[M] would 'struct esp_tuple *const esp_tuple' work for better const correctness?
> /**
> + * Parse one line of iptables -nvL formatted output, and extract
> + * packet count, SPI and destination IP if it is valid and packet count is
> + * not zero.
[L] What is the acceptable/supported format? 'iptables -nvL' output might differ based on version or translation. Examples would be sufficient.
[M] The functions hip_fw_manage_esp_tuple() and system_printf() are not covered by unit tests.
Hi Christof!
> === modified file 'firewall/ conntrack. c' esp_address( struct esp_tuple *esp_tuple,
> +static void update_
[M] would 'struct esp_tuple *const esp_tuple' work for better const correctness?
> /**
> + * Parse one line of iptables -nvL formatted output, and extract
> + * packet count, SPI and destination IP if it is valid and packet count is
> + * not zero.
[L] What is the acceptable/ supported format? 'iptables -nvL' output might differ based on version or translation. Examples would be sufficient.
[M] The functions hip_fw_ manage_ esp_tuple( ) and system_printf() are not covered by unit tests.