Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Pierre Chifflier <chifflier@xxxxxxxxxxx>
- [PATCH] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 0/1] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans@xxxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] iptables: extensions: add IPv6 capable ECN match extension
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Dave Taht <dave.taht@xxxxxxxxx>
- [PATCH 3/3] netfilter: xtables: add an IPv6 capable version of the ECN match
- [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- [PATCH 2/3] netfilter: ipt_ecn: fix inversion for IP header ECN match
- [PATCH 1/3] netfilter: ipt_ecn: fix protocol check in ecn_mt_check()
- Re: netfilter release signing keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- netfilter release signing keys
- From: Adam Sampson <ats@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- FTP Packet Mangling & NAT
- From: Nadeem Douba <ndouba@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Fwd: [RFC] ecn match ported to ipv6
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- [RFC] ecn match ported to ipv6
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [ANNOUNCE]: Release of iptables-1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: fix MASQUERADE section of man page
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] iptables: fix MASQUERADE section of man page
- From: Vlad Dogaru <ddvlad@xxxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Compile fix
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] build: re-add missing CPPFLAGS for libiptc
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Compile fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Installer, option fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Installer, option fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: Sebastian Siewior <sebastian@xxxxxxxxxxxxx>
- Re: [PATCH 4/5] tests: add some sample rulesets to test save-restore cycle
- From: Konstantin Khorenko <khorenko@xxxxxxxxxx>
- [PATCH v2] netfilter: avoid double seq_adjust for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Olaf <mailinglists@xxxxxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC] SLOB breaks netfilter
- From: Sebastian Andrzej Siewior <sebastian@xxxxxxxxxxxxx>
- [PATCH 3/5] Looks like the MTA ate this
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/5] option: fix ignored negation before implicit extension loading
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/5] tests: add some sample rulesets to test save-restore cycle
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/5] src: move all libiptc pieces into its directory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/5] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Installer, option fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Iptables 1.4.11.1
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 13/15] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/15] netfilter: ipset: Add xt_action_param to the variant level kadt functions, ipset API change
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/15] netfilter: ipset: Use unified from/to address masking and check the usage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/15] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/15] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/15] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/15] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/15] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/15] netfilter: ipset: Whitespace and coding fixes detected by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/15] netfilter: ipset: hash:net,iface type introduced
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/15] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/15] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/15] netfilter: ipset: Adding ranges to hash types with timeout could still fail, fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/15] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/15] ipset patches against nf-next-2.6, next try
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/15] netfilter: ipset: Whitespace fixes: some space before tab slipped in.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Dave Jones <davej@xxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11 can not be compiled with 2.6.39.1 kernel Debian Squeeze
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Iptables 1.4.11 can not be compiled with 2.6.39.1 kernel Debian Squeeze
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ip6tables functionality test is wanted
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- iptables 1.4.11, cannot invert tcp flags
- From: Olaf <mailinglists@xxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: ip6tables functionality test is wanted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- ip6tables functionality test is wanted
- From: Konstantin Khorenko <khorenko@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: "\"Oleg A. Arkhangelsky\"" <sysoleg@xxxxxxxxx>
- [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 0/7] netfilter fixes for 3.0.0-rc1 (try 2)
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: use unsigned variables for packet lengths in ip[6]_queue.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 5/7] netfilter: nf_nat: fix crash in nf_nat_csum
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/7] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/7] netfilter: ipset: Fix return code for destroy when sets are in use
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/7] netfilter: add more values to enum ip_conntrack_info
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/7] ipvs: restore support for iptables SNAT
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/7] netfilter fixes for 3.0.0-rc1 (try 2)
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 20/20] netfilter: nf_conntrack: provide config option to disable ancient procfs parts
- From: pablo@xxxxxxxxxxxxx
- [PATCH 19/20] netfilter: use unsigned variables for packet lengths in ip[6]_queue.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 18/20] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 17/20] netfilter: nf_nat: fix crash in nf_nat_csum
- From: pablo@xxxxxxxxxxxxx
- [PATCH 16/20] netfilter: nf_conntrack: remove one synchronize_net()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 15/20] ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: pablo@xxxxxxxxxxxxx
