Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nft,v1] src: allow for updating devices on existing netdev chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] chain: relax logic to build NFTA_CHAIN_HOOK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nf_tables: extend retpoline workarounds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: avoid retpoline overhead for objref calls
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: add static key to skip retpoline workarounds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: avoid retpoline overhead for some ct expression calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 1/7] netfilter: conntrack: fix ipv6 exthdr error check
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 7/7] netfilter: ipset: Rework long task execution when adding/deleting entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/7] netfilter: ipset: fix hash:net,port,net hang with /0 subnet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/7] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/7] netfilter: nf_tables: consolidate set description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/7] netfilter: nf_tables: perform type checking for existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/7] netfilter: nf_tables: add function to create set stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/7] netfilter: conntrack: fix ipv6 exthdr error check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_conntrack 2/2] conntrack: simplify calculation of `struct sock_fprog` length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_conntrack 1/2] conntrack: fix BPF code for filtering on big-endian architectures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2 00/16] vxlan, geneve, gre, gretap matching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: Add GPLv2+ header to .c files of recent creation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v5] netfilter: nf_tables: add support to destroy operation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v6] src: add support to command "destroy"
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH libnftnl] expr: add inner support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: Update copyright header to GPLv2+ in socket.c
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4] netfilter: nf_tables: add support to destroy operation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH] pcap: prevent crashes when output `FILE *` is null
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: conntrack: avoid reload of ct->status
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: conntrack: cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: conntrack: remove pr_debug calls
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH xtables-addons 0/3] Add Linux 6.2 Support
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [ANNOUNCE] ipset 7.17 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: fix hash:net,port,net hang with /0 subnet
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/2] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: Rework long task execution when adding/deleting entries
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH xtables-addons 2/3] build: replace `AC_DISABLE_STATIC` macro with an argument to `LT_INIT`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 3/3] build: support for Linux 6.2
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/3] build: replace obsolete `AC_PROG_LIBTOOL` macro with `LT_INIT`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 0/3] Add Linux 6.2 Support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: ipset bug (kernel hang)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- WARNING: proc registration bug in clusterip_tg_check
- From: Wei Chen <harperchen1110@xxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH libmnl v2] doc: fix some non-native English usages
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libmnl] doc: fix some non-native English usages
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libmnl] doc: fix some non-native English usages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH libmnl] doc: fix some non-native English usages
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnetfilter_conntrack 2/2] conntrack: simplify calculation of `struct sock_fprog` length
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnetfilter_conntrack 1/2] conntrack: fix BPF code for filtering on big-endian architectures
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] treewide: Convert del_timer*() to timer_shutdown*()
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- ipset bug (kernel hang)
- From: Марк Коренберг <socketpair@xxxxxxxxx>
- "nft list hooks" in older kernels?
- From: Simon Kirby <sim@xxxxxxxxxx>
- Re: [iptables PATCH 1/3] gitignore: Ignore utils/nfsynproxy
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] gitignore: Ignore generated ip6tables man pages
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] gitignore: Ignore utils/nfsynproxy
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] ebtables-translate: Install symlink
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] nft: Reject tcp/udp extension without proper protocol match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] nft: Reject tcp/udp extension without proper protocol match
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft 2/2] ct: use inet_service_type for proto-src and proto-dst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2,v2] evaluate: fix shift exponent underflow in concatenation evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] scanner: treat invalid octal strings as strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: fix shift exponent underflow in concatenation evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.6 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.6 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH nft] scanner: treat invalid octal strings as strings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] scanner: treat invalid octal strings as strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] scanner: treat invalid octal strings as strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] treewide: Convert del_timer*() to timer_shutdown*()
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH nf 4/4,v6] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 1.0.6 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] treewide: Convert del_timer*() to timer_shutdown*()
- From: Kalle Valo <kvalo@xxxxxxxxxx>
- Re: [conntrack-tools PATCH 0/4] Fix some minor bugs
- From: Phil Sutter <phil@xxxxxx>
- Re: [conntrack-tools PATCH 0/4] Fix some minor bugs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] owner: Fix potential array out of bounds access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] owner: Fix potential array out of bounds access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix ipv6 exthdr error check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 1/4] netfilter: nf_tables: consolidate set description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 2/4] netfilter: nf_tables: add function to create set stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 3/4] netfilter: nf_tables: perform type checking for existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 0/4] Make rule parsing strict
