The reap functionality appears to have been accidentally disabled by
commit 74ded7257e5da5e309844d386290f24ae91950a6 to iptables.git, see:

  git://git.netfilter.org/iptables.git

and subsequently in iptables 1.4.15 and later.  This adds a patch to
restore reap functionality for recent_opts_v1.

Signed-off-by: Russell Senior <russ...@personaltelco.net>
---
 .../network/utils/iptables/patches/410-add_reap_again.patch | 13 +++++++++++++
 1 file changed, 13 insertions(+)
 create mode 100644 
package/network/utils/iptables/patches/410-add_reap_again.patch

diff --git a/package/network/utils/iptables/patches/410-add_reap_again.patch 
b/package/network/utils/iptables/patches/410-add_reap_again.patch
new file mode 100644
index 0000000..0bb40fb
--- /dev/null
+++ b/package/network/utils/iptables/patches/410-add_reap_again.patch
@@ -0,0 +1,13 @@
+Index: iptables-1.4.19.1/extensions/libxt_recent.c
+===================================================================
+--- iptables-1.4.19.1.orig/extensions/libxt_recent.c
++++ iptables-1.4.19.1/extensions/libxt_recent.c
+@@ -63,6 +63,8 @@ static const struct xt_option_entry rece
+        .excl = F_ANY_OP, .flags = XTOPT_INVERT},
+       {.name = "seconds", .id = O_SECONDS, .type = XTTYPE_UINT32,
+        .flags = XTOPT_PUT, XTOPT_POINTER(s, seconds)},
++      {.name = "reap", .id = O_REAP, .type = XTTYPE_NONE,
++       .also = F_SECONDS },
+       {.name = "hitcount", .id = O_HITCOUNT, .type = XTTYPE_UINT32,
+        .flags = XTOPT_PUT, XTOPT_POINTER(s, hit_count)},
+       {.name = "rttl", .id = O_RTTL, .type = XTTYPE_NONE,
-- 
1.8.1.2


-- 
Russell Senior, President
russ...@personaltelco.net
_______________________________________________
openwrt-devel mailing list
openwrt-devel@lists.openwrt.org
https://lists.openwrt.org/mailman/listinfo/openwrt-devel

Reply via email to