Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH net-next 11/20] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/20] netfilter: nf_tables: don't store chain address on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/20] netfilter: nf_tables: make validation state per table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/20] netfilter: nf_tables: remove unneeded conditional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/20] netfilter: nf_tables: do not store rule in traceinfo structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/20] ipvs: Correct spelling in comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/20] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/20] netfilter: nf_tables: don't write table validation state without mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 18/20] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/20] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 19/20] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/20] ipvs: Remove {Enter,Leave}Function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/20] netfilter: nf_tables: don't store address of last rule on jump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [iptables PATCH 2/3] nft: Extract rule parsing callbacks from nft_family_ops
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] nft: ruleparse: Create family-specific source files
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/3] Extract nftnl_rule parsing code
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] nft: Introduce nft-ruleparse.{c,h}
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v5 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 2/7] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 6/7] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 5/7] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 3/7] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 4/7] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v5 0/7] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [iptables PATCH 1/2] utils: nfbpf_compile: Replace pcap_compile_nopcap()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] nft-shared: Drop unused include
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft] evaluate: bail out if new flowtable does not specify hook and priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/2] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v10 13/13] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 12/13] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 0/2] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nft,v3 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v6 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [libmnl, PATCH] examples: add rtnl-link-can
- From: Dario Binacchi <dario.binacchi@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH net 2/2] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH v10 10/13] selftests/landlock: Share enforce_ruleset()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 07/13] landlock: Refactor layer helpers
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v4 7/7] selftests/bpf: add missing netfilter return value and ctx access tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 6/7] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 5/7] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 4/7] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 3/7] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 2/7] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 1/7] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v4 0/7] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v10 05/13] landlock: Refactor merge/inherit_ruleset functions
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 03/13] landlock: Remove unnecessary inlining
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH bpf-next v3 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH nf-next,v4 2/7] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] mnl: flowtable support for extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 6/7] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 3/7] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 5/5] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 3/5] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/5] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/5] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/5] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- [PATCH v3] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH net 1/5] netfilter: br_netfilter: fix recent physdev match breakage
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH bpf-next v3 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH net 5/5] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: br_netfilter: fix recent physdev match breakage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH bpf-next v3 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 4/6] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v3 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Andrea Claudi <aclaudi@xxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: set SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf-next v3 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 4/4] ipvs: Correct spelling in comments
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 3/4] ipvs: Remove {Enter,Leave}Function
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v3 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: validate catch-all set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH v10 13/13] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 12/13] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 10/13] selftests/landlock: Share enforce_ruleset()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 07/13] landlock: Refactor layer helpers
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 05/13] landlock: Refactor merge/inherit_ruleset functions
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 03/13] landlock: Remove unnecessary inlining
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v5 3/3] Replace invocation of weak PRNG
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH v5 3/3] Replace invocation of weak PRNG
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH v5 3/3] Replace invocation of weak PRNG
- From: david.keisarschm@xxxxxxxxxxxxxxx
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: nf_tables: do not store rule in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: nf_tables: do not store verdict in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: nf_tables: do not store pktinfo in traceinfo structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: nf_tables: remove unneeded conditional
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/4] netfilter: nf_tables: shrink stack usage a bit more
