Skip to content

Commit 7eddbcb

Browse files
committed
firewall: Rephrase mangle/FORWARD note
1 parent 1a6d2af commit 7eddbcb

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

docs/ops/network/firewall.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -68,7 +68,7 @@ POSTROUTING / `NF_INET_POST_ROUTING`
6868

6969
本文在介绍 iptables 的表时绘制了 [Netfilter 视角的阶段图](#netfilter-kernel-view-tables),能够更直观地反映出此「相似性」。
7070

71-
[^iptable_mangle_hook]: 此图仍然有一处错误:Reroute check 发生在 OUTPUT 阶段后,而 FORWARD 阶段是不经过 reroute check。细节可见 [`iptable_mangle_hook`](https://elixir.bootlin.com/linux/v6.17.8/source/net/ipv4/netfilter/iptable_mangle.c#L78) 函数。
71+
[^iptable_mangle_hook]: 此图的 2021 年的版本仍然有一处错误:Reroute check 发生在 OUTPUT 阶段内部,而 FORWARD 阶段后不经过 reroute check。细节可见 [`iptable_mangle_hook`](https://elixir.bootlin.com/linux/v6.17.8/source/net/ipv4/netfilter/iptable_mangle.c#L78) 函数。
7272

7373
??? info "Reroute check 的细节"
7474

0 commit comments

Comments
 (0)