- From: Phil Sutter <phil@xxxxxx>
- [iptables RFC] ebtables: among: Embed meta protocol match into set lookup
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] treewide: Convert del_timer*() to timer_shutdown*()
- From: Pavel Machek <pavel@xxxxxx>
- [PATCH] treewide: Convert del_timer*() to timer_shutdown*()
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [PATCH nf,v4 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH 4/4] conntrack: Sanitize free_tmpl_objects()
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 2/4] conntrack: Fix for unused assignment in do_command_ct()
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 3/4] conntrack: Fix for unused assignment in ct_save_snprintf()
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 0/4] Fix some minor bugs
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 1/4] conntrack: Fix potential array out of bounds access
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf,v3 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 2/4] netfilter: nf_tables: add function to create set stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 3/4] netfilter: nf_tables: perform type checking for existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 0/4] nf_tables: set updates type check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/4] netfilter: nf_tables: consolidate set description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v1] netfilter: nf_tables: perform type checking for existing sets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf,v1] netfilter: nf_tables: perform type checking for existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] scanner: treat invalid octal strings as strings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] src: Update copyright header to GPLv2+ in socket.c
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: nf_tables: Introduce NFTA_RULE_ALT_EXPRESSIONS
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: nf_tables: Introduce NFTA_RULE_ALT_EXPRESSIONS
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] ipvs: use div_s64 for signed division
- From: "Arnd Bergmann" <arnd@xxxxxxxx>
- repeated nft set add ignores changed parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: use div_s64 for signed division
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: move rcu read lock to nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: nf_tables: Introduce NFTA_RULE_ALT_EXPRESSIONS
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH] netfilter: nf_tables: Introduce NFTA_RULE_ALT_EXPRESSIONS
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] ipvs: use div_s64 for signed division
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] ipvs: use div_s64 for signed division
- From: Arnd Bergmann <arnd@xxxxxxxxxx>
- [iptables PATCH 4/4] nft: Make rule parsing errors fatal
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] arptables: Check the mandatory ar_pln match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/4] nft: Increase rule parser strictness
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/4] Make rule parsing strict
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: Parse icmp header matches
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: conntrack: fix ipv6 exthdr error check
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC net-next 05/15] netlink: add macro for checking dump ctx size
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [iptables PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v2 00/11] Support 'make dist' and 'make check'
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/3] netfilter: flowtable: really fix NAT IPv6 offload
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 2/3] ipvs: add a 'default' case in do_ip_vs_set_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: flowtable: really fix NAT IPv6 offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: conntrack: document sctp timeouts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/4] xt: Rewrite unsupported compat expression dumping
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] doc: add/update can be used with maps too
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH] netfilter: conntrack: document sctp timeouts
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH v2] ipvs: add a 'default' case in do_ip_vs_set_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: document sctp timeouts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ulogd2 v2] build: fix pgsql fall-back configuration of CFLAGS
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net-next] ipvs: fix type warning in do_div() on 32 bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] ipvs: fix type warning in do_div() on 32 bit
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 01/12] netfilter: nft_inner: fix IS_ERR() vs NULL check
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH] ipvs: use u64 to silence do_div warnings
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nft 0/3] fix map update with concatenation and timeouts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] ipvs: add a 'default' case in do_ip_vs_set_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nft 2/3] netlink_linearize: fix timeout with map updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/3] fix map update with concatenation and timeouts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] netlink_linearize: fix timeout with map updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: document sctp timeouts
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- [PATCH nft 3/3] tests: add a test case for map update from packet path with concat
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] netlink_linearize: fix timeout with map updates
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] netlink_delinearize: fix decoding of concat data element
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] fix map update with concatenation and timeouts
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: fix compilation warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] ipvs: add a 'default' case in do_ip_vs_set_ctl()
- From: Li Qiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: liqiong <liqiong@xxxxxxxxxxxx>
- [PATCH ulogd2] build: fix pgsql fall-back configuration of CFLAGS
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next 10/12] ipvs: use kthreads for stats estimation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/12] ipvs: run_estimation should control the kthread tasks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/12] ipvs: use u64_stats_t for the per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/12] ipvs: add est_cpulist and est_nice sysctl vars
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/12] ipvs: add rcu protection to stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/12] ipvs: use common functions for stats allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/12] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/12] netfilter: flowtable: add a 'default' case to flowtable datapath
