diff options
author | 2024-01-19 13:11:32 +0100 | |
---|---|---|
committer | 2024-01-24 20:01:16 +0100 | |
commit | c9d9eb9c53d37cdebbad56b91e40baf42d5a97aa (patch) | |
tree | 589e2e69c942f3c4110682995a8748ffddf46171 /tools/perf/scripts/python/export-to-postgresql.py | |
parent | netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain (diff) | |
download | wireguard-linux-c9d9eb9c53d37cdebbad56b91e40baf42d5a97aa.tar.xz wireguard-linux-c9d9eb9c53d37cdebbad56b91e40baf42d5a97aa.zip |
netfilter: nft_limit: reject configurations that cause integer overflow
Reject bogus configs where internal token counter wraps around.
This only occurs with very very large requests, such as 17gbyte/s.
Its better to reject this rather than having incorrect ratelimit.
Fixes: d2168e849ebf ("netfilter: nft_limit: add per-byte limiting")
Signed-off-by: Florian Westphal <fw@strlen.de>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'tools/perf/scripts/python/export-to-postgresql.py')
0 files changed, 0 insertions, 0 deletions