projects
/
openwrt
/
svn-archive
/
archive.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
|
inline
| side by side (parent:
7e9817f
)
[backfire] generic-2.4: rebase netfilter patches after RTSP removal
author
Jo-Philipp Wich
<jow@openwrt.org>
Sun, 19 Feb 2012 17:01:15 +0000
(17:01 +0000)
committer
Jo-Philipp Wich
<jow@openwrt.org>
Sun, 19 Feb 2012 17:01:15 +0000
(17:01 +0000)
SVN-Revision: 30646
target/linux/generic-2.4/patches/615-netfilter_nat_mms.patch
patch
|
blob
|
history
target/linux/generic-2.4/patches/616-netfilter_imq.patch
patch
|
blob
|
history
target/linux/generic-2.4/patches/620-netfilter_iprange.patch
patch
|
blob
|
history
target/linux/generic-2.4/patches/621-netfilter_random.patch
patch
|
blob
|
history
target/linux/generic-2.4/patches/628-netfilter_raw.patch
patch
|
blob
|
history
target/linux/generic-2.4/patches/630-netfilter_comment.patch
patch
|
blob
|
history
diff --git
a/target/linux/generic-2.4/patches/615-netfilter_nat_mms.patch
b/target/linux/generic-2.4/patches/615-netfilter_nat_mms.patch
index 511a337d467d6af74dc0ed187733ef86961bb763..a5ddef497dbe657cb130e2ebf1c728b50556f55d 100644
(file)
--- a/
target/linux/generic-2.4/patches/615-netfilter_nat_mms.patch
+++ b/
target/linux/generic-2.4/patches/615-netfilter_nat_mms.patch
@@
-1,15
+1,15
@@
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -15,6 +15,7 @@ if [ "$CONFIG_IP_NF_CONNTRACK" != "n" ];
+@@ -14,6 +14,7 @@ if [ "$CONFIG_IP_NF_CONNTRACK" != "n" ];
+ dep_tristate ' Connection tracking flow accounting' CONFIG_IP_NF_CT_ACCT $CONFIG_IP_NF_CONNTRACK
dep_tristate ' Connection byte counter support' CONFIG_IP_NF_MATCH_CONNBYTES $CONFIG_IP_NF_CT_ACCT $CONFIG_IP_NF_CONNTRACK $CONFIG_IP_NF_IPTABLES
dep_tristate ' H.323 (netmeeting) support' CONFIG_IP_NF_H323 $CONFIG_IP_NF_CONNTRACK
dep_tristate ' Connection byte counter support' CONFIG_IP_NF_MATCH_CONNBYTES $CONFIG_IP_NF_CT_ACCT $CONFIG_IP_NF_CONNTRACK $CONFIG_IP_NF_IPTABLES
dep_tristate ' H.323 (netmeeting) support' CONFIG_IP_NF_H323 $CONFIG_IP_NF_CONNTRACK
- dep_tristate ' RTSP protocol support' CONFIG_IP_NF_RTSP $CONFIG_IP_NF_CONNTRACK
+ dep_tristate ' MMS protocol support' CONFIG_IP_NF_MMS $CONFIG_IP_NF_CONNTRACK
fi
if [ "$CONFIG_EXPERIMENTAL" = "y" ]; then
+ dep_tristate ' MMS protocol support' CONFIG_IP_NF_MMS $CONFIG_IP_NF_CONNTRACK
fi
if [ "$CONFIG_EXPERIMENTAL" = "y" ]; then
-@@ -
96,6 +97
,13 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
- define_tristate CONFIG_IP_NF_NAT_
RTSP
$CONFIG_IP_NF_NAT
+@@ -
88,6 +89
,13 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
+ define_tristate CONFIG_IP_NF_NAT_
H323
$CONFIG_IP_NF_NAT
fi
fi
+ if [ "$CONFIG_IP_NF_MMS" = "m" ]; then
fi
fi
+ if [ "$CONFIG_IP_NF_MMS" = "m" ]; then
@@
-24,21
+24,21
@@
fi
