X-Git-Url: http://git.rohieb.name/openwrt.git/blobdiff_plain/afc90574b4badb77ea9cf1be7393249482e89035..9c0ae271fee1a6f7c9af9690bf228ebc90ad327e:/target/linux/generic-2.6/patches-2.6.25/171-netfilter_tarpit.patch diff --git a/target/linux/generic-2.6/patches-2.6.25/171-netfilter_tarpit.patch b/target/linux/generic-2.6/patches-2.6.25/171-netfilter_tarpit.patch index 7add5f5b9..d99150fa0 100644 --- a/target/linux/generic-2.6/patches-2.6.25/171-netfilter_tarpit.patch +++ b/target/linux/generic-2.6/patches-2.6.25/171-netfilter_tarpit.patch @@ -1,7 +1,5 @@ -Index: linux-2.6.25.4/net/netfilter/Kconfig -=================================================================== ---- linux-2.6.25.4.orig/net/netfilter/Kconfig -+++ linux-2.6.25.4/net/netfilter/Kconfig +--- a/net/netfilter/Kconfig ++++ b/net/netfilter/Kconfig @@ -437,6 +437,23 @@ config NETFILTER_XT_TARGET_CONNSECMARK To compile it as a module, choose M here. If unsure, say N. @@ -26,10 +24,8 @@ Index: linux-2.6.25.4/net/netfilter/Kconfig config NETFILTER_XT_TARGET_TCPMSS tristate '"TCPMSS" target support' depends on NETFILTER_XTABLES && (IPV6 || IPV6=n) -Index: linux-2.6.25.4/net/netfilter/Makefile -=================================================================== ---- linux-2.6.25.4.orig/net/netfilter/Makefile -+++ linux-2.6.25.4/net/netfilter/Makefile +--- a/net/netfilter/Makefile ++++ b/net/netfilter/Makefile @@ -47,6 +47,7 @@ obj-$(CONFIG_NETFILTER_XT_TARGET_NFQUEUE obj-$(CONFIG_NETFILTER_XT_TARGET_NOTRACK) += xt_NOTRACK.o obj-$(CONFIG_NETFILTER_XT_TARGET_RATEEST) += xt_RATEEST.o @@ -38,10 +34,8 @@ Index: linux-2.6.25.4/net/netfilter/Makefile obj-$(CONFIG_NETFILTER_XT_TARGET_TCPMSS) += xt_TCPMSS.o obj-$(CONFIG_NETFILTER_XT_TARGET_TCPOPTSTRIP) += xt_TCPOPTSTRIP.o obj-$(CONFIG_NETFILTER_XT_TARGET_TRACE) += xt_TRACE.o -Index: linux-2.6.25.4/net/netfilter/xt_TARPIT.c -=================================================================== --- /dev/null -+++ linux-2.6.25.4/net/netfilter/xt_TARPIT.c ++++ b/net/netfilter/xt_TARPIT.c @@ -0,0 +1,279 @@ +/* + * Kernel module to capture and hold incoming TCP connections using