aboutsummaryrefslogtreecommitdiffstats
path: root/include
diff options
context:
space:
mode:
authorSupriya Mane <sm.supriya@globaledgesoft.com>2021-03-09 14:28:52 +0530
committerHauke Mehrtens <hauke@hauke-m.de>2021-03-19 01:25:26 +0100
commiteccb45627ec62311d1c9cb18f02abef638a5291f (patch)
treea9f8b7265b664df4a089d68c587035c623e4649a /include
parent1c0436507156dc136d9e2668507817395434109e (diff)
downloadupstream-eccb45627ec62311d1c9cb18f02abef638a5291f.tar.gz
upstream-eccb45627ec62311d1c9cb18f02abef638a5291f.tar.bz2
upstream-eccb45627ec62311d1c9cb18f02abef638a5291f.zip
x86/64: Iptables seems to lack support for cgroup v2
FS#3574 Adding cgroup support enables adding rules on processes to limit resources in terms of iptable policies Signed-off-by: Supriya Mane <sm.supriya@globaledgesoft.com>
Diffstat (limited to 'include')
-rw-r--r--include/netfilter.mk1
1 files changed, 1 insertions, 0 deletions
diff --git a/include/netfilter.mk b/include/netfilter.mk
index 60f031e9a7..45e9dadf85 100644
--- a/include/netfilter.mk
+++ b/include/netfilter.mk
@@ -94,6 +94,7 @@ $(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_ADDRTYPE, $(if $(NF_KMO
$(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_OWNER, $(P_XT)xt_owner))
$(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_PKTTYPE, $(P_XT)xt_pkttype))
$(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_QUOTA, $(P_XT)xt_quota))
+$(eval $(call nf_add,IPT_EXTRA,CONFIG_NETFILTER_XT_MATCH_CGROUP, $(P_XT)xt_cgroup))
#$(eval $(call nf_add,IPT_EXTRA,CONFIG_IP_NF_TARGET_ROUTE, $(P_V4)ipt_ROUTE))