commit | 68cecd598f55f58a1ae2132cdfb0b5e0a52cae1f | [log] [tgz] |
---|---|---|
author | Phil Oester <kernel@linuxace.com> | Thu Jun 20 08:53:36 2013 -0400 |
committer | Pablo Neira Ayuso <pablo@netfilter.org> | Fri Jul 26 16:36:20 2013 +0200 |
tree | 631e2578c867e398b0d939b26727c4056277205d | |
parent | c18f2ce7f61c7e7ae3bd207ef6337a1be0c7aff3 [diff] |
iptables: iptables-xml: Fix various parsing bugs There are two bugs in iptables-xml do_rule_part parsing corrected by this patch: 1) Ignore "-A <chain>" instead of just "-A" 2) When checking to see if we need a <match> tag, inversion needs to be taken into account This closes netfilter bugzilla #679. Signed-off-by: Phil Oester <kernel@linuxace.com> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>