diff options
author | Jesper Dangaard Brouer <hawk@comx.dk> | 2010-04-23 12:34:56 +0200 |
---|---|---|
committer | Patrick McHardy <kaber@trash.net> | 2010-04-23 12:34:56 +0200 |
commit | af740b2c8f4521e2c45698ee6040941a82d6349d (patch) | |
tree | ae9fb87ebbfd422b07cb8e027fbe13e9c40c403e /include/linux | |
parent | cecc74de25d2cfb08e7702cd38e3f195950f1228 (diff) | |
download | kernel_samsung_espresso10-af740b2c8f4521e2c45698ee6040941a82d6349d.zip kernel_samsung_espresso10-af740b2c8f4521e2c45698ee6040941a82d6349d.tar.gz kernel_samsung_espresso10-af740b2c8f4521e2c45698ee6040941a82d6349d.tar.bz2 |
netfilter: nf_conntrack: extend with extra stat counter
I suspect an unfortunatly series of events occuring under a DDoS
attack, in function __nf_conntrack_find() nf_contrack_core.c.
Adding a stats counter to see if the search is restarted too often.
Signed-off-by: Jesper Dangaard Brouer <hawk@comx.dk>
Signed-off-by: Patrick McHardy <kaber@trash.net>
Diffstat (limited to 'include/linux')
-rw-r--r-- | include/linux/netfilter/nf_conntrack_common.h | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/include/linux/netfilter/nf_conntrack_common.h b/include/linux/netfilter/nf_conntrack_common.h index c608677..14e6d32 100644 --- a/include/linux/netfilter/nf_conntrack_common.h +++ b/include/linux/netfilter/nf_conntrack_common.h @@ -113,6 +113,7 @@ struct ip_conntrack_stat { unsigned int expect_new; unsigned int expect_create; unsigned int expect_delete; + unsigned int search_restart; }; /* call to create an explicit dependency on nf_conntrack. */ |