Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [nft PATCH v4 13/32] evaluate: support shifts larger than the width of the left operand
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 6/6] selftests: add a selftest for big tcp
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 5/6] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 4/6] netfilter: move br_nf_check_hbh_len to utils
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 2/6] netfilter: bridge: check len before accessing more nh data
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 3/6] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 1/6] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 0/6] netfilter: handle ipv6 jumbo packets properly for bridge ovs and tc
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf] netfilter: tproxy: fix deadlock due to missing BH disable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Major Dávid <major.david@xxxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Major Dávid <major.david@xxxxxxxxxx>
- [PATCH v2] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Ivan Delalande <colona@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 3/3] bpf: minimal support for programs hooked into netfilter framework
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 3/3] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Stanislav Fomichev <sdf@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 0/3] bpf: add netfilter program type
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH RFC v2 bpf-next 3/3] bpf: minimal support for programs hooked into netfilter framework
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: Bug report DNAT destination not work
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC v2 bpf-next 3/3] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC v2 bpf-next 2/3] libbpf: sync header file, add nf prog section name
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC v2 bpf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC v2 bpf-next 0/3] bpf: add netfilter program type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Major Dávid <major.david@xxxxxxxxxx>
- Re: CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Florian Westphal <fw@xxxxxxxxx>
- CPU soft lockup in a spin lock using tproxy and nfqueue
- From: Major Dávid <major.david@xxxxxxxxxx>
- Re: Bug report DNAT destination not work
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Bug report DNAT destination not work
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Bug report DNAT destination not work
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] selftests: nft_nat: ensuring the listening side is up before starting the client
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: ctnetlink: revert to dumping mark regardless of event type
- From: Ivan Delalande <colona@xxxxxxxxxx>
- Re: [ipset PATCH 0/2] Two minor code fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] selftests: nft_nat: ensuring the listening side is up before starting the client
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nft_quota: copy content when cloning expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: nft_last: copy content when cloning expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft-restore: Fix for deletion of new, referenced rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] nft-restore: Fix for deletion of new, referenced rule
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nf] selftests: nft_nat: ensuring the listening side is up before starting the client
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] tests: shell: use bash in 0011reset_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] cache: fetch more objects when resetting rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser_bison: allow to use quota in sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_quota: copy content when cloning expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_last: copy content when cloning expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] nft-restore: Fix for deletion of new, referenced rule
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,v2] src: add last statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3] evaluate: expand value to range when nat mapping contains intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v4] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Bryce Kahle <bryce.kahle@xxxxxxxxxxxxx>
- [PATCH nft,v2] evaluate: expand value to range when nat mapping contains intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: nft_nat: ensuring the listening side is up before starting the client
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH v3] netfilter: nf_flow_table: count offloaded flows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v3] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- [PATCH AUTOSEL 5.15 22/36] netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.1 28/49] netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.2 30/53] netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_flow_table: count offloaded flows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v2] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: count offloaded flows
- From: Julian Anastasov <ja@xxxxxx>
- RE: [PATCH nft v2] meta: introduce broute expression
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH libnftnl] expr: meta: introduce broute meta expression
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH nft v3] meta: introduce broute expression
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: count offloaded flows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] netfilter: nf_flow_table: count offloaded flows
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: bridge: introduce broute meta statement
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] meta: introduce broute expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2,v2] src: expand table command before evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2,v2] tests: shell: cover rule insertion by index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2] meta: introduce broute expression
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH nf-next v2] netfilter: bridge: introduce broute meta statement
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: introduce broute meta statement
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH nf-next] netfilter: bridge: introduce broute meta statement
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH nft] meta: introduce broute expression
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: introduce broute meta statement
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 00/12] Network support for Landlock
- From: Günther Noack <gnoack3000@xxxxxxxxx>
