Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 1/5] libxt_statistic: link with -lm
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] Correct CONNSECMARK_save()
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: iptables branch management
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: install nf_nat.h and related headers to INSTALL_HDR_PATH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/11] netlink: implement memory mapped sendmsg()
- From: Michał Mirosław <mirq@xxxxxxxxxxxx>
- Re: [PATCH 02/11] net: add function to allocate skbuff head without data area
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: install nf_nat.h and related headers to INSTALL_HDR_PATH
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] netfilter: install nf_nat.h and related headers to INSTALL_HDR_PATH
- From: "Anthony G. Basile" <basile@xxxxxxxxxxxxxxxxxx>
- [PATCH 07/11] netlink: add memory mapped netlink helper functions
- [PATCH 06/11] netlink: memory mapped netlink: ring setup
- [PATCH 02/11] net: add function to allocate skbuff head without data area
- [PATCH 03/11] netlink: add helper function for queueing skbs to the receive queue
- [PATCH 05/11] netlink: add netlink_skb_set_owner_r()
- [PATCH 10/11] netlink: add documentation for memory mapped I/O
- [PATCH 08/11] netlink: implement memory mapped sendmsg()
- [PATCH 11/11] nfnetlink: add support for memory mapped netlink
- [PATCH 01/11] netlink: add symbolic value for congested state
- [PATCH 09/11] netlink: implement memory mapped recvmsg()
- [PATCH RFC 0/11] netlink: memory mapped I/O
- [PATCH 04/11] netlink: don't orphan skb in netlink_trim()
- [PATCH] Correct CONNSECMARK_save()
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Re: iptables: libxt_statistic.so undefined symbol: lround
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: iptables branch management
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- iptables branch management
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: iptables: libxt_statistic.so undefined symbol: lround
- From: Dan McGee <dan@xxxxxxxxxxxxx>
- [ANNOUNCE] iptables 1.4.12.1 released
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] pcap: add file option to configuration file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] pcap: fix build on some recent x86_64 platform.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: use NFPROTO_ (v2)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] xtoptions: simplify xtables_parse_interface
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/3] libxt_conntrack: improve error message on parsing violation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables fixes 20110901
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/3] xtoptions: fill in fallback value for nvals
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- GIT networking temporary freeze...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: ipset: use NFPROTO_ (v2)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipset: use NFPROTO_ (v2)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset: make header files usable from userspace (v2)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: your mail
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: your mail
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: your mail
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: your mail
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/3] ipset: use NFPROTO_ constants
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/3] build: move ipset_errcode into library
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/3] build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset: use NFPROTO_ (v2)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] nf_nat: dont check for port change on ICMP tuples
- From: Ulrich Weber <ulrich.weber@xxxxxxxxxx>
- Re: your mail
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: expose userspace-relevant parts in ip_set.h
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: avoid use of kernel-only types
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset: make header files usable from userspace (v2)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: your mail
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: your mail
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 06/24] netfilter: Remove unnecessary OOM logging messages
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/8] netfilter: netfilter fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 06/24] netfilter: Remove unnecessary OOM logging messages
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 06/24] netfilter: Remove unnecessary OOM logging messages
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Florian Westphal <fw@xxxxxxxxx>
- Netfilter developer workshop summary and presentations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/8] netfilter: ebtables: fix ebtables build dependency
- [PATCH 6/8] netfilter: nf_ct_tcp: fix incorrect handling of invalid TCP option
- [PATCH 7/8] netfilter: nf_ct_tcp: wrong multiplication of TCPOLEN_TSTAMP_ALIGNED in tcp_sack skips fastpath
- [PATCH 0/8] netfilter: netfilter fixes
- [PATCH 2/8] netfilter: ip_queue: Fix small leak in ipq_build_packet_message()
- [PATCH 8/8] netfilter: update netfilter git URL
- [PATCH 5/8] netfilter: nf_ct_pptp: fix DNATed PPTP connection address translation
- [PATCH 1/8] netfilter: xt_rateest: fix xt_rateest_mt_checkentry()
- [PATCH 4/8] netfilter: nf_queue: reject NF_STOLEN verdicts from userspace
- Re: kernel BUG at net/netfilter/ipset/ip_set_core.c:314
- From: Jean-Philippe Menil <jean-philippe.menil@xxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: kernel BUG at net/netfilter/ipset/ip_set_core.c:314
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2/2] Wrong multiplication of TCPOLEN_TSTAMP_ALIGNED in tcp_sack skips fastpath
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2] Incorrect handling of invalid TCP option in TCP connection tracking
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/2] TCP conntrack fixes in TCP option handling
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] Wrong multiplication of TCPOLEN_TSTAMP_ALIGNED in tcp_sack skips fastpath
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/2] Incorrect handling of invalid TCP option in TCP connection tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: nat: work around shared nfct struct in bridge case
- From: Florian Westphal <fw@xxxxxxxxx>
- FYI: pending netfilter patches
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: work around shared nfct struct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: work around shared nfct struct
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_queue: reject NF_STOLEN verdicts from userspace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: work around shared nfct struct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter: ipset: use NFPROTO_ constants
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: can we use nfq_set_verdict to accept packets more than once with one packet_id?
