From df7742c8aad85c15da77f3586af30d16df1392ad Mon Sep 17 00:00:00 2001 From: Jo-Philipp Wich Date: Thu, 15 Jul 2010 22:01:48 +0000 Subject: [package] firewall: - notrack support was broken in multiple ways, fix it - also consider a zone conntracked if any redirect references it (#7196) git-svn-id: svn://svn.openwrt.org/openwrt/trunk@22215 3c298f89-4303-0410-b956-a3cf2f4a3e73 --- package/firewall/files/lib/core_redirect.sh | 3 +++ 1 file changed, 3 insertions(+) (limited to 'package/firewall/files/lib/core_redirect.sh') diff --git a/package/firewall/files/lib/core_redirect.sh b/package/firewall/files/lib/core_redirect.sh index 87f584e37b..b51f79390a 100644 --- a/package/firewall/files/lib/core_redirect.sh +++ b/package/firewall/files/lib/core_redirect.sh @@ -30,6 +30,9 @@ fw_load_redirect() { fw_die "redirect ${redirect_name}: needs src and dest_ip" } + list_contains FW_CONNTRACK_ZONES $redirect_src || \ + append FW_CONNTRACK_ZONES $redirect_src + local mode=$(fw_get_family_mode ${redirect_family:-x} $redirect_src I) local nat_dest_port=$redirect_dest_port -- cgit v1.2.3