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/12] netfilter: ipset: Add support for new bitmask parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/12] netfilter: conntrack: add sctp DATA_SENT state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/12] netfilter: conntrack: merge ipv4+ipv6 confirm functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/12] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/12] netfilter: nft_inner: fix IS_ERR() vs NULL check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] scanner: match full comment line in case of tie
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ipset PATCH] Makefile: Create LZMA-compressed dist-files
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/7] ebtables: Implement --check command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/7] ebtables: Implement --check command
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] xt: Delay libxtables access until translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/7] ebtables: Implement --check command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] netlink: statify __netlink_gen_data()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3,v2] netlink: unfold function to generate concatenations for keys and data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] netlink: add function to generate set element key data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libmnl PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/7] ebtables: Implement --check command
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 4/7] nft: Fix match generator for '! -i +'
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 1/4] xt: Delay libxtables access until translation
- From: Phil Sutter <phil@xxxxxx>
- [PATCH ulogd2 v2] src: keep IPv4 addresses internally in IPv4-in-IPv6 format
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH ulogd2 3/3] src: keep IPv4 addresses internally in IPv4-in-IPv6 format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 2/3] output: add missing support for int64_t values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 1/3] filter: IP2BIN: correct spelling of variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/7] ebtables: Implement --check command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] pgsql: correct `ulog2.ip_totlen` type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: unfold function to generate concatenations for keys and data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] scanner: handle files with CRLF line terminators
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 2/4] filter: fix buffer sizes in filter plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft 2/2,v2] netlink: swap byteorder of value component in concatenation of intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] xt: Delay libxtables access until translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: add a 'default' case to 'switch (tuplehash->tuple.xmit_type)'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 2/4] filter: fix buffer sizes in filter plug-ins
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 0/4] Some bug-fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: flowtable: really fix NAT IPv6 offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 4/7] nft: Fix match generator for '! -i +'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libmnl PATCH] Makefile: Create LZMA-compressed dist-files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Julian Anastasov <ja@xxxxxx>
- [iptables PATCH v2 09/11] include/Makefile: xtables-version.h is generated
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 01/11] Drop INCOMPATIBILITIES file
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 11/11] Makefile.am: Integrate testsuites
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 10/11] tests: Adjust testsuite return codes to automake guidelines
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 06/11] iptables/Makefile: Split nft-variant man page list
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 05/11] iptables/Makefile: Reorg variable assignments
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 04/11] extensions: Makefile: Merge initext targets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 03/11] Makefile: Generate ip6tables man pages on the fly
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 02/11] Drop libiptc/linux_stddef.h
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 00/11] Support 'make dist' and 'make check'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 07/11] Makefile: Fix for 'make distcheck'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 08/11] Makefile: Generate .tar.xz archive with 'make dist'
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 4/7] nft: Fix match generator for '! -i +'
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net] netfilter: flowtable: really fix NAT IPv6 offload
- From: Qingfang DENG <dqfext@xxxxxxxxx>
- Re: [iptables PATCH 4/7] nft: Fix match generator for '! -i +'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2,v2] netlink: swap byteorder of value component in concatenation of intervals
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft,v2] scanner: handle files with CRLF line terminators
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: unfold function to generate concatenations for keys and data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: do not crash on runaway number of concatenation components
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2,v2] netlink: swap byteorder of value component in concatenation of intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [ulogd PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [nfacct PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libmnl PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_cthelper PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <psutter@xxxxxxxxxx>
- [conntrack-tools PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_cttimeout PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_conntrack PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_queue PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_log PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_acct PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnfnetlink PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] Makefile: Create LZMA-compressed dist-files
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] netlink: swap byteorder of value component in interval set with concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] netlink: swap byteorder of value component in interval set with concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: py: missing json for different byteorder selector with interval concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: support for selectors with different byteorder with interval concatenations
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft] scanner: handle files with CRLF line terminators
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 03/11] Makefile: Generate ip6tables man pages on the fly