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 06/24] netfilter: Remove unnecessary OOM logging messages
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: work around shared nfct struct
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: kernel BUG at net/netfilter/ipset/ip_set_core.c:314
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] bridge: netfilter: work around shared nfct struct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: kernel BUG at net/netfilter/ipset/ip_set_core.c:314
- From: Jean-Philippe Menil <jean-philippe.menil@xxxxxxxxxxxxxx>
- kernel BUG at net/netfilter/ipset/ip_set_core.c:314
- From: Jean-Philippe Menil <jean-philippe.menil@xxxxxxxxxxxxxx>
- Re: ipset 6.8 patches
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset: make header files usable from userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/24] net: Remove unnecessary OOM logging messages
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 06/24] netfilter: Remove unnecessary OOM logging messages
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: iptables fixes 2011-08-26
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- can we use nfq_set_verdict to accept packets more than once with one packet_id?
- From: ZOU YOUTAO <Youtao.Zou@xxxxxxxxxxxxxxxxxxxx>
- Re: conntrack-tools: fscanf() call usage
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [PATCH 2/2] pcap: add file option to configuration file
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 1/2] pcap: fix build on some recent x86_64 platform.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 0/2] ulogd: minor fix and improvement
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: A bug in xtables-addons-1.38
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: xtables-addons 1.38: libipset uses symbol that's not in library
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/3] build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/3] ipset: use NFPROTO_ constants
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/3] build: move ipset_errcode into library
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset 6.8 patches
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [ANNOUNCE] new PGP key for Netfilter releases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: expose userspace-relevant parts in ip_set.h
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: avoid use of kernel-only types
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset: make header files usable from userspace
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [no subject]
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] iptables: Simplify xtables_parse_interface()
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] Parsing bug in libxt_conntrack.c 1.4.12
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] iptables: Simplify xtables_parse_interface()
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 5/5] libxt_TOS: update linux kernel version list for backported fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/5] libxt_string: escape the escaping char too
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/5] src: remove unused IPTABLES_MULTI define
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/5] libxt_string: replace hex codes by char equivalents
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/5] libxt_string: simplify hex output routine
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables fixes 2011-08-26
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] iptables/man: IPv6 TOS mangling fix was backported to 2.6.35-longterm too
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- xtables-addons 1.38: libipset uses symbol that's not in library
- From: Arkadiusz Miskiewicz <a.miskiewicz@xxxxxxxxx>
- Re: [PATCH RFC 3/3] ip6t_rpf: initial version
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH RFC 3/3] ip6t_rpf: initial version
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC 2/3] netfilter: add ipv4 reverse path filter match
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC 1/3] netfilter: add reverse path filter match
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC 0/3] netfilter reverse path filter matches
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: conntrack-tools: fscanf() call usage
- From: Philip Craig <philipjcraig@xxxxxxxxx>
- conntrack-tools: fscanf() call usage
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: ipset: use NFPROTO_ constants
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- [PATCH] ipset: use NFPROTO_ constants
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset: use NFPROTO_ constants
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- netfilter: ipset: use NFPROTO_ constants
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH net-next v2 09/10] headers, xtables: Add missing #include <linux/netfilter.h>
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [PATCH net-next v2 08/10] headers, netfilter: Add missing #include <limits.h> for userland
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [PATCH net-next v2 06/10] headers, netfilter: Use kernel type names __u8, __u16, __u32
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [libmnl PATCH] Improve nf-queue example: Avoid possible NULL pointer dereference
