Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nft 1/1] tests/shell: sanitize "handle" in JSON output
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH net-next] net: ctnetlink: support filtering by zone
- From: Felix Huettner <felix.huettner@mail.schwarz>
- [ANNOUNCE] Coreteam updates: Eric Leblond and Arturo Borrero enter emeritus status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/6] netfilter: nft_set_rbtree: Remove unused variable nft_net
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 5/6] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: nf_tables: split async and sync catchall in two functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: nft_set_rbtree: Remove unused variable nft_net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: nf_conntrack_bridge: initialize err to 0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nf_tables: bogus ENOENT when destroying element which does not exist
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue v3 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: libnfnetlink dependency elimination (doc)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnfnetlink dependency elimination (doc)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v3 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v3 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/4] tests: shell: skip pipapo set backend in transactions/30s-stress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/4] tests: shell: skip sets/sets_with_ifnames if no pipapo backend is available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/4] tests: shell: skip pipapo set backend in transactions/30s-stress
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 1/6] json: fix use after free in table_flags_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] tests: shell: skip pipapo set backend in transactions/30s-stress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] tests: shell: restore pipapo and chain binding coverage in standalone 30s-stress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] tests: shell: skip if kernel does not support flowtable with no devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] tests: shell: skip if kernel does not support flowtable counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] more tests/shell updates to run on 5.4 kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] parser: remove "const" from argument of input_descriptor_destroy()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] parser: use size_t type for strlen() results
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: libnfnetlink dependency elimination (doc)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] utils: add memory_allocation_check() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/2] utils: add memory_allocation_check() helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: iptables manpage updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ebtables documentation updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] utils: Add example of setting socket buffer size
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: libnfnetlink dependency elimination (doc)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- *** Scrub that last message
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: libnfnetlink dependency elimination (doc)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [syzbot] [batman?] INFO: rcu detected stall in worker_thread (9)
- From: syzbot <syzbot+225bfad78b079744fd5e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v3 5/6] tools: check more strictly for bash shebang in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 4/6] tools: simplify error handling in "check-tree.sh" by adding msg_err()/msg_warn()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 6/6] tools: check for consistency of .json-nft dumps in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [RFC nf-next] netfilter: nf_tables: reject flowtable hw offload for same device
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 0/6] add and check dump files for JSON in tests/shell
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 1/6] json: fix use after free in table_flags_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Add nfq_nlmsg_put2() - header flags include NLM_F_ACK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnfnetlink dependency elimination
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] utils: Add example of setting socket buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl v2] nlmsg: fix false positives when validating buffer sizes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] src: expand create commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v3
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: split async and sync catchall in two functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] Convert nfq_open(), nfq_bind_pf() & nfq_unbind_pf() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] libnfnetlink dependency elimination
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch to fix race condition between swap/destroy and add/del/test, v3
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v3
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch to fix race condition between swap/destroy and add/del/test, v3
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: bogus ENOENT when destroying element which does not exist
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: expand create commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 11/11] tests: shell: split merge nat optimization in two tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 09/11] tests: shell: split map test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 08/11] tests: shell: split set NAT interval test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 10/11] tests: shell: split single element in anonymous set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 07/11] tests: shell: skip if kernel does not support bitshift
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 05/11] tests: shell: skip comment tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 04/11] tests: shell: skip NAT netmap tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 02/11] tests: shell: skip prerouting reject tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 03/11] tests: shell: skip stateful expression in sets tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 06/11] tests: shell: skip multidevice chain tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 01/11] tests: shell: skip pipapo tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] man: perform backslash-encoding
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 6/7] man: fix one spello
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 7/7] ebtables: better error message when -j is missing
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/7] man: display number ranges with an en dash
