Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [RFC v3 nf-next 11/15] netfilter: remove nf_ct_unconfirmed_destroy helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 10/15] netfilter: cttimeout: decouple unlink and free on netns destruction
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 09/15] netfilter: nfnetlink_cttimeout: use rcu protection in cttimeout_get_timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 08/15] netfilter: cttimeout: inc/dec module refcount per object, not per use refcount
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 07/15] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 06/15] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 05/15] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 04/15] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 03/15] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 02/15] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 01/15] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC v3 nf-next 00/15] netfilter: conntrack: remove percpu lists
- From: Florian Westphal <fw@xxxxxxxxx>
- heads up, rebasing nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] optimize: more robust statement merge with vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] optimize: incorrect assert() for unexpected expression type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: fix vmap with anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v2 7/8] bpf: Replace __diag_ignore with unified __diag_ignore_all
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/7] netfilter: remove pcpu dying list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v3] netfilter: nf_tables: Reject tables of unsupported family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/3] Conntrack GRE offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH] netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: nft_ct: spurious warning when assigning conntrack helpers
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] selftests: netfilter: fix a build error on openSUSE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH 4/4] nft: Don't pass command state opaque to family ops callbacks
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] nft: Speed up immediate parsing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/4] Speed up iptables-nft-save
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/4] xshared: Prefer xtables_chain_protos lookup over getprotoent
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: Simplify immediate parsing
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ipset] Fix IPv6 sets nftables translation
- From: Florian Eckert <fe@xxxxxxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] scanner: Fix for ipportmap nat statements
- From: Phil Sutter <phil@xxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/8] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 8/8] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/8] netfilter: nf_queue: handle socket prefetch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/8] netfilter: nf_queue: don't assume sk is full socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/8] netfilter: nf_queue: fix possible use-after-free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/8] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/8] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/8] netfilter: egress: silence egress hook lockdep splats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/8] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v4 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 6/7] evaluate: allow for zero length ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 7/7] intervals: support to partial deletion with automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 5/7] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 2/7] src: replace interval segment tree overlap and automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 3/7] src: remove rbtree datastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 4/7] mnl: update mnl_nft_setelem_del() to allow for more reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 1/7] src: add EXPR_F_KERNEL to identify expression in the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3 0/7] revisit overlap/automerge codebase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] net/netfilter: use memset avoid infoleaks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net/netfilter: use memset avoid infoleaks
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf 1/2] netfilter: nf_queue: fix possible use-after-free
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Joe Stringer <joe@xxxxxxxxx>
- [PATCH v2 nf 2/2] netfilter: nf_queue: handle socket prefetch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 1/2] netfilter: nf_queue: fix possible use-after-free
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 0/2] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Joe Stringer <joe@xxxxxxxxx>
- Re: [PATCH nft] src: add tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: egress: silence egress hook lockdep splats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ipset] Fix IPv6 sets nftables translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: be more careful with sk refcounts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] memcg: Enable accounting for nft objects
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v4 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net v3 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH net v3 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH RFC] memcg: Enable accounting for nft objects
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: egress: silence egress hook lockdep splats
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next 18/32] netfilter: egress: avoid a lockdep splat
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 18/32] netfilter: egress: avoid a lockdep splat
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: fix use-after-free in __nf_register_net_hook()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- TCP connection fails in a asymmetric routing situation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Oleksandr Natalenko <oleksandr@xxxxxxxxxx>
- [PATCH v2 nf] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/3] net/mlx5: Support GRE conntrack offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 2/3] act_ct: Support GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH nf-next v2 0/3] Conntrack GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH 2/2] build: explicitly pass --version-script to linker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-nf:master 47/47] nf_queue.c:undefined reference to `sock_gen_put'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [netfilter-nf:master 47/47] nf_queue.c:undefined reference to `sock_gen_put'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- Re: [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- [PATCH 1/2] libnftables.map: export new nft_ctx_{get,set}_optimize API
- From: Sam James <sam@xxxxxxxxxx>
- [PATCH 2/2] build: explicitly pass --version-script to linker
- From: Sam James <sam@xxxxxxxxxx>
- Re: [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 5/7] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/7] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 4/7] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 7/7] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 2/7] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/7] netfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 6/7] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/7] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: netfilter: add nfqueue TCP_NEW_SYN_RECV socket race test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix error code in nf_tables_updobj()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix error code in nf_tables_updobj()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] conntrack: fix build with kernel 5.15 and musl
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] conntrack: fix build with kernel 5.15 and musl
- From: Robert Marko <robimarko@xxxxxxxxx>
- [PATCH] conntrack: fix build with kernel 5.15 and musl
- From: Robert Marko <robimarko@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: don't assume sk is full socket
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Song Liu <song@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net 0/5,v2] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 1.0.2 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH net-next 7/8] netfilter: introduce total count of hw offload 'stats' wq tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 1/8] net/sched: act_ct: set 'net' pointer when creating new nf_flow_table
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 0/8] Conntrack offload debuggability improvements
