<html><head><meta http-equiv="Content-Type" content="text/html; charset=ANSI_X3.4-1968"><title>probe::netfilter.ip.forward</title><meta name="generator" content="DocBook XSL Stylesheets V1.78.1"><link rel="home" href="index.html" title="SystemTap Tapset Reference Manual"><link rel="up" href="networking.stp.html" title="Chapter 13. Networking Tapset"><link rel="prev" href="API-netfilter-bridge-pre-routing.html" title="probe::netfilter.bridge.pre_routing"><link rel="next" href="API-netfilter-ip-local-in.html" title="probe::netfilter.ip.local_in"></head><body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF"><div class="navheader"><table width="100%" summary="Navigation header"><tr><th colspan="3" align="center"><span class="phrase">probe::netfilter.ip.forward</span></th></tr><tr><td width="20%" align="left"><a accesskey="p" href="API-netfilter-bridge-pre-routing.html">Prev</a> </td><th width="60%" align="center">Chapter 13. Networking Tapset</th><td width="20%" align="right"> <a accesskey="n" href="API-netfilter-ip-local-in.html">Next</a></td></tr></table><hr></div><div class="refentry"><a name="API-netfilter-ip-forward"></a><div class="titlepage"></div><div class="refnamediv"><h2>Name</h2><p>probe::netfilter.ip.forward — Called on an incoming IP packet addressed to some other computer </p></div><div class="refsynopsisdiv"><h2>Synopsis</h2><pre class="synopsis">netfilter.ip.forward </pre></div><div class="refsect1"><a name="idp146442356"></a><h2>Values</h2><div class="variablelist"><dl class="variablelist"><dt><span class="term"><em class="parameter"><code>urg</code></em></span></dt><dd><p> TCP URG flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>protocol</code></em></span></dt><dd><p> Packet protocol from driver (ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>indev</code></em></span></dt><dd><p> Address of net_device representing input device, 0 if unknown </p></dd><dt><span class="term"><em class="parameter"><code>nf_accept</code></em></span></dt><dd><p> Constant used to signify an 'accept' verdict </p></dd><dt><span class="term"><em class="parameter"><code>pf</code></em></span></dt><dd><p> Protocol family -- either <span class="quote">“<span class="quote">ipv4</span>”</span> or <span class="quote">“<span class="quote">ipv6</span>”</span> </p></dd><dt><span class="term"><em class="parameter"><code>ipproto_tcp</code></em></span></dt><dd><p> Constant used to signify that the packet protocol is TCP </p></dd><dt><span class="term"><em class="parameter"><code>rst</code></em></span></dt><dd><p> TCP RST flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>dport</code></em></span></dt><dd><p> TCP or UDP destination port (ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>nf_queue</code></em></span></dt><dd><p> Constant used to signify a 'queue' verdict </p></dd><dt><span class="term"><em class="parameter"><code>nf_stolen</code></em></span></dt><dd><p> Constant used to signify a 'stolen' verdict </p></dd><dt><span class="term"><em class="parameter"><code>ipproto_udp</code></em></span></dt><dd><p> Constant used to signify that the packet protocol is UDP </p></dd><dt><span class="term"><em class="parameter"><code>outdev_name</code></em></span></dt><dd><p> Name of network device packet will be routed to (if known) </p></dd><dt><span class="term"><em class="parameter"><code>ack</code></em></span></dt><dd><p> TCP ACK flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>fin</code></em></span></dt><dd><p> TCP FIN flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>nf_drop</code></em></span></dt><dd><p> Constant used to signify a 'drop' verdict </p></dd><dt><span class="term"><em class="parameter"><code>psh</code></em></span></dt><dd><p> TCP PSH flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>saddr</code></em></span></dt><dd><p> A string representing the source IP address </p></dd><dt><span class="term"><em class="parameter"><code>nf_stop</code></em></span></dt><dd><p> Constant used to signify a 'stop' verdict </p></dd><dt><span class="term"><em class="parameter"><code>length</code></em></span></dt><dd><p> The length of the packet buffer contents, in bytes </p></dd><dt><span class="term"><em class="parameter"><code>daddr</code></em></span></dt><dd><p> A string representing the destination IP address </p></dd><dt><span class="term"><em class="parameter"><code>outdev</code></em></span></dt><dd><p> Address of net_device representing output device, 0 if unknown </p></dd><dt><span class="term"><em class="parameter"><code>syn</code></em></span></dt><dd><p> TCP SYN flag (if protocol is TCP; ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>sport</code></em></span></dt><dd><p> TCP or UDP source port (ipv4 only) </p></dd><dt><span class="term"><em class="parameter"><code>nf_repeat</code></em></span></dt><dd><p> Constant used to signify a 'repeat' verdict </p></dd><dt><span class="term"><em class="parameter"><code>indev_name</code></em></span></dt><dd><p> Name of network device packet was received on (if known) </p></dd><dt><span class="term"><em class="parameter"><code>family</code></em></span></dt><dd><p> IP address family </p></dd><dt><span class="term"><em class="parameter"><code>iphdr</code></em></span></dt><dd><p> Address of IP header </p></dd></dl></div></div></div><div class="navfooter"><hr><table width="100%" summary="Navigation footer"><tr><td width="40%" align="left"><a accesskey="p" href="API-netfilter-bridge-pre-routing.html">Prev</a> </td><td width="20%" align="center"><a accesskey="u" href="networking.stp.html">Up</a></td><td width="40%" align="right"> <a accesskey="n" href="API-netfilter-ip-local-in.html">Next</a></td></tr><tr><td width="40%" align="left" valign="top"><span class="phrase">probe::netfilter.bridge.pre_routing</span> </td><td width="20%" align="center"><a accesskey="h" href="index.html">Home</a></td><td width="40%" align="right" valign="top"> <span class="phrase">probe::netfilter.ip.local_in</span></td></tr></table></div></body></html>