Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nft,v2 1/4] expression: typeof verdict needs verdict datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Support for loading firewall rules with cgroup(v2) expressions early
- From: Topi Miettinen <toiwoton@xxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: egress: Report interface as outgoing
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: Support for loading firewall rules with cgroup(v2) expressions early
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Support for loading firewall rules with cgroup(v2) expressions early
- From: Topi Miettinen <toiwoton@xxxxxxxxx>
- [PATCH nft] expression: typeof verdict needs verdict datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 RESEND] memcg: enable accounting for nft objects
- From: Vasily Averin <vasily.averin@xxxxxxxxx>
- Re: [conntrack-tools PATCH 0/8] Fixes for a recent Coverity tool run
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] memcg: enable accounting for nft objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: egress: Report interface as outgoing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 RESEND] memcg: enable accounting for nft objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v4] src: eliminate packet copy when constructing struct pktbuff
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [nf PATCH v2] netfilter: bitwise: fix reduce comparisons
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] netfilter: bitwise: fix reduce comparison
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Support for loading firewall rules with cgroup(v2) expressions early
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: allow to use typeof of raw expressions in set declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] examples: fix compiler warning
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] examples: fix compiler warning
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Support for loading firewall rules with cgroup(v2) expressions early
- From: Topi Miettinen <toiwoton@xxxxxxxxx>
- [libnfnetlink PATCH 1/2] include: Silence gcc warning in linux_list.h
- From: Phil Sutter <phil@xxxxxx>
- [libnfnetlink PATCH 2/2] libnfnetlink: Check getsockname() return code
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_conntrack PATCH] expect/conntrack: Avoid spurious covscan overrun warning
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 3/8] Fix potential buffer overrun in snprintf() calls
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 8/8] connntrack: Fix for memleak when parsing -j arg
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 2/8] cache: Fix features array allocation
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 1/8] hash: Flush tables when destroying
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 4/8] helpers: ftp: Avoid ugly casts
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 0/8] Fixes for a recent Coverity tool run
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 5/8] read_config_yy: Drop extra argument from dlog() call
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 7/8] Drop pointless assignments
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH 6/8] Don't call exit() from signal handler
- From: Phil Sutter <phil@xxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [PATCH v2 RESEND] memcg: enable accounting for nft objects
- From: Vasily Averin <vasily.averin@xxxxxxxxx>
- Re: [PATCH 3/9] net: mlx5: eliminate anonymous module_init & module_exit
- From: Leon Romanovsky <leon@xxxxxxxxxx>
- Re: [PATCH v2] memcg: enable accounting for nft objects
- From: Vasily Averin <vasily.averin@xxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: nf_log_syslog: Consolidate entry checks
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH] netfilter: nf_log_syslog: Consolidate entry checks
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: nf_log_syslog: Don't ignore unknown protocols
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] memcg: enable accounting for nft objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: nf_log_syslog: Don't ignore unknown protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 1/2] netfilter: nf_log_syslog: Merge MAC header dumpers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf PATCH] netfilter: egress: Report interface as outgoing
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH 2/2] netfilter: nf_log_syslog: Don't ignore unknown protocols
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 1/2] netfilter: nf_log_syslog: Merge MAC header dumpers
- From: Phil Sutter <phil@xxxxxx>
- [nf PATCH] netfilter: egress: Report interface as outgoing
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: bug report and future request
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [PATCH nf-next v3 16/16] netfilter: conntrack: avoid unconditional local_bh_disable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 15/16] netfilter: conntrack: remove unconfirmed list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 14/16] netfilter: conntrack: remove __nf_ct_unconfirmed_destroy
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 13/16] netfilter: cttimeout: decouple unlink and free on netns destruction
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 12/16] netfilter: extensions: introduce extension genid count
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 10/16] netfilter: cttimeout: decouple unlink and free on netns destruction
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 11/16] netfilter: remove nf_ct_unconfirmed_destroy helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 09/16] netfilter: nfnetlink_cttimeout: use rcu protection in cttimeout_get_timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 07/16] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 08/16] netfilter: cttimeout: inc/dec module refcount per object, not per use refcount
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 05/16] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 06/16] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 04/16] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 03/16] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 02/16] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 01/16] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 00/16] netfilter: conntrack: remove percpu lists
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix duplicate included ip_set_hash_gen.h
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix duplicate included ip_set_hash_gen.h
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH] netfilter: ipset: Fix duplicate included ip_set_hash_gen.h
- From: Haowen Bai <baihaowen@xxxxxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [PATCH 1/1] conntrack: use same mnl socket for bulk operations
