X-Git-Url: http://git.archive.openwrt.org/?p=project%2Ffirewall3.git;a=blobdiff_plain;f=forwards.c;h=81e734ec6d0464a2bf9c193f838aa8886acb7841;hp=e653356054d2a7616cd8810c4e367a6166f4c2cc;hb=ff9d5e13c9150c62fe698e4bc5541e6f92b241d0;hpb=1ccbcc2642e5cfeed375cf56130ab6ecaad35052 diff --git a/forwards.c b/forwards.c index e653356..81e734e 100644 --- a/forwards.c +++ b/forwards.c @@ -19,12 +19,16 @@ #include "forwards.h" -static struct fw3_option forward_opts[] = { +const struct fw3_option fw3_forward_opts[] = { + FW3_OPT("enabled", bool, forward, enabled), + FW3_OPT("name", string, forward, name), FW3_OPT("family", family, forward, family), FW3_OPT("src", device, forward, src), FW3_OPT("dest", device, forward, dest), + + { } }; @@ -51,7 +55,15 @@ fw3_load_forwards(struct fw3_state *state, struct uci_package *p) memset(forward, 0, sizeof(*forward)); - fw3_parse_options(forward, forward_opts, ARRAY_SIZE(forward_opts), s); + forward->enabled = true; + + fw3_parse_options(forward, fw3_forward_opts, s); + + if (!forward->enabled) + { + fw3_free_forward(forward); + continue; + } if (forward->src.invert || forward->dest.invert) { @@ -60,23 +72,25 @@ fw3_load_forwards(struct fw3_state *state, struct uci_package *p) continue; } else if (forward->src.set && !forward->src.any && - !(forward->_src = fw3_lookup_zone(state, forward->src.name))) + !(forward->_src = fw3_lookup_zone(state, forward->src.name, false))) { warn_elem(e, "refers to not existing zone '%s'", forward->src.name); fw3_free_forward(forward); continue; } else if (forward->dest.set && !forward->dest.any && - !(forward->_dest = fw3_lookup_zone(state, forward->dest.name))) + !(forward->_dest = fw3_lookup_zone(state, forward->dest.name, false))) { warn_elem(e, "refers to not existing zone '%s'", forward->dest.name); fw3_free_forward(forward); continue; } + /* NB: forward family... */ if (forward->_dest) { - setbit(forward->_dest->dst_flags, FW3_TARGET_ACCEPT); + setbit(forward->_dest->flags[0], FW3_FLAG_ACCEPT); + setbit(forward->_dest->flags[1], FW3_FLAG_ACCEPT); if (forward->_src && (forward->_src->conntrack || forward->_dest->conntrack)) @@ -117,18 +131,20 @@ print_forward(enum fw3_table table, enum fw3_family family, if (table != FW3_TABLE_FILTER) return; - if (!fw3_is_family(forward, family) || - (forward->_src && !fw3_is_family(forward->_src, family)) || - (forward->_dest && !fw3_is_family(forward->_dest, family))) + if (!fw3_is_family(forward, family)) return; s = forward->_src ? forward->_src->name : "*"; d = forward->_dest ? forward->_dest->name : "*"; - if (forward->name) - info(" * Forward '%s'", forward->name); - else - info(" * Forward %s->%s", s, d); + info(" * Forward '%s' -> '%s'", s, d); + + if (!fw3_is_family(forward->_src, family) || + !fw3_is_family(forward->_dest, family)) + { + info(" ! Skipping due to different family of zone"); + return; + } print_chain(forward); fw3_format_comment("forwarding ", s, "->", d);