ACK/Cmnt: [focal:linux-bluefield][PATCH 0/1] Change CONFIG_NF_CONNTRACK to y

Tim Gardner tim.gardner at canonical.com
Wed Jun 16 11:49:15 UTC 2021


Acked-by: Tim Gardner <tim.gardner at canonical.com>

Does this change behavior in any way ? The conntrack module isn't 
normally loaded until user space is initialized, which is as soon as 
iptables rules can be set anyways.

On 6/15/21 10:53 PM, Wen-chien Jesse Sung wrote:
> BugLink: https://launchpad.net/bugs/1932042
> 
> == Impact ==
> NVIDIA would like to have CONFIG_NF_CONNTRACK as y instead of m.
> 
> == Fix ==
> CONFIG_NF_CONNTRACK=y
> The feature is already enabled as a module. Since it would always get
> loaded because they would enable firewall by default, changing it to
> builtin shouldn't make any harm.
> 
> == Risk of Regression ==
> Low. This is already enabled as a module.
> 
> 
> Wen-chien Jesse Sung (1):
>    UBUNTU: [Config] CONFIG_NF_CONNTRACK=y
> 
>   debian.bluefield/config/config.common.ubuntu | 6 +++---
>   1 file changed, 3 insertions(+), 3 deletions(-)
> 

-- 
-----------
Tim Gardner
Canonical, Inc



More information about the kernel-team mailing list