[ovs-dev,v2,04/12] datapath: add seqadj extension when NAT is used.
  • Backport upstream conntrack related patches
Yi-Hung Wei Oct. 15, 2019, 5:27 p.m. UTC
From: Flavio Leitner <fbl@sysclose.org>

    openvswitch: add seqadj extension when NAT is used.

    When the conntrack is initialized, there is no helper attached
    yet so the nat info initialization (nf_nat_setup_info) skips
    adding the seqadj ext.

    A helper is attached later when the conntrack is not confirmed
    but is going to be committed. In this case, if NAT is needed then
    adds the seqadj ext as well.

Signed-off-by: Yi-Hung Wei <yihung.wei@gmail.com>
Reviewed-by: Yifeng Sun <pkusunyifeng@gmail.com>
 datapath/conntrack.c | 6 ++++++
 1 file changed, 6 insertions(+)


diff --git a/datapath/conntrack.c b/datapath/conntrack.c
index 291d4f4723d9..1b345a03e704 100644
--- a/datapath/conntrack.c
+++ b/datapath/conntrack.c
@@ -1063,6 +1063,12 @@  static int __ovs_ct_lookup(struct net *net, struct sw_flow_key *key,
 			if (err)
 				return err;
+			/* helper installed, add seqadj if NAT is required */
+			if (info->nat && !nfct_seqadj(ct)) {
+				if (!nfct_seqadj_ext_add(ct))
+					return -EINVAL;
+			}
 		/* Call the helper only if: