Merge pull request #92860 from aojea/iptMonitor

iptables: don't do reverse DNS lookups
This commit is contained in:
Kubernetes Prow Robot 2020-07-11 20:57:02 -07:00 committed by GitHub
commit fa31f9fd26
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -607,6 +607,9 @@ func (runner *runner) chainExists(table Table, chain Chain) (bool, error) {
runner.mu.Lock()
defer runner.mu.Unlock()
trace := utiltrace.New("iptables Monitor CANARY check")
defer trace.LogIfLong(2 * time.Second)
_, err := runner.run(opListChain, fullArgs)
return err == nil, err
}
@ -617,7 +620,7 @@ const (
opCreateChain operation = "-N"
opFlushChain operation = "-F"
opDeleteChain operation = "-X"
opListChain operation = "-L"
opListChain operation = "-S"
opAppendRule operation = "-A"
opCheckRule operation = "-C"
opDeleteRule operation = "-D"