Re: [PATCH v3] audit: include source and destination ports to NETFILTER_PKT

From: Paul Moore

Date: Mon Oct 13 2025 - 14:48:26 EST


On Fri, Oct 3, 2025 at 11:43 AM Ricardo Robaina <rrobaina@xxxxxxxxxx> wrote:
> On Sat, Sep 27, 2025 at 7:45 AM Florian Westphal <fw@xxxxxxxxx> wrote:
> > Ricardo Robaina <rrobaina@xxxxxxxxxx> wrote:

...

> > Maybe Paul would be open to adding something like audit_log_packet() to
> > kernel/audit.c and then have xt_AUDIT.c and nft_log.c just call the
> > common helper.
>
> It sounds like a good idea to me. What do you think, Paul?

Seems like a good idea to me too.

--
paul-moore.com