Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 4.14 64/86] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.14 63/86] netfilter: nf_tables: validate registers coming from userspace.
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.14 62/86] netfilter: nftables: statify nft_parse_register()
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.14 61/86] netfilter: nftables: add nft_parse_register_store() and use it
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.14 60/86] netfilter: nftables: add nft_parse_register_load() and use it
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft v5 8/8] tests: add tests for binops with variable RHS operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 1/8] netlink: support (de)linearization of new bitwise boolean operations
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 6/8] evaluate: allow binop expressions with variable right-hand operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 7/8] parser_json: allow RHS mark and payload expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 5/8] evaluate: preserve existing binop properties
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 3/8] netlink_delinearize: add support for processing variable payload statement arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 4/8] evaluate: prevent nested byte-order conversions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5 0/8] Bitwise boolean operations with variable RHS operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 3/5] expr: bitwise: add support for kernel space AND, OR and XOR operations
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 1/5] include: add new bitwise boolean attributes to nf_tables.h
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 5/5] tests: bitwise: add tests for new boolean operations
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 2/5] expr: bitwise: rename some boolean operation functions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 4/5] tests: bitwise: refactor shift tests
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v3 0/5] bitwise: support for boolean operations with variable RHS operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 2/2] netfilter: bitwise: add support for doing AND, OR and XOR directly
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 1/2] netfilter: bitwise: rename some boolean operation functions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 0/2] netfilter: bitwise: support boolean operations with variable RHS operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH -stable,4.14 00/11] more stable fixes for 4.14
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: extend tests for destroy command
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH -stable,4.14 09/11] netfilter: nf_tables: do not allow RULE_ID to refer to another chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 10/11] netfilter: nf_tables: do not allow SET_ID to refer to another table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 11/11] netfilter: nf_tables: fix register ordering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 07/11] netfilter: nf_tables: stricter validation of element data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 06/11] netfilter: nf_tables: allow up to 64 bytes in the set element data area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 01/11] netfilter: nftables: add nft_parse_register_load() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 08/11] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 05/11] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 00/11] more stable fixes for 4.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 04/11] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 02/11] netfilter: nftables: add nft_parse_register_store() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 03/11] netfilter: nftables: statify nft_parse_register()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,v1 4/6] netfilter: nf_tables: add meta combo match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,v1 1/6] netfilter: nf_tables: remove expression reduce infrastructure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,v1 2/6] netfilter: nf_tables: remove fast bitwise and cmp operations
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.14 1/1] netfilter: nf_tables: bogus EBUSY in helper removal from transaction
- From: Greg KH <greg@xxxxxxxxx>
- Re: [PATCH nf-next,v1 2/6] netfilter: nf_tables: remove fast bitwise and cmp operations
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH AUTOSEL 4.14 17/20] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 24/27] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 24/27] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.10 27/31] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.3 56/67] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.15 36/43] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 46/57] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next,v1 0/6] nf_tables combo match
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,v1 1/6] netfilter: nf_tables: remove expression reduce infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 2/6] netfilter: nf_tables: remove fast bitwise and cmp operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 6/6] netfilter: nf_tables: skip comment match when building blob
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 5/6] netfilter: nf_tables: add payload bitwise combo match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 3/6] netfilter: nf_tables: add payload combo match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 4/6] netfilter: nf_tables: add meta combo match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 0/6] nf_tables combo match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: bitwise: fix register tracking
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] src: permit use of constant values in set lookup keys
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_tables: Add null check for nla_nest_start_noflag() in nft_dump_basechain_hook()
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: nftables; key update with symbolic values/immediates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables; key update with symbolic values/immediates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables; key update with symbolic values/immediates
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH 4.14] netfilter: nf_tables: fix register ordering
- From: Andrew Paniakin <apanyaki@xxxxxxxxxx>
- Re: [PATCH 4.14] netfilter: nf_tables: fix register ordering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable,4.14 0/8] more stable fixes for 4.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: New Linux kernel NetFilter flaw gives attackers root privileges
- From: Bagas Sanjaya <bagasdotme@xxxxxxxxx>
- [PATCH 4.14] netfilter: nf_tables: fix register ordering
- From: Andrew Paniakin <apanyaki@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix register ordering
- From: Andrew Paniakin <apanyaki@xxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix register ordering
- From: Andrew Paniakin <apanyaki@xxxxxxxxxx>
- Re: [PATCH -stable,4.14 0/8] more stable fixes for 4.14
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: Patch for -stable, 6.3.x
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [libmnl, PATCH 1/1] examples: update .gitignore files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libmnl, PATCH 1/1] examples: update .gitignore files
- From: Dario Binacchi <dario.binacchi@xxxxxxxxxxxxxxxxxxxx>
- [libmnl, PATCH 1/1] include: cache copy of can.h and can/netlink.h
- From: Dario Binacchi <dario.binacchi@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 4.14 1/1] netfilter: nf_tables: bogus EBUSY in helper removal from transaction
- From: Thadeu Lima de Souza Cascardo <cascardo@xxxxxxxxxxxxx>
- [PATCH 4.14 0/1] netfilter: Fix EBUSY when removing objref
- From: Thadeu Lima de Souza Cascardo <cascardo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 1/9] netfilter: nf_tables: relax set/map validation checks
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v3] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH v1 nf] netfilter: ipset: Add schedule point in call_ad().