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 0/1] Reusing mnl socket for bulk ct loads
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: replace unnecessary use of list_for_each_entry_continue()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] netfilter: nf_tables: replace unnecessary use of list_for_each_entry_continue()
- From: Jakob Koschel <jakobkoschel@xxxxxxxxx>
- Re: bug report and future request
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] memcg: enable accounting for nft objects
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- Re: bug report and future request
- From: Florian Westphal <fw@xxxxxxxxx>
- bug report and future request
- From: Martin Zaharinov <micron10@xxxxxxxxx>
- [PATCH nft] evaluate: copy field_count for anonymous object maps as well
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 01/19] netfilter: conntrack: revisit gc autotuning
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net-next 19/19] netfilter: flowtable: pass flowtable to nf_flow_table_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 18/19] netfilter: flowtable: remove redundant field in flow_offload_work struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/19] netfilter: nft_fib: add reduce support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/19] netfilter: nft_tunnel: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/19] netfilter: conntrack: revisit gc autotuning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/19] netfilter: nft_immediate: cancel register tracking for data destination register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/19] netfilter: nft_osf: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/19] netfilter: nf_tables: cancel tracking for clobbered destination registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/19] netfilter: nft_lookup: only cancel tracking for clobbered dregs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/19] netfilter: nft_numgen: cancel register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/19] netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/19] netfilter: nft_exthdr: add reduce support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/19] netfilter: nft_socket: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/19] netfilter: nft_hash: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/19] netfilter: nf_nat_h323: eliminate anonymous module_init & module_exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/19] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/19] netfilter: nft_meta: extend reduce support to bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/19] netfilter: nft_xfrm: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/19] netfilter: nf_tables: do not reduce read-only expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/19] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] memcg: Enable accounting for nft objects
- From: Vasily Averin <vasily.averin@xxxxxxxxx>
- [PATCH v2] memcg: enable accounting for nft objects
- From: Vasily Averin <vasily.averin@xxxxxxxxx>
- Re: [PATCH 2/9] virtio_console: eliminate anonymous module_init & module_exit
- From: "Michael S. Tsirkin" <mst@xxxxxxxxxx>
- Re: [PATCH 5/9] virtio-scsi: eliminate anonymous module_init & module_exit
- From: "Michael S. Tsirkin" <mst@xxxxxxxxxx>
- Re: [PATCH 1/9] virtio_blk: eliminate anonymous module_init & module_exit
- From: "Michael S. Tsirkin" <mst@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: replace unnecessary use of list_for_each_entry_continue()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 4/9] netfilter: h323: eliminate anonymous module_init & module_exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: revisit gc autotuning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: replace unnecessary use of list_for_each_entry_continue()
- From: Jakob Koschel <jakobkoschel@xxxxxxxxx>
- [PATCH] ebtables: fix the 'static' build target
- From: Robert Kolchmeyer <rkolchmeyer@xxxxxxxxxx>
- Re: [PATCH 7/9] usb: usbip: eliminate anonymous module_init & module_exit
- From: Shuah Khan <skhan@xxxxxxxxxxxxxxxxxxx>
- Re: "Decoding" ipset error codes
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack_tcp: skip tracking for offloaded packets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_conntrack_tcp: skip tracking for offloaded packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: flowtable: remove redundant field in flow_offload_work struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: flowtable: pass flowtable to nf_flow_table_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 02/15] landlock: filesystem access mask helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: flowtable: Fix QinQ and pppoe support for inet table
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH 2/9] virtio_console: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH 4/9] netfilter: h323: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: flowtable: Fix QinQ and pppoe support for inet table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nf_tables: initialize registers in nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 02/15] landlock: filesystem access mask helpers
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: (subset) [PATCH 0/9] treewide: eliminate anonymous module_init & module_exit
- From: Jens Axboe <axboe@xxxxxxxxx>
- Re: [PATCH 4/9] netfilter: h323: eliminate anonymous module_init & module_exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/9] virtio_console: eliminate anonymous module_init & module_exit
- From: Amit Shah <amit@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [RFC PATCH v4 02/15] landlock: filesystem access mask helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf,v2 2/2] netfilter: nf_tables: initialize registers in nft_do_chain()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf,v2 1/2] netfilter: nf_tables: validate registers coming from userspace.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nf_tables: registers should not go over NFT_REG32_NUM
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 2/2] netfilter: nf_tables: initialize registers in nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/2] netfilter: nf_tables: validate registers coming from userspace.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nf_tables: registers should not go over NFT_REG32_NUM
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: registers should not go over NFT_REG32_NUM
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables: initialize registers in nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/9] virtio-scsi: eliminate anonymous module_init & module_exit
- From: Stefan Hajnoczi <stefanha@xxxxxxxxxx>
