diff options
| author | Lorenzo Colitti <lorenzo@google.com> | 2017-09-25 14:17:38 +0900 |
|---|---|---|
| committer | Lorenzo Colitti <lorenzo@google.com> | 2017-09-26 11:38:21 +0900 |
| commit | 3093f5676227bd84cc61051d035a9e8dfcfa15c1 (patch) | |
| tree | 7079f9410853da6d594c1fd66eb6111ace9df89d /server/InterfaceController.cpp | |
| parent | b5d19e9ca694af30226c83583005a583d441203e (diff) | |
Don't require permissions for high-priority oif rules.
The intent of the high-priority oif rules added in ag/644462 was
to ensure that the kernel can send packets and forward packets to
a given interface by specifying only the oif. However, if a
network requires permissions, the high-priority oif rules we
create require those permission bits in the firewall mark, which
means the kernel cannot use them.
Therefore, remove the permissions check.
Test: builds
Test: netd_{unit,integration}_test pass
Change-Id: I73d7eb349c4c20d0d5efe05219a89cff5015a330
Diffstat (limited to 'server/InterfaceController.cpp')
0 files changed, 0 insertions, 0 deletions