- [PATCH nft 2/2] src: expand table command before evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: shell: cover rule insertion by index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: introduce broute meta statement
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft] meta: introduce broute expression
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH nf-next] netfilter: bridge: introduce broute meta statement
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [iptables PATCH] include: Add missing linux/netfilter/xt_LOG.h
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/8] netfilter: nf_tables: allow to fetch set elements when table has an owner
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: expand value to range in nat mapping with intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ipset PATCH 0/2] Two minor code fixes
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 1/2] xlate: Fix for fd leak in error path
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 2/2] xlate: Drop dead code
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Phil Sutter <phil@xxxxxx>
- RE: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- RE: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Thomas Devoogdt <thomas@xxxxxxxxxxxx>
- [iptables PATCH] include: Add missing linux/netfilter/xt_LOG.h
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] parser_bison: missing close scope in destroy start condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next PATCH] netfilter: nft: introduce broute chain type
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v2] [iptables] include: netfilter: add xt_LOG.h to fix an include error on Linux < 3.4
- From: Thomas Devoogdt <thomas@xxxxxxxxxxxx>
- [PATCH nft] py: replace distutils with setuptools
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/8] netfilter: ip6t_rpfilter: Fix regression with VRF interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/8] netfilter: conntrack: fix rmmod double-free race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/8] netfilter: xt_length: use skb len to match in length_mt6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 8/8] netfilter: x_tables: fix percpu counter block leak on error path when creating new netns
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/8] netfilter: ebtables: fix table blob use-after-free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/8] netfilter: ctnetlink: make event listener tracking global
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/8] Netfilterf fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/8] netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/8] netfilter: nf_tables: allow to fetch set elements when table has an owner
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix percpu counter block leak on error path when creating new netns
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] [iptables] extensions: libxt_LOG.c: fix linux/netfilter/xt_LOG.h include on Linux < 3.4
- From: Thomas Devoogdt <thomas@xxxxxxxxxxxx>
- Kernel panic in nf_send_reset6() path
- From: "Thomas S." <thomashen@xxxxxxxxx>
- Re: [PATCH] netfilter: fix percpu counter block leak on error path when creating new netns
- From: Pavel Tikhomirov <ptikhomirov@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix percpu counter block leak on error path when creating new netns
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: make event listener tracking global
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: use skb len to match in length_mt6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] ebtables: fix table blob use-after-free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] netfilter: Fix regression in ip6t_rpfilter with VRF interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: fix rmmod double-free race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] netlink_delinearize: Sanitize concat data element decoding
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] netlink_delinearize: Sanitize concat data element decoding
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] netlink_delinearize: Sanitize concat data element decoding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nft 2/2] rule: expand standalone chain that contains rules
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables] xt_sctp: add the missing chunk types in sctp_help
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables] xt_sctp: add the missing chunk types in sctp_help
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: make event listener tracking global
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/6] netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nf] netfilter: use skb len to match in length_mt6
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf] ebtables: fix table blob use-after-free
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/6] extensions: libebt_redirect: Fix target translation
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/2] tests: xlate: Properly split input in replay mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/3] nft-shared: Lookup matches in iptables_command_state
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] tests: CLUSTERIP: Drop test file
- From: Phil Sutter <phil@xxxxxx>
- [syzbot] [bridge?] [coreteam?] KASAN: vmalloc-out-of-bounds Read in __ebt_unregister_table
- From: syzbot <syzbot+f61594de72d6705aea03@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [iptables PATCH 3/6] extensions: libebt_ip: Do not use 'ip dscp' for translation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/6] extensions: libebt_redirect: Fix target translation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/6] extensions: libebt_redirect: Fix for wrong syntax in translation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/6] extensions: libebt_ip: Translation has to match on ether type
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/6] ebtables: ip and ip6 matches depend on protocol match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/6] xtables-translate: Support insert with index
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] tests: xlate: Properly split input in replay mode
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] tests: xlate: Print file names even if specified
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] nft-shared: Use nft_create_match() in one more spot
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] nft-shared: Lookup matches in iptables_command_state
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] nft-shared: Simplify using nft_create_match()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] tests: CLUSTERIP: Drop test file