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 8/8] netfilter: flowtable: add hardware offload tracepoints
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 6/8] netfilter: introduce total count of hw offload 'del' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 5/8] netfilter: introduce max count of hw offload 'add' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 4/8] netfilter: introduce total count of hw offload 'add' workqueue tasks
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 3/8] netfilter: introduce max count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- [PATCH net-next 2/8] netfilter: introduce total count of hw offloaded flow table entries
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH] build: add missing AM_CPPFLAGS to examples/
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5,v2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: make sure err is initialised to sane value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Song Liu <song@xxxxxxxxxx>
- Re: [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH] build: add missing AM_CPPFLAGS to examples/
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH libnetfilter_queue v3 1-5/5] src: Speed-up
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] examples: compile with `make check' and add AM_CPPFLAGS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Dominique Martinet <asmadeus@xxxxxxxxxxxxx>
- Re: [PATCH 5.16 000/227] 5.16.11-rc1 review
- From: Naresh Kamboju <naresh.kamboju@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: make sure err is initialised to sane value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 5/5] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/5] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 4/5] netfilter: nft_limit: fix stateful object memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCH nf 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/5] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/5] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v1 12/15] net/netfilter: Add bpf_ct_kptr_get helper
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v1 05/15] bpf: Allow storing PTR_TO_PERCPU_BTF_ID in map
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v1 15/15] selftests/bpf: Add verifier tests for PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 13/15] libbpf: Add __kptr* macros to bpf_helpers.h
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 11/15] bpf: Teach verifier about kptr_get style kfunc helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 12/15] net/netfilter: Add bpf_ct_kptr_get helper
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 09/15] bpf: Populate pairs of btf_id and destructor kfunc in btf
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 08/15] bpf: Adapt copy_map_value for multiple offset case
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 14/15] selftests/bpf: Add C tests for PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 10/15] bpf: Wire up freeing of referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 07/15] bpf: Prevent escaping of pointers loaded from maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 06/15] bpf: Allow storing __user PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 00/15] Introduce typed pointer support in BPF maps
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 04/15] bpf: Allow storing referenced PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 03/15] bpf: Allow storing PTR_TO_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 05/15] bpf: Allow storing PTR_TO_PERCPU_BTF_ID in map
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 01/15] bpf: Factor out fd returning from bpf_btf_find_by_name_kind
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v1 02/15] bpf: Make btf_find_field more generic
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH v2 nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v2 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/5] src: replace interval segment tree overlap and automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 3/5] src: remove rbtree datastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 5/5] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 4/5] mnl: update mnl_nft_setelem_del() to allow for more reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/5] src: add EXPR_F_KERNEL to identify expression in the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: add tcp option reset support
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl] exthdr: tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: add tcp option reset support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 08/26] scanner: synproxy: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 26/26] scanner: dup, fwd, tproxy: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 05/26] scanner: icmp{,v6}: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 04/26] scanner: rt: Move seg-left keyword into scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 03/26] scanner: Some time units are only used in limit scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 18/26] scanner: reset: move to own Scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 06/26] scanner: igmp: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 22/26] scanner: policy: move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 14/26] scanner: dst, frag, hbh, mh: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 24/26] scanner: at: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 17/26] scanner: monitor: Move to own Scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 16/26] scanner: rt: Extend scope over rt0, rt2 and srh
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 00/26] scanner: Some fixes, many new scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 01/26] tests: py: Test connlimit statement
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 07/26] scanner: tcp: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 09/26] scanner: comp: Move to own scope.
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 10/26] scanner: udp{,lite}: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 02/26] scanner: Move 'maps' keyword into list cmd scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 25/26] scanner: meta: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 13/26] scanner: ah, esp: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 19/26] scanner: import, export: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 20/26] scanner: reject: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 11/26] scanner: dccp, th: Move to own scopes
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 15/26] scanner: type: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 12/26] scanner: osf: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 23/26] scanner: nat: Move to own scope
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 21/26] scanner: flags: move to own scope
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH] netfilter: conntrack: Relax helper auto-assignment warning for nftables
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Alexander Egorenkov <egorenar@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Nick Gregory <Nick.Gregory@xxxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [syzbot] KMSAN: uninit-value in nf_nat_setup_info (2)
- From: syzbot <syzbot+cbcd154fce7c6d953d1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers
- From: Alexander Egorenkov <Alexander.Egorenkov@xxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix memory leak during stateful obj update
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_limit: fix stateful object memory leak
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables_offload: incorrect flow offload action array size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Christophe Leroy <christophe.leroy@xxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Christophe Leroy <christophe.leroy@xxxxxxxxxx>
- Re: [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nft,v1 1/1] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 3/5] src: remove rbtree datastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 0/5] revisit overlap/automerge codebase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 1/5] src: add EXPR_F_KERNEL to identify expression in the kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 2/5] src: replace interval segment tree overlap and automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 5/5] intervals: add support to automerge with kernel elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 4/5] mnl: update mnl_nft_setelem_del() to allow for more reuse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: check key is EXPR_CONCAT before accessing field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net-next v1] net: Use csum_replace_... and csum_sub() helpers instead of opencoding
- From: Christophe Leroy <christophe.leroy@xxxxxxxxxx>