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/7] man: layout and colorize synopsis similar to iptables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/7] man: consistent use of \(em in Name sections
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/7] man: make TH word match Name line
- From: Jan Engelhardt <jengelh@xxxxxxx>
- ebtables documentation updates
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 7/7] man: more backslash-encoding of characters
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 6/7] man: limit targets for -P option synopsis
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 5/7] man: copy synopsis markup from iptables.8 to arptables-nft.8
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/7] man: repeal manual hyphenation
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/7] man: remove lone .nh command
- From: Jan Engelhardt <jengelh@xxxxxxx>
- iptables manpage updates
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/7] man: consistent use of \(em in Name sections
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/7] man: stop putting non-terminals in italic
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libnetfilter_queue 1/1] Remove libnfnetlink from the build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] libnfnetlink dependency elimination
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: Add nfq_nlmsg_put2() - header flags include NLM_F_ACK
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] libnfnetlink dependency elimination
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] doc: First update for libnfnetlink-based API over libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- libnfnetlink dependency elimination
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] utils: Add example of setting socket buffer size
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] parser: don't mark "string" as const
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 00/12] update tests/shell for 5.4 kernels
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 04/12] tests: shell: skip stateful expression in sets tests if kernel lacks support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 03/12] tests: shell: skip prerouting reject tests if kernel lacks support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 02/12] tests: shell: skip pipapo tests if kernel lacks support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] parser: don't mark "string" as const
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/3] parser: don't mark "string" as const
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/3] parser: don't mark "string" as const
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] parser: remove "const" from argument of input_descriptor_destroy()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/3] parser: don't mark "string" as const
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 3/3] parser: use size_t type for strlen() results
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/2] utils: add memory_allocation_check() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 07/12] tests: shell: skip multidevice chain tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 11/12] tests: shell: split single element in anonymous set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 10/12] tests: shell: split map test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 09/12] tests: shell: split set NAT interval test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 05/12] tests: shell: skip NAT netmap tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 12/12] tests: shell: split merge nat optimization in two tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 04/12] tests: shell: skip stateful expression in sets tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 08/12] tests: shell: skip if kernel does not support bitshift
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 06/12] tests: shell: skip comment tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 01/12] tests: shell: export DIFF to use it from feature scripts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 00/12] update tests/shell for 5.4 kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 03/12] tests: shell: skip prerouting reject tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 02/12] tests: shell: skip pipapo tests if kernel lacks support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: fix buffer size for user data in netlink_delinearize_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] utils: add memory_allocation_check() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3] netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 0/3] Add locking for NFT_MSG_GETSETELEM_RESET
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 2/3] netfilter: nf_tables: Introduce nft_set_dump_ctx_init()
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 1/3] netfilter: nf_tables: Pass const set to nft_get_set_elem
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/3] arptables: Fix formatting of numeric --h-type output
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/5] netfilter: add missing module descriptions
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft 1/2] utils: add memory_allocation_check() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/2] netlink: add and use _nftnl_udata_buf_alloc() helper
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft] netlink: fix buffer size for user data in netlink_delinearize_chain()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH net 5/5] netfilter: nat: fix ipv6 nat redirect with mapped and scoped addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] ipvs: add missing module descriptions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: xt_recent: fix (increase) ipv6 literal buffer length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: add missing module descriptions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nat: fix ipv6 nat redirect with mapped and scoped addresses
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/3] arptables: Fix formatting of numeric --h-type output
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 1/3] arptables: Fix formatting of numeric --h-type output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] arptables: Fix --proto-type mask formatting
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] extensions: libarpt_standard.t: Add a rule with builtin option masks
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 iptables 0/4] xtables-nft: add arptranslate support
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] ebtables: Fix corner-case noflush restore bug
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] ebtables: Fix corner-case noflush restore bug
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net v2] netfilter: xt_recent: fix (increase) ipv6 literal buffer length
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH nf] ipvs: add missing module descriptions
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nft v2 0/6] add and check dump files for JSON in tests/shell
