Skip to content

[redhat] Disable CONFIG_NETFILTER_XTABLES_COMPAT

This setting seems to have slipped through review process: Before this symbol was introduced, the relevant feature was always enabled. Since it is there now, we should use the opportunity to disable it and avoid any further security holes it may contain in addition to the already fixed ones.

Note: I based this on os-build branch as it is where !1078 (merged) was merged into. The change is entirely untested as 'make rh-configs' prompted for many undefined symbols. I assume this is some sort of WiP branch?

Merge request reports