- [PATCH 13/20] netfilter: ipset: hash:net,iface type introduced
- From: pablo@xxxxxxxxxxxxx
- [PATCH 14/20] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: pablo@xxxxxxxxxxxxx
- [PATCH 12/20] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: pablo@xxxxxxxxxxxxx
- [PATCH 11/20] netfilter: ipset: Fix return code for destroy when sets are in use
- From: pablo@xxxxxxxxxxxxx
- [PATCH 10/20] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: pablo@xxxxxxxxxxxxx
- [PATCH 08/20] netfilter: add more values to enum ip_conntrack_info
- From: pablo@xxxxxxxxxxxxx
- [PATCH 07/20] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: pablo@xxxxxxxxxxxxx
- [PATCH 06/20] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: pablo@xxxxxxxxxxxxx
- [PATCH 05/20] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: pablo@xxxxxxxxxxxxx
- [PATCH 04/20] netfilter: ipset: Set type support with multiple revisions added
- From: pablo@xxxxxxxxxxxxx
- [PATCH 03/20] netfilter: ipset: Fix adding ranges to hash types
- From: pablo@xxxxxxxxxxxxx
- [PATCH 01/20] netfilter: ipset: Options and flags support added to the kernel API
- From: pablo@xxxxxxxxxxxxx
- [PATCH 02/20] netfilter: ipset: Support listing setnames and headers too
- From: pablo@xxxxxxxxxxxxx
- [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: pablo@xxxxxxxxxxxxx
- Re: option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Avi Kivity <avi@xxxxxxxxxx>
- [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: Linux netfilter shuts down the server
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: Problem with seq adjustment for NAT over loopback device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Additional GOP fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter patches for 3.0.0-rc1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Additional GOP fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ANNOUNCE] IPTV-Analyzer project released v0.9.2
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- netfilter patches for 3.0.0-rc1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Additional GOP fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: restore support for iptables SNAT
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: remove one synchronize_net()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 12/12] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 11/12] netfilter: ipset: hash:net,iface type introduced
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/12] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/12] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/12] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: restore support for iptables SNAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Iptables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next-2.6] netfilter: add more values to enum ip_conntrack_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: restore support for iptables SNAT
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL pablo/nf-2.6-updates] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 01/12] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: ipset: hash:net,iface type introduced
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Netfilter Module for NAT64 available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Menyhart Zoltan <Zoltan.Menyhart@xxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Menyhart Zoltan <Zoltan.Menyhart@xxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2/5] build: fix installation of symlinks
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/5] doc: iptables-xml should be in manpage section 1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/5] doc: update GPL license text
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/5] build: fix installation of symlinks
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/5] build: remove dead code parts
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables fixes for 2011-05-30
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Arkadiusz Miskiewicz <a.miskiewicz@xxxxxxxxx>
- Re: linux-next: build warning in Linus' tree
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- linux-next: build warning in Linus' tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Julian Anastasov <ja@xxxxxx>
- Problem with seq adjustment for NAT over loopback device
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- [PATCH] libxt_owner: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Additional GOP fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [TRIVIAL PATCH next 00/15] treewide: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Problems Compiling netfilter_queue on Fedora 14
- From: "Roth, Andrew" <andrew.roth@xxxxxxxxxx>
- Re: [PATCH 0/5] Netfilter updates for net-2.6
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: remove one synchronize_net()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] IPVS: bug in ip_vs_ftp, same list heaad used in all netns.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/5] netfilter: ipset: fix ip_set_flush return code
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/5] netfilter: Fix several warnings in compat_mtw_from_user().
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/5] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/5] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/5] Netfilter updates for net-2.6
- From: pablo@xxxxxxxxxxxxx
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Arkadiusz Miskiewicz <a.miskiewicz@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] ipset patches against net-next-2.6/nf-next-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] ipset patches against net-next-2.6/nf-next-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 0/6] ipset patches against net-next-2.6/nf-next-2.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE]: Release of iptables-1.4.11
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Fix several warnings in compat_mtw_from_user().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches against net-2.6/nf-2.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Proposed fix for getaddrinfo() issue
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Doc/Option parser fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: Force socket error on iptables reject with icmp semantics?
