commit | e2f387d2df0ece6d4418bb09bef7802cfaf7142d | [log] [tgz] |
---|---|---|
author | Florian Westphal <fw@strlen.de> | Fri Aug 25 02:59:41 2017 +0200 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Mon Aug 28 17:53:56 2017 +0200 |
tree | 6e1023331ae5942fd03e626524e608de0d03f522 | |
parent | d3ad2c17b4047747bcec074814c08b00795afc85 [diff] |
netfilter: conntrack: don't log "invalid" icmpv6 connections When enabling logging for invalid connections we currently also log most icmpv6 types, which we don't track intentionally (e.g. neigh discovery). "invalid" should really mean "invalid", i.e. short header or bad checksum. We don't do any logging for icmp(v4) either, its just useless noise. Signed-off-by: Florian Westphal <fw@strlen.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>