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next 6/6] netfilter: let reset rules clean out conntrack entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/6] netfilter: nf_tables: NULL pointer dereference in nf_tables_updobj()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/6] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/6] ipvs: avoid kfree_rcu without 2nd arg
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/6] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/6] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/6] netfilter: conntrack: udp: fix seen-reply test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Bryce Kahle <bryce.kahle@xxxxxxxxxxxxx>
- [PATCH nft 3/3] optimize: infer family for nat mapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] evaluate: infer family from mapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] evaluate: print error on missing family in nat statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: use start condition with new destroy command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] optimize: infer family for nat mapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] src: use start condition with new destroy command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] evaluate: infer family from mapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf PATCH] netfilter: Fix regression in ip6t_rpfilter with VRF interfaces
- From: Phil Sutter <phil@xxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Bryce Kahle <bryce.kahle@xxxxxxxxxxxxx>
- Re: PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Florian Westphal <fw@xxxxxxxxx>
- PROBLEM: nf_conntrack_events autodetect mode invalidates NETLINK_LISTEN_ALL_NSID netlink socket option
- From: Bryce Kahle <bryce.kahle@xxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: conntrack: fix rmmod double-free race
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix rmmod double-free race
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix rmmod double-free race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 07/12] landlock: Refactor landlock_add_rule() syscall
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 05/12] landlock: Move and rename umask_layers() and init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net-next 05/12] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- Re: [PATCH net-next 05/12] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: fix rmmod double-free race
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Hangyu Hua <hbh25y@xxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Hangyu Hua <hbh25y@xxxxxxxxx>
- [PATCH] netfilter: fix percpu counter block leak on error path when creating new netns
- From: Pavel Tikhomirov <ptikhomirov@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 05/12] landlock: Move and rename umask_layers() and init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net: netfilter: fix possible refcount leak in ctnetlink_create_conntrack()
- From: Hangyu Hua <hbh25y@xxxxxxxxx>
- Re: [lvc-project] [PATCH] netfilter: xt_recent: Fix attempt to update removed entry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [lvc-project] [PATCH] netfilter: xt_recent: Fix attempt to update removed entry
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [lvc-project] [PATCH] netfilter: xt_recent: Fix attempt to update removed entry
- From: Florian Westphal <fw@xxxxxxxxx>
- [lvc-project] [PATCH] netfilter: xt_recent: Fix attempt to update removed entry
- From: Igor Artemiev <Igor.A.Artemiev@xxxxxxx>
- [RFC nf-next 3/3] bpf: minimal support for programs hooked into netfilter framework
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 2/3] libbpf: sync header file, add nf prog section name
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 0/3] bpf, netfilter: minimal support for bpf progs
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 1/3] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: allow to fetch set elements when table has an owner
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v4 13/32] evaluate: support shifts larger than the width of the left operand
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] iptables_lib.sh: Fix for iptables-translate >= v1.8.9
- From: Petr Vorel <pvorel@xxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: let reset rules clean out conntrack entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: ignore existing nat mapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] iptables_lib.sh: Fix for iptables-translate >= v1.8.9
- From: Petr Vorel <pvorel@xxxxxxx>
- [PATCH nft 2/2] rule: expand standalone chain that contains rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] rule: add helper function to expand chain rules into commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: select merge criteria based on candidates rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: expand chain that contains rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v6] src: add support to command "destroy"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v6 0/7] Allow offloading of UDP NEW connections via act_ct
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH nf-next] netfilter: let reset rules clean out conntrack entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] optimize: fix incorrect expansion into concatenation with verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] optimize: wrap code to build concatenation in helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipvs: avoid kfree_rcu without 2nd arg
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] ipvs: avoid kfree_rcu without 2nd arg
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net-next v6 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 4/7] netfilter: flowtable: cache info of last offload
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v6 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH nf-next] netfilter: let reset rules clean out conntrack entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: udp: fix seen-reply test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: br_netfilter: disable sabotage_in hook after first suppression
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [iptables PATCH 0/7] Small ebtables-translate review + extras
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 2/2] Revert "netfilter: conntrack: fix bug in for_each_sctp_chunk"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: br_netfilter: disable sabotage_in hook after first suppression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: udp: fix seen-reply test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: udp: fix seen-reply test
- From: Roi Dayan <roid@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: br_netfilter: disable sabotage_in hook after first suppression