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: set NFT_SET_EVAL flag if dynamic set already exists
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft] evaluate: set NFT_SET_EVAL flag if dynamic set already exists
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND 4/4] leds: Clear LED_INIT_DEFAULT_TRIGGER when clearing current trigger
- From: Lee Jones <lee@xxxxxxxxxx>
- Re: [PATCH RESEND 3/4] leds: Fix oops about sleeping in led_trigger_blink()
- From: Lee Jones <lee@xxxxxxxxxx>
- Re: [PATCH RESEND 2/4] leds: Fix set_brightness_delayed() race
- From: Lee Jones <lee@xxxxxxxxxx>
- Re: [PATCH RESEND 1/4] leds: Change led_trigger_blink[_oneshot]() delay parameters to pass-by-value
- From: Lee Jones <lee@xxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next 8/9] netfilter: flowtable: split IPv4 datapath in helper functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 9/9] netfilter: flowtable: split IPv6 datapath in helper functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 7/9] netfilter: flowtable: simplify route logic
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/9] netfilter: conntrack: allow insertion clash of gre protocol
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/9] netfilter: nft_set_pipapo: Use struct_size()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/9] netfilter: Reorder fields in 'struct nf_conntrack_expect'
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/9] netfilter: nf_tables: always increment set element count
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/9] netfilter: nf_tables: relax set/map validation checks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/9] Netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 9/9] netfilter: flowtable: split IPv6 datapath in helper functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 8/9] netfilter: flowtable: split IPv4 datapath in helper functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 7/9] netfilter: flowtable: simplify route logic
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/9] netfilter: conntrack: allow insertion clash of gre protocol
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/9] netfilter: nft_set_pipapo: Use struct_size()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/9] netfilter: Reorder fields in 'struct nf_conntrack_expect'
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/9] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/9] netfilter: nf_tables: always increment set element count
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/9] netfilter: nf_tables: relax set/map validation checks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/9] Netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrackd 1/3] build: don't suppress various warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack,v2] conntrack: do not silence EEXIST error, use NLM_F_EXCL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 1/2] conntrack: do not ignore errors coming from the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 2/2] conntrack: do not silence EEXIST error, use NLM_F_EXCL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrackd 1/3] build: don't suppress various warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrackd 2/3] network: Fix -Wstrict-prototypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 1/2] conntrack: do not ignore errors coming from the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 2/2] conntrack: do not silence EEXIST error, use NLM_F_EXCL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 3/3] netfilter: nft_set_rbtree: fix null deref on element insertion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_tables: fix nft_trans type confusion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 1/3] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] ipvs: dynamically limit the connection hash table
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v3] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- [PATCH v3] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- Re: How to configure "full cone" NAT using iptables
- [PATCH nft] mnl: support bpf id decode in nft list hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -stable,4.14 6/8] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 4/8] netfilter: nf_tables: allow up to 64 bytes in the set element data area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 8/8] netfilter: nf_tables: do not allow SET_ID to refer to another table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 3/8] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 5/8] netfilter: nf_tables: stricter validation of element data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 7/8] netfilter: nf_tables: do not allow RULE_ID to refer to another chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 2/8] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 0/8] more stable fixes for 4.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 1/8] netfilter: nftables: statify nft_parse_register()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 8/9] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 6/9] netfilter: nf_tables: allow up to 64 bytes in the set element data area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 7/9] netfilter: nf_tables: stricter validation of element data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 9/9] netfilter: nf_tables: do not allow RULE_ID to refer to another chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 5/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 3/9] netfilter: nftables: statify nft_parse_register()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 2/9] netfilter: nftables: add nft_parse_register_store() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 1/9] netfilter: nftables: add nft_parse_register_load() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 4/9] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19 0/9] stable fixes for 4.19
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 9/9] netfilter: nf_tables: hold mutex on netns pre_exit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 8/9] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 2/9] netfilter: nftables: add nft_parse_register_store() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 5/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 7/9] netfilter: nf_tables: stricter validation of element data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 6/9] netfilter: nf_tables: allow up to 64 bytes in the set element data area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 4/9] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 3/9] netfilter: nftables: statify nft_parse_register()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 1/9] netfilter: nftables: add nft_parse_register_load() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 0/9] stable fixes for 5.4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: disable delset and delsetelem on anonymous sets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Julian Anastasov <ja@xxxxxx>
