summaryrefslogtreecommitdiffstats
path: root/Documentation/networking/netfilter-sysctl.rst
blob: beb6d7b275d473aca1d199df6fdcdc3af8cb2ca9 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
.. SPDX-License-Identifier: GPL-2.0

=========================
Netfilter Sysfs variables
=========================

/proc/sys/net/netfilter/* Variables:
====================================

nf_log_all_netns - BOOLEAN
	- 0 - disabled (default)
	- not 0 - enabled

	By default, only init_net namespace can log packets into kernel log
	with LOG target; this aims to prevent containers from flooding host
	kernel log. If enabled, this target also works in other network
	namespaces. This variable is only accessible from init_net.