Name

probe::netfilter.ip.post_routing — Called immediately before an outgoing IP packet leaves the computer

Synopsis

netfilter.ip.post_routing 

Values

pf

Protocol family -- either ipv4 or ipv6

ipproto_udp

Constant used to signify that the packet protocol is UDP

outdev

Address of net_device representing output device, 0 if unknown

saddr

A string representing the source IP address

nf_stolen

Constant used to signify a 'stolen' verdict

daddr

A string representing the destination IP address

protocol

Packet protocol from driver (ipv4 only)

urg

TCP URG flag (if protocol is TCP; ipv4 only)

fin

TCP FIN flag (if protocol is TCP; ipv4 only)

sport

TCP or UDP source port (ipv4 only)

outdev_name

Name of network device packet will be routed to (if known)

length

The length of the packet buffer contents, in bytes

dport

TCP or UDP destination port (ipv4 only)

psh

TCP PSH flag (if protocol is TCP; ipv4 only)

indev_name

Name of network device packet was received on (if known)

nf_queue

Constant used to signify a 'queue' verdict

indev

Address of net_device representing input device, 0 if unknown

nf_repeat

Constant used to signify a 'repeat' verdict

nf_stop

Constant used to signify a 'stop' verdict

syn

TCP SYN flag (if protocol is TCP; ipv4 only)

iphdr

Address of IP header

ack

TCP ACK flag (if protocol is TCP; ipv4 only)

rst

TCP RST flag (if protocol is TCP; ipv4 only)

data_hex

A hexadecimal string representing the packet buffer contents

family

IP address family

data_str

A string representing the packet buffer contents

nf_accept

Constant used to signify an 'accept' verdict

nf_drop

Constant used to signify a 'drop' verdict

ipproto_tcp

Constant used to signify that the packet protocol is TCP