diff options
author | Supriya Mane <sm.supriya@globaledgesoft.com> | 2021-03-09 14:28:52 +0530 |
---|---|---|
committer | Hauke Mehrtens <hauke@hauke-m.de> | 2021-03-19 01:25:26 +0100 |
commit | eccb45627ec62311d1c9cb18f02abef638a5291f (patch) | |
tree | a9f8b7265b664df4a089d68c587035c623e4649a /include | |
parent | 1c0436507156dc136d9e2668507817395434109e (diff) | |
download | upstream-eccb45627ec62311d1c9cb18f02abef638a5291f.tar.gz upstream-eccb45627ec62311d1c9cb18f02abef638a5291f.tar.bz2 upstream-eccb45627ec62311d1c9cb18f02abef638a5291f.zip |
x86/64: Iptables seems to lack support for cgroup v2
FS#3574
Adding cgroup support enables adding rules on processes
to limit resources in terms of iptable policies
Signed-off-by: Supriya Mane <sm.supriya@globaledgesoft.com>
Diffstat (limited to 'include')
-rw-r--r-- | include/netfilter.mk | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/include/netfilter.mk b/include/netfilter.mk index 60f031e9a7..45e9dadf85 100644 --- a/include/netfilter.mk +++ b/include/netfilter.mk @@ -94,6 +94,7 @@ $(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_ADDRTYPE, $(if $(NF_KMO $(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_OWNER, $(P_XT)xt_owner)) $(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_PKTTYPE, $(P_XT)xt_pkttype)) $(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_QUOTA, $(P_XT)xt_quota)) +$(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_CGROUP, $(P_XT)xt_cgroup)) #$(eval $(call nf_add,IPT_EXTRA,CONFIG_IP_NF_TARGET_ROUTE, $(P_V4)ipt_ROUTE)) |