|
@@ -209,7 +209,9 @@ config NETFILTER_XT_TARGET_SECMARK
|
|
|
|
|
|
config NETFILTER_XT_TARGET_CONNSECMARK
|
|
|
tristate '"CONNSECMARK" target support'
|
|
|
- depends on NETFILTER_XTABLES && (NF_CONNTRACK_SECMARK || IP_NF_CONNTRACK_SECMARK)
|
|
|
+ depends on NETFILTER_XTABLES && \
|
|
|
+ ((NF_CONNTRACK && NF_CONNTRACK_SECMARK) || \
|
|
|
+ (IP_NF_CONNTRACK && IP_NF_CONNTRACK_SECMARK))
|
|
|
help
|
|
|
The CONNSECMARK target copies security markings from packets
|
|
|
to connections, and restores security markings from connections
|