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Abhijeet Rastogi <abhijeet.1989@xxxxxxxxx>
- Re: [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Quentin Monnet <quentin@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: make validation state per table
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables: don't write table validation state without mutex
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: nf_tables: move ruleset validation state to table
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 4/6] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Andrea Claudi <aclaudi@xxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Quentin Deslandes <qde@xxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31]
- From: Abhijeet Rastogi via B4 Relay <devnull+abhijeet.1989.gmail.com@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Quentin Deslandes <qde@xxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables v2] exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: don't store chain address on jump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: don't store address of last rule on jump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nf_tables: shrink jump stack size
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 4/4] ipvs: Correct spelling in comments
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] ipvs: Remove {Enter,Leave}Function
- From: Horatiu Vultur <horatiu.vultur@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 4/4] ipvs: Correct spelling in comments
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 3/4] ipvs: Remove {Enter,Leave}Function
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 1/4] ipvs: Update width of source for ip_vs_sync_conn_options
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next v2 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Dave Pifke <dave@xxxxxxxxx>
- Re: [PATCH nf-next 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- [PATCH nf-next 4/4] ipvs: Correct spelling in comments
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next 3/4] ipvs: Remove {Enter,Leave}Function
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next 2/4] ipvs: Consistently use array_size() in ip_vs_conn_init()
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next 1/4] ipvs: Update width of source for ip_vs_sync_con_options
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH nf-next 0/4] ipvs: Cleanups for v6.4
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH v2] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: fix wrong ct->timeout value
- From: Tzung-Bi Shih <tzungbi@xxxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Dave Pifke <dave@xxxxxxxxx>
- Re: [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] main: Error out when combining -i/--interactive and -f/--file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE
- From: Dave Pifke <dave@xxxxxxxxx>
- Re: [PATCH bpf-next 6/6] bpf: add test_run support for netfilter program type
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: br_netfilter: fix recent physdev match breakage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] [PATCH] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Chen Aotian <chenaotian@xxxxxxx>
- [PATCH] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT
- From: Chen Aotian <chenaotian2@xxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH bpf-next 6/6] bpf: add test_run support for netfilter program type
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH bpf-next 4/6] netfilter: disallow bpf hook attachment at same priority
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 3/6] netfilter: nfnetlink hook: dump bpf prog id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 6/6] bpf: add test_run support for netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 0/6] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 2/6] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 5/6] tools: bpftool: print netfilter link info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next 1/6] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft,v2 4/4] optimize: support for redirect and masquerade
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 4/4] optimize: support for redirect and masquerade
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Test for false-positive rule check
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] tests: shell: Test for false-positive rule check
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 2/2] ebtables-nft: add broute table emulation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables v2] build: use pkg-config for libpcap
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables 2/2] ebtables-nft: add broute table emulation
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH iptables 2/2] ebtables-nft: add broute table emulation
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH nft 2/4] evaluate: bogus missing transport protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] revisit NAT redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] optimize: assert nat type on nat statement helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] optimize: support for redirect and masquerade
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] netlink_delinearize: do not reset protocol context for nat protocol expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] ip6tables: Fix checking existence of rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [External] Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Fei Cheng <chenwei.0515@xxxxxxxxxxxxx>
- Re: [External] Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Edward Cree <ecree.xilinx@xxxxxxxxx>
- [PATCH iptables 1/2] include: update nf_tables uapi header
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 2/2] ebtables-nft: add broute table emulation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [External] Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Fei Cheng <chenwei.0515@xxxxxxxxxxxxx>
- [PATCH iptables] ip6tables: Fix checking existence of rule
- From: Markus Boehme <markubo@xxxxxxxxxx>
- [PATCH nf] netfilter: br_netfilter: fix recent physdev match breakage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Edward Cree <ecree.xilinx@xxxxxxxxx>
- Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v5] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: nf_flow_table: count offloaded flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: nf_flow_table: count offloaded flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: nf_flow_table: count offloaded flows
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables v2] build: use pkg-config for libpcap