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 iptables 4/4] extensions: MARK: fix arptables support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables 3/4] arptables-txlate: add test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables 0/4] xtables-nft: add arptranslate support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables 2/4] nft-arp: add arptables-translate
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables 1/4] nft-arp: add missing mask support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] ipvs: add missing module descriptions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2 3/6] tests/shell: add JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 3/6] tests/shell: add JSON dump files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 3/6] tests/shell: add JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/2] evaluate: place byteorder conversion before rshift in payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/2] evaluate: reset statement length context only for set mappings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v4] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v3] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: remove catchall element in GC sync path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: place byteorder conversion before rshift in payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] net: xt_recent: fix (increase) ipv6 literal buffer length
- From: Maciej Żenczykowski <maze@xxxxxxxxxx>
- [PATCH net v2] netfilter: xt_recent: fix (increase) ipv6 literal buffer length
- From: "Maciej Żenczykowski" <maze@xxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: reset statement length context only for set mappings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2 5/5] tests/unit: add unit tests for libnftables
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 1/5] build: add basic "check-{local,more,all}" and "build-all" make targets
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 0/5] add infrastructure for unit tests
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 2/5] build: add `make check-build` to run `./tests/build/run-tests.sh`
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 3/5] build: add `make check-tree` to check consistency of source tree
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net] net: xt_recent: fix (increase) ipv6 literal buffer length
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libmnl v2] nlmsg: fix false positives when validating buffer sizes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net] net: xt_recent: fix (increase) ipv6 literal buffer length
- From: "Maciej Żenczykowski" <maze@xxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: Remove unused variable nft_net
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v2
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nat: add MODULE_DESCRIPTION
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: add missing module descriptions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch to fix race condition between swap/destroy and add/del/test, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH] netfilter: nat: add MODULE_DESCRIPTION
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 2/4] nft-arp: add missing mask support
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 3/4] nft-arp: add arptables-translate
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 2/4] nft-arp: add missing mask support
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables] arptables-nft: remove ARPT_INV flags usage
- From: Phil Sutter <phil@xxxxxx>
- Re: [GIT PULL] Landlock updates for v6.7
- From: pr-tracker-bot@xxxxxxxxxx
- [PATCH nft v2 0/6] add and check dump files for JSON in tests/shell
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 6/6] tools: check for consistency of .json-nft dumps in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 1/6] json: fix use after free in table_flags_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 4/6] tools: simplify error handling in "check-tree.sh" by adding msg_err()/msg_warn()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 5/6] tools: check more strictly for bash shebang in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 2/6] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH net-next 02/19] netfilter: nft_set_rbtree: prefer sync gc to async worker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 02/19] netfilter: nft_set_rbtree: prefer sync gc to async worker
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] arptables-nft: remove ARPT_INV flags usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 0/2] drop warning messages from stmt_print_json()/expr_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 1/2] json: drop handling missing json() hook in expr_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v3 2/2] json: drop warning on stderr for missing json() hook in stmt_print_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/6] add infrastructure for unit tests
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 0/6] add infrastructure for unit tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 0/6] add infrastructure for unit tests
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/6] gitignore: ignore build artifacts from top level file
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 0/6] add infrastructure for unit tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 0/4] add arptables-translate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/6] add infrastructure for unit tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Sam James <sam@xxxxxxxxxx>
- Re: [PATCH nft 1/6] gitignore: ignore build artifacts from top level file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 6/6] tests/unit: add unit tests for libnftables
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 3/6] build: add `make check-tests-build` to add build test
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/6] build: add basic "check-{local,more,all}" and "build-all" make targets
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 5/6] build: cleanup if blocks for conditional compilation
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 0/6] add infrastructure for unit tests
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/6] gitignore: ignore build artifacts from top level file
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 4/6] build: add check for consistency of source tree
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH iptables 3/4] nft-arp: add arptables-translate
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 2/4] nft-arp: add missing mask support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables 4/4] arptables-txlate: add test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 1/4] arptables-nft: use ARPT_INV flags consistently
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: net/netfilter/nft_set_rbtree.c:636:33: warning: variable 'nft_net' set but not used