- Re: [PATCH 1/9] virtio_blk: eliminate anonymous module_init & module_exit
- From: Stefan Hajnoczi <stefanha@xxxxxxxxxx>
- Re: [PATCH 6/9] usb: gadget: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH 4/9] netfilter: h323: eliminate anonymous module_init & module_exit
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/9] treewide: eliminate anonymous module_init & module_exit
- From: Ira Weiny <ira.weiny@xxxxxxxxx>
- Re: [PATCH 6/9] usb: gadget: eliminate anonymous module_init & module_exit
- From: Ira Weiny <ira.weiny@xxxxxxxxx>
- Re: [PATCH 1/9] virtio_blk: eliminate anonymous module_init & module_exit
- From: Jason Wang <jasowang@xxxxxxxxxx>
- Re: [PATCH 5/9] virtio-scsi: eliminate anonymous module_init & module_exit
- From: Jason Wang <jasowang@xxxxxxxxxx>
- Re: [PATCH 9/9] testmmiotrace: eliminate anonymous module_init & module_exit
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: Intermittent performance regression related to ipset between 5.10 and 5.15
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH 9/9] testmmiotrace: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 8/9] x86/crypto: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: h323: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 7/9] usb: usbip: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 5/9] virtio-scsi: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 2/9] virtio_console: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 1/9] virtio_blk: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 0/9] treewide: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 3/9] net: mlx5: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH 6/9] usb: gadget: eliminate anonymous module_init & module_exit
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [iptables PATCH 3/3] libxtables: Boost rule target checks by announcing chain names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 2/3] libxtables: Implement notargets hash table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/3] nft: Reject standard targets as chain names when restoring
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 2/3] libxtables: Implement notargets hash table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] libxtables: Boost rule target checks by announcing chain names
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] nft: Reject standard targets as chain names when restoring
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/3] Speed up restoring huge rulesets
- From: Phil Sutter <phil@xxxxxx>
- "Decoding" ipset error codes
- From: Ian Pilcher <arequipeno@xxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Feature Request: nft: support non-immediate second operand
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: flowtable: Fix QinQ and PPPoE support for inet table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] conntrack event framework speedup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Feature Request: nft: support non-immediate second operand
- From: "Kevin 'ldir' Darbyshire-Bryant" <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 1/6] Revert "netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY"
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [RFC PATCH v4 02/15] landlock: filesystem access mask helpers
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v4 00/15] Landlock LSM
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [iptables PATCH 3/5] xtables: Call init_extensions{,a,b}() for static builds
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 3/5] xtables: Call init_extensions{,a,b}() for static builds
- From: Etienne Champetier <champetier.etienne@xxxxxxxxx>
- [iptables PATCH 3/5] xtables: Call init_extensions{,a,b}() for static builds
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/5] Simplify static build extension loading
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/5] Fixes for static builds
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/5] libxtables: Fix for warning in xtables_ipmask_to_numeric
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/5] nft: Review static extension loading
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/5] tests: shell: Fix 0004-return-codes_0 for static builds
- From: Phil Sutter <phil@xxxxxx>
- [RFC] conntrack event framework speedup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/6] net/mlx5: Support GRE conntrack offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/6] netfilter: flowtable: Support GRE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/6] netfilter: nf_tables: Reject tables of unsupported family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/6] netfilter: bridge: clean up some inconsistent indenting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/6] act_ct: Support GRE offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/6] Revert "netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] Revert "netfilter: nat: force port remap to prevent shadowing well-known ports"
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net 0/3] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf-next,v3 10/14] netfilter: nft_socket: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 07/14] netfilter: nft_osf: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 12/14] netfilter: nft_tunnel: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 08/14] netfilter: nft_hash: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 11/14] netfilter: nft_xfrm: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 14/14] netfilter: nft_exthdr: add reduce support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 09/14] netfilter: nft_immediate: cancel register tracking for data destination register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 13/14] netfilter: nft_fib: add reduce support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 06/14] netfilter: nft_numgen: cancel register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 05/14] netfilter: nft_meta: extend reduce support to bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 04/14] netfilter: nft_lookup: only cancel tracking for clobbered dregs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 03/14] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 02/14] netfilter: nf_tables: cancel tracking for clobbered destination registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 01/14] netfilter: nf_tables: do not reduce read-only expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 00/14] register tracking infrastructure follow up
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 02/12,v2] netfilter: nf_tables: cancel tracking for clobbered destination registers
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 01/12,v2] netfilter: nf_tables: do not reduce read-only expressions