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [libnl-nft PATCH] Fix the route object comparison using the wrong pointer
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [ulogd2 PATCH] Fix bracket imbalance if IPPROTO_SCTP is defined
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: better wording for table-full message
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables/man: IPv6 TOS mangling fix was backported to 2.6.35-longterm too
- From: Fernando Luis Vazquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: better wording for table-full message
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: better wording for table-full message
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: better wording for table-full message
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/6] libxt_u32: fix missing allowance for inversion
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- A bug in xtables-addons-1.38
- From: Sergei Zhirikov <sfzhi@xxxxxxxxx>
- Re: [PATCH 1/6] libxt_u32: fix missing allowance for inversion
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [RFC] bridge: add netfilter hook for forwarding 802.1D group addresses
- From: David Lamparter <equinox@xxxxxxxxxx>
- Re: [PATCH] fix compilation of xtables 1.37
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 21/21] libxt_hashlimit: observe new default gc-expire time when saving
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 20/21] tests: add negation tests for libxt_statistic
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 18/21] libxt_physdev: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 19/21] libxt_policy: remove superfluous inversion
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 16/21] libipt_ttl: document that negation is available
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 17/21] libxt_owner: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 15/21] libip6t_dst: restore setting IP6T_OPTS_LEN flag
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 14/21] libip6t_hbh: restore setting IP6T_OPTS_LEN flag
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 12/21] libip6t_frag: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 13/21] libxt_hashlimit: remove inversion from hashlimit rev 0
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/21] xtoptions: flag use of XTOPT_POINTER without XTOPT_PUT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/21] libxt_hashlimit: default htable-expire must be in milliseconds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/21] libxt_conntrack: fix --ctproto 0 output
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/21] libxt_dscp: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/21] libxt_dccp: provide man pages options in short help too
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/21] libxt_dccp: spell out option name on save
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/21] libxt_dccp: fix random output of ! on --dccp-option
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/21] libxt_dccp: fix deprecated intrapositional ordering of !
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/21] libxt_dccp: restore missing XTOPT_INVERT tags for options
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/21] libxt_conntrack: remove one misleading comment
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/21] doc: clarify libxt_connlimit defaults
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables-1.4.12 fixes (2)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Fixes to iptables-1.4.12
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/6] libxt_u32: fix missing allowance for inversion
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 6/6] libxt_string: fix space around arguments
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/6] doc: fix typo in libxt_TRACE
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/6] libxt_set: put differing variable names in directly
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/6] libxt_tcp: always print the mask parts
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/6] libxt_set: update man page about kernel support on the feature
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/6] libxt_u32: fix missing allowance for inversion
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Fixes to iptables-1.4.12
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [RFC] bridge: add netfilter hook for forwarding 802.1D group addresses
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- RE: [RFC] bridge: add netfilter hook for forwarding 802.1D group addresses
- From: "Christian Benvenuti (benve)" <benve@xxxxxxxxx>
- Re: [RFC] bridge: add netfilter hook for forwarding 802.1D group addresses
- From: Stephen Hemminger <shemminger@xxxxxxxxxx>
- [RFC] bridge: add netfilter hook for forwarding 802.1D group addresses
- From: Stephen Hemminger <shemminger@xxxxxxxxxx>
- Need NF_STOLEN Equivalent in ebtables
- From: kernalist <kernalist@xxxxxxxxx>
- [PATCH] Parsing bug in libxt_conntrack.c 1.4.12
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- nfnetlink_log patch
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- about merging fuzzy and connlimit ??