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables 0/4] add arptables-translate
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net] netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nft] tests: meta: test hour decoding wrap
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH v3] netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [nft PATCH v2] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [nft PATCH] tproxy: Drop artificial port printing restriction
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tproxy: Drop artificial port printing restriction
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft] tests: meta: test hour decoding wrap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tproxy: Drop artificial port printing restriction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tproxy: Drop artificial port printing restriction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [nft PATCH] tests: shell: Fix sets/reset_command_0 for current kernels
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3] netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] tproxy: Drop artificial port printing restriction
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: meta: test hour decoding wrap
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft] meta: fix hour decoding when timezone offset is negative
- From: Florian Westphal <fw@xxxxxxxxx>
- [GIT PULL] Landlock updates for v6.7
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH nft 1/2] json: implement json() hook for "symbol_expr_ops"/"variabl_expr_ops"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/7] json: drop messages "warning: stmt ops chain have no json callback"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/2] json: drop handling missing json() hook for "struct expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/2] json: implement json() hook for "symbol_expr_ops"/"variabl_expr_ops"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2 0/7] no recursive make
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nft 2/7] json: drop messages "warning: stmt ops chain have no json callback"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/1] tests/shell: fix mount command in "test-wrapper.sh"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/1] tests/shell: fix mount command in "test-wrapper.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 2/7] json: drop messages "warning: stmt ops chain have no json callback"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: initialize err to 0
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/7] add and check dump files for JSON in tests/shell
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 0/7] add and check dump files for JSON in tests/shell
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: bridge: initialize err to 0
- From: xiaolinkui <xiaolinkui@xxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: Remove unused variable nft_net
- From: Yang Li <yang.lee@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nft 0/7] add and check dump files for JSON in tests/shell
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/7] json: fix use after free in table_flags_json()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 0/7] add and check dump files for JSON in tests/shell
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 7/7] tools: check for consistency of .json-nft dumps in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 5/7] tools: simplify error handling in "check-tree.sh" by adding msg_err()/msg_warn()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 3/7] tests/shell: check and generate JSON dump files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/7] json: drop messages "warning: stmt ops chain have no json callback"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 6/7] tools: check more strictly for bash shebang in "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH] treewide: Add SPDX identifier to IETF ASN.1 modules
- From: J Lovejoy <opensource@xxxxxxxxxxx>
- Re: [RFC Draft PATCHv2 net-next] Doc: update bridge doc
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- [PATCH AUTOSEL 4.19 05/12] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.15 17/28] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 06/13] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.10 07/16] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 05/11] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 35/39] netfilter: nf_tables: audit log object reset once per table
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 18/39] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.5 47/52] netfilter: nf_tables: audit log object reset once per table
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.5 24/52] netfilter: nfnetlink_log: silence bogus compiler warning
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH v14 00/12] Network support for Landlock
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH 07/10] man: grammar fixes to some manpages
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] selftests/landlock: Add tests for FS topology changes with network rules
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH 07/10] man: grammar fixes to some manpages
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v14 00/12] Network support for Landlock
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC Draft PATCHv2 net-next] Doc: update bridge doc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 07/10] man: grammar fixes to some manpages
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] treewide: Add SPDX identifier to IETF ASN.1 modules
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- Re: Netfilter queue is unable to mangle fragmented UDP6: bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Netfilter queue is unable to mangle fragmented UDP6: bug?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH net-next 0/4] net: fill in 18 MODULE_DESCRIPTION()s
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 07/10] man: grammar fixes to some manpages
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 09/10] man: use .TP for lists in xt_osf man page
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net-next 01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH 07/10] man: grammar fixes to some manpages
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 09/10] man: use .TP for lists in xt_osf man page
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/10] man: reveal rateest's combination categories
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 08/10] man: use native bullet point markup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 09/10] man: use .TP for lists in xt_osf man page
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 07/10] man: grammar fixes to some manpages
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 03/10] man: encode math minuses the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 04/10] man: encode hyphens the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 06/10] man: consistent casing of "IPv[46]"