- From: JP Abgrall <jpa@xxxxxxxxxx>
- Re: [PATCH 12/24] libxt_ipvs: restore network-byte order
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 24/24] libxt_time: deprecate --localtz option, document kernel TZ caveats
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 23/24] libxt_time: --utc and --localtz are mutually exclusive
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 22/24] libxt_time: always ignore libc timezone
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 21/24] libxt_NFQUEUE: add mutual exclusion between qnum and qbal
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 20/24] libxt_NFQUEUE: avoid double attempt at parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 19/24] libxtables: have xtopt_parse_mint interpret partially-spec'd ranges
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 18/24] libxtables: unclutter xtopt_parse_mint
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 17/24] libxtables: make multiint parser have greater range
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 16/24] libxtables: use uintmax for xtables_strtoul
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 15/24] libxtables: more detailed error message on multi-int parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 14/24] libip6t_rt: restore --rt-type storing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 13/24] libxt_u32: --u32 option is required
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 12/24] libxt_ipvs: restore network-byte order
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/24] doc: remove redundant .IP calls in libxt_time
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/24] doc: use .IP list for TCPMSS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/24] doc: clarify that -p all is a special keyword only
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/24] doc: make usage of libxt_rateest more obvious
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/24] doc: add some coded option examples to libxt_hashlimit
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/24] libxt_rateest: streamline case display of units
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/24] libxtables: check for negative numbers in xtables_strtou*
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/24] libxt_quota: make sure uint64 is not truncated
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/24] libxt_quota: readd missing XTOPT_PUT request
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/24] libipt_REDIRECT: "--to-ports" is not mandatory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/24] libxtables: retract _NE types and use a flag instead
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Doc/Option parser fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [ANNOUNCE] IPTV-Analyzer project released v0.9.1
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 3/3] netfilter: ipset: fix ip_set_flush return code
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: icmp_send function broken?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: icmp_send function broken?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- icmp_send function broken?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- IPv6 reassembly in the FORWARD HOOK in Netfilter
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ipset and interfaces
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Anton VG <anton.vazir@xxxxxxxxx>
- Re: ipset and interfaces
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- ipset and interfaces
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/7] ipset patches against net-next-2.6/nf-next-2.6, updated
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: fix ip_set_flush return code
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Force socket error on iptables reject with icmp semantics?
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables release coming up
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables release coming up
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/10] libxtables: make multiint parser have greater range
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/10] libxtables: use uintmax for xtables_strtoul
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/10] libxtables: more detailed error message on multi-int parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/10] libip6t_rt: restore --rt-type storing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/10] libxt_u32: --u32 option is required
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/10] libxt_time: remove --localtz option
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/10] doc: remove redundant .IP calls in libxt_time
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/10] doc: use .IP list for TCPMSS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/10] libxt_time: --utc and --localtz are mutually exclusive
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/10] libxt_time: always ignore libc timezone
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Option parsing fixes (t-10)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Force socket error on iptables reject with icmp semantics?