- From: "Julio A. Romero" <julioarr@xxxxxxxxxxxx>
- [PATCH] netfilter: nf_queue: reject NF_STOLEN verdicts from userspace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Mark ESP packets
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: Mark ESP packets
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Mark ESP packets
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_queue: fix NF_STOLEN skb leak redux
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_queue: fix NF_STOLEN skb leak redux
- From: Michał Mirosław <mirqus@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_queue: fix NF_STOLEN skb leak redux
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] netfilter: nf_queue: fix NF_STOLEN skb leak redux
- From: Florian Westphal <fw@xxxxxxxxx>
- [RELEASE] ebtables v2.0.10-2
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [RELEASE] ebtables v2.0.10-1
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [patch] Fix warnings, respect LDFLAGS
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH] net/bridge/netfilter/ebtables.c: use available error handling code
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] net/bridge/netfilter/ebtables.c: use available error handling code
- From: Julia Lawall <julia@xxxxxxx>
- iptables: libxt_statistic.so undefined symbol: lround
- From: Dan McGee <dan@xxxxxxxxxxxxx>
- Re: [PATCH 09/12] headers, xtables: Add missing #include <linux/netfilter.h>
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ulogd: build fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnfnetlink: build fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: fix file list warning with automake-1.9
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_log: build fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_conntrack: build fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libmnl: build fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables build fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ebtables-2.0.10-1: a build problem
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 09/12] headers, xtables: Add missing #include <linux/netfilter.h>
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [PATCH 08/12] headers, netfilter: Add missing #include <limits.h> for userland
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [PATCH 06/12] headers, netfilter: Use kernel type names __u8, __u16, __u32
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: avoid double free in nf_reinject
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: TCP and raw fix for ip_route_me_harder
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: avoid double free in nf_reinject
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 6/7] build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 7/7] libipq: add pkgconfig file
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/7] build: strengthen check for overlong lladdr components
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/7] libxt_string: define _GNU_SOURCE for strnlen
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/7] libxt_TCPMSS: restore build with IPv6-less libcs
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/7] extensions: use multi-target registration
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/7] build: workaround broken linux-headers on RHEL-5
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables build fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] fix compilation of xtables 1.37
- From: Frank Reppin <frank@xxxxxxxxxxxxxxx>
- [PATCH] netfilter: TCP and raw fix for ip_route_me_harder
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] netfilter: avoid double free in nf_reinject
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ulogd: build fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/2] build: fix error with automake-1.9
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/2] nfnl: avoid exit on large packet
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libnfnetlink: build fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] build: fix file list warning with automake-1.9
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libnetfilter_queue: build fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] build: fix error with automake-1.9
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libnetfilter_log: build fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] build: fix error with automake-1.9
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libnetfilter_conntrack: build fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] build: abort autogen on subcommand failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libmnl: build fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] iptables/man: IPv6 TOS mangling fix was backported to 2.6.35-longterm too
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [Bug 40422] New: 3.0: kernel panic - not syncing: fatal exception in interrupt
- From: Mihai Donțu <mihai.dontu@xxxxxxxxx>
- Re: [Bug 40422] New: 3.0: kernel panic - not syncing: fatal exception in interrupt
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: libnfnetlink patches
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/3] utils: resolve compiler warning
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/3] build: use -Wall across the entire source
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- libnfnetlink patches
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/3] build: remove unused LIBTOOL_DEPS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ULOG and vlans
- From: Stig <stig@xxxxxxxx>
- RE: testing packet marks from the mangle table doesn't seem to work
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: [PATCH][RESEND] fix ebtables build dependency
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH][RFC] netfilter: Fix small leak in ipq_build_packet_message()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: testing packet marks from the mangle table doesn't seem to work
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: net/netfilter/nf_nat.h header instalation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_rateest: fix xt_rateest_mt_checkentry()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ULOG and vlans
- From: Patrick McHardy <kaber@xxxxxxxxx>