- From: Alyssa Ross <hi@xxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [syzbot] WARNING: proc registration bug in clusterip_tg_check (3)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Alyssa Ross <hi@xxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Alyssa Ross <hi@xxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH iptables] build: use pkg-config for libpcap
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] udp:nat:vxlan tx after nat should recsum if vxlan tx offload on
- From: Fei Cheng <chenwei.0515@xxxxxxxxxxxxx>
- [PATCH iptables] build: use pkg-config for libpcap
- From: Alyssa Ross <hi@xxxxxxxxx>
- Re: [GIT PULL] netfilter updates for net-next 2023-03-30
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [GIT PULL] netfilter updates for net-next 2023-03-30
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 0/4] netfilter updates for net-next
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net-next 4/4] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/4] netfilter: Correct documentation errors in nf_tables.h
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/4] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/4] netfilter: nfnetlink_log: remove rcu_bh usage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/4] netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC PATCH v2] nft: autocomplete for libreadline
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- RE: [RFC PATCH] nft: autocomplete for libreadline
- From: Jan Engelhardt <jengelh@xxxxxxx>
- RE: [RFC PATCH] nft: autocomplete for libreadline
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [RFC PATCH] nft: autocomplete for libreadline
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [RFC PATCH] nft: autocomplete for libreadline
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [nft PATCH] xt: Fix translation error path
- From: Phil Sutter <phil@xxxxxx>
- RE: iptables patch
- From: Kevin Peeters <kevin.peeters@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: Correct documentation errors in nf_tables.h
- From: Matthieu De Beule <matthieu.debeule@xxxxxxxxx>
- Re: iptables patch
- From: Phil Sutter <phil@xxxxxx>
- RE: iptables patch
- From: Kevin Peeters <kevin.peeters@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nfnetlink_log: remove rcu_bh usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: iptables patch
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] xt: Fix translation error path
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft,v3 07/12] evaluate: honor statement length in bitwise evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v3 05/12] evaluate: set up integer type to shift expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: iptables patch
- From: Kevin Peeters <kevin.peeters@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v5] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Eric Sage <eric_sage@xxxxxxxxx>
- Re: [lvc-project] [PATCH] netfilter: nfnetlink: NULL-check skb->dev in __build_packet_message()
- From: "Igor A. Artemiev" <Igor.A.Artemiev@xxxxxxx>
- [PATCH nft] intervals: use expression location when translating to intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [lvc-project] [PATCH] netfilter: nfnetlink: NULL-check skb->dev in __build_packet_message()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [lvc-project] [PATCH] netfilter: nfnetlink: NULL-check skb->dev in __build_packet_message()
- From: Igor Artemiev <Igor.A.Artemiev@xxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH v4] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Eric Sage <eric_sage@xxxxxxxxx>
- Re: [PATCH v3] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] Support for shifted port-ranges in NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Stanislav Fomichev <sdf@xxxxxxxxxx>
- [PATCH nf-next v3 4/4] netfilter: nft_redir: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 3/4] netfilter: nft_masq: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 2/4] netfilter: nft_nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 1/4] netfilter: nat: extend core support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 0/4] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 0/3] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Stanislav Fomichev <sdf@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH nftables 0/8] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables 0/8] Support for shifted port-ranges in NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 1/5] netfilter: nft_redir: use `struct nf_nat_range2` throughout and deduplicate eval call-backs
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH v3] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Eric Sage <eric_sage@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Stanislav Fomichev <sdf@xxxxxxxxxx>
- Re: [PATCH nft] payload: set byteorder when completing expression
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] payload: set byteorder when completing expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Eric Sage <eric_sage@xxxxxxxxx>
- [PATCH nft,v3 11/12] tests: shell: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 12/12] tests: py: extend test-cases for mark statements with bitwise expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 09/12] tests: py: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 04/12] evaluate: relax type-checking for integer arguments in mark statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 10/12] tests: shell: rename and move bitwise test-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 07/12] evaluate: honor statement length in bitwise evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 02/12] evaluate: support shifts larger than the width of the left operand
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 08/12] netlink_delinerize: incorrect byteorder in mark statement listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 06/12] evaluate: honor statement length in integer evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 05/12] evaluate: set up integer type to shift expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 03/12] evaluate: don't eval unary arguments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 00/12] mark statement support for non-constant expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 01/12] netlink_delinearize: correct type and byte-order of shifts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH v10 13/13] landlock: Document Landlock's network support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 11/13] selftests/landlock: Add 10 new test suites dedicated to network
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 09/13] landlock: Add network rules and TCP hooks support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 12/13] samples/landlock: Add network demo
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 10/13] selftests/landlock: Share enforce_ruleset()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 08/13] landlock: Refactor landlock_add_rule() syscall