- Patch for -stable, 6.3.x
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- Re: ct state vmap no longer works on 6.3 kernel
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v11 11/12] samples/landlock: Add network demo
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 08/12] landlock: Add network rules and TCP hooks support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 10/12] selftests/landlock: Add 11 new test suites dedicated to network
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 12/12] landlock: Document Landlock's network support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 06/12] landlock: Refactor layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 09/12] selftests/landlock: Share enforce_ruleset()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 05/12] landlock: Move and rename layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 04/12] landlock: Refactor merge/inherit_ruleset functions
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 01/12] landlock: Make ruleset's access masks more generic
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v11 00/12] Network support for Landlock
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- [PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14
- From: "luwei (O)" <luwei32@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: relax set/map validation checks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: always increment set element count
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_set_rbtree: fix null deref on element insertion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH AUTOSEL 5.15 4/5] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 2/2] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 2/2] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.10 3/3] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 7/9] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.2 08/10] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.3 09/11] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH -stable,4.14 5/6] netfilter: nf_tables: bogus EBUSY when deleting set after flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 3/6] netfilter: nft_hash: fix nft_hash_deactivate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 2/6] netfilter: nf_tables: unbind set in rule from commit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 6/6] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 4/6] netfilter: nf_tables: use-after-free in failing rule with bound set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.14 1/6] netfilter: nf_tables: split set destruction in deactivate and destroy phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix nft_trans type confusion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: Reorder fields in 'struct nf_conntrack_expect'
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH nf-next,v2 2/3] netfilter: flowtable: split IPv4 datapath in helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/3] netfilter: flowtable: split IPv6 datapath in helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/3] netfilter: flowtable: simplify route logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/7] netfilter: nf_tables: always release netdev hooks from notifier
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH RESEND 1/4] leds: Change led_trigger_blink[_oneshot]() delay parameters to pass-by-value
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH RESEND 1/4] leds: Change led_trigger_blink[_oneshot]() delay parameters to pass-by-value
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RESEND 1/4] leds: Change led_trigger_blink[_oneshot]() delay parameters to pass-by-value
- From: Sebastian Reichel <sebastian.reichel@xxxxxxxxxxxxx>
- [PATCH RESEND 4/4] leds: Clear LED_INIT_DEFAULT_TRIGGER when clearing current trigger
- From: Hans de Goede <hdegoede@xxxxxxxxxx>
- [PATCH RESEND 1/4] leds: Change led_trigger_blink[_oneshot]() delay parameters to pass-by-value
- From: Hans de Goede <hdegoede@xxxxxxxxxx>
- [PATCH RESEND 3/4] leds: Fix oops about sleeping in led_trigger_blink()
- From: Hans de Goede <hdegoede@xxxxxxxxxx>
- [PATCH RESEND 2/4] leds: Fix set_brightness_delayed() race
- From: Hans de Goede <hdegoede@xxxxxxxxxx>
- [PATCH RESEND 0/4] Fix oops about sleeping in led_trigger_blink()
- From: Hans de Goede <hdegoede@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Anouncement: Netdevconf 0x17
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/7] netfilter: nf_tables: always release netdev hooks from notifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/7] selftests: nft_flowtable.sh: wait for specific nc pids
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/7] selftests: nft_flowtable.sh: no need for ps -x option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/7] selftests: nft_flowtable.sh: check ingress/egress chain too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/7] selftests: nft_flowtable.sh: use /proc for pid checking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/7] netfilter: conntrack: fix possible bug_on with enable_hooks=1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/7] selftests: nft_flowtable.sh: monitor result file sizes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/7] Netfilter updates for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: flowtable: split IPv6 datapath in helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: flowtable: simplify route logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: flowtable: split IPv4 datapath in helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/4] selftest: netfilter: small test tweaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] testing: selftests: nft_flowtable.sh: check ingress/egress chain too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: fix possible bug_on with enable_hooks=1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: always release netdev hooks from notifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v4] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 2/2] datatype: add hint on error handler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] datatype: misspell support with symbol table parser for error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf] testing: selftests: nft_flowtable.sh: check ingress/egress chain too
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 00/11 nf-next,v1] track, reduce and prefetch expression
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/2] netfilter: nfnetlink_log & nfnetlink_queue: enable cgroup id socket info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft transaction semantics and flowtable hw offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft transaction semantics and flowtable hw offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next] netfilter: Reorder fields in 'struct nf_conntrack_expect'