- net/netfilter/nf_nat.h header instalation
- From: Peter Volkov <pva@xxxxxxxxxx>
- [PATCH] netfilter: xt_rateest: fix xt_rateest_mt_checkentry()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- testing packet marks from the mangle table doesn't seem to work
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated yet again)
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated again)
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: ULOG and vlans
- From: Stig <stig@xxxxxxxx>
- Re: xtables-addons: TEE extension fails to build
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ULOG and vlans
- From: Patrick McHardy <kaber@xxxxxxxxx>
- xtables-addons: TEE extension fails to build
- From: Peter Volkov <pva@xxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated again)
- From: Patrick McHardy <kaber@xxxxxxxxx>
- ULOG and vlans
- From: Stig <stig@xxxxxxxx>
- Re: CONFIG_NF_CT_ACCT is deprecated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ipset "contains" question
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- CONFIG_NF_CT_ACCT is deprecated
- From: "Julio A. Romero" <julioarr@xxxxxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated again)
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated)
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: ipset "contains" question
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: ipset "contains" question
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- ipset "contains" question
- From: Ed W <lists@xxxxxxxxxxxxxx>
- about --source and --destination
- From: "Julio A. Romero" <julioarr@xxxxxxxxxxxx>
- RE: cant specify -m mark and -m connmark in same rule
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: Bug#631945: HFSC warning issue
- [ANNOUNCE]: Release of iptables-1.4.12
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] libxt_TCPMSS.c: unbreak build without ipv6 after ea2a02f7
- From: Peter Korsgaard <jacmet@xxxxxxxxxx>
- Re: [PATCH] libxt_TCPMSS.c: unbreak build without ipv6 after ea2a02f7
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] libxt_TCPMSS.c: unbreak build without ipv6 after ea2a02f7
- From: Peter Korsgaard <jacmet@xxxxxxxxxx>
- Re: Bug#631945: HFSC warning issue
- From: Michal Pokrywka <wolfmoon@xxxxx>
- Re: [PATCH] libxt_TCPMSS.c: unbreak build without ipv6 after ea2a02f7
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: cant specify -m mark and -m connmark in same rule
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] libxt_TCPMSS.c: unbreak build without ipv6 after ea2a02f7
- From: Peter Korsgaard <jacmet@xxxxxxxxxx>
- [PATCH] IPVS: Free resources on module removal
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- cant specify -m mark and -m connmark in same rule
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: [PATCH 0/8] netfilter: netfilter update for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH][TRIVIAL] net, netfilter: Remove redundant goto in ebt_ulog_packet
- From: Jiri Kosina <jkosina@xxxxxxx>
- [PATCH 1/8] netfilter: add SELinux context support to AUDIT target
- [PATCH 7/8] netfilter: ipset: hash:net,iface fixed to handle overlapping nets behind different interfaces
- [PATCH 8/8] netfilter: ipset: fix compiler warnings "'hash_ip4_data_next' declared inline after being called"
- [PATCH 6/8] netfilter: ipset: make possible to hash some part of the data element only
- [PATCH 5/8] netfilter: nfnetlink_queue: batch verdict support
- [PATCH 3/8] netfilter: nfnetlink_queue: provide rcu enabled callbacks
- [PATCH 0/8] netfilter: netfilter update for net-next
- [PATCH 2/8] netfilter: nfnetlink: add RCU in nfnetlink_rcv_msg()
- [PATCH 4/8] netfilter: nfnetlink_queue: assert monotonic packet ids
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Harald Welte <laforge@xxxxxxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Ed W <lists@xxxxxxxxxxxxxx>
- [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c (updated)
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [RELEASE] ebtables v2.0.10-1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE] ipset-6.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nfqueue: batch verdict support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH v2] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- ebtables-2.0.10-1: a build problem
- From: Sergei Zhirikov <sfzhi@xxxxxxxxx>
- [ANNOUNCE]: Call for sponsors for the 8th netfilter developer workshop
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/2] nfnetlink_queue: provide rcu enabled callbacks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Possible conntrack/kernel bug - not catching certain ICMP packets
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: YOSHIFUJI Hideaki <yoshfuji@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Krzysztof Olędzki <ole@xxxxxx>
- Re: NAT66 : A first implementation
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: [patch] ebtables: Fix warnings, respect LDFLAGS
- From: Peter Volkov <pva@xxxxxxxxxx>
- [patch] Fix warnings, respect LDFLAGS
- From: Peter Volkov <pva@xxxxxxxxxx>
- [PATCH][TRIVIAL] net, netfilter: Remove redundant goto in ebt_ulog_packet
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- [PATCH][RFC] netfilter: Fix small leak in ipq_build_packet_message()
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- [PATCH][RESEND] fix ebtables build dependency
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Krzysztof Olędzki <ole@xxxxxx>
- Re: [ANNOUNCE] ipset-6.8 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Adam Roach <adam@xxxxxxxxxxx>
- RE: NAT66 : A first implementation
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Rick Jones <rick.jones2@xxxxxx>
- Re: NAT66 : A first implementation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Bug#631945: HFSC warning issue
- From: François Delawarde <fdelawarde@xxxxxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Terry Moës <T.Moes@xxxxxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Philip Craig <philipjcraig@xxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Adam Roach <adam@xxxxxxxxxxx>
- RE: NAT66 : A first implementation
- From: "Jeff Haran" <jharan@xxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Rick Jones <rick.jones2@xxxxxx>
- Re: NAT66 : A first implementation
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Terry Moës <T.Moes@xxxxxxxxxxxxxxxxx>