- From: JP Abgrall <jpa@xxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] libxt_ipvs: restore network-byte order
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 12/13] libxt_rateest: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/13] libxt_rateest: fix rateest save operation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/13] doc: clarify that -p all is a special keyword only
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/13] doc: make usage of libxt_rateest more obvious
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/13] doc: add some coded option examples to libxt_hashlimit
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/13] libxt_rateest: streamline case display of units
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/13] libxtables: check for negative numbers in xtables_strtou*
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/13] libxt_quota: make sure uint64 is not truncated
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/13] libxt_quota: readd missing XTOPT_PUT request
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/13] libipt_REDIRECT: "--to-ports" is not mandatory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/13] libxtables: retract _NE types and use a flag instead
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- option parsing, run 9
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables release coming up
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] libxt_devgroup: actually set XT_DEVGROUP_OPT_???GROUP flags
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Guided option parser run 8
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] xt_AUDIT.c: remove ipv6 dependencies
- From: Thomas Graf <tgraf@xxxxxxxxxx>
- Re: [PATCH] xt_AUDIT.c: remove ipv6 dependencies
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] xt_AUDIT.c: remove ipv6 dependencies
- From: Thomas Graf <tgraf@xxxxxxxxxx>
- Re: [PATCH] xt_AUDIT.c: remove ipv6 dependencies
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] xt_AUDIT.c: remove ipv6 dependencies
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.5 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.5 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: Kernel panic nf_nat_setup_info+0x5b3/0x6e0
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_ftp: prevent integer overflows in get_port()
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- [PATCH] xt_AUDIT.c: add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- net-next-2.6 merged...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/6] ipset patches against net-next-2.6/nf-next-2.6
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/2] ipset patches against net-2.6/nf-2.6
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Porting libnetfilter_queue to Android
- From: Shruti Sanadhya <shruti.sanadhya@xxxxxxxxxxxxx>
- Re: xtoptions + quota: parse and store 64bit values?
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipset return value in type_pf_tdel()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- ipset return value in type_pf_tdel()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter: Fix several warnings in compat_mtw_from_user().
- From: David Miller <davem@xxxxxxxxxxxxx>
- net-2.6
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next-2.6] netfilter: add more values to enum ip_conntrack_info
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net-next-2.6] netfilter: add more values to enum ip_conntrack_info
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] IPVS: Free resources on module removal
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: UDP DNAT to a broadcast address
- From: Detlev Zundel <dzu@xxxxxxx>
- xtoptions + quota: parse and store 64bit values?
- From: JP Abgrall <jpa@xxxxxxxxxx>
- [PATCH] netfilter: the "none" conntrack helper module
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- The glorious NFCT "none" helper
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] netfilter: provide config option to disable ancient procfs parts
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] libipt_REDIRECT: "--to-ports" is not mandatory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: UDP DNAT to a broadcast address
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] libxt_devgroup: actually set XT_DEVGROUP_OPT_???GROUP flags
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- UDP DNAT to a broadcast address
- From: Detlev Zundel <dzu@xxxxxxx>
- Re: [PATCH 07/11] libipt_DNAT: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 07/11] libipt_DNAT: use guided option parser
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH 07/11] libipt_DNAT: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 8/9] libxt_udp: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 07/11] libipt_DNAT: use guided option parser
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- [PATCH] libipt_REDIRECT: "--to-ports" is not mandatory
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH 8/9] libxt_udp: use guided option parser
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH 0/2] rework of userspace expectation support
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: [PATCH 0/2] netfilter: SIP conntrack fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: netfilter 03/03: nf_queue: fix NF_STOLEN skb leak
- From: Ondřej Slanina <oslanina@xxxxxxxxx>
- Re: ipset timeout problem
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- ipset timeout problem
- From: Lutfi <lutfio@xxxxxxxxxxx>
- About IPset 6.2 Time out problem
- From: Lutfi <lutfio@xxxxxxxxxxx>
- [PATCH 2/2] netfilter: nf_ct_sip: fix SDP parsing in TCP SIP messages for some Cisco phones
- [PATCH 0/2] netfilter: SIP conntrack fixes
- [PATCH 1/2] netfilter: nf_ct_sip: validate Content-Length in TCP SIP messages
- Re: [PATCH] netfilter: netfilter fixes for 2.6.39-rc7 (2nd round)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 2/8] netfilter: fix ebtables compat support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: netfilter fixes for 2.6.39-rc7 (2nd round)
- From: pablo@xxxxxxxxxxxxx
- [PATCH] IPVS: fix netns if reading ip_vs_* procfs entries
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 1/1] IPVS: seq_release_net should be used.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.5 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS: seq_release_net should be used.