- From: Christophe JAILLET <christophe.jaillet@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: integrate pipapo into commit protocol
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: nfnetlink_queue: enable cgroup id socket info retrieval
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nft 3/3] optimize: do not remove counter in verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] evaluate: skip optimization if anonymous set uses stateful statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] evaluate: allow stateful statements with anonymous verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nfnetlink_queue: enable cgroup id socket info retrieval
- From: Patryk Sondej <patryk.sondej@xxxxxxxxx>
- [PATCH 1/2] netfilter: nfnetlink_log: enable cgroup id socket info retrieval
- From: Patryk Sondej <patryk.sondej@xxxxxxxxx>
- [PATCH 0/2] netfilter: nfnetlink_log & nfnetlink_queue: enable cgroup id socket info
- From: Patryk Sondej <patryk.sondej@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 net-next] netfilter: nft_set_pipapo: Use struct_size()
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH net-next] netfilter: nft_set_pipapo: Use struct_size()
- From: Christophe JAILLET <christophe.jaillet@xxxxxxxxxx>
- [PATCH v2 net-next] netfilter: nft_set_pipapo: Use struct_size()
- From: Christophe JAILLET <christophe.jaillet@xxxxxxxxxx>
- [iptables PATCH 0/4] Implement a best-effort forward compat solution
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] nft: Introduce and use bool nft_handle::compat
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/4] Add --compat option to *tables-nft and *-nft-restore commands
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/4] tests: Test compat mode
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: Pass nft_handle to add_{target,action}()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 10/12] netfilter: nf_tables: add track infrastructure to prepare for expression prefetch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 12/12] netfilter: nf_tables: re-enable expression reduction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 11/12] netfilter: nf_tables: add expression prefetch infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 09/12] netfilter: nf_tables: cancel tracking when register differs from expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 07/12] netfilter: nf_tables: split expression comparison and reduction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 08/12] netfilter: nf_tables: remove bitwise register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 05/12] netfilter: nf_tables: check if register contains valid data before access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 04/12] netfilter: nf_tables: add nft_reg_load*() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 06/12] netfilter: nf_tables: add struct nft_reg_track and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 02/12] netfilter: nf_tables: add nft_reg_store_*() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 03/12] netfilter: nf_tables: update nft_copy_data() to take struct nft_regs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 01/12] netfilter: nf_tables: add nft_expr_info_setup() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/11 nf-next,v1] track, reduce and prefetch expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Phil Sutter <phil@xxxxxx>
- nft transaction semantics and flowtable hw offload
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: pass context structure to nft_parse_register_load
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: validate register loads never access unitialised registers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: don't initialize registers in nft_do_chain()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH AUTOSEL 5.10 22/24] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 39/49] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.15 27/30] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.2 43/53] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.3 49/59] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nf] netfilter: fix possible bug_on with enable_hooks=1
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: always release netdev hooks from notifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/1] netfilter: nf_tables: fix ct untracked match breakage
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH nf-next 01/19] selftest: netfilter: use /proc for pid checking
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next v2 1/4] selftest: netfilter: use /proc for pid checking
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next v2 0/4] selftest: netfilter: small test tweaks
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next v2 3/4] selftest: netfilter: wait for specific nc pids
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next v2 4/4] selftest: netfilter: monitor result file sizes
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next v2 2/4] selftest: netfilter: no need for ps -x option
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- Re: [PATCH nf-next 15/19] netfilter: nft: add payload application
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 15/19] netfilter: nft: add payload application
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/1] netfilter: nf_tables: fix ct untracked match breakage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/1] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 04/19] selftest: netfilter: monitor result file sizes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 02/19] selftest: netfilter: no need for ps -x option
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 01/19] selftest: netfilter: use /proc for pid checking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 0/3] Extract nftnl_rule parsing code
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 16/19] netfilter: nftables: fast path payload mangle
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nft] payload: add offload flag to the statements
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 18/19] netfilter: nft_payload: save payload if needed
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 19/19] selftests: netfilter: dscp offload test
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 17/19] netfilter: nftables: payload save mechanism
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 15/19] netfilter: nft: add payload application
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 16/19] netfilter: nftables: fast path payload mangle
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 13/19] netfilter: conntrack: register nft extension
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 14/19] netfilter: nft: add payload context into extension
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 10/19] netfilter: nft_payload: allow offload in the netlink
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 12/19] netfilter: nft: empty nft conntrack extension