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [iptables PATCH 03/11] Makefile: Generate ip6tables man pages on the fly
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [iptables PATCH 00/11] Support 'make dist' and 'make check'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/11] Makefile.am: Integrate testsuites
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/11] Drop INCOMPATIBILITIES file
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/11] include/Makefile: xtables-version.h is generated
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/11] extensions: Makefile: Merge initext targets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/11] Makefile: Generate ip6tables man pages on the fly
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/11] iptables/Makefile: Split nft-variant man page list
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/11] Makefile: Fix for 'make distcheck'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/11] iptables/Makefile: Reorg variable assignments
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/11] tests: Adjust testsuite return codes to automake guidelines
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/11] Drop libiptc/linux_stddef.h
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] src: Add GPLv2+ header to .c files of recent creation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] scanner: munch full comment lines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] scanner: munch full comment lines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] doc: statements: fwd supports for sending packets via neighbouring layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] doc: statements: fwd supports for sending packets via neighbouring layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] doc/payload-expression.txt: Mention that 'ih' exists
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] doc/payload-expression.txt: Mention that 'ih' exists
- From: Harald Welte <laforge@xxxxxxxxxxx>
- [PATCH v2] netfilter: add a 'default' case to 'switch (tuplehash->tuple.xmit_type)'
- From: Li Qiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: initialize 'ret' variable
- From: liqiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: check 'skb->dev' pointer in nfulnl_log_packet()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: initialize 'ret' variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH ulogd2 2/4] filter: fix buffer sizes in filter plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 4/4] db: fix back-log capacity checks
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 0/4] Some bug-fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 3/4] JSON: remove incorrect config value check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 1/4] ulogd: fix parse-error check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH] json: fix 'add flowtable' command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: check 'skb->dev' pointer in nfulnl_log_packet()
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: liqiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: Dan Carpenter <error27@xxxxxxxxx>
- Re: [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: initialize 'ret' variable
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] netfilter: nfnetlink: check 'skb->dev' pointer in nfulnl_log_packet()
- From: Li Qiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: initialize 'ret' variable
- From: liqiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: initialize 'ret' variable
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: initialize 'ret' variable
- From: Li Qiong <liqiong@xxxxxxxxxxxx>
- [PATCH] json: fix 'add flowtable' command
- From: Alex Forster <aforster@xxxxxxxxxxxxxx>
- [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl()
- From: Li Qiong <liqiong@xxxxxxxxxxxx>
- Re: [PATCH v8 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 04/12] landlock: Move unmask_layers() and init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 01/12] landlock: Make ruleset's access masks more generic
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [iptables PATCH 0/9] Fix for shell testsuite '-V' option
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 0/7] tests: xlate: generic.txlate to pass replay test
- From: Phil Sutter <phil@xxxxxx>
- [linux-next:master] BUILD REGRESSION 2934ceb4e967b9233d0f97732e47175574a11406
- From: kernel test robot <lkp@xxxxxxxxx>
- [iptables PATCH 2/7] tests: xlate: Use --check to verify replay
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/7] tests: xlate: generic.txlate to pass replay test
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/7] nft: Recognize INVAL/D interface name
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/7] xtables-translate: Fix for interfaces with asterisk mid-string
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/7] nft: Fix for comparing ifname matches against nft-generated ones
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 7/7] ebtables: Fix MAC address match translation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/7] nft: Fix match generator for '! -i +'
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/7] ebtables: Implement --check command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCHv2 net-next 5/5] net: move the nat function to nf_nat_ovs for ovs and tc
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH iptables-nft] extensions: add xt_statistics random mode translation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables-nft] extensions: add xt_statistics random mode translation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables-nft] extensions: add xt_statistics random mode translation
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC ebtables-nft] unify ether type and meta protocol decoding
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC ebtables-nft] unify ether type and meta protocol decoding
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft] extensions: add xt_statistics random mode translation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: add sctp DATA_SENT state
- From: Sriram Yagnaraman <sriram.yagnaraman@xxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nft_set_pipapo: Actually validate intervals in fields after the first one
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v3 iptables-nft 0/3] remove escape_quotes support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/9] nft: Plug memleak in nft_rule_zero_counters()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/9] iptables-restore: Free handle with --test also
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/9] tests: shell: Fix valgrind mode for 0008-unprivileged_0
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 9/9] libiptc: Eliminate garbage access
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/9] iptables-xml: Free allocated chain strings
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/9] Fix for shell testsuite '-V' option
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/9] xtables: Introduce xtables_clear_iptables_command_state()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 8/9] xshared: Free data after printing help