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: br_netfilter: disable sabotage_in hook after first suppression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- [RFC] bpf: add bpf_link support for BPF_NETFILTER programs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- allow user to offload tc action to net device : Question
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [PATCH nf] netfilter: br_netfilter: disable sabotage_in hook after first suppression
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net-next v5 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v5 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v5 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v5 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v5 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v5 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v5 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 4/7] netfilter: flowtable: save ctinfo in flow_offload
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v5 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH net-next v4 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [iptables PATCH 5/7] ebtables-translate: Ignore '-j CONTINUE'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/7] ebtables-translate: Drop exec_style
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/7] ebtables-translate: Print flush command after parsing is finished
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/7] ebtables: Refuse unselected targets' options
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/7] Small ebtables-translate review + extras
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/7] Proper fix for "unknown argument" error message
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/7] ebtables-translate: Use OPT_* from xshared.h
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 7/7] tests: xlate: Support testing multiple individual files
- From: Phil Sutter <phil@xxxxxx>
- RE: [PATCH nf] Revert "netfilter: conntrack: fix bug in for_each_sctp_chunk"
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH net-next] net: Kconfig: fix spellos
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nf] Revert "netfilter: conntrack: fix bug in for_each_sctp_chunk"
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH net 0/4] Netfilter fixes for net: manual merge
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH net 0/4] Netfilter fixes for net: manual merge
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [PATCH net-next v4 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next] netlink: fix spelling mistake in dump size assert
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 3/4] Revert "netfilter: conntrack: add sctp DATA_SENT state"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] net: Kconfig: fix spellos
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH net-next] net: Kconfig: fix spellos
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH v4 0/4] sctp conntrack fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v4 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 4/7] netfilter: flowtable: save ctinfo in flow_offload
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v4 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH nft] evaluate: set eval ctx for add/update statements with integer constants
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
- From: "Fernando F. Mancera" <ffmancera@xxxxxxxxxx>
- Re: [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netlink: fix spelling mistake in dump size assert
- From: Ido Schimmel <idosch@xxxxxxxxxx>
- Re: [PATCH net-next v3 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH v4 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v4 3/4] Revert "netfilter: conntrack: add sctp DATA_SENT state"
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v4 2/4] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v4 0/4] sctp conntrack fixes
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v4 1/4] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH net-next] netlink: fix spelling mistake in dump size assert
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net 2/2] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Leon Romanovsky <leon@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: udp: fix seen-reply test
- From: Roi Dayan <roid@xxxxxxxxxx>
- [PATCH v2] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Leon Romanovsky <leon@xxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: udp: fix seen-reply test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 3/9] netfilter: conntrack: avoid reload of ct->status
- From: Roi Dayan <roid@xxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH] netfilter: conntrack: remote a return value of the 'seq_print_acct' function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH v9 12/12] landlock: Document Landlock's network support
- From: Günther Noack <gnoack3000@xxxxxxxxx>
- Re: [PATCH nf,v4 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH 1/2 nf,v3] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Stateless load-balancer
- From: Armen Hovhannisyan <harmen.crd@xxxxxxxxx>
- Re: [PATCH net-next 9/9] netfilter: nf_tables: add support to destroy operation
- From: "Fernando F. Mancera" <ffmancera@xxxxxxxxxx>
- Re: [PATCH net-next 9/9] netfilter: nf_tables: add support to destroy operation
- From: "Fernando F. Mancera" <ffmancera@xxxxxxxxxx>
- Re: [PATCH net-next v3 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v3 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v3 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCH net-next v3 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v3 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH v3 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH v3 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH net-next 9/9] netfilter: nf_tables: add support to destroy operation
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR()
- From: Yang Yingliang <yangyingliang@xxxxxxxxxx>
- Re: [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH v3 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v4 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v4 2/2] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nf,v3] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] etc: Drop xtables.conf
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v4] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/1] netfilter: conntrack: handle tcp challenge acks during connection reuse
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH 1/2 nf,v3] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH net-next 9/9] netfilter: nf_tables: add support to destroy operation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 8/9] netfilter: nf_tables: avoid retpoline overhead for some ct expression calls