- Re: NAT66 : A first implementation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- NAT66 : A first implementation
- From: Terry Moës <T.Moes@xxxxxxxxxxxxxxxxx>
- Re: HFSC warning issue
- From: Michal Pokrywka <wolfmoon@xxxxx>
- Re: Bug#631945: HFSC warning issue
- From: Michal Soltys <soltys@xxxxxxxx>
- Re: [PATCH 3/3] netfilter: ipset: Fix compiler warnings "'hash_ip4_data_next' declared inline after being called"
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/3] netfilter: ipset: hash:net,iface fixed to handle overlapping nets behind different interfaces
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: ipset: Make possible to hash some part of the data element only
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Bug#631945: HFSC warning issue
- Re: HFSC warning issue
- From: François Delawarde <fdelawarde@xxxxxxxxxxxxxxxxx>
- Re: HFSC warning issue
- From: Michal Soltys <soltys@xxxxxxxx>
- Re: HFSC warning issue
- From: Michal Soltys <soltys@xxxxxxxx>
- HFSC warning issue
- From: François Delawarde <fdelawarde@xxxxxxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipset: hash:net,iface fixed to handle overlapping nets behind different interfaces
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: Fix compiler warnings "'hash_ip4_data_next' declared inline after being called"
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/3] ipset patches against nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: Make possible to hash some part of the data element only
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Implicit loading of module xt_set.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [ANNOUNCE] ipset-6.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: iptables patches 20110710
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RELEASE] ebtables v2.0.10-1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [RELEASE] ebtables v2.0.10-1
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 6/6] libxt_conntrack: move more data into the xt_option_entry
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/6] libxt_conntrack: restore network-byte order for v1,v2
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/6] libxtables: set clone's initial data to NULL
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/6] option: remove last traces of intrapositional negation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/6] libxtables: properly reject empty hostnames
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/6] libxtables: ignore whitespace in the multiaddress argument parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables patches 20110710
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] Byte order problem in libxt_conntrack.c
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH conntrack-tools] testsuite: add tests for --mark option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack] conntrack: add missing break when parsing --id/--secmark options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] Byte order problem in libxt_conntrack.c
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Implicit loading of module xt_set.
- From: Steven Jan Springl <steven@xxxxxxxxxxxxxxxxx>
- Implicit loading of module xt_set.
- From: Steven Jan Springl <steven@xxxxxxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables fixes 20110705
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/4] iptables: restore negation for -f
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/4] doc: the -m option cannot be inverted
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/4] doc: fix version string in ip6tables.8
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/4] build: install modules in arch-dependent location
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables fixes 20110705
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Too short harmony-maker? Desire BIG?!
- From: torki@xxxxxxxxxxxxxxx
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 00/12] net switch/case reformatting
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 00/12] net switch/case reformatting
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 02/12] decnet: Reduce switch/case indent
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 05/12] netfilter: Reduce switch/case indent
- From: Joe Perches <joe@xxxxxxxxxxx>
- Send Packets In Prerouting?
- From: Nader Al-Naji <nbal@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] nfnetlink_queue: provide rcu enabled callbacks
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: xt_AUDIT additions
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [RFC] nfnetlink_queue not scalable
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC] nfnetlink_queue not scalable
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Suggestion required in extending xt_RAWNAT.c to handle ICMP messages
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Pending fixes, global var reduction
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Kuzin Andrey <kuzinandrey@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Kuzin Andrey <kuzinandrey@xxxxxxxxx>
- Re: [Ebtables configuration] CONFIG_BRIDGE_NETFILTER ebtables dependency
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- [Ebtables configuration] CONFIG_BRIDGE_NETFILTER ebtables dependency
- From: Sébastien LAVEZE <slaveze@xxxxxxxxx>
- Re: Issue with conntrack on machine start-up
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Issue with conntrack on machine start-up
- From: Hai-Long Nguyen <hlnguyen21@xxxxxxxxx>
- Suggestion required in extending xt_RAWNAT.c to handle ICMP messages
- From: "G A, Pramodh (NSN - IN/Bangalore)" <pramodh.g_a@xxxxxxx>
- Fwd: more grokking of iptables, qdiscs, filters, etc
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [PATCH 2/2] Improve security for xt_SYSRQ
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/2] Use %pI4/%pI6c instead of NIPQUAD_FMT/NIP6_FMT and make IPv6 work
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/2] Security improvements for xt_SYSRQ
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/2] Security improvements for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 1/2] Use %pI4/%pI6c instead of NIPQUAD_FMT/NIP6_FMT and make IPv6 work