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/9] iptables: Plug memleaks in print_firewall()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 7/9] iptables: Properly clear iptables_command_state object
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: merge ipv4+ipv6 confirm functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: conntrack: add sctp DATA_SENT state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [linux-next:master] BUILD REGRESSION 700e0cd3a5ce6a2cb90d9a2aab729b52f092a7d6
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH ulogd2 v2 v2 00/34] Refactor of the DB output plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC ebtables-nft] unify ether type and meta protocol decoding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ebtables-nft] nft-bridge: work around recent "among" decode breakage
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net 4/4] netfilter: ctnetlink: fix compilation warning after data race fixes in ct mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/4] netfilter: conntrack: fix using __this_cpu_add in preemptible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] netfilter: flowtable_offload: fix using __this_cpu_add in preemptible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: nft_set_pipapo: Actually validate intervals in fields after the first one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC ebtables-nft] unify ether type and meta protocol decoding
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ebtables-nft] nft-bridge: work around recent "among" decode breakage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 v2 v2 00/34] Refactor of the DB output plug-ins
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 v2 v2 13/34] output: remove zero-initialized `struct ulogd_plugin` members
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH ulogd2 v2 v2 07/34] src: remove zero-valued config-key fields
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH ulogd2 v2 v2 05/34] build: add checks to configure.ac
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v2 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 iptables-nft 2/3] extensions: change expected output for new format
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 iptables-nft 0/3] remove escape_quotes support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 iptables-nft 3/3] xlate-test: avoid shell entanglements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 iptables-nft 2/3] extensions: change expected output for new format
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 iptables-nft 2/3] extensions: change expected output for new format
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- [linux-next:master] BUILD REGRESSION 13ee7ef407cfcf63f4f047460ac5bb6ba5a3447d
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH ulogd2 v2 v2 17/34] db: change return type of two functions to `void`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 23/34] db: refactor backlog
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 13/34] output: remove zero-initialized `struct ulogd_plugin` members
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 15/34] db: reorganize source
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 34/34] output: sqlite3: reimplement using the common DB API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 29/34] output: mysql: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 14/34] output: de-duplicate allocation of input keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 31/34] output: pgsql: remove variable-length arrays
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 19/34] db: improve calculation of sql statement length
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 33/34] output: pgsql: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 12/34] conffile: replace malloc+strcpy with strdup
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 26/34] db: avoid cancelling ring-buffer thread
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 25/34] db: synchronize access to ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 22/34] db: refactor ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 27/34] db, IP2BIN: defer formatting of raw strings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 30/34] output: pgsql: remove a couple of struct members
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 10/34] src: remove `TIME_ERR` macro
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 20/34] db: refactor configuration
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 28/34] db: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 32/34] output: pgsql: tidy up `open_db_pgsql` and fix memory leak
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 16/34] db: use consistent integer return values to indicate errors
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 11/34] src: remove superfluous casts
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 24/34] db: use `struct db_stmt` objects more widely
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 21/34] db: refactor ring-buffer initialization
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 18/34] db: open-code `_loop_reconnect_db`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 00/34] Refactor of the DB output plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 06/34] src: remove some trailing white space
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 04/34] db: fix back-log capacity checks
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 09/34] src: define constructors and destructors consistently
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 02/34] filter: fix buffer sizes in filter plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 05/34] build: add checks to configure.ac
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 08/34] src: parenthesize config-entry macro arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 07/34] src: remove zero-valued config-key fields
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 03/34] output: JSON: remove incorrect config value check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 v2 v2 01/34] ulogd: fix parse-error check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2] pgsql: correct `ulog2.ip_totlen` type
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Test selective ebtables flushing
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 iptables-nft 3/3] xlate-test: avoid shell entanglements
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 iptables-nft 2/3] extensions: change expected output for new format
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] tests: shell: Test selective ebtables flushing
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 iptables-nft 0/3] remove escape_quotes support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables-nft 2/3] extensions: change expected output for new format
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 iptables-nft 3/3] xlate-test: avoid shell entanglements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/4] libxtables: xt_xlate_add() to take care of spacing
