Name

probe::netfilter.ip.post_routing — Called immediately before an outgoing IP packet leaves the computer

Synopsis

netfilter.ip.post_routing 

Values

nf_queue

Constant used to signify a 'queue' verdict

syn

TCP SYN flag (if protocol is TCP; ipv4 only)

saddr

A string representing the source IP address

data_hex

A hexadecimal string representing the packet buffer contents

fin

TCP FIN flag (if protocol is TCP; ipv4 only)

nf_drop

Constant used to signify a 'drop' verdict

daddr

A string representing the destination IP address

data_str

A string representing the packet buffer contents

rst

TCP RST flag (if protocol is TCP; ipv4 only)

indev

Address of net_device representing input device, 0 if unknown

urg

TCP URG flag (if protocol is TCP; ipv4 only)

family

IP address family

outdev_name

Name of network device packet will be routed to (if known)

nf_accept

Constant used to signify an 'accept' verdict

ipproto_tcp

Constant used to signify that the packet protocol is TCP

iphdr

Address of IP header

pf

Protocol family -- either ipv4 or ipv6

psh

TCP PSH flag (if protocol is TCP; ipv4 only)

outdev

Address of net_device representing output device, 0 if unknown

indev_name

Name of network device packet was received on (if known)

nf_stolen

Constant used to signify a 'stolen' verdict

nf_stop

Constant used to signify a 'stop' verdict

length

The length of the packet buffer contents, in bytes

sport

TCP or UDP source port (ipv4 only)

protocol

Packet protocol from driver (ipv4 only)

ack

TCP ACK flag (if protocol is TCP; ipv4 only)

nf_repeat

Constant used to signify a 'repeat' verdict

dport

TCP or UDP destination port (ipv4 only)

ipproto_udp

Constant used to signify that the packet protocol is UDP