[RFC V2 PATCH 24/25] net/netpolicy: limit the total record number

2016-08-04 Thread kan . liang
From: Kan Liang NET policy can not fulfill users request without limit, because of the security consideration and device limitation. For security consideration, the attacker may fake millions of per task/socket request to crash the system. For device limitation, the flow director rules number is

[RFC V2 PATCH 24/25] net/netpolicy: limit the total record number

2016-08-04 Thread kan . liang
From: Kan Liang NET policy can not fulfill users request without limit, because of the security consideration and device limitation. For security consideration, the attacker may fake millions of per task/socket request to crash the system. For device limitation, the flow director rules number is