- From: Phil Sutter <phil@xxxxxx>
- [syzbot] INFO: task hung in nfnetlink_rcv_msg (3)
- From: syzbot <syzbot+9204e7399656300bf271@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 04/12] landlock: Move unmask_layers() and init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 01/12] landlock: Make ruleset's access masks more generic
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: fix using __this_cpu_add in preemptible in nf_flow_table_offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] nft_set_pipapo: Actually validate intervals in fields after the first one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: fix compilation warning after data race fixes in ct mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 12/12] landlock: Document Landlock's network support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 09/12] selftests/landlock: Share enforce_ruleset()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 06/12] landlock: Refactor landlock_add_rule() syscall
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 05/12] landlock: Refactor unmask_layers() and init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 04/12] landlock: Move unmask_layers() and init_layer_masks()
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 03/12] landlock: Refactor merge/inherit_ruleset functions
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 02/12] landlock: Refactor landlock_find_rule/insert_rule
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 02/12] landlock: Refactor landlock_find_rule/insert_rule
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 01/12] landlock: Make ruleset's access masks more generic
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: "Konstantin Meskhidze (A)" <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH ulogd2 3/3] src: keep IPv4 addresses internally in IPv4-in-IPv6 format
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 0/3] IP Address Formatting Fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 1/3] filter: IP2BIN: correct spelling of variable
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 2/3] output: add missing support for int64_t values
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: kernel test robot <lkp@xxxxxxxxx>
- [linux-next:master] BUILD REGRESSION 9e46a79967326efb03c481ddfd58902475bd920d
- From: kernel test robot <lkp@xxxxxxxxx>
- [iptables PATCH 3/4] extensions: libxt_conntrack: Drop extra whitespace in xlate
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] extensions: Leverage xlate auto-spacing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/4] extensions: xlate: Format sets consistently
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] libxtables: xt_xlate_add() to take care of spacing
- From: Phil Sutter <phil@xxxxxx>
- [linux-next:master] BUILD REGRESSION c35bd4e428856ed8c1fae7f7dfa08a9141c153d1
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nf] netfilter: fix using __this_cpu_add in preemptible in nf_flow_table_offload
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: fix using __this_cpu_add in preemptible in nf_conntrack_core
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH 0/4] xt: Rewrite unsupported compat expression dumping
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] xt: Fall back to generic printing from translation
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] xt: Purify enum nft_xt_type
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] xt: Delay libxtables access until translation
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/4] xt: Rewrite unsupported compat expression dumping
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables-nft 3/3] extensions: remove trailing spaces
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables-nft 3/3] extensions: remove trailing spaces
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables-nft 1/3] xlate: get rid of escape_quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 2/3] extensions: change expected output for new format
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 3/3] extensions: remove trailing spaces
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 0/3] remove escape_quotes support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] nft_set_pipapo: Actually validate intervals in fields after the first one
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft] src: support for selectors with different byteorder with interval concatenations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrackd 3/3] Fix -Wimplicit-function-declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrackd 2/3] network: Fix -Wstrict-prototypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrackd 1/3] build: don't suppress various warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 00/13] Extensions: Review xlate callbacks
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/3] netfilter: ipset: regression in ip_set_hash_ip.c
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [iptables PATCH 00/13] Extensions: Review xlate callbacks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PATCH ulogd2 filter BASE ARP packet IP addresses
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [iptables PATCH 04/13] extensions: libipt_ttl: Sanitize xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/13] extensions: CONNMARK: Fix xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 13/13] extensions: ipcomp: Add comment to clarify xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/13] extensions: MARK: Sanitize MARK_xlate()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/13] extensions: frag: Add comment to clarify xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 00/13] Extensions: Review xlate callbacks
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/13] extensions: libebt_mark: Fix xlate test case
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/13] extensions: libebt_redirect: Fix xlate return code
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/13] extensions: ecn: Sanitize xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/13] extensions: tcp: Translate TCP option match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/13] extensions: libebt_log: Add comment to clarify xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/13] extensions: TOS: Fix v1 xlate callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/13] extensions: TCPMSS: Use xlate callback for IPv6, too
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/13] extensions: libebt_mark: Fix mark target xlate
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Eric Garver <egarver@xxxxxxxxxx>
- Re: [PATCH iptables-nft] iptables-nft: exit nonzero when iptables-save cannot decode all expressions
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables-nft] iptables-nft: exit nonzero when iptables-save cannot decode all expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: set icmpv6 redirects as RELATED
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 6.0 306/314] netlink: Bounds-check struct nlmsgerr creation
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: restore allowing 64 clashing elements in hash:net,iface
