From 1c7104514cd40d2377caca36cf40c13b791bc5aa Mon Sep 17 00:00:00 2001 From: Florin Coras Date: Tue, 17 Oct 2017 00:03:13 -0700 Subject: session: rules tables This introduces 5-tuple lookup tables that may be used to implement custom session layer actions at connection establishment time (session layer perspective). The rules table build mask-match-action lookup trees that for a given 5-tuple key return the action for the first longest match. If rules overlap, ordering is established by tuple longest match with the following descending priority: remote ip, local ip, remote port, local port. At this time, the only match action supported is to forward packets to the application identified by the action. Change-Id: Icbade6fac720fa3979820d50cd7d6137f8b635c3 Signed-off-by: Florin Coras --- src/vnet/session/session_table.c | 2 ++ 1 file changed, 2 insertions(+) (limited to 'src/vnet/session/session_table.c') diff --git a/src/vnet/session/session_table.c b/src/vnet/session/session_table.c index 04c0c816ab0..cd8502aa13d 100644 --- a/src/vnet/session/session_table.c +++ b/src/vnet/session/session_table.c @@ -87,6 +87,8 @@ session_table_init (session_table_t * slt) clib_bihash_init_48_8 (&slt->v6_half_open_hash, "v6 half-open table", configured_v6_halfopen_table_buckets, configured_v6_halfopen_table_memory); + + session_rules_table_init (&slt->session_rules); } typedef struct _ip4_session_table_walk_ctx_t -- cgit 1.2.3-korg