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
fi
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -5
5,6 +55,10 @@ obj-$(CONFIG_IP_NF_RTSP
) += ip_conntrack
- ifdef CONFIG_IP_NF_NAT_
RTSP
- export-objs += ip_conntrack_
rtsp
.o
+@@ -5
1,6 +51,10 @@ obj-$(CONFIG_IP_NF_H323
) += ip_conntrack
+ ifdef CONFIG_IP_NF_NAT_
H323
+ export-objs += ip_conntrack_
h323
.o
endif
+obj-$(CONFIG_IP_NF_MMS) += ip_conntrack_mms.o
+ifdef CONFIG_IP_NF_NAT_MMS
+ export-objs += ip_conntrack_mms.o
+endif
endif
+obj-$(CONFIG_IP_NF_MMS) += ip_conntrack_mms.o
+ifdef CONFIG_IP_NF_NAT_MMS
+ export-objs += ip_conntrack_mms.o
+endif
-
# NAT helpers
# NAT helpers
-@@ -64,6 +68,7 @@ obj-$(CONFIG_IP_NF_NAT_FTP) += ip_nat_ft
+ obj-$(CONFIG_IP_NF_NAT_AMANDA) += ip_nat_amanda.o
+@@ -58,6 +62,7 @@ obj-$(CONFIG_IP_NF_NAT_TFTP) += ip_nat_t
+ obj-$(CONFIG_IP_NF_NAT_FTP) += ip_nat_ftp.o
obj-$(CONFIG_IP_NF_NAT_IRC) += ip_nat_irc.o
obj-$(CONFIG_IP_NF_NAT_H323) += ip_nat_h323.o
obj-$(CONFIG_IP_NF_NAT_IRC) += ip_nat_irc.o
obj-$(CONFIG_IP_NF_NAT_H323) += ip_nat_h323.o
- obj-$(CONFIG_IP_NF_NAT_RTSP) += ip_nat_rtsp.o
+obj-$(CONFIG_IP_NF_NAT_MMS) += ip_nat_mms.o
# generic IP tables
+obj-$(CONFIG_IP_NF_NAT_MMS) += ip_nat_mms.o
# generic IP tables
@@
-673,26
+673,26
@@
+module_exit(fini);
--- a/include/linux/netfilter_ipv4/ip_conntrack.h
+++ b/include/linux/netfilter_ipv4/ip_conntrack.h
+module_exit(fini);
--- a/include/linux/netfilter_ipv4/ip_conntrack.h
+++ b/include/linux/netfilter_ipv4/ip_conntrack.h
-@@ -69,6 +69,7 @@ union ip_conntrack_expect_proto {
+@@ -68,6 +68,7 @@ union ip_conntrack_expect_proto {
+ #include <linux/netfilter_ipv4/ip_conntrack_ftp.h>
#include <linux/netfilter_ipv4/ip_conntrack_irc.h>
#include <linux/netfilter_ipv4/ip_conntrack_h323.h>
#include <linux/netfilter_ipv4/ip_conntrack_irc.h>
#include <linux/netfilter_ipv4/ip_conntrack_h323.h>
- #include <linux/netfilter_ipv4/ip_conntrack_rtsp.h>
+#include <linux/netfilter_ipv4/ip_conntrack_mms.h>
/* per expectation: application helper private data */
union ip_conntrack_expect_help {
+#include <linux/netfilter_ipv4/ip_conntrack_mms.h>
/* per expectation: application helper private data */
union ip_conntrack_expect_help {
-@@ -78,6 +79,7 @@ union ip_conntrack_expect_help {
+@@ -76,6 +77,7 @@ union ip_conntrack_expect_help {
+ struct ip_ct_ftp_expect exp_ftp_info;
struct ip_ct_irc_expect exp_irc_info;
struct ip_ct_h225_expect exp_h225_info;
struct ip_ct_irc_expect exp_irc_info;
struct ip_ct_h225_expect exp_h225_info;
- struct ip_ct_rtsp_expect exp_rtsp_info;
+ struct ip_ct_mms_expect exp_mms_info;
#ifdef CONFIG_IP_NF_NAT_NEEDED
union {
+ struct ip_ct_mms_expect exp_mms_info;
#ifdef CONFIG_IP_NF_NAT_NEEDED
union {
-@@ -93,6 +95,7 @@ union ip_conntrack_help {
+@@ -90,6 +92,7 @@ union ip_conntrack_help {