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 05/10] man: encode minushyphen the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 02/10] man: encode emdash the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 01/10] man: display number ranges with an en dash
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 1/6] man: encode minushyphen the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 12/12] landlock: Document network support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 10/12] selftests/landlock: Add network tests
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 11/12] samples/landlock: Support TCP restrictions
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 09/12] selftests/landlock: Share enforce_ruleset()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 08/12] landlock: Add network rules and TCP hooks support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 06/12] landlock: Refactor layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 05/12] landlock: Move and rename layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 04/12] landlock: Refactor merge/inherit_ruleset functions
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 02/12] landlock: Allow FS topology changes for domains without such rule type
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 01/12] landlock: Make ruleset's access masks more generic
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v14 00/12] Network support for Landlock
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: flowtable: GC pushes back packets to classic path
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH libnetfilter_queue 1/1] Retire 2 libnfnetlink-specific functions
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH net-next 18/19] netfilter: nf_tables: set->ops->insert returns opaque set element in case of EEXIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 19/19] netfilter: nf_tables: Carry reset boolean in nft_set_dump_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/19] netfilter: nf_tables: expose opaque set element as struct nft_elem_priv
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/19] netfilter: nf_tables: shrink memory consumption of set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/19] netfilter: nf_tables: set backend .flush always succeeds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/19] netfilter: nft_set_pipapo: no need to call pipapo_deactivate() from flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/19] netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/19] br_netfilter: use single forward hook for ip and arp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/19] netfilter: nf_tables: nft_obj_filter fits into cb->ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/19] netfilter: nf_tables: A better name for nft_obj_filter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/19] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/19] netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/19] netfilter: nf_tables: Unconditionally allocate nft_obj_filter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/19] netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/19] netfilter: conntrack: switch connlabels to atomic_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/19] netfilter: nft_set_rbtree: prefer sync gc to async worker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/19] netfilter: nf_tables: Introduce nf_tables_getrule_single()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/19] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/19] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 1/3] netfilter: nf_tables: Audit log dump reset after the fact
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 1/3] netfilter: nf_tables: Audit log dump reset after the fact
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 1/3] netfilter: nf_tables: Audit log dump reset after the fact
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 2/3] netfilter: nf_tables: Introduce nf_tables_getobj_single
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 0/3] Add locking for NFT_MSG_GETOBJ_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- Re: KASAN: vmalloc-out-of-bounds in ipt_do_table
- From: Kaustubh Pandey <quic_kapandey@xxxxxxxxxxx>
- Re: [iptables PATCH 0/2] Fix up string match man page
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] evaluate: reject set in concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Netfilter queue is unable to mangle fragmented UDP6: bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH net 2/2] net/sched: act_ct: additional checks for outdated flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: flowtable: GC pushes back packets to classic path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/5] nf_tables set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH 1/6] netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: switch connlabels to atomic_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] br_netfilter: use single forward hook for ip and arp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v4 1/3] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: nft_set_rbtree: prefer sync gc to async worker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/3] netfilter: nft_set_rbtree: rename gc deactivate+erase function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] sched: act_ct: additional checks for outdated flows
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_flow_table: GC pushes back packets to classic path
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net] netfilter: flowtable: additional checks for outdated flows
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH nf] sched: act_ct: additional checks for outdated flows
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net] netfilter: flowtable: additional checks for outdated flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] sched: act_ct: additional checks for outdated flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: flowtable: additional checks for outdated flows
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net] netfilter: flowtable: additional checks for outdated flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_flow_table: GC pushes back packets to classic path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] netfilter: flowtable: additional checks for outdated flows
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH 1/6] man: encode minushyphen the way groff/man requires it
- From: Phil Sutter <phil@xxxxxx>
- [PATCH 6/6] man: use native bullet point markup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/6] man: encode emdash the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 5/6] man: grammar fixes to some manpages
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/6] man: consistent casing of "IPv[46]"
