netfilter: nf_tables: do not compare internal table flags on updates
[ Upstream commit 4a0e7f2decbf9bd72461226f1f5f7dcc4b08f139 ] Restore skipping transaction if table update does not modify flags. Fixes: 179d9ba5559a ("netfilter: nf_tables: fix table flag updates") Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org> Signed-off-by: Sasha Levin <sashal@kernel.org>
This commit is contained in:
parent
4f92e43eb0
commit
15f8cfe252
1 changed files with 1 additions and 1 deletions
|
@ -1097,7 +1097,7 @@ static int nf_tables_updtable(struct nft_ctx *ctx)
|
|||
if (flags & ~NFT_TABLE_F_DORMANT)
|
||||
return -EINVAL;
|
||||
|
||||
if (flags == ctx->table->flags)
|
||||
if (flags == (ctx->table->flags & NFT_TABLE_F_MASK))
|
||||
return 0;
|
||||
|
||||
/* No dormant off/on/off/on games in single transaction */
|
||||
|
|
Loading…
Add table
Reference in a new issue