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nf-next 12/12,v2] netfilter: nft_tunnel: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 11/12,v2] netfilter: nft_xfrm: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 08/12,v2] netfilter: nft_hash: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 09/12,v2] netfilter: nft_immediate: cancel register tracking for data destination register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 07/12,v2] netfilter: nft_osf: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 04/12,v2] netfilter: nft_lookup: only cancel tracking for clobbered dregs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 00/12,v2] register tracking infrastructure follow up
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 05/12,v2] netfilter: nft_meta: extend reduce support to bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 10/12,v2] netfilter: nft_socket: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 06/12,v2] netfilter: nft_numgen: cancel register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 01/12,v2] netfilter: nf_tables: do not reduce read-only expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 02/12,v2] netfilter: nf_tables: cancel tracking for clobbered destination registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 03/12,v2] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Xtables-addons URL issues
- From: Pander <pander@xxxxxxxxxxxxxxxxxxxxx>
- Xtables-addons geoip manual
- From: Pander <pander@xxxxxxxxxxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nf_tables: disable register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] Revert "netfilter: conntrack: tag conntracks picked up in local out hook"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] Revert "netfilter: nat: force port remap to prevent shadowing well-known ports"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 5/8] netfilter: introduce max count of hw offload 'add' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 3/8] netfilter: introduce max count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH nf-next 8/9] netfilter: nft_hash: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 9/9] netfilter: nft_immediate: cancel register tracking for data destination register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/9] netfilter: nft_numgen: cancel register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 7/9] netfilter: nft_osf: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/9] netfilter: nft_meta: extend reduce support to bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/9] netfilter: nft_lookup: only cancel tracking for clobbered dregs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/9] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/9] netfilter: nf_tables: do not reduce read-only expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/9] netfilter: nf_tables: cancel tracking for clobbered destination registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/9] register tracking infrastructure follow up
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: disable register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: do not reduce read-only expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: disable register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: add stubs for readonly expressions
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_payload: only cancel tracking for clobbered dregs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: disable register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: add stubs for readonly expressions
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: add stubs for readonly expressions
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH libnftnl 3/3] desc: add set description
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf] Revert "netfilter: conntrack: tag conntracks picked up in local out hook"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add stubs for readonly expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_meta: extend reduce support to bridge family
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_lookup: only cancel tracking for clobbered dregs
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf,v4] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v33 18/29] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v33 16/29] LSM: Use lsmcontext in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v33 15/29] LSM: Ensure the correct LSM context releaser
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v33 09/29] LSM: Use lsmblob in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v33 08/29] LSM: Use lsmblob in security_secctx_to_secid
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 0/3] add description infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 3/3] desc: add set description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: cancel register tracking if .reduce is not defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: conntrack: prepare tcp_in_window for tristate return value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: conntrack: remove unneeded indent level
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: conntrack: ignore overly delayed tcp packets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/4] netfilter: conntrack: ignore overly delayed tcp packets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: conntrack: remove pr_debug callsites from tcp tracker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables RFC 2/2] libxtables: Boost rule target checks by announcing chain names
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables RFC 1/2] libxtables: Implement notargets hash table
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 3/4] xshared: Prefer xtables_chain_protos lookup over getprotoent
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables RFC 2/2] libxtables: Boost rule target checks by announcing chain names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 3/4] xshared: Prefer xtables_chain_protos lookup over getprotoent
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables RFC 1/2] libxtables: Implement notargets hash table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 4/4] nft: Don't pass command state opaque to family ops callbacks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 3/4] xshared: Prefer xtables_chain_protos lookup over getprotoent
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/4] nft: Simplify immediate parsing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl 0/3] add description infrastructure
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnftnl 3/3] desc: add set description
- From: Phil Sutter <phil@xxxxxx>
- [PATCH AUTOSEL 5.16 18/27] netfilter: egress: silence egress hook lockdep splats