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 11/19] netfilter: conntrack: nft extension Kconfig
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 08/19] netfilter: nft_payload: use flag for checksum need
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 09/19] netfilter: nft_payload: add offload flag define
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 07/19] netfilter: nft_payload: export mangle
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 05/19] netfilter: nft_payload: refactor mangle operation
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 06/19] netfilter: nft_payload: publish nft_payload_set
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 04/19] selftest: netfilter: monitor result file sizes
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 03/19] selftest: netfilter: wait for specific nc pids
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 01/19] selftest: netfilter: use /proc for pid checking
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 02/19] selftest: netfilter: no need for ps -x option
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload
- From: Boris Sukholitko <boris.sukholitko@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix ct untracked match breakage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: nf_tables: fix ct untracked match breakage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: nf_tables: hit ENOENT on unexisting chain/flowtable update with missing attributes
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 2/3] selftests: netfilter: fix libmnl pkg-config usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nf_tables: hit ENOENT on unexisting chain/flowtable update with missing attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: deactivate anonymous set from preparation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: add nat examples
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH nft] netlink: restore typeof interval map data type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: add nat examples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: restore typeof interval map data type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: list set/map flag keywords in a table
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: add nat examples
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Quentin Deslandes <qde@xxxxxxxx>
- Re: [iptables PATCH 1/3] arptables: Fix parsing of inverted 'arp operation' match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] arptables: Fix parsing of inverted 'arp operation' match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] xshared: Fix parsing of option arguments in same word
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] arptables: Don't omit standard matches if inverted
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [iptables PATCH 1/2] utils: nfbpf_compile: Replace pcap_compile_nopcap()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix libmnl pkg-config usage
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nf] selftests: netfilter: fix libmnl pkg-config usage
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: incomplete extended error reporting for singleton device in chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: handle singleton element in netdevice set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: hit ENOENT on unexisting chain/flowtable update with missing attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft] json: allow to specify comment on chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 01/19] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft] json: allow to specify comment on table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] meta: skip protocol context update for nfproto with same table family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- LPC 2023 Networking and BPF Track CFP
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: integrate pipapo into commit protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: bail out if new flowtable does not specify hook and priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: allow insertion clash of gre protocol
- From: Faicker Mo <faicker.mo@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net-next 17/19] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 18/19] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/19] netfilter: nf_tables: do not store verdict in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/19] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/19] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/19] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/19] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/19] netfilter: nf_tables: remove unneeded conditional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/19] ipvs: Correct spelling in comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/19] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/19] netfilter: nf_tables: don't store address of last rule on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/19] netfilter: nf_tables: do not store rule in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 19/19] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/19] netfilter: nf_tables: make validation state per table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/19] netfilter: nf_tables: don't store chain address on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/19] netfilter: nf_tables: do not store pktinfo in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/19] netfilter: nf_tables: don't write table validation state without mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/19] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/19] ipvs: Remove {Enter,Leave}Function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/20] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/20] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/20] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/20] netfilter: nf_tables: do not store verdict in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 20/20] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/20] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/20] netfilter: nf_tables: do not store pktinfo in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/20] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/20] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/20] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/20] netfilter: nf_tables: don't store chain address on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/20] netfilter: nf_tables: make validation state per table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/20] netfilter: nf_tables: remove unneeded conditional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/20] netfilter: nf_tables: do not store rule in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/20] ipvs: Correct spelling in comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/20] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/20] netfilter: nf_tables: don't write table validation state without mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 18/20] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/20] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 19/20] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/20] ipvs: Remove {Enter,Leave}Function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/20] netfilter: nf_tables: don't store address of last rule on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [iptables PATCH 2/3] nft: Extract rule parsing callbacks from nft_family_ops