- From: Hans Schillstrom <hans@xxxxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_conntrack: Add nfct_destroy() to all examples in utils
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS: seq_release_net should be used.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/1] IPVS: seq_release_net should be used.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 12/12] libip6t_rt: rt-0-not-strict should take no arg
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/12] libxt_conntrack: resolve erroneous rev-2 port range message
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/12] libxt_conntrack: fix assignment to wrong member
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/12] libxt_conntrack: correct printed module name
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/12] libipt_[SD]NAT: avoid false error about multiple destinations specified
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/12] libipt_[SD]NAT: flag up module name on error
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/12] libxtables: collapse double protocol parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/12] libxt_policy: use XTTYPE_PROTOCOL type
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/12] libxtables: avoid running into .also checks when option not used
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/12] libxt_policy: option table fixes, improved error tracking
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/12] src: combine default_command functions
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/12] src: replace old IP*T_ALIGN macros
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Guided option parser run 8
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: guided option parser, run 7
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/8] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 6/8] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: GIT net-2.6 rolled back 8 commits...
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: GIT net-2.6 rolled back 8 commits...
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 06/11] libxt_iprange: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/11] libipt_SAME: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Should conntrack track *everything* into some "connection"?
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: Fixes to opts, docs
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/11] libipt_REDIRECT: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/11] libipt_MASQUERADE: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/11] libipt_DNAT: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: guided option parser, run 6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/8] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- [PATCH 05/11] libipt_CLUSTERIP: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/11] libxt_mac: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/11] libip6t_rt: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/11] libip6t_mh: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/11] libxtables: XTTYPE_ETHERMAC support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- guided option parser, run 7
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/11] libipt_SNAT: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: GIT net-2.6 rolled back 8 commits...
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- GIT net-2.6 rolled back 8 commits...
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ANNOUNCE] IPTV-Analyzer project released v0.9.0
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- Re: [PATCH 0/8] netfilter: netfilter fixes for 2.6.39-rc7
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 8/8] netfilter: revert a2361c8735e07322023aedc36e4938b35af31eb0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: revert a2361c8735e07322023aedc36e4938b35af31eb0
- From: pablo@xxxxxxxxxxxxx
- [PATCH 7/8] netfilter: IPv6: fix DSCP mangle code
- From: pablo@xxxxxxxxxxxxx
- [PATCH 6/8] netfilter: IPv6: initialize TOS field in REJECT target module
- From: pablo@xxxxxxxxxxxxx
- [PATCH 5/8] IPVS: init and cleanup restructuring
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/8] IPVS: Change of socket usage to enable name space exit.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/8] netfilter: ebtables: only call xt_compat_add_offset once per rule
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/8] netfilter: fix ebtables compat support
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/8] netfilter: ctnetlink: fix timestamp support for new conntracks
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/8] netfilter: netfilter fixes for 2.6.39-rc7
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 16/17] libxt_ipvs: use guided option parser
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 17/17] libxt_conntrack: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 16/17] libxt_ipvs: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 14/17] libxt_limit: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 15/17] libxtables: XTTYPE_PROTOCOL support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 12/17] libxt_multiport: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 13/17] libipt_NETMAP: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/17] libxt_osf: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/17] libxt_owner: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/17] libxtables: XTTYPE_HOSTMASK support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/17] libxt_policy: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/17] libxt_hashlimit: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/17] libxtables: XTTYPE_PLEN support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/17] libxtables: flag invalid uses of XTOPT_PUT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/17] libxtables: do not overlay addr and mask parts, and cleanup
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/17] libxt_recent: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/17] libxt_connlimit: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/17] libxtables: support for XTTYPE_PLENMASK
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- guided option parser, run 6
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/2] doc: S/DNAT allows to omit IP addresses
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/2] iptables: fix the dead loop when meeting unknown options
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Fixes to opts, docs
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: guided option parser, run 5
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/13] libxt_IDLETIMER: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 13/13] libxt_NFLOG: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/13] libxt_statistic: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/13] libxtables: XTTYPE_DOUBLE support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/13] libxt_statistic: increase precision on create and dump
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/13] libxt_statistic: streamline and document possible placement of negation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/13] extensions: const annotations
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/13] libxtables: output name of extension on rev detect failure
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/13] libxt_owner: remove ifdef IPT_COMM_OWNER
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/13] extensions: remove bogus use of XT_GETOPT_TABLEEND
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/13] libxt_u32: add missing call to xtables_option_parse
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/13] libxtables: fix assignment in wrong offset (XTTYPE_UINT*RC)
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/13] libxt_tos: add inversion support back again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- guided option parser, run 5
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS (take III)
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables: guided option parser, run 4
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/2] IPVS: init and cleanup restructuring
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/2] IPVS: Change of socket usage to enable name space exit.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-2.6] IPVS (take III)
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] Fix reversed logic when implictly loading protocol matches
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] Fix reversed logic when implictly loading protocol matches
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Implement RFC 1123 for FTP conntrack
- From: Jeff Mahoney <jeffm@xxxxxxxx>
- Re: [PATCH] netfilter: Implement RFC 1123 for FTP conntrack
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] netfilter: Implement RFC 1123 for FTP conntrack
- From: Jeff Mahoney <jeffm@xxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Paul Moore <paul.moore@xxxxxx>
- Re: ip6tables breaks dnssec?