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [RFC PATCH v4 15/15] seltest/landlock: invalid user input data test
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 12/15] seltest/landlock: connect() with AF_UNSPEC tests
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 13/15] seltest/landlock: rules overlapping test
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 14/15] seltest/landlock: ruleset expanding test
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 11/15] seltest/landlock: add tests for connect() hooks
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 10/15] seltest/landlock: add tests for bind() hooks
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 02/15] landlock: filesystem access mask helpers
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 03/15] landlock: landlock_find/insert_rule refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 08/15] landlock: add support network rules
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 09/15] landlock: TCP network hooks implementation
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 06/15] landlock: landlock_add_rule syscall refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 04/15] landlock: merge and inherit function refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 05/15] landlock: unmask_layers() function refactoring
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 07/15] landlock: user space API network support
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 00/15] Landlock LSM
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- [RFC PATCH v4 01/15] landlock: access mask renaming
- From: Konstantin Meskhidze <konstantin.meskhidze@xxxxxxxxxx>
- Re: [PATCH conntrack-tools] nfct: remove lazy binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [conntrack-tools PATCH] nfct: Support for non-lazy binding
- From: Phil Sutter <phil@xxxxxx>
- Re: Looking for info on ipset set type revisions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Looking for info on ipset set type revisions
- From: Ian Pilcher <arequipeno@xxxxxxxxx>
- [PATCH conntrack-tools] nfct: remove lazy binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 0/3] conntrack: use libmnl for various operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] nfct: Support for non-lazy binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] Revert "netfilter: conntrack: tag conntracks picked up in local out hook"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] Revert "netfilter: nat: force port remap to prevent shadowing well-known ports"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: "H.Janssen" <hmmsjan@xxxxxxxxxxxx>
- Re: [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 4/8] netfilter: introduce total count of hw offload 'add' workqueue tasks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 5/8] netfilter: introduce max count of hw offload 'add' workqueue tasks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/8] netfilter: introduce max count of hw offloaded flow table entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conditionally use ct and ctinfo
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/8] net/sched: act_ct: set 'net' pointer when creating new nf_flow_table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] misspell: Avoid segfault with anonymous chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conditionally use ct and ctinfo
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [PATCH] netfilter: conditionally use ct and ctinfo
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: clean up some inconsistent indenting
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: bridge: clean up some inconsistent indenting
- From: Jiapeng Chong <jiapeng.chong@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: conditionally use ct and ctinfo
- [PATCH bpf-next v4 7/8] bpf: Replace __diag_ignore with unified __diag_ignore_all
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: nftables 1.0.2 building issues
- From: Jan Engelhardt <jengelh@xxxxxxx>
- nftables 1.0.2 building issues
- From: "Francesco Colista" <francesco@xxxxxxx>
- Re: [PATCH nft] evaluate: init cmd pointer for new on-stack context
- From: Phil Sutter <phil@xxxxxx>
- [iptables RFC 0/2] Speed up restoring huge rulesets
- From: Phil Sutter <phil@xxxxxx>
- [iptables RFC 1/2] libxtables: Implement notargets hash table
- From: Phil Sutter <phil@xxxxxx>
- [iptables RFC 2/2] libxtables: Boost rule target checks by announcing chain names
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] misspell: Avoid segfault with anonymous chains
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] evaluate: init cmd pointer for new on-stack context
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] misspell: Avoid segfault with anonymous chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: init cmd pointer for new on-stack context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] misspell: Avoid segfault with anonymous chains
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] evaluate: init cmd pointer for new on-stack context
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] optimize: do not assume log prefix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v3 7/8] bpf: Replace __diag_ignore with unified __diag_ignore_all
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Shuah Khan <skhan@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Shuah Khan <skhan@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft,v3 3/3] optimize: do not merge unsupported statement expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 2/3] optimize: incorrect assert() for unexpected expression type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 1/3] optimize: more robust statement merge with vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] optimize: do not merge unsupported statement expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/2] optimize: incorrect assert() for unexpected expression type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/2] optimize: more robust statement merge with vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: do not merge unsupported statement expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC v3 nf-next 15/15] netfilter: conntrack: remove unconfirmed list
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 14/15] netfilter: conntrack: remove __nf_ct_unconfirmed_destroy
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 13/15] netfilter: cttimeout: decouple unlink and free on netns destruction
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 12/15] netfilter: extensions: introduce extension genid count
