Name

probe::netfilter.ip.post_routing — Called immediately before an outgoing IP packet leaves the computer

Synopsis

netfilter.ip.post_routing 

Values

ack

TCP ACK flag (if protocol is TCP; ipv4 only)

fin

TCP FIN flag (if protocol is TCP; ipv4 only)

pf

Protocol family -- either ipv4 or ipv6

rst

TCP RST flag (if protocol is TCP; ipv4 only)

saddr

A string representing the source IP address

indev_name

Name of network device packet was received on (if known)

nf_stolen

Constant used to signify a 'stolen' verdict

indev

Address of net_device representing input device, 0 if unknown

nf_repeat

Constant used to signify a 'repeat' verdict

outdev_name

Name of network device packet will be routed to (if known)

iphdr

Address of IP header

nf_queue

Constant used to signify a 'queue' verdict

nf_drop

Constant used to signify a 'drop' verdict

daddr

A string representing the destination IP address

data_hex

A hexadecimal string representing the packet buffer contents

nf_stop

Constant used to signify a 'stop' verdict

outdev

Address of net_device representing output device, 0 if unknown

psh

TCP PSH flag (if protocol is TCP; ipv4 only)

ipproto_tcp

Constant used to signify that the packet protocol is TCP

protocol

Packet protocol from driver (ipv4 only)

family

IP address family

sport

TCP or UDP source port (ipv4 only)

data_str

A string representing the packet buffer contents

ipproto_udp

Constant used to signify that the packet protocol is UDP

length

The length of the packet buffer contents, in bytes

nf_accept

Constant used to signify an 'accept' verdict

syn

TCP SYN flag (if protocol is TCP; ipv4 only)

dport

TCP or UDP destination port (ipv4 only)

urg

TCP URG flag (if protocol is TCP; ipv4 only)