- From: Leo Baltus <Leo.Baltus@xxxxxxxxx>
- Re: [PATCH] netfilter/IPv6: initialize TOS field in REJECT target module
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter/IPv6: initialize TOS field in REJECT target module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Samir Bellabes <sam@xxxxxxxxx>
- Re: [PATCH] netfilter/IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Tetsuo Handa <penguin-kernel@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Paul Moore <paul.moore@xxxxxx>
- [RFC v4 08/11] snet: introduce snet_ticket
- [RFC v4 00/11] snet: Security for NETwork syscalls
- [RFC v4 03/11] snet: introduce snet_core
- [RFC v4 04/11] snet: introduce snet_event
- [RFC v4 01/11] lsm: add security_socket_closed()
- [RFC v4 11/11] snet: introduce security/snet, Makefile and Kconfig changes
- [RFC v4 09/11] snet: introduce snet_utils
- [RFC v4 07/11] snet: introduce snet_verdict
- [RFC v4 10/11] snet: introduce snet_stats
- [RFC v4 02/11] lsm: reintroduce security_socket_post_accept()
- [RFC v4 05/11] snet: introduce snet_hooks
- [RFC v4 06/11] snet: introduce snet_netlink
- Re: Feature request: ip_set for non-modular kernel
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Feature request: ip_set for non-modular kernel
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: iptables domain match
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: iptables domain match
- From: tingwei liu <tingw.liu@xxxxxxxxx>
- Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_ftp: prevent integer overflows in get_port()
- From: Mansour Moufid <mansourmoufid@xxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Samir Bellabes <sam@xxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Tetsuo Handa <penguin-kernel@xxxxxxxxxxxxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS (Take II)
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [RFC v3 02/10] Revert "lsm: Remove the socket_post_accept() hook"
- From: Paul Moore <paul.moore@xxxxxx>
- Re: [RFC v3 00/10] snet: Security for NETwork syscalls
- From: Samir Bellabes <sam@xxxxxxxxx>
- Re: [RFC v3 00/10] snet: Security for NETwork syscalls
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [RFC v3 01/10] lsm: add security_socket_closed()
- From: Samir Bellabes <sam@xxxxxxxxx>
- Re: [RFC v3 01/10] lsm: add security_socket_closed()
- From: Tetsuo Handa <penguin-kernel@xxxxxxxxxxxxxxxxxxx>
- [RFC v3 05/10] snet: introduce snet_hooks
- From: Samir Bellabes <sam@xxxxxxxxx>
- [RFC v3 06/10] snet: introduce snet_netlink
- From: Samir Bellabes <sam@xxxxxxxxx>
- [RFC v3 04/10] snet: introduce snet_event
- From: Samir Bellabes <sam@xxxxxxxxx>
- [RFC v3 03/10] snet: introduce snet_core
- From: Samir Bellabes <sam@xxxxxxxxx>
- [RFC v3 01/10] lsm: add security_socket_closed()
- From: Samir Bellabes <sam@xxxxxxxxx>
- [RFC v3 07/10] snet: introduce snet_verdict
- From: Samir Bellabes <sam@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]