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 11/15] netfilter: remove nf_ct_unconfirmed_destroy helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 10/15] netfilter: cttimeout: decouple unlink and free on netns destruction
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 09/15] netfilter: nfnetlink_cttimeout: use rcu protection in cttimeout_get_timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 08/15] netfilter: cttimeout: inc/dec module refcount per object, not per use refcount
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 07/15] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 06/15] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 05/15] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 04/15] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 03/15] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 02/15] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 01/15] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 00/15] netfilter: conntrack: remove percpu lists
- From: Florian Westphal <fw@xxxxxxxxx>
- heads up, rebasing nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] optimize: more robust statement merge with vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] optimize: incorrect assert() for unexpected expression type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: fix vmap with anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v2 7/8] bpf: Replace __diag_ignore with unified __diag_ignore_all
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/7] netfilter: remove pcpu dying list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3] netfilter: nf_tables: Reject tables of unsupported family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/3] Conntrack GRE offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH] netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: nft_ct: spurious warning when assigning conntrack helpers
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH 4/4] nft: Don't pass command state opaque to family ops callbacks
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] nft: Speed up immediate parsing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/4] Speed up iptables-nft-save
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/4] xshared: Prefer xtables_chain_protos lookup over getprotoent
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: Simplify immediate parsing
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ipset] Fix IPv6 sets nftables translation
- From: Florian Eckert <fe@xxxxxxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] scanner: Fix for ipportmap nat statements
- From: Phil Sutter <phil@xxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/8] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 8/8] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/8] netfilter: nf_queue: handle socket prefetch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/8] netfilter: nf_queue: don't assume sk is full socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/8] netfilter: nf_queue: fix possible use-after-free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/8] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/8] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/8] netfilter: egress: silence egress hook lockdep splats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/8] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v4 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 6/7] evaluate: allow for zero length ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 7/7] intervals: support to partial deletion with automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 5/7] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 2/7] src: replace interval segment tree overlap and automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 3/7] src: remove rbtree datastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 4/7] mnl: update mnl_nft_setelem_del() to allow for more reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 1/7] src: add EXPR_F_KERNEL to identify expression in the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 0/7] revisit overlap/automerge codebase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] net/netfilter: use memset avoid infoleaks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net/netfilter: use memset avoid infoleaks
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf 1/2] netfilter: nf_queue: fix possible use-after-free
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Joe Stringer <joe@xxxxxxxxx>
- [PATCH v2 nf 2/2] netfilter: nf_queue: handle socket prefetch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 1/2] netfilter: nf_queue: fix possible use-after-free
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 0/2] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Joe Stringer <joe@xxxxxxxxx>
- Re: [PATCH nft] src: add tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: egress: silence egress hook lockdep splats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ipset] Fix IPv6 sets nftables translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] memcg: Enable accounting for nft objects
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v4 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net v3 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH net v3 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH RFC] memcg: Enable accounting for nft objects
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: egress: silence egress hook lockdep splats
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next 18/32] netfilter: egress: avoid a lockdep splat
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 18/32] netfilter: egress: avoid a lockdep splat
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Oleksandr Natalenko <oleksandr@xxxxxxxxxx>
- [PATCH v2 nf] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/3] net/mlx5: Support GRE conntrack offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 2/3] act_ct: Support GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 0/3] Conntrack GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH 2/2] build: explicitly pass --version-script to linker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-nf:master 47/47] nf_queue.c:undefined reference to `sock_gen_put'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [netfilter-nf:master 47/47] nf_queue.c:undefined reference to `sock_gen_put'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- [PATCH 2/2] build: explicitly pass --version-script to linker
- From: Sam James <sam@xxxxxxxxxx>
