PROBE::NETFILTER.I
Section: Networking Tapset (3stap)
Updated: October 2025
Index
Return to Main Contents
NAME
probe::netfilter.ip.pre_routing - Called before an IP packet is routed
SYNOPSIS
netfilter.ip.pre_routing
VALUES
length
-
The length of the packet buffer contents, in bytes
urg
-
TCP URG flag (if protocol is TCP; ipv4 only)
fin
-
TCP FIN flag (if protocol is TCP; ipv4 only)
indev_name
-
Name of network device packet was received on (if known)
data_hex
-
A hexadecimal string representing the packet buffer contents
protocol
-
Packet protocol from driver (ipv4 only)
ipproto_udp
-
Constant used to signify that the packet protocol is UDP
pf
-
Protocol family - either 'ipv4' or 'ipv6'
data_str
-
A string representing the packet buffer contents
dport
-
TCP or UDP destination port (ipv4 only)
daddr
-
A string representing the destination IP address
nf_queue
-
Constant used to signify a 'queue' verdict
outdev_name
-
Name of network device packet will be routed to (if known)
rst
-
TCP RST flag (if protocol is TCP; ipv4 only)
family
-
IP address family
nf_drop
-
Constant used to signify a 'drop' verdict
nf_stolen
-
Constant used to signify a 'stolen' verdict
nf_stop
-
Constant used to signify a 'stop' verdict
indev
-
Address of net_device representing input device, 0 if unknown
syn
-
TCP SYN flag (if protocol is TCP; ipv4 only)
sport
-
TCP or UDP source port (ipv4 only)
outdev
-
Address of net_device representing output device, 0 if unknown
nf_accept
-
Constant used to signify an 'accept' verdict
iphdr
-
Address of IP header
ack
-
TCP ACK flag (if protocol is TCP; ipv4 only)
ipproto_tcp
-
Constant used to signify that the packet protocol is TCP
saddr
-
A string representing the source IP address
nf_repeat
-
Constant used to signify a 'repeat' verdict
psh
-
TCP PSH flag (if protocol is TCP; ipv4 only)
SEE ALSO
tapset::netfilter(3stap)
Index
- NAME
-
- SYNOPSIS
-
- VALUES
-
- SEE ALSO
-
This document was created by
man2html,
using the manual pages.
Time: 21:32:38 GMT, May 01, 2026