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/6] man: encode minushyphen the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/6] man: encode hyphens the way groff/man requires it
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [nf-next PATCH] netfilter: nf_tables: Carry reset boolean in nft_set_dump_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] Revert "extensions: string: Clarify description of --to"
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] extensions: string: Clarify description of --to
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/2] Fix up string match man page
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] check-tree.sh: check and flag /bin/sh usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] check-tree.sh: check and flag /bin/sh usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 1/4] datatype: don't return a const string from cgroupv2_get_path()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 4/4] all: remove xfree() and use plain free()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 3/4] all: add free_const() and use it instead of xfree()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 0/4] [RESENT] remove xfree() and add free_const()+nft_gmp_free()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 2/4] gmputil: add nft_gmp_free() to free strings from mpz_get_str()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] tests/shell: inline input data in "single_anon_set" test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests/shell: add missing "elem_opts_compat_0.nodump" file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] Retire 2 libnfnetlink-specific functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Fwd: Guidance on deterministic NAT (CGNAT)
- From: Clint Todish <clint@xxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nf_tables: expose opaque set element as struct nft_elem_priv
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nf_tables: set backend .flush always succeeds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nft_set_pipapo: no need to call pipapo_deactivate() from flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables: shrink memory consumption of set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/5] nf_tables set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: set->ops->insert returns opaque set element in case of EEXIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] Retire 2 libnfnetlink-specific functions
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] libnfnetlink dependency elimination
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] parser_bison: fix length check for ifname in ifname_expr_alloc()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft 3/3] parser_bison: fix length check for ifname in ifname_expr_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] parser_bison: fix length check for ifname in ifname_expr_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 3/3] parser_bison: fix length check for ifname in ifname_expr_alloc()
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/3] tests/shell: cover long interface name in "0042chain_variable_0" test
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 2/2] tools: reject unexpected files in "tests/shell/testcases/" with "check-tree.sh"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/2] tests/shell: inline input data in "single_anon_set" test
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft 1/1] tests/shell: test for maximum length of "comment" in "comments_objects_0"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft] tests/shell: add missing "elem_opts_compat_0.nodump" file
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH netfilter] Fix hw flow offload from nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH netfilter] Fix hw flow offload from nftables
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: KASAN: vmalloc-out-of-bounds in ipt_do_table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH libnetfilter_queue] include: all: remove trailing spaces
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test
- From: Linkui Xiao <xiaolinkui@xxxxxxxxxx>
- Re: [PATCH] treewide: Add SPDX identifier to IETF ASN.1 modules
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Netfilter queue is unable to mangle fragmented UDP6: bug?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 0/1] New example program nfq6
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] examples: add an example which uses more functions
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] treewide: Add SPDX identifier to IETF ASN.1 modules
- From: Richard Fontana <rfontana@xxxxxxxxxx>
- [PATCH] treewide: Add SPDX identifier to IETF ASN.1 modules
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [nf-next PATCH 1/6] netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 2/6] netfilter: nf_tables: Unconditionally allocate nft_obj_filter
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 0/6] Refactor nft_obj_filter into nft_obj_dump_ctx
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 3/6] netfilter: nf_tables: A better name for nft_obj_filter
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 4/6] netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctx
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 5/6] netfilter: nf_tables: nft_obj_filter fits into cb->ctx
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 6/6] netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: switch connlabels to atomic_t
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 11/12] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf-next,RFC 6/8] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 3/8] netfilter: nf_tables: expose opaque set element as struct nft_elem_priv
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] br_netfilter: use single forward hook for ip and arp
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Fwd: High cpu usage caused by kernel process when upgraded to linux 5.19.17 or later
- From: "Linux regression tracking #update (Thorsten Leemhuis)" <regressions@xxxxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test
- From: Linkui Xiao <xiaolinkui@xxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [nft PATCH v2] parser_bison: Fix for broken compatibility with older dumps
- From: Phil Sutter <phil@xxxxxx>
- [PATCH RFC] netfilter: nf_tables: add flowtable map for xdp offload
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch to fix race condition between swap/destroy and add/del/test
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH v5 05/12] x86/bugs: Rename RETPOLINE to MITIGATION_RETPOLINE
- From: Breno Leitao <leitao@xxxxxxxxxx>
- [nft PATCH v2] parser_bison: Fix for broken compatibility with older dumps
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] parser_bison: Fix for broken compatibility with older dumps
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC] nftables 1.0.6 -stable backports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 4/8] netfilter: nf_tables: shrink memory consumption of set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 3/8] netfilter: nf_tables: expose opaque set element as struct nft_elem_priv