- Re: [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 5/7] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/7] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 4/7] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 7/7] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 2/7] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/7] netfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 6/7] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/7] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix error code in nf_tables_updobj()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix error code in nf_tables_updobj()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] conntrack: fix build with kernel 5.15 and musl
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] conntrack: fix build with kernel 5.15 and musl
- From: Robert Marko <robimarko@xxxxxxxxx>
- [PATCH] conntrack: fix build with kernel 5.15 and musl
- From: Robert Marko <robimarko@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Song Liu <song@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net 0/5,v2] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH net-next 7/8] netfilter: introduce total count of hw offload 'stats' wq tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 1/8] net/sched: act_ct: set 'net' pointer when creating new nf_flow_table
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 0/8] Conntrack offload debuggability improvements
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 6/8] netfilter: introduce total count of hw offload 'del' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 5/8] netfilter: introduce max count of hw offload 'add' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 4/8] netfilter: introduce total count of hw offload 'add' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 3/8] netfilter: introduce max count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH] build: add missing AM_CPPFLAGS to examples/
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5,v2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: make sure err is initialised to sane value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Song Liu <song@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH] build: add missing AM_CPPFLAGS to examples/
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH libnetfilter_queue v3 1-5/5] src: Speed-up
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] examples: compile with `make check' and add AM_CPPFLAGS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Dominique Martinet <asmadeus@xxxxxxxxxxxxx>
- Re: [PATCH 5.16 000/227] 5.16.11-rc1 review
- From: Naresh Kamboju <naresh.kamboju@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: make sure err is initialised to sane value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/5] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 4/5] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH nf 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/5] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 12/15] net/netfilter: Add bpf_ct_kptr_get helper
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 05/15] bpf: Allow storing PTR_TO_PERCPU_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v1 15/15] selftests/bpf: Add verifier tests for PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 13/15] libbpf: Add __kptr* macros to bpf_helpers.h
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 11/15] bpf: Teach verifier about kptr_get style kfunc helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 12/15] net/netfilter: Add bpf_ct_kptr_get helper
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 09/15] bpf: Populate pairs of btf_id and destructor kfunc in btf
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 14/15] selftests/bpf: Add C tests for PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 07/15] bpf: Prevent escaping of pointers loaded from maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 06/15] bpf: Allow storing __user PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 05/15] bpf: Allow storing PTR_TO_PERCPU_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 02/15] bpf: Make btf_find_field more generic
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/5] src: replace interval segment tree overlap and automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 3/5] src: remove rbtree datastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 5/5] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 4/5] mnl: update mnl_nft_setelem_del() to allow for more reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/5] src: add EXPR_F_KERNEL to identify expression in the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: add tcp option reset support
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl] exthdr: tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: add tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 08/26] scanner: synproxy: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 26/26] scanner: dup, fwd, tproxy: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 05/26] scanner: icmp{,v6}: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 04/26] scanner: rt: Move seg-left keyword into scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 18/26] scanner: reset: move to own Scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 06/26] scanner: igmp: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 22/26] scanner: policy: move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 14/26] scanner: dst, frag, hbh, mh: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 24/26] scanner: at: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 17/26] scanner: monitor: Move to own Scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 16/26] scanner: rt: Extend scope over rt0, rt2 and srh
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 01/26] tests: py: Test connlimit statement
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 07/26] scanner: tcp: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 09/26] scanner: comp: Move to own scope.
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 10/26] scanner: udp{,lite}: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 02/26] scanner: Move 'maps' keyword into list cmd scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 25/26] scanner: meta: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 13/26] scanner: ah, esp: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 19/26] scanner: import, export: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 20/26] scanner: reject: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 11/26] scanner: dccp, th: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 15/26] scanner: type: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 12/26] scanner: osf: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 23/26] scanner: nat: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 21/26] scanner: flags: move to own scope
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]