+ struct ip_ct_ftp_master ct_ftp_info;
struct ip_ct_irc_master ct_irc_info;
struct ip_ct_h225_master ct_h225_info;
struct ip_ct_irc_master ct_irc_info;
struct ip_ct_h225_master ct_h225_info;
- struct ip_ct_rtsp_master ct_rtsp_info;
+ struct ip_ct_mms_master ct_mms_info;
};
+ struct ip_ct_mms_master ct_mms_info;
};
diff --git
a/target/linux/generic-2.4/patches/616-netfilter_imq.patch
b/target/linux/generic-2.4/patches/616-netfilter_imq.patch
index a7e64795b736db1bd18d0690d63cdea347efa98e..fa1dc2fd80c94ab99f5f25432a5983b561642b53 100644
(file)
--- a/
target/linux/generic-2.4/patches/616-netfilter_imq.patch
+++ b/
target/linux/generic-2.4/patches/616-netfilter_imq.patch
@@
-505,7
+505,7
@@
/**
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
/**
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -1
41,6 +141
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
+@@ -1
33,6 +133
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
dep_tristate ' DSCP target support' CONFIG_IP_NF_TARGET_DSCP $CONFIG_IP_NF_MANGLE
dep_tristate ' MARK target support' CONFIG_IP_NF_TARGET_MARK $CONFIG_IP_NF_MANGLE
dep_tristate ' DSCP target support' CONFIG_IP_NF_TARGET_DSCP $CONFIG_IP_NF_MANGLE
dep_tristate ' MARK target support' CONFIG_IP_NF_TARGET_MARK $CONFIG_IP_NF_MANGLE
@@
-515,7
+515,7
@@
if [ "$CONFIG_IP_NF_CONNTRACK_MARK" != "n" ]; then
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
if [ "$CONFIG_IP_NF_CONNTRACK_MARK" != "n" ]; then
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -11
8,6 +118
,7 @@ obj-$(CONFIG_IP_NF_TARGET_TOS) += ipt_TO
+@@ -11
2,6 +112
,7 @@ obj-$(CONFIG_IP_NF_TARGET_TOS) += ipt_TO
obj-$(CONFIG_IP_NF_TARGET_ECN) += ipt_ECN.o
obj-$(CONFIG_IP_NF_TARGET_DSCP) += ipt_DSCP.o
obj-$(CONFIG_IP_NF_TARGET_MARK) += ipt_MARK.o
obj-$(CONFIG_IP_NF_TARGET_ECN) += ipt_ECN.o
obj-$(CONFIG_IP_NF_TARGET_DSCP) += ipt_DSCP.o
obj-$(CONFIG_IP_NF_TARGET_MARK) += ipt_MARK.o
diff --git
a/target/linux/generic-2.4/patches/620-netfilter_iprange.patch
b/target/linux/generic-2.4/patches/620-netfilter_iprange.patch
index 50241974c6b46367fcb03a29d4f3a43bd7578ac6..28e534013bbbfe5eeafa1daa5986b5827def76a5 100644
(file)
--- a/
target/linux/generic-2.4/patches/620-netfilter_iprange.patch
+++ b/
target/linux/generic-2.4/patches/620-netfilter_iprange.patch
@@
-43,7
+43,7
@@
+#endif /* _IPT_IPRANGE_H */
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
+#endif /* _IPT_IPRANGE_H */
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -2
5,6 +25
,7 @@ tristate 'IP tables support (required fo
+@@ -2
4,6 +24
,7 @@ tristate 'IP tables support (required fo
if [ "$CONFIG_IP_NF_IPTABLES" != "n" ]; then
# The simple matches.
dep_tristate ' limit match support' CONFIG_IP_NF_MATCH_LIMIT $CONFIG_IP_NF_IPTABLES