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 07/13] landlock: Refactor layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 06/13] landlock: Move and rename layer helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 05/13] landlock: Refactor merge/inherit_ruleset functions
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 03/13] landlock: Remove unnecessary inlining
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 04/13] landlock: Refactor landlock_find_rule/insert_rule
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 02/13] landlock: Allow filesystem layout changes for domains without such rule type
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 01/13] landlock: Make ruleset's access masks more generic
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v10 00/13] Network support for Landlock
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 0/3] bpf: add netfilter program type
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nfnetlink_queue: enable classid socket info retrieval
- From: eric_sage@xxxxxxxxx
- [PATCH nft,v2 7/8] tests: shell: rename and move bitwise test-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 6/8] tests: py: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 8/8] tests: shell: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 5/8] evaluate: relax type-checking for integer arguments in mark statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 0/8] mark statement support for non-constant expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/8] netlink_delinearize: correct type and byte-order of shifts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/8] evaluate: support shifts larger than the width of the left operand
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 4/8] evaluate: get length from statement instead of lhs expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 3/8] evaluate: don't eval unary arguments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/5] netfilter: keep conntrack reference until IPsecv6 policy checks are done
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/5] xtables: move icmp/icmpv6 logic to xt_tcpudp
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/5] netfilter: xtables: disable 32bit compat interface by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/5] netfilter: nft_masq: deduplicate eval call-backs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/5] netfilter: nft_redir: use `struct nf_nat_range2` throughout and deduplicate eval call-backs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/5] netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net-next 1/1] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH] net : netfilter: Keep conntrack reference until IPsecv6 policy checks are done
- From: Madhu Koriginja <madhu.koriginja@xxxxxxx>
- [PATCH net-next 1/1] netfilter: ctnetlink: Support offloaded conntrack entry deletion
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [nft PATCH 1/2] Reduce signature of do_list_table()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Kyuwon Shim <Kyuwon.Shim@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Kyuwon Shim <Kyuwon.Shim@xxxxxxxxxxxxxxxxxxx>
- [nft PATCH 1/2] Reduce signature of do_list_table()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/2] Avoid a memleak with 'reset rules' command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH v5] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxxxx>
- Re: [PATCH ulogd2 v3 0/2] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 4/9] evaluate: don't eval unary arguments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 7/9] tests: py: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/9] netlink_delinearize: correct type and byte-order of shifts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/9] evaluate: insert byte-order conversions for expressions between 9 and 15 bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/9] mark statement support for non-constant expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 6/9] evaluate: relax type-checking for integer arguments in mark statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/9] evaluate: support shifts larger than the width of the left operand
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 8/9] tests: shell: rename and move bitwise test-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/9] evaluate: get length from statement instead of lhs expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 9/9] tests: shell: add test-cases for ct and packet mark payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 v3 0/2] pcap: prevent crashes when output `FILE *` is null
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v3 1/2] pcap: simplify opening of output file
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH ulogd2 v3 1/2] pcap: simplify opening of output file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next] xtables: move icmp/icmpv6 logic to xt_tcpudp
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: xtables: disable 32bit compat interface by default
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v3 0/2] pcap: prevent crashes when output `FILE *` is null
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v3 1/2] pcap: simplify opening of output file
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v3 1/2] pcap: simplify opening of output file
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ulogd2 v3 1/2] pcap: simplify opening of output file
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v3 2/2] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v3 0/2] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net-next] net: netfilter: Keep conntrack reference until IPsecv6 policy checks are done
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v2] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] Correct documentation errors in nf_tables.h
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 1/2] netfilter: nft_redir: use `struct nf_nat_range2` throughout and deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: nft_masq: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 0/2] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 0/2] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_nat_redirect: use `struct nf_nat_range2` in ipv4 API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nft_masq: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nft_redir: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH ulogd2 v2] pcap: prevent crashes when output `FILE *` is null
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] meta: don't crash if meta key isn't known
