summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Felix Fietkau [Tue, 8 Mar 2022 13:27:49 +0000 (14:27 +0100)]
interface: switch to using clsact for filters
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 7 Mar 2022 13:43:07 +0000 (14:43 +0100)]
interface: extend dns filters to cover vlan tagged traffic as well
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 7 Mar 2022 12:59:26 +0000 (13:59 +0100)]
dns: fix parsing vlan encapsulated protocol
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Sun, 6 Mar 2022 21:49:59 +0000 (22:49 +0100)]
dns: allow limiting dns entry matching to cname name
Allows more precise control on how to match CNAME redirected subdomains
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Sun, 6 Mar 2022 21:32:59 +0000 (22:32 +0100)]
map: process dns patterns in the order in which they were defined
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 4 Mar 2022 14:03:20 +0000 (15:03 +0100)]
ubus: remove dnsmasq subscriber
with dns snooping, this is no longer needed
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 4 Mar 2022 14:01:53 +0000 (15:01 +0100)]
dns: add code for snooping dns packets
This makes dns entries work in bridged mode or when not using dnsmasq
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 4 Mar 2022 13:15:44 +0000 (14:15 +0100)]
map: move dns host based lookup code to a separate function
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 3 Mar 2022 19:36:02 +0000 (20:36 +0100)]
move run_cmd() to main.c
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Stijn Tintel [Fri, 4 Mar 2022 15:43:51 +0000 (17:43 +0200)]
interface: disable autorate-ingress by default
Enabling autorate-ingress on a mostly idle host seems to result in the
ingress rate being lowered until traffic is barely possible at all.
Disable autorate-ingress by default to avoid people running into this
problem without explicitly enabling it.
Signed-off-by: Stijn Tintel <stijn@linux-ipv6.be>
Acked-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Sun, 20 Feb 2022 12:58:18 +0000 (13:58 +0100)]
interface: add missing autorate-ingress options
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 10 Feb 2022 19:55:02 +0000 (20:55 +0100)]
ubus: fix a use-after-free bug
Initialize blob_buf before issuing a network interface status call
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 26 Jan 2022 14:02:17 +0000 (15:02 +0100)]
bpf: declare tcp_ports/udp_ports without typedef
Improve compatibility with different versions of LLVM
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Stijn Tintel [Thu, 27 Jan 2022 13:04:38 +0000 (15:04 +0200)]
map: fix copy-paste error in codepoints map
Signed-off-by: Stijn Tintel <stijn@linux-ipv6.be>
Acked-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 22 Nov 2021 09:24:39 +0000 (10:24 +0100)]
map: allow referring to a class index directly in tcp/udp default entries
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Sun, 21 Nov 2021 12:43:41 +0000 (13:43 +0100)]
bpf: work around a verifier issue
Force access to both src/dest fields, otherwise the llvm optimizer can turn
this into pointer arithmetic that older kernels will reject
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 19 Nov 2021 22:40:41 +0000 (23:40 +0100)]
interface: unify status, always include ifname, ingress, egress
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 19 Nov 2021 22:39:19 +0000 (23:39 +0100)]
bpf: remove access to skb->gso_size
Fixes load on older kernels
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 19 Nov 2021 16:10:54 +0000 (17:10 +0100)]
bpf: fix priority flow detection
Take number of GSO segments into account
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 18 Nov 2021 22:28:35 +0000 (23:28 +0100)]
bpf: fix bulk flow detaction
Take number of GSO segments into account
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 18 Nov 2021 16:14:42 +0000 (17:14 +0100)]
map, bpf: create a separate map for configured dscp classes
Include separate configuration for dynamic priority/bulk flow detection
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Tue, 16 Nov 2021 16:23:22 +0000 (17:23 +0100)]
bpf: move flow prio/bulk detection config into a separate data structure
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Tue, 16 Nov 2021 07:51:14 +0000 (08:51 +0100)]
bpf: refactor code to support explicit opt-in for bulk+prio detection
Significantly reduces compiled BPF code size by reducing inlining duplication
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 15 Nov 2021 20:10:12 +0000 (21:10 +0100)]
ubus: drop dnsmasq check for dns_result method
Preparation for switching dnsmasq to reporting cache entries
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 12 Nov 2021 21:54:51 +0000 (22:54 +0100)]
map: add support for defining aliases
Aliases can be used to make a distinction between ingress and egress tags,
and they make it easier to reconfigure tags without having to update the rule
config files
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Fri, 12 Nov 2021 14:51:35 +0000 (15:51 +0100)]
bpf: add initial support for splitting map dscp value into ingress and egress
This will be used for supporting different tags on the LAN side and the WAN side.
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Tue, 9 Nov 2021 21:08:51 +0000 (22:08 +0100)]
README: dnsmasq integration is complete
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 8 Nov 2021 21:21:34 +0000 (22:21 +0100)]
qosify: support wildcards in classifier filenames
This makes it easier to support having a directory with extra installable files
without having to update the configuration
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 8 Nov 2021 21:12:05 +0000 (22:12 +0100)]
ubus: fix crash caused by missing static keyword
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 8 Nov 2021 20:59:22 +0000 (21:59 +0100)]
map: default to fnmatch matching for dns patterns. support regex via leading /
Simplifies writing DNS matching rules
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Mon, 8 Nov 2021 13:45:08 +0000 (14:45 +0100)]
ubus: subscribe to dnsmasq.dns for dns lookup results
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 4 Nov 2021 19:35:07 +0000 (20:35 +0100)]
qosify-bpf: inline check_flow() to ensure that it is jited
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 4 Nov 2021 14:04:30 +0000 (15:04 +0100)]
map: increase active timeout to 300
Matches a typical maximum HTTP keepalive timeout
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 4 Nov 2021 13:58:02 +0000 (14:58 +0100)]
map: add DF codepoint
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 4 Nov 2021 13:55:12 +0000 (14:55 +0100)]
map: improve timeout handling of IP entries
Instead of expiring them at TTL, introduce an active timeout (default 60)
Whenever an IP entry expires, timeout gets reset to the active timeout
value. If during that time, a packet was seen matching the IP entry, the
timeout is automatically extended.
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Thu, 4 Nov 2021 13:01:55 +0000 (14:01 +0100)]
loader: always reinitialize programs
Improves reliability of upgrading the package
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 18:29:29 +0000 (19:29 +0100)]
README: fix another typo
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 18:28:50 +0000 (19:28 +0100)]
README: fix typo
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 18:25:32 +0000 (19:25 +0100)]
interface: enable NAT on interfaces by default
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 16:58:42 +0000 (17:58 +0100)]
map: introduce low effort codepoint from RFC8622
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 14:36:37 +0000 (15:36 +0100)]
README: document mapping file syntax
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 14:30:52 +0000 (15:30 +0100)]
README: mention dns regex entries
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 14:26:40 +0000 (15:26 +0100)]
ubus: add support for dynamically adding dns based rules
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 14:24:58 +0000 (15:24 +0100)]
ubus: add api for providing dns lookup results for dns regex rules
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 11:29:05 +0000 (12:29 +0100)]
ubus: remove unused enum
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 11:27:11 +0000 (12:27 +0100)]
map: add support for adding dns regex patterns
This will be used for hostname based dscp mark rules
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Wed, 3 Nov 2021 10:13:53 +0000 (11:13 +0100)]
map: make a helper function for freeing entries
Signed-off-by: Felix Fietkau <nbd@nbd.name>
Felix Fietkau [Tue, 12 Oct 2021 12:41:21 +0000 (14:41 +0200)]
Initial import
Signed-off-by: Felix Fietkau <nbd@nbd.name>