PROBE::NETFILTER.A(3stap) | Networking Tapset | PROBE::NETFILTER.A(3stap) |
NAME¶
probe::netfilter.arp.in - - Called for each incoming ARP packet
SYNOPSIS¶
netfilter.arp.in
VALUES¶
pf
Protocol family -- always “arp”
indev_name
Name of network device packet was received on (if
known)
ar_tha
Ethernet+IP only (ar_pro==0x800): target hardware (MAC)
address
nf_stop
Constant used to signify a 'stop' verdict
data_str
A string representing the packet buffer contents
length
The length of the packet buffer contents, in bytes
nf_stolen
Constant used to signify a 'stolen' verdict
ar_hln
Length of hardware address
ar_sha
Ethernet+IP only (ar_pro==0x800): source hardware (MAC)
address
data_hex
A hexadecimal string representing the packet buffer
contents
nf_queue
Constant used to signify a 'queue' verdict
nf_drop
Constant used to signify a 'drop' verdict
outdev
Address of net_device representing output device, 0 if
unknown
ar_sip
Ethernet+IP only (ar_pro==0x800): source IP address
arphdr
Address of ARP header
outdev_name
Name of network device packet will be routed to (if
known)
ar_pro
Format of protocol address
ar_tip
Ethernet+IP only (ar_pro==0x800): target IP address
ar_op
ARP opcode (command)
nf_accept
Constant used to signify an 'accept' verdict
indev
Address of net_device representing input device, 0 if
unknown
ar_pln
Length of protocol address
ar_data
Address of ARP packet data region (after the
header)
ar_hrd
Format of hardware address
nf_repeat
Constant used to signify a 'repeat' verdict
SEE ALSO0¶
tapset::netfilter(3stap)
April 2023 | SystemTap Tapset Reference |