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH net-next/netfilter] netfilter: nft_inner: fix IS_ERR() vs NULL check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: flowtable_offload: add missing locking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: ipset: regression in ip_set_hash_ip.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: ipset: restore allowing 64 clashing elements in hash:net,iface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: restore allowing 64 clashing elements in hash:net,iface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv7 4/6] ipvs: use kthreads for stats estimation
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 0/1] ipset patch for the nf-next tree
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: Add support for new bitmask parameter
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch for the nf tree
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: restore allowing 64 clashing elements in hash:net,iface
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [iptables PATCH] extensions: mark: Test double bitwise in a rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Phil Sutter <phil@xxxxxx>
- [PATCHv7 0/6] ipvs: Use kthreads for stats
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v8 02/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCHv7 2/6] ipvs: use common functions for stats allocation
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv7 3/6] ipvs: use u64_stats_t for the per-cpu counters
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv7 6/6] ipvs: run_estimation should control the kthread tasks
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv7 5/6] ipvs: add est_cpulist and est_nice sysctl vars
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv7 1/6] ipvs: add rcu protection to stats
- From: Julian Anastasov <ja@xxxxxx>
- Re: [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 5/5] generic.xlate: make one replay test case work
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Phil Sutter <phil@xxxxxx>
- [PATCH ulogd2 16/34] db: use consistent integer return values to indicate errors
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 28/34] db: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 30/34] output: pgsql: remove a couple of struct members
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 24/34] db: use `struct db_stmt` objects more widely
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 25/34] db: synchronize access to ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 12/34] conffile: replace malloc+strcpy with strdup
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 21/34] db: refactor ring-buffer initialization
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 13/34] output: remove zero-initialized `struct ulogd_plugin` members
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 20/34] db: refactor configuration
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 34/34] output: sqlite3: reimplement using the common DB API
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 18/34] db: open-code `_loop_reconnect_db`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 29/34] output: mysql: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 14/34] output: de-duplicate allocation of input keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 19/34] db: improve calculation of sql statement length
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 32/34] output: pgsql: tidy up `open_db_pgsql` and fix memory leak
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 31/34] output: pgsql: remove variable-length arrays
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 23/34] db: refactor backlog
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 27/34] db, IP2BIN: defer formatting of raw strings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 26/34] db: avoid cancelling ring-buffer thread
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 10/34] src: remove `TIME_ERR` macro
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 33/34] output: pgsql: add prep & exec support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 15/34] db: reorganize source
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 17/34] db: change return type of two functions to `void`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 22/34] db: refactor ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 11/34] src: remove superfluous casts
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: PATCH ulogd2 filter BASE ARP packet IP addresses
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Felix Fietkau <nbd@xxxxxxxx>
- [PATCH ulogd2 07/34] src: remove zero-valued config-key fields
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 05/34] build: add checks to configure.ac
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 00/34] Refactor of the DB output plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 04/34] db: fix back-log capacity checks
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 02/34] filter: fix buffer overruns in filter plug-ins
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 09/34] src: define constructors and destructors consistently
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 03/34] output: JSON: remove incorrect config value check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 01/34] ulogd: fix parse-error check
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 06/34] src: remove some trailing white space
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH ulogd2 08/34] src: parenthesize config-entry macro arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Felix Fietkau <nbd@xxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add missing locking
- From: Felix Fietkau <nbd@xxxxxxxx>
- [ANNOUNCE] ipset 7.16 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/6] netfilter: ipset: Add support for new bitmask parameter (userspace)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_flow_table: add missing locking
- From: Felix Fietkau <nbd@xxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: regression in ip_set_hash_ip.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: conntrack: Fix data-races around ct mark
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v2 1/2] netfilter: conntrack: introduce no_random_port proc entry
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v2 2/2] netfilter: conntrack: add sctp DATA_SENT state
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [iptables-nft RFC 5/5] generic.xlate: make one replay test case work
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables-nft RFC 4/5] xlate-test: extra-escape of '"' for replay mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables-nft RFC 3/5] nft: check for unknown meta keys
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables-nft RFC 1/5] nft-shared: dump errors on stdout to garble output
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables-nft RFC 2/5] iptables-nft: do not refuse to decode table with unsupported expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables-nft RFC 0/5] update iptables-nft dissector