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 7/9] netfilter: nf_tables: avoid retpoline overhead for objref calls
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/9] netfilter: ip_tables: remove clusterip target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/9] netfilter: conntrack: move rcu read lock to nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/9] netfilter: conntrack: avoid reload of ct->status
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/9] netfilter: nf_tables: add static key to skip retpoline workarounds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/9] Netfilter updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/9] netfilter: conntrack: remove pr_debug calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v4] Implement 'reset rule' and 'reset rules' commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v3 3/4] Revert "netfilter: conntrack: add sctp DATA_SENT state"
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v3 2/4] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v3 0/4] sctp conntrack fixes
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v3 1/4] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH v2 3/4] Revert "netfilter: conntrack: add sctp DATA_SENT state"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 1/4] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v2 3/4] Revert "netfilter: conntrack: add sctp DATA_SENT state"
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v2 0/4] sctp conntrack fixes
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v2 2/4] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v2 4/4] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH 1/2 nf,v3] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf,v3] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/1] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/1] netfilter: conntrack: handle tcp challenge acks during connection reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net 1/1] netfilter: conntrack: handle tcp challenge acks during connection reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/1] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH 3/3] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v2 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [nft PATCH v4] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v2 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] etc: Drop xtables.conf
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 6.1] netfilter: Null pointer dereference in nf_tables_updobj
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 6.1] netfilter: Null pointer dereference in nf_tables_updobj
- From: Alok Tiwari <alok.a.tiwari@xxxxxxxxxx>
- Re: [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH 6.1] netfilter: Null pointer dereference in nf_tables_updobj
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v3] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 3/7] netfilter: flowtable: allow unidirectional rules
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6.1] netfilter: Null pointer dereference in nf_tables_updobj
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6.1] netfilter: Null pointer dereference in nf_tables_updobj
- From: Alok Tiwari <alok.a.tiwari@xxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: conntrack: unify established states for SCTP paths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: conntrack: unify established states for SCTP paths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 2/2] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- Proposal: Set nf_conn->tuplehash[IP_CT_DIR_REPLY] to the inverted address of packet when it is confirmed
- From: Christian Worm Mortensen <opensource@xxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH 0/3] sctp conntrack fixes
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH 1/3] netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH 2/3] netfilter: conntrack: fix bug in for_each_sctp_chunk
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH 3/3] netfilter: conntrack: unify established states for SCTP paths
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH v9 05/12] landlock: Move and rename umask_layers() and init_layer_masks()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 08/12] landlock: Add network rules and TCP hooks support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 12/12] landlock: Document Landlock's network support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 11/12] samples/landlock: Add network demo
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 04/12] landlock: Refactor merge/inherit_ruleset functions
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 07/12] landlock: Refactor landlock_add_rule() syscall
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 09/12] selftests/landlock: Share enforce_ruleset()
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 01/12] landlock: Make ruleset's access masks more generic
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH v9 00/12] Network support for Landlock
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.9 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: extend runtime set element automerge to cover partial deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nft_set_rbtree: skip elements in transaction from garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 0/2] nf_tables rbtree fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.9 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH] iptables-test.py: make explicit use of python3
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: Fix doxygen obsolete option warning
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_log] build: doc: Fix doxygen obsolete option warning
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH net-next v2 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v2 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net 3/3] netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] selftests: netfilter: fix transaction test script timeout handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/5] Fix some covscan findings
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: "Russell King (Oracle)" <linux@xxxxxxxxxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Phil Sutter <phil@xxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: "Russell King (Oracle)" <linux@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: "Russell King (Oracle)" <linux@xxxxxxxxxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: "Russell King (Oracle)" <linux@xxxxxxxxxxxxxxx>
- Re: 6.1: possible bug with netfilter conntrack?
- From: Florian Westphal <fw@xxxxxxxxx>
- 6.1: possible bug with netfilter conntrack?