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] nft: ruleparse: Create family-specific source files
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/3] Extract nftnl_rule parsing code
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] nft: Introduce nft-ruleparse.{c,h}
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v5 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 2/7] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 6/7] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 5/7] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 3/7] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 4/7] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [iptables PATCH 1/2] utils: nfbpf_compile: Replace pcap_compile_nopcap()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] nft-shared: Drop unused include
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft] evaluate: bail out if new flowtable does not specify hook and priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/2] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v10 13/13] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 12/13] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 0/2] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nft,v3 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [libmnl, PATCH] examples: add rtnl-link-can
- From: Dario Binacchi <dario.binacchi@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH net 2/2] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH v10 10/13] selftests/landlock: Share enforce_ruleset()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 07/13] landlock: Refactor layer helpers
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 6/7] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 5/7] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 4/7] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 3/7] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 2/7] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 0/7] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v10 05/13] landlock: Refactor merge/inherit_ruleset functions
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 03/13] landlock: Remove unnecessary inlining
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH bpf-next v3 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH nf-next,v4 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 5/5] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 3/5] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/5] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/5] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/5] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH net 1/5] netfilter: br_netfilter: fix recent physdev match breakage
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH bpf-next v3 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH net 5/5] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: br_netfilter: fix recent physdev match breakage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 4/6] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Andrea Claudi <aclaudi@xxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: set SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf-next v3 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 4/4] ipvs: Correct spelling in comments
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 3/4] ipvs: Remove {Enter,Leave}Function
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH v10 13/13] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 12/13] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 10/13] selftests/landlock: Share enforce_ruleset()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 07/13] landlock: Refactor layer helpers
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 05/13] landlock: Refactor merge/inherit_ruleset functions
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 03/13] landlock: Remove unnecessary inlining
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v5 3/3] Replace invocation of weak PRNG
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH v5 3/3] Replace invocation of weak PRNG
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH v5 3/3] Replace invocation of weak PRNG
- From: david.keisarschm@xxxxxxxxxxxxxxx
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: nf_tables: do not store rule in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: nf_tables: do not store verdict in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: nf_tables: do not store pktinfo in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: nf_tables: remove unneeded conditional
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/4] netfilter: nf_tables: shrink stack usage a bit more
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: make validation state per table
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables: don't write table validation state without mutex
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: nf_tables: move ruleset validation state to table
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 4/6] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Andrea Claudi <aclaudi@xxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Quentin Deslandes <qde@xxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Abhijeet Rastogi via B4 Relay <devnull+abhijeet.1989.gmail.com@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Quentin Deslandes <qde@xxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables v2] exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: don't store chain address on jump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: don't store address of last rule on jump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nf_tables: shrink jump stack size
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 4/4] ipvs: Correct spelling in comments
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] ipvs: Remove {Enter,Leave}Function
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 4/4] ipvs: Correct spelling in comments
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 3/4] ipvs: Remove {Enter,Leave}Function
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Dave Pifke <dave@xxxxxxxxx>
- Re: [PATCH nf-next 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]