Name

probe::netfilter.ip.post_routing — Called immediately before an outgoing IP packet leaves the computer

Synopsis

netfilter.ip.post_routing 

Values

saddr

A string representing the source IP address

sport

TCP or UDP source port (ipv4 only)

nf_drop

Constant used to signify a 'drop' verdict

protocol

Packet protocol from driver (ipv4 only)

ipproto_udp

Constant used to signify that the packet protocol is UDP

fin

TCP FIN flag (if protocol is TCP; ipv4 only)

nf_stolen

Constant used to signify a 'stolen' verdict

nf_queue

Constant used to signify a 'queue' verdict

data_hex

A hexadecimal string representing the packet buffer contents

length

The length of the packet buffer contents, in bytes

rst

TCP RST flag (if protocol is TCP; ipv4 only)

indev

Address of net_device representing input device, 0 if unknown

iphdr

Address of IP header

nf_stop

Constant used to signify a 'stop' verdict

ipproto_tcp

Constant used to signify that the packet protocol is TCP

urg

TCP URG flag (if protocol is TCP; ipv4 only)

psh

TCP PSH flag (if protocol is TCP; ipv4 only)

nf_accept

Constant used to signify an 'accept' verdict

pf

Protocol family -- either ipv4 or ipv6

daddr

A string representing the destination IP address

data_str

A string representing the packet buffer contents

outdev_name

Name of network device packet will be routed to (if known)

dport

TCP or UDP destination port (ipv4 only)

family

IP address family

syn

TCP SYN flag (if protocol is TCP; ipv4 only)

outdev

Address of net_device representing output device, 0 if unknown

indev_name

Name of network device packet was received on (if known)

nf_repeat

Constant used to signify a 'repeat' verdict

ack

TCP ACK flag (if protocol is TCP; ipv4 only)