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 2/2] Improve security for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 0/2] Security improvements for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- Re: [PATCH] ebtables: Possible problems found by static analysis of code
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH 8/8] iptables: Coverity: RESOURCE_LEAK
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 6/8] iptables: Coverity: VARARGS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 4/8] iptables: Coverity: REVERSE_INULL
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3/8] iptables: Coverity: NEGATIVE_RETURNS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/8] iptables: Coverity: DEADCODE
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] Remove redundant linux/version.h includes from net/
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 7/7] libxt_RATEEST: abolish global variables
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 6/7] libxt_rateest: abolish global variables
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/7] extensions: support for per-extension instance "global" variable space
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/7] iptables: consolidate target/match init call
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/7] libxt_RATEEST: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/7] libipt_LOG: fix ignoring all but last flags
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/7] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Pending fixes, global var reduction
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [netfilter-core] [PATCH] Remove redundant linux/version.h includes from net/
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] Remove redundant linux/version.h includes from net/
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: ebtables-2.0.9-2 libebetc PHONY
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/20] netfilter: netfilter update
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/8] netfilter: netfilter fixes for -rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Does ip_conntrack_tcp_be_liberal have security or other issues when used?
- From: Dale Floer <dfloer@xxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 04/20] IPVS: labels at pos 0
- [PATCH 05/20] IPVS: remove unused init and cleanup functions.
- [PATCH 07/20] netfilter: ipset: whitespace fixes: some space before tab slipped in
- [PATCH 08/20] netfilter: ipset: options and flags support added to the kernel API
- [PATCH 09/20] netfilter: ipset: support listing setnames and headers too
- [PATCH 13/20] netfilter: ipset: adding ranges to hash types with timeout could still fail, fixed
- [PATCH 10/20] netfilter: ipset: fix adding ranges to hash types
- [PATCH 11/20] netfilter: ipset: set type support with multiple revisions added
- [PATCH 12/20] netfilter: ipset: support range for IPv4 at adding/deleting elements for hash:*net* types
- [PATCH 14/20] netfilter: ipset: take into account cidr value for the from address when creating the set
- [PATCH 17/20] netfilter: ipset: fix return code for destroy when sets are in use
- [PATCH 15/20] netfilter: ipset: use unified from/to address masking and check the usage
- [PATCH 16/20] netfilter: ipset: add xt_action_param to the variant level kadt functions, ipset API change
- [PATCH 18/20] netfilter: ipset: use the stored first cidr value instead of '1'
- [PATCH 20/20] netfilter: ipset: whitespace and coding fixes detected by checkpatch.pl
- [PATCH 19/20] netfilter: ipset: hash:net,iface type introduced
- [PATCH 06/20] netfilter: ipset: timeout can be modified for already added elements
- [PATCH 03/20] IPVS: rename of netns init and cleanup functions.
- [PATCH 02/20] IPVS remove unused var from migration to netns
- [PATCH 01/20] ipvs: support more FTP PASV responses
- [PATCH 00/20] netfilter: netfilter update
- [PATCH 5/6] netfilter: fix looped (broad|multi)cast's MAC handling
- [PATCH 6/6] netfilter: nf_nat: avoid double seq_adjust for loopback
- [PATCH 0/8] netfilter: netfilter fixes for -rc1
- [PATCH 2/6] netfilter: ip_tables: fix compile with debug
- [PATCH 1/6] IPVS netns exit causes crash in conntrack
- [PATCH 4/6] netfilter: ipt_ecn: fix inversion for IP header ECN match
- [PATCH 3/6] netfilter: ipt_ecn: fix protocol check in ecn_mt_check()
- Re: [PATCH 15/15] netfilter: ipset: Whitespace and coding fixes detected by checkpatch.pl
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 14/15] netfilter: ipset: hash:net,iface type introduced
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 13/15] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 12/15] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 11/15] netfilter: ipset: Add xt_action_param to the variant level kadt functions, ipset API change
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 10/15] netfilter: ipset: Use unified from/to address masking and check the usage
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 09/15] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 08/15] netfilter: ipset: Adding ranges to hash types with timeout could still fail, fixed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 07/15] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 06/15] netfilter: ipset: Set type support with multiple revisions added
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 05/15] netfilter: ipset: Fix adding ranges to hash types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 04/15] netfilter: ipset: Support listing setnames and headers too
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 03/15] netfilter: ipset: Options and flags support added to the kernel API
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 02/15] netfilter: ipset: Whitespace fixes: some space before tab slipped in.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 01/15] netfilter: ipset: Timeout can be modified for already added elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: avoid double seq_adjust for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter/ip_tables: fix compile with debug
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [GIT PULL net-next-2.6] IPVS
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch] iptables-1.4.11.1: Fix man page generation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [patch] iptables-1.4.11.1: Fix man page generation
