/// <summary> /// Parse a IPTables rule /// </summary> /// <param name="rule"></param> /// <param name="system"></param> /// <param name="chains"></param> /// <param name="version"></param> /// <param name="defaultTable"></param> /// <param name="createChain"></param> /// <returns></returns> public static IpTablesRule Parse(String rule, NetfilterSystem system, IpTablesChainSet chains, int version = 4, String defaultTable = "filter", ChainCreateMode createChain = ChainCreateMode.CreateNewChainIfNeeded) { CommandParser parser; var ipCmd = IpTablesCommand.Parse(rule, system, chains, out parser, version, defaultTable); if (ipCmd.Type != IpTablesCommandType.Add) { throw new IpTablesParserException(rule, "must be add rule to parse"); } var chain = parser.GetChainFromSet(); if (chain == null) { if (createChain == ChainCreateMode.DontCreateErrorInstead) { throw new IpTablesParserException(rule, String.Format("Unable to find chain: {0}", parser.ChainName)); } var ipVersion = chains == null ? 4 : chains.IpVersion; if (createChain == ChainCreateMode.ReturnNewChain) { chain = parser.GetNewChain(system, ipVersion); } else { chain = parser.CreateChain(system, ipVersion); } } Debug.Assert(chain.IpVersion == version); ipCmd.Rule.Chain = chain; return(ipCmd.Rule); }
/// <summary> /// Parse a IPTables rule /// </summary> /// <param name="rule"></param> /// <param name="system"></param> /// <param name="chains"></param> /// <param name="version"></param> /// <param name="defaultTable"></param> /// <param name="createChain"></param> /// <returns></returns> public static IpTablesRule Parse(String rule, NetfilterSystem system, IpTablesChainSet chains, int version = 4, String defaultTable = "filter", ChainCreateMode createChain = ChainCreateMode.CreateNewChainIfNeeded) { Debug.Assert(chains.IpVersion == version); string[] arguments = ArgumentHelper.SplitArguments(rule); int count = arguments.Length; var ipRule = new IpTablesRule(system, new IpTablesChain(null, defaultTable, version, system)); try { var parser = new RuleParser(arguments, ipRule, chains, defaultTable); bool not = false; for (int i = 0; i < count; i++) { if (arguments[i] == "!") { not = true; continue; } i += parser.FeedToSkip(i, not, version); not = false; } var chain = parser.GetChainFromSet(); if (chain == null) { if (createChain == ChainCreateMode.DontCreateErrorInstead) { throw new IpTablesNetException(String.Format("Unable to find chain: {0}", parser.ChainName)); } var ipVersion = chains == null ? 4 : chains.IpVersion; if (createChain == ChainCreateMode.ReturnNewChain) { chain = parser.GetNewChain(system, ipVersion); } else { chain = parser.CreateChain(system, ipVersion); } } Debug.Assert(chain.IpVersion == version); ipRule.Chain = chain; } catch (Exception ex) { throw new IpTablesParserException(rule, ex); } return(ipRule); }