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: nf_flow_table: count offloaded flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH] tests: hash:ip,port.t: Replace VRRP by GRE protocol
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH libnftnl] expr: meta: introduce broute meta expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: nf_flow_table: count offloaded flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v3] parser_bison: simplify reset syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3] parser_bison: simplify reset syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] parser_bison: simplify reset syntax
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,v2] parser_bison: simplify reset syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_bison: simplify reset syntax
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] parser_bison: simplify reset syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 00/12] Network support for Landlock
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] Correct documentation errors in nf_tables.h
- From: Matthieu De Beule <matthieu.debeule@xxxxxxxxx>
- [PATCH nft] Revert "evaluate: relax type-checking for integer arguments in mark statements"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 1.0.7 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 00/12] Network support for Landlock
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nft_masq: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/3] NF NAT deduplication refactoring
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_nat_redirect: use `struct nf_nat_range2` in ipv4 API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nft_redir: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 0/9] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 0/9] Support for shifted port-ranges in NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH nftables] src: fix a couple of typo's in comments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables] exthdr: add boolean DCCP option matching
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nft_nat: correct length for loading protocol registers
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [ipset PATCH] tests: hash:ip,port.t: Replace VRRP by GRE protocol
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: improve error reporting for unsupported chain type
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] cmd: move command functions to src/cmd.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH] tests: hash:ip,port.t: Replace VRRP by GRE protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: improve error reporting for unsupported chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ipset PATCH] tests: hash:ip,port.t: Replace VRRP by GRE protocol
- From: Phil Sutter <phil@xxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH 0/4] Some testsuite improvements
- From: Phil Sutter <phil@xxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH 0/4] Some testsuite improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] xt: Fix fallback printing for extensions matching keywords
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] doc: nft.8: Document lower priority limit for nat type chains
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] Reject invalid chain priority values in user space
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] Reject invalid chain priority values in user space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v2] Reject invalid chain priority values in user space
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 0/4] Netfilter fixes for net
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [nft PATCH] Reject invalid chain priority values in user space
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Reject invalid chain priority values in user space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/9] netfilter: bridge: introduce broute meta statement
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [nft PATCH] Reject invalid chain priority values in user space
- From: Phil Sutter <phil@xxxxxx>
- Re: [ANNOUNCE] libnftnl 1.2.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.2.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: nft_redir: correct value of inet type `.maxattrs`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/4] netfilter: nft_redir: correct length for loading protocol registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] netfilter: nft_masq: correct length for loading protocol registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: nft_nat: correct length for loading protocol registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] xt: Fix fallback printing for extensions matching keywords
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: nft.8: Document lower priority limit for nat type chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: nft.8: Document lower priority limit for nat type chains
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] doc: nft.8: Document lower priority limit for nat type chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] doc: nft.8: Document lower priority limit for nat type chains
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] xt: Fix fallback printing for extensions matching keywords
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 0/4] NAT fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] ulogd2: Avoid use after free in unregister on global ulogd_fds linked list
- From: Kyuwon Shim <kyuwon.shim@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 9/9] netfilter: nat: fix indentation of function arguments
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 8/9] netfilter: conntrack: fix typo
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 7/9] selftests: add a selftest for big tcp
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/9] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/9] netfilter: move br_nf_check_hbh_len to utils
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/9] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/9] netfilter: bridge: check len before accessing more nh data
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/9] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/9] Netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/9] netfilter: bridge: introduce broute meta statement
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 0/4] NAT fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCHv2 nf-next 6/6] selftests: add a selftest for big tcp
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 1/9] netfilter: conntrack: fix typo
