %u != %Zu\n",
49 IPT_ALIGN(sizeof(struct ipt_mark_target_info)));
53 if (strcmp(tablename, "mangle") != 0) {
54 printk(KERN_WARNING "MARK: can only be called from \"mangle\" table, not \"%s\"\n", tablename);
61 static struct ipt_target ipt_mark_reg = {
64 .checkentry = checkentry,
68 static int __init init(void)
70 return ipt_register_target(&ipt_mark_reg);
73 static void __exit fini(void)
75 ipt_unregister_target(&ipt_mark_reg);