if [ "$CONFIG_IP_NF_IPTABLES" != "n" ]; then
# The simple matches.
dep_tristate ' limit match support' CONFIG_IP_NF_MATCH_LIMIT $CONFIG_IP_NF_IPTABLES
@@
-157,7
+157,7
@@
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -
81,6 +81
,7 @@ obj-$(CONFIG_IP_NF_NAT) += iptable_nat.o
+@@ -
75,6 +75
,7 @@ obj-$(CONFIG_IP_NF_NAT) += iptable_nat.o
# matches
obj-$(CONFIG_IP_NF_MATCH_HELPER) += ipt_helper.o
obj-$(CONFIG_IP_NF_MATCH_LIMIT) += ipt_limit.o
# matches
obj-$(CONFIG_IP_NF_MATCH_HELPER) += ipt_helper.o
obj-$(CONFIG_IP_NF_MATCH_LIMIT) += ipt_limit.o
diff --git
a/target/linux/generic-2.4/patches/621-netfilter_random.patch
b/target/linux/generic-2.4/patches/621-netfilter_random.patch
index fbc648b1bc011f6afe8ccf829d4691eac73e1023..a95c078341f142d4eb731b79404b0e97ee63d853 100644
(file)
--- a/
target/linux/generic-2.4/patches/621-netfilter_random.patch
+++ b/
target/linux/generic-2.4/patches/621-netfilter_random.patch
@@
-69,7
+69,7
@@
+#endif /*_IP6T_RAND_H*/
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
+#endif /*_IP6T_RAND_H*/
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -3
2,6 +32
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
+@@ -3
1,6 +31
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
dep_tristate ' netfilter MARK match support' CONFIG_IP_NF_MATCH_MARK $CONFIG_IP_NF_IPTABLES
dep_tristate ' Multiple port match support' CONFIG_IP_NF_MATCH_MULTIPORT $CONFIG_IP_NF_IPTABLES
dep_tristate ' TOS match support' CONFIG_IP_NF_MATCH_TOS $CONFIG_IP_NF_IPTABLES
dep_tristate ' netfilter MARK match support' CONFIG_IP_NF_MATCH_MARK $CONFIG_IP_NF_IPTABLES
dep_tristate ' Multiple port match support' CONFIG_IP_NF_MATCH_MULTIPORT $CONFIG_IP_NF_IPTABLES
dep_tristate ' TOS match support' CONFIG_IP_NF_MATCH_TOS $CONFIG_IP_NF_IPTABLES
@@
-178,7
+178,7
@@
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -
93,6 +93
,8 @@ obj-$(CONFIG_IP_NF_MATCH_OWNER) += ipt_o
+@@ -
87,6 +87
,8 @@ obj-$(CONFIG_IP_NF_MATCH_OWNER) += ipt_o
obj-$(CONFIG_IP_NF_MATCH_TOS) += ipt_tos.o
obj-$(CONFIG_IP_NF_MATCH_CONDITION) += ipt_condition.o
obj-$(CONFIG_IP_NF_MATCH_TOS) += ipt_tos.o
obj-$(CONFIG_IP_NF_MATCH_CONDITION) += ipt_condition.o
diff --git
a/target/linux/generic-2.4/patches/628-netfilter_raw.patch
b/target/linux/generic-2.4/patches/628-netfilter_raw.patch
index de54a352d8b909c209ac3b40386111bc60464565..86849f729773812d7c1a2c21a2df9ede47da8df1 100644
(file)
--- a/
target/linux/generic-2.4/patches/628-netfilter_raw.patch
+++ b/
target/linux/generic-2.4/patches/628-netfilter_raw.patch
@@
-37,7
+37,7
@@
The REJECT target allows a filtering rule to specify that an ICMP
--- a/include/linux/netfilter_ipv4/ip_conntrack.h
+++ b/include/linux/netfilter_ipv4/ip_conntrack.h
The REJECT target allows a filtering rule to specify that an ICMP
--- a/include/linux/netfilter_ipv4/ip_conntrack.h
+++ b/include/linux/netfilter_ipv4/ip_conntrack.h
-@@ -28
6,6 +286
,9 @@ extern void ip_ct_refresh_acct(struct ip
+@@ -28
3,6 +283
,9 @@ extern void ip_ct_refresh_acct(struct ip
/* Call me when a conntrack is destroyed. */
extern void (*ip_conntrack_destroyed)(struct ip_conntrack *conntrack);
/* Call me when a conntrack is destroyed. */
extern void (*ip_conntrack_destroyed)(struct ip_conntrack *conntrack);
@@
-81,7
+81,7
@@
NF_IP_PRI_NAT_DST = -100,
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
NF_IP_PRI_NAT_DST = -100,
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -1
53,6 +153
,15 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
+@@ -1
45,6 +145