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 7/9] netfilter: nf_nat_redirect: use `struct nf_nat_range2` in ipv4 API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 4/9] netfilter: nft_nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 3/9] netfilter: nat: extend core support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 8/9] netfilter: nft_redir: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 5/9] netfilter: nft_masq: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 0/9] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 9/9] netfilter: nft_redir: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 6/9] netfilter: nft_masq: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 2/9] netfilter: nat: fix indentation of function arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf 2/4] netfilter: nft_masq: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf 4/4] netfilter: nft_redir: correct value of inet type `.maxattrs`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf 0/4] NAT fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf 1/4] netfilter: nft_nat: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf 3/4] netfilter: nft_redir: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCHv2 nf-next 6/6] selftests: add a selftest for big tcp
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 4/6] netfilter: move br_nf_check_hbh_len to utils
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 3/6] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 2/6] netfilter: bridge: check len before accessing more nh data
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 1/6] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 0/6] netfilter: handle ipv6 jumbo packets properly for bridge ovs and tc
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH nf-next 6/6] selftests: add a selftest for big tcp
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH nf-next 00/13] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 12/13] netfilter: nft_redir: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 05/13] netfilter: nft_nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 4/6] netfilter: move br_nf_check_hbh_len to utils
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 6/6] selftests: add a selftest for big tcp
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 3/6] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: bridge: check len before accessing more nh data
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 1/6] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [ipset PATCH 2/4] tests: xlate: Make test input valid
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 0/4] Some testsuite improvements
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 3/4] tests: cidr.sh: Add ipcalc fallback
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 1/4] tests: xlate: Test built binary by default
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 4/4] tests: hash:ip,port.t: 'vrrp' is printed as 'carp'
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH nf-next 00/13] Support for shifted port-ranges in NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 12/13] netfilter: nft_redir: deduplicate eval call-backs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 10/13] netfilter: nf_nat_redirect: use `struct nf_nat_range2` in ipv4 API
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 05/13] netfilter: nft_nat: add support for shifted port-ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 2/3] netfilter: tproxy: fix deadlock due to missing BH disable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: conntrack: adopt safer max chain length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack:
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/6] netfilter: move br_nf_check_hbh_len to utils
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/6] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: bridge: check len before accessing more nh data
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/6] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack:
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH net] netfilter: conntrack:
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH nf-next 4/6] netfilter: move br_nf_check_hbh_len to utils
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH nf-next 3/6] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: bridge: check len before accessing more nh data
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH nf-next 1/6] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: tproxy: fix deadlock due to missing BH disable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 00/12] Network support for Landlock
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH nf-next 13/13] netfilter: nft_redir: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 11/13] netfilter: nft_redir: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 10/13] netfilter: nf_nat_redirect: use `struct nf_nat_range2` in ipv4 API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 12/13] netfilter: nft_redir: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 05/13] netfilter: nft_nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 00/13] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 08/13] netfilter: nft_masq: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 01/13] netfilter: conntrack: fix typo
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 04/13] netfilter: nft_nat: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 09/13] netfilter: nft_redir: correct value of inet type `.maxattrs`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 02/13] netfilter: nat: fix indentation of function arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 07/13] netfilter: nft_masq: deduplicate eval call-backs
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 03/13] netfilter: nat: extend core support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 06/13] netfilter: nft_masq: correct length for loading protocol registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 3/3] redir: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 2/3] masq: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 1/3] nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 0/3] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 4/8] json: formatting fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 3/8] redir: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 6/8] doc: correct NAT statement description
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 8/8] test: py: add tests for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 0/8] Support for shifted port-ranges in NAT
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 7/8] doc: add shifted port-ranges to nat statements
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 2/8] masq: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 1/8] nat: add support for shifted port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 5/8] json: add support for shifted nat port-ranges
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]