netfilter: use audit_log()

Use audit_log() instead of open-coding it.

Signed-off-by: Geliang Tang <geliangtang@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
This commit is contained in:
Geliang Tang 2017-08-07 21:44:25 +08:00 committed by Pablo Neira Ayuso
parent 166327d79d
commit 46b20c38f3
2 changed files with 8 additions and 19 deletions

View File

@ -1069,15 +1069,10 @@ static int do_replace_finish(struct net *net, struct ebt_replace *repl,
#ifdef CONFIG_AUDIT #ifdef CONFIG_AUDIT
if (audit_enabled) { if (audit_enabled) {
struct audit_buffer *ab; audit_log(current->audit_context, GFP_KERNEL,
AUDIT_NETFILTER_CFG,
ab = audit_log_start(current->audit_context, GFP_KERNEL, "table=%s family=%u entries=%u",
AUDIT_NETFILTER_CFG); repl->name, AF_BRIDGE, repl->nentries);
if (ab) {
audit_log_format(ab, "table=%s family=%u entries=%u",
repl->name, AF_BRIDGE, repl->nentries);
audit_log_end(ab);
}
} }
#endif #endif
return ret; return ret;

View File

@ -1192,16 +1192,10 @@ xt_replace_table(struct xt_table *table,
#ifdef CONFIG_AUDIT #ifdef CONFIG_AUDIT
if (audit_enabled) { if (audit_enabled) {
struct audit_buffer *ab; audit_log(current->audit_context, GFP_KERNEL,
AUDIT_NETFILTER_CFG,
ab = audit_log_start(current->audit_context, GFP_KERNEL, "table=%s family=%u entries=%u",
AUDIT_NETFILTER_CFG); table->name, table->af, private->number);
if (ab) {
audit_log_format(ab, "table=%s family=%u entries=%u",
table->name, table->af,
private->number);
audit_log_end(ab);
}
} }
#endif #endif