mirror of
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
synced 2025-08-16 22:13:31 +00:00

Some specified options rely on NETFILTER_XTABLES_LEGACY to be enabled. IP_NF_TARGET_TTL for instance depends on IP_NF_MANGLE which in turn depends on IP_NF_IPTABLES_LEGACY -> NETFILTER_XTABLES_LEGACY. Enable relevant iptables config options explicitly, this is needed to avoid breakage when symbols related to iptables-legacy will depend on NETFILTER_LEGACY resp. IP_TABLES_LEGACY. This also means that the classic tables (Kernel modules) will not be enabled by default, so enable them too. Signed-off-by: Florian Westphal <fw@strlen.de> [bigeasy: Split out the config bits from the main patch] Signed-off-by: Sebastian Andrzej Siewior <bigeasy@linutronix.de> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
37 lines
869 B
Plaintext
37 lines
869 B
Plaintext
CONFIG_KALLSYMS=y
|
|
CONFIG_MPTCP=y
|
|
CONFIG_IPV6=y
|
|
CONFIG_MPTCP_IPV6=y
|
|
CONFIG_INET_DIAG=m
|
|
CONFIG_INET_MPTCP_DIAG=m
|
|
CONFIG_VETH=y
|
|
CONFIG_NET_SCH_NETEM=m
|
|
CONFIG_SYN_COOKIES=y
|
|
CONFIG_NETFILTER=y
|
|
CONFIG_NETFILTER_ADVANCED=y
|
|
CONFIG_NETFILTER_NETLINK=m
|
|
CONFIG_NF_TABLES=m
|
|
CONFIG_NFT_COMPAT=m
|
|
CONFIG_NETFILTER_XTABLES=m
|
|
CONFIG_NETFILTER_XTABLES_LEGACY=y
|
|
CONFIG_NETFILTER_XT_MATCH_BPF=m
|
|
CONFIG_NETFILTER_XT_MATCH_LENGTH=m
|
|
CONFIG_NETFILTER_XT_MATCH_STATISTIC=m
|
|
CONFIG_NETFILTER_XT_TARGET_MARK=m
|
|
CONFIG_NF_TABLES_INET=y
|
|
CONFIG_NFT_TPROXY=m
|
|
CONFIG_NFT_SOCKET=m
|
|
CONFIG_IP_ADVANCED_ROUTER=y
|
|
CONFIG_IP_MULTIPLE_TABLES=y
|
|
CONFIG_IP_NF_FILTER=m
|
|
CONFIG_IP_NF_MANGLE=m
|
|
CONFIG_IP_NF_TARGET_REJECT=m
|
|
CONFIG_IP6_NF_TARGET_REJECT=m
|
|
CONFIG_IPV6_MULTIPLE_TABLES=y
|
|
CONFIG_IP6_NF_FILTER=m
|
|
CONFIG_NET_ACT_CSUM=m
|
|
CONFIG_NET_ACT_PEDIT=m
|
|
CONFIG_NET_CLS_ACT=y
|
|
CONFIG_NET_CLS_FW=m
|
|
CONFIG_NET_SCH_INGRESS=m
|