- From: "Russell King (Oracle)" <linux@xxxxxxxxxxxxxxx>
- [PATCH] build: put xtables.conf in EXTRA_DIST
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft] intervals: restrict check missing elements fix to sets with no auto-merge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ulogd2 v2] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 4/5] meta: parse_iso_date() returns boolean
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/5] Fix some covscan findings
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/5] netlink: Fix for potential NULL-pointer deref
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/5] optimize: Do not return garbage from stack
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 5/5] mnl: dump_nf_hooks() leaks memory in error path
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/5] optimize: Clarify chain_optimize() array allocations
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] extensions: NAT: Fix for -Werror=format-security
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] extensions: NAT: Fix for -Werror=format-security
- From: Phil Sutter <phil@xxxxxx>
- Re: build failure since commit 'xt: Rewrite unsupported compat expression dumping'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: build failure since commit 'xt: Rewrite unsupported compat expression dumping'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] src: allow for updating devices on existing netdev chain - Test result
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft] src: allow for updating devices on existing netdev chain - Test result
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] src: allow for updating devices on existing netdev chain - Test result
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [ANNOUNCE] iptables 1.8.9 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] uapi: linux: restore IPPROTO_MAX to 256
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: build failure since commit 'xt: Rewrite unsupported compat expression dumping'
- From: Neels Hofmeyr <nhofmeyr@xxxxxxxxxxx>
- [PATCH net] uapi: linux: restore IPPROTO_MAX to 256
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] selftests: netfilter: fix transaction test script timeout handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_conntrack 1/1] conntrack: Allow setting of netlink buffer size
- From: Bill Blough <devel@xxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix transaction test script timeout handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_conntrack] conntrack: add sanity check to netlink socket filter API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_conntrack 1/1] conntrack: Allow setting of netlink buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_payload: incorrect arithmetics when rebuiling VLAN header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: conntrack: simplify sctp state machine
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: handle tcp challenge acks during connection reuse
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH v2] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Simon Horman <simon.horman@xxxxxxxxxxxx>
- [PATCH v4] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: build failure since commit 'xt: Rewrite unsupported compat expression dumping'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- build failure since commit 'xt: Rewrite unsupported compat expression dumping'
- From: Neels Hofmeyr <nhofmeyr@xxxxxxxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v8 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [iptables PATCH] Makefile: Replace brace expansion
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] Makefile: Replace brace expansion
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH net-next v1 6/7] net/sched: act_ct: offload UDP NEW connections
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 7/7] netfilter: nf_conntrack: allow early drop of offloaded UDP conns
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 5/7] net/sched: act_ct: set ctinfo in meta action depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 3/7] netfilter: flowtable: allow unidirectional rules
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 1/7] net: flow_offload: provision conntrack info in ct_metadata
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 4/7] netfilter: flowtable: allow updating offloaded rules asynchronously
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next v1 0/7] Allow offloading of UDP NEW connections via act_ct
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH v8 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [RFC PATCH v3] netfilter: conntrack: simplify sctp state machine
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC PATCH v3] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH v8 10/12] selftests/landlock: Add 10 new test suites dedicated to network
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [no subject]
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- [PATCH] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.
- From: Gavrilov Ilia <Ilia.Gavrilov@xxxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH net-next] Remove DECnet support from kernel
- From: "Arnd Bergmann" <arnd@xxxxxxxx>
- Re: [PATCH net-next] Remove DECnet support from kernel
- From: Jiri Slaby <jirislaby@xxxxxxxxxx>
- Re: [PATCH net-next] Remove DECnet support from kernel
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net-next] Remove DECnet support from kernel
- From: Jiri Slaby <jirislaby@xxxxxxxxxx>
- [PATCH libnetfilter_conntrack 1/1] conntrack: Allow setting of netlink buffer size
- From: William Blough <devel@xxxxxxxxx>
- Re: [RFC PATCH v2] netfilter: conntrack: simplify sctp state machine
- From: Long Xin <lxin@xxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nft] src: allow for updating devices on existing netdev chain - Test result
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [nft] src: allow for updating devices on existing netdev chain - Test result
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [PATCH nft] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/4] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/4] netfilter: nf_tables: allow to create netdev chain without device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/4] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/4] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: do not send complete notification of deletions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: remove clusterip target
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH v2] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- RE: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix transaction test script timeout handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix transaction test script timeout handling
- From: Mirsad Goran Todorovac <mirsad.todorovac@xxxxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: fix transaction test script timeout handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH] netfilter: conntrack: simplify sctp state machine
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH nft] optimize: payload expression requires inner_desc comparison
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 04/14] netlink: add macro for checking dump ctx size
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH net-next 04/14] netlink: add macro for checking dump ctx size
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf-next,v1 3/3] netfilter: nf_tables: support for deleting devices in an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 2/3] netfilter: nf_tables: support for adding new devices to an existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v1 1/3] netfilter: nf_tables: rename function to destroy hook list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]