- From: Peter Volkov <pva@xxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vazquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH conntrack] conntrack: add missing break when parsing --id/--secmark options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ebtables: Possible problems found by static analysis of code
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH conntrack-tools] testsuite: add tests for --mark option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter/ip_tables: fix compile with debug
- From: Sebastian Andrzej Siewior <sebastian@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- Re: [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] conntrack: -U: skip sending conntrack update message if conntrack is unchanged
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2] conntrack: add support for mark mask
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- [PATCH 4/5] IPVS: labels at pos 0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL net-next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/5] IPVS: rename of netns init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/5] ipvs: support more FTP PASV responses
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/5] IPVS: remove unused init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/5] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- BUG: scheduling while atomic: expect_create_u
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- [PATCH] ebtables: Possible problems found by static analysis of code
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: "Hans Schillstrom" <hans@xxxxxxxxxxxxxxx>
- Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] MAINTAINERS: Update EBTABLES mailing list
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next 2/2] net: netfilter: Remove casts of void *
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next 0/2] net: remove casts of void *
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: "Hans Schillstrom" <hans@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/2] rework of userspace expectation support
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] libnfnetlink: BAD_SIZEOF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_conntrack: conntrack/objopt: NO_EFFECT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/2] IPVS: labels at pos 0
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 0/2] IPVS: init and cleanup.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 2/2] IPVS: remove unused init and cleanup functions.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH] IPVS netns exit causes crash in conntrack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/3] IPVS: rename of netns init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] ipvs: support more FTP PASV responses
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/3] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [v2 PATCH 0/6] IPVS: init and cleanup.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS netns exit causes crash in conntrack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/1] IPVS netns exit causes crash in conntrack
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: option "--state" cannot be inverted
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- option "--state" cannot be inverted
- From: Sergei Zhirikov <sfzhi@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Avi Kivity <avi@xxxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/8] Possible problems found by static analysis of code
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 7/8] iptables: Coverity: OVERRUN_STATIC
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Henrique de Moraes Holschuh <hmh@xxxxxxxxxx>
- Re: [PATCH 0/8] Possible problems found by static analysis of code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] iptables: Coverity: RESOURCE_LEAK
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 7/8] iptables: Coverity: OVERRUN_STATIC
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 6/8] iptables: Coverity: VARARGS
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 5/8] iptables: Coverity: UNINIT
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 4/8] iptables: Coverity: REVERSE_INULL
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 3/8] iptables: Coverity: NEGATIVE_RETURNS
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 2/8] iptables: Coverity: FORWARD_NULL
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 1/8] iptables: Coverity: DEADCODE
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 0/8] Possible problems found by static analysis of code
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Mark Lord <kernel@xxxxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- [PATCH] libnetfilter_conntrack: conntrack/objopt: NO_EFFECT
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH] libnfnetlink: BAD_SIZEOF
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 1/1] IPVS remove unused var from migration to netns
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- [PATCH] net: netfilter: ipvs: clean up the dead code
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Simon Horman <horms@xxxxxxxxxxxx>
- ebtables-2.0.9-2 libebetc PHONY
- From: Bertrand Jacquin <beber@xxxxxxxxxxxx>
- [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 4/4] netfilter: xtables: collapse conditions in xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/4] netfilter: xtables: give xt_ecn its own name
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/4] netfilter: xtables: add an IPv6 capable version of the ECN match
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- xt_ecn in smaller pieces
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans@xxxxxxxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Nadeem Douba <ndouba@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/4] ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/4] netfilter: nf_conntrack: provide config option to disable ancient procfs parts
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/4] netfilter patches for nf-next-2.6
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/4] netfilter: nf_conntrack: remove one synchronize_net()
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]