,15 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
dep_tristate ' TTL target support' CONFIG_IP_NF_TARGET_TTL $CONFIG_IP_NF_IPTABLES
dep_tristate ' ULOG target support' CONFIG_IP_NF_TARGET_ULOG $CONFIG_IP_NF_IPTABLES
dep_tristate ' TCPMSS target support' CONFIG_IP_NF_TARGET_TCPMSS $CONFIG_IP_NF_IPTABLES
dep_tristate ' TTL target support' CONFIG_IP_NF_TARGET_TTL $CONFIG_IP_NF_IPTABLES
dep_tristate ' ULOG target support' CONFIG_IP_NF_TARGET_ULOG $CONFIG_IP_NF_IPTABLES
dep_tristate ' TCPMSS target support' CONFIG_IP_NF_TARGET_TCPMSS $CONFIG_IP_NF_IPTABLES
@@
-509,7
+509,7
@@
statebit = IPT_STATE_BIT(ctinfo);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
statebit = IPT_STATE_BIT(ctinfo);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -7
7,6 +77
,7 @@ obj-$(CONFIG_IP_NF_IPTABLES) += ip_table
+@@ -7
1,6 +71
,7 @@ obj-$(CONFIG_IP_NF_IPTABLES) += ip_table
obj-$(CONFIG_IP_NF_FILTER) += iptable_filter.o
obj-$(CONFIG_IP_NF_MANGLE) += iptable_mangle.o
obj-$(CONFIG_IP_NF_NAT) += iptable_nat.o
obj-$(CONFIG_IP_NF_FILTER) += iptable_filter.o
obj-$(CONFIG_IP_NF_MANGLE) += iptable_mangle.o
obj-$(CONFIG_IP_NF_NAT) += iptable_nat.o
@@
-517,7
+517,7
@@
# matches
obj-$(CONFIG_IP_NF_MATCH_HELPER) += ipt_helper.o
# matches
obj-$(CONFIG_IP_NF_MATCH_HELPER) += ipt_helper.o
-@@ -1
31,6 +132
,7 @@ obj-$(CONFIG_IP_NF_TARGET_CONNMARK) += i
+@@ -1
25,6 +126
,7 @@ obj-$(CONFIG_IP_NF_TARGET_CONNMARK) += i
obj-$(CONFIG_IP_NF_TARGET_TTL) += ipt_TTL.o
obj-$(CONFIG_IP_NF_TARGET_ULOG) += ipt_ULOG.o
obj-$(CONFIG_IP_NF_TARGET_TCPMSS) += ipt_TCPMSS.o
obj-$(CONFIG_IP_NF_TARGET_TTL) += ipt_TTL.o
obj-$(CONFIG_IP_NF_TARGET_ULOG) += ipt_ULOG.o
obj-$(CONFIG_IP_NF_TARGET_TCPMSS) += ipt_TCPMSS.o
diff --git
a/target/linux/generic-2.4/patches/630-netfilter_comment.patch
b/target/linux/generic-2.4/patches/630-netfilter_comment.patch
index 1181d065e6043c1aa8ed7e7cd89e84c7ca118ffb..58de3659d437d745d769a522bc20adc72478a0fe 100644
(file)
--- a/
target/linux/generic-2.4/patches/630-netfilter_comment.patch
+++ b/
target/linux/generic-2.4/patches/630-netfilter_comment.patch
@@
-75,7
+75,7
@@
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
+module_exit(fini);
--- a/net/ipv4/netfilter/Makefile
+++ b/net/ipv4/netfilter/Makefile
-@@ -1
13,6 +113
,7 @@ obj-$(CONFIG_IP_NF_MATCH_UNCLEAN) += ipt
+@@ -1
07,6 +107
,7 @@ obj-$(CONFIG_IP_NF_MATCH_UNCLEAN) += ipt
obj-$(CONFIG_IP_NF_MATCH_STRING) += ipt_string.o
obj-$(CONFIG_IP_NF_MATCH_TCPMSS) += ipt_tcpmss.o
obj-$(CONFIG_IP_NF_MATCH_LAYER7) += ipt_layer7.o
obj-$(CONFIG_IP_NF_MATCH_STRING) += ipt_string.o
obj-$(CONFIG_IP_NF_MATCH_TCPMSS) += ipt_tcpmss.o
obj-$(CONFIG_IP_NF_MATCH_LAYER7) += ipt_layer7.o
@@
-85,7
+85,7
@@
obj-$(CONFIG_IP_NF_TARGET_REJECT) += ipt_REJECT.o
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
obj-$(CONFIG_IP_NF_TARGET_REJECT) += ipt_REJECT.o
--- a/net/ipv4/netfilter/Config.in
+++ b/net/ipv4/netfilter/Config.in
-@@ -4
4,6 +44
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
+@@ -4
3,6 +43
,7 @@ if [ "$CONFIG_IP_NF_IPTABLES" != "n" ];
dep_tristate ' LENGTH match support' CONFIG_IP_NF_MATCH_LENGTH $CONFIG_IP_NF_IPTABLES
dep_tristate ' TTL match support' CONFIG_IP_NF_MATCH_TTL $CONFIG_IP_NF_IPTABLES
dep_tristate ' tcpmss match support' CONFIG_IP_NF_MATCH_TCPMSS $CONFIG_IP_NF_IPTABLES
dep_tristate ' LENGTH match support' CONFIG_IP_NF_MATCH_LENGTH $CONFIG_IP_NF_IPTABLES
dep_tristate ' TTL match support' CONFIG_IP_NF_MATCH_TTL $CONFIG_IP_NF_IPTABLES
dep_tristate ' tcpmss match support' CONFIG_IP_NF_MATCH_TCPMSS $CONFIG_IP_NF_IPTABLES