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 8/8] netfilter: nf_tables: set element timeout update support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 5/8] netfilter: nf_tables: set->ops->insert returns opaque set element in case of EEXIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 6/8] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 7/8] netfilter: nf_tables: add timeout extension to elements to prepare for updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 2/8] netfilter: nf_tables: set backend .flush always succeeds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 0/8] nf_tables set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 1/8] netfilter: nft_set_pipapo: no need to call pipapo_deactivate() from flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v4 2/3] netfilter: nf_tables: Introduce nf_tables_getrule_single()
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 0/3] Introduce locking for rule reset requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v4 1/3] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2 6/7] build: no recursive make for "examples/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 7/7] build: no recursive make for "doc/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 5/7] build: no recursive make for "src/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 3/7] build: no recursive make for "py/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 4/7] build: no recursive make for "files/**/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 2/7] build: no recursive-make for "include/**/Makefile.am"
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 0/7] no recursive make
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nft v2 1/7] gitignore: ignore ".dirstamp" files
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v3 1/3] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v13 07/12] landlock: Refactor landlock_add_rule() syscall
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 07/12] landlock: Refactor landlock_add_rule() syscall
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [nf-next PATCH v3 1/3] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] nftables 1.0.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v3 1/3] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 2/3] netfilter: nf_tables: Introduce nf_tables_getrule_single()
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v3 0/3] Introduce locking for rule reset requests
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 01/12] landlock: Make ruleset's access masks more generic
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nf_tables: audit log object reset once per table
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nf-next,RFC 2/2] netfilter: nf_tables: set element timeout update support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 1/2] netfilter: nf_tables: add timeout extension to elements to prepare for updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: Phil Sutter <phil@xxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: "U.Mutlu" <um@xxxxxxxxxxx>
- [PATCH net 2/4] selftests: netfilter: Run nft_audit.sh in its own netns
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 0/4] netfilter: updates for net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 4/4] netfilter: nf_tables: revert do not remove elements if set backend implements .abort
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 3/4] netfilter: nft_set_rbtree: .deactivate fails if element has expired
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 1/4] netfilter: nf_tables: audit log object reset once per table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 11/12] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 10/12] selftests/landlock: Add 7 new test variants dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v13 01/12] landlock: Make ruleset's access masks more generic
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL)
- From: Thomas Haller <thaller@xxxxxxxxxx>
- [PATCH nf] Revert "netfilter: nf_tables: do not remove elements if set backend implements .abort"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: "U.Mutlu" <um@xxxxxxxxxxx>
- Re: [net-next PATCH v2] net: skb_find_text: Ignore patterns extending past 'to'
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 1/7] netfilter: xt_mangle: only check verdict part of return value
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: "U.Mutlu" <um@xxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 7/7] netfilter: nf_tables: de-constify set commit ops function argument
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/7] netfilter: bridge: convert br_netfilter to NF_DROP_REASON
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/7] netfilter: nf_nat: mask out non-verdict bits when checking return value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/7] netfilter: make nftables drops visible in net dropmonitor
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/7] netfilter: conntrack: convert nf_conntrack_update to netfilter verdicts
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/7] netfilter: nf_tables: mask out non-verdict bits when checking return value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/7] netfilter: xt_mangle: only check verdict part of return value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/7] netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables/nft] nft equivalent of "ipset test"
- [PATCH nft 1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL)
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nft v2 0/3] add "eval-exit-code" and skip tests based on kernel version
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fix race condition in ipset swap, destroy and test/add/del
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] WARNING in __nf_unregister_net_hook (6)
- From: syzbot <syzbot+de4025c006ec68ac56fc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fix race condition in ipset swap, destroy and test/add/del
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 2/3] tests/shell: skip "table_onoff" test on older kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: validate maximum log statement prefix length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: fix race condition in ipset swap, destroy and test/add/del
- From: xiaolinkui <xiaolinkui@xxxxxxxxx>
- Re: [PATCH 2/2] netfilter: ipset: fix race condition in ipset swap, destroy and test
- From: Linkui Xiao <xiaolinkui@xxxxxxxxx>
- Re: [PATCH nft v2 2/3] tests/shell: skip "table_onoff" test on older kernels
- From: Thomas Haller <thaller@xxxxxxxxxx>
- Re: [PATCH nf-next,RFC] netfilter: nf_tables: shrink memory consumption of set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 2/3] tests/shell: skip "table_onoff" test on older kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]