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Avoid race between tcp_packet packet processing and timeout set by a netfilter CTA_TIMEOUT message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net 1/2] netfilter: conntrack: Fix data-races around ct mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/2] netfilter: nf_tables: do not set up extensions for end interval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] netfilter: ctmark: Fix data-races around ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] landlock: Allow filesystem layout changes for domains without such rule type
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 01/12] landlock: Make ruleset's access masks more generic
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 12/12] landlock: Document Landlock's network support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 09/12] selftests/landlock: Share enforce_ruleset()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 08/12] landlock: Implement TCP network hooks
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 07/12] landlock: Add network rules support
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 06/12] landlock: Refactor landlock_add_rule() syscall
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 05/12] landlock: Refactor unmask_layers() and init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 04/12] landlock: Move unmask_layers() and init_layer_masks()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 03/12] landlock: Refactor merge/inherit_ruleset functions
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v8 02/12] landlock: Refactor landlock_find_rule/insert_rule
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Compatibility interface for nft_rule
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 4/4] xt: Detect xlate callback failure
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 3/4] xt: Put match/target translation into own functions
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/4] xt: Delay libxtables access until translation
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 0/4] xt: Implement dump and restore support
- From: Phil Sutter <phil@xxxxxx>
- netfilter bpf-jit patchset: test results
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Missing definition of struct "pkt_buff" for libnetfilter_queue
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Missing definition of struct "pkt_buff" for libnetfilter_queue
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Missing definition of struct "pkt_buff" for libnetfilter_queue
- From: Shockedder <shockedder@xxxxxxxxx>
- Re: [PATCH v8 11/12] samples/landlock: Add network demo
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [iptables PATCH] extensions: mark: Test double bitwise in a rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 1/6] netfilter: nft_payload: use __be16 to store gre version
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH iptables] nft-shared: replace nftnl_expr_get_data() by nftnl_expr_get()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables] nft: replace nftnl_.*_nlmsg_build_hdr() by nftnl_nlmsg_build_hdr()
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] Drop extra newline from xtables_error() calls
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 0/7] De-duplicate code here and there
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next/netfilter] netfilter: nft_inner: fix IS_ERR() vs NULL check
- From: Dan Carpenter <error27@xxxxxxxxx>
- [PATCH net-next/netfilter] netfilter: nft_inner: fix IS_ERR() vs NULL check
- From: Dan Carpenter <error27@xxxxxxxxx>
- [PATCH libnftnl] src: replace nftnl_*_nlmsg_build_hdr() by nftnl_nlmsg_build_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/6] netfilter: rpfilter/fib: clean up some inconsistent indenting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 6/6] netfilter: conntrack: use siphash_4u64
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/6] netfilter: nf_tables: Extend nft_expr_ops::dump callback parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/6] netfilter: nf_tables: Introduce NFT_MSG_GETRULE_RESET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/6] netfilter: nft_inner: fix return value check in nft_inner_parse_l2l3()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/6] netfilter: nft_payload: use __be16 to store gre version
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v2 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add __force annotation to silence harmless warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/6] netfilter: nf_tables: Extend nft_expr_ops::dump callback parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/6] netfilter: nf_tables: Extend nft_expr_ops::dump callback parameters
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 6/6] netfilter: conntrack: use siphash_4u64
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: PATCH ulogd2 filter BASE ARP packet IP addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: PATCH ulogd2 filter BASE ARP packet IP addresses
- From: "Robert O'Brien" <robrien@xxxxxxxxxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Compatibility interface for nft_rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] nft-shared: replace nftnl_expr_get_data() by nftnl_expr_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] nft: replace nftnl_.*_nlmsg_build_hdr() by nftnl_nlmsg_build_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] example: remove nftnl_batch_is_supported() call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: add __force annotation to silence harmless warning
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/6] netfilter: rpfilter/fib: clean up some inconsistent indenting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/6] netfilter: nf_tables: Extend nft_expr_ops::dump callback parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/6] netfilter: nf_tables: Introduce NFT_MSG_GETRULE_RESET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/6] netfilter: nft_inner: fix return value check in nft_inner_parse_l2l3()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 6/6] netfilter: conntrack: use siphash_4u64
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/6] netfilter: nft_payload: use __be16 to store gre version
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: do not set up extensions for end interval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nf_tables: add support to destroy operation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [iptables PATCH] Drop extra newline from xtables_error() calls
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/7] extensions: libebt_arp, libebt_ip: Use xtables_ipparse_any()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/7] nft-shared: Introduce port_match_single_to_range()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/7] xshared: Share make_delete_mask() between ip{,6}tables
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 7/7] extensions: Unify ICMP parser into libxt_icmp.h
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/7] De-duplicate code here and there
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/7] extensions: libebt_ip: Include kernel header
- From: Phil Sutter <phil@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]