- Re: [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/1] net/sched: act_ct: Fix flow table lookup failure with no originating ifindex
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 3/3] conntrack: use libmnl for flushing conntrack table
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH v2 2/3] conntrack: use libmnl for ct entries deletion
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH v2 1/3] conntrack: use libmnl for updating conntrack table
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH v2 0/3] conntrack: use libmnl for various operations
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Gal Pressman <gal@xxxxxxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: revisit gc autotuning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH v3] netfilter: nf_tables: Reject tables of unsupported family
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Gal Pressman <gal@xxxxxxxxxx>
- [nf-next PATCH v2] netfilter: nf_tables: Reject tables of unsupported family
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] xshared: Implement xtables lock timeout using signals
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH AUTOSEL 5.10 06/23] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 04/11] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 05/17] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.15 09/33] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.16 09/34] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nft] segtree: memleak get element command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH] netfilter: nf_tables: Reject tables of unsupported family
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft 2/2] examples: load ruleset from JSON
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] examples: add libnftables example program
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/2] add example folder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_conntrack 1.0.9 release
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2] xshared: Implement xtables lock timeout using signals
- From: Jethro Beekman <jethro@xxxxxxxxxxxx>
- Re: [iptables PATCH 0/4] Re-enable NFLOG tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables] xshared: Implement xtables lock timeout using signals
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [syzbot] INFO: task hung in usb_get_descriptor
- From: syzbot <syzbot+31ae6d17d115e980fd14@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [iptables PATCH 2/4] tests: add `NOMATCH` test result
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [iptables PATCH 3/4] tests: support explicit variant test result
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [iptables PATCH 4/4] tests: NFLOG: enable `--nflog-range` tests
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [iptables PATCH 0/4] Re-enable NFLOG tests
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [iptables PATCH 1/4] tests: iptables-test: rename variable
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: xt_socket: missing ifdef CONFIG_IP6_NF_IPTABLES dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH 2/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/2] Improve error messages for unsupported extensions
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] libxtables: Register only the highest revision extension
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH AUTOSEL 5.16 05/52] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH net 1/6] selftests: netfilter: add synproxy test
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- [PATCH net 6/6] selftests: netfilter: disable rp_filter on router
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/6] selftests: netfilter: synproxy test requires nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nft_synproxy: unregister hooks on init error path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] selftests: netfilter: add synproxy test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] selftests: netfilter: fix exit value for nft_concat_range
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: xt_socket: fix a typo in socket_mt_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf] selftests: netfilter: disable rp_filter on router
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [iptables PATCH v2] tests: iptables-test: Support variant deviation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 2/3] act_ct: Support GRE offload
- From: Paul Blakey <paulb@xxxxxxxxxx>
- Re: [PATCH net-next 3/3] net/mlx5: Support GRE conntrack offload
- From: Paul Blakey <paulb@xxxxxxxxxx>
- [PATCHv2 nf] selftests: netfilter: disable rp_filter on router
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: disable rp_filter on router
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: netfilter: synproxy test requires nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_synproxy: unregister hooks on init error path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: disable rp_filter on router
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: disable rp_filter on router
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf] selftests: netfilter: disable rp_filter on router
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: conntrack: remove the percpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: conntrack: include ecache dying list in dumps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: conntrack: split inner loop of list dumping to own function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: ecache: use dedicated list for event redelivery
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: ecache: move to separate structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: ctnetlink: make ecache event cb global again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/7] nfnetlink: handle already-released nl socket
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/7] metfilter: remove pcpu dying list
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH v2] tests: iptables-test: Support variant deviation
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] tests: iptables-test: Support variant deviation
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] tests: iptables-test: Support variant deviation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_ct: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/14] netfilter: ctnetlink: use dump structure instead of raw args
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/14] netfilter: cttimeout: use option structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/14] netfilter: nft_cmp: optimize comparison for 16-bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/14] nfqueue: enable to set skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/14] netfilter: nft_compat: suppress comment match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/14] netfilter: ecache: don't use nf_conn spinlock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/14] netfilter: exthdr: add support for tcp option removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/14] netfilter: conntrack: pptp: use single option structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/14] netfilter: conntrack: move extension sizes into core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/14] netfilter: conntrack: handle ->destroy hook via nat_ops instead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/14] netfilter: conntrack: remove extension register api
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/14] netfilter: conntrack: make all extensions 8-byte alignned
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/14] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/14] netfilter: nfqueue: enable to get skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/14] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: use dump structure instead of raw args
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] nfqueue: enable to set skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: use option structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: ecache: don't use nf_conn spinlock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: use dump structure instead of raw args
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: use dump structure instead of raw args
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: xt_socket: fix a typo in socket_mt_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: add synproxy test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix exit value for nft_concat_range
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: fix exit value for nft_concat_range
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH net] netfilter: xt_socket: fix a typo in socket_mt_destroy()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: fix exit value for nft_concat_range
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- [PATCH net] netfilter: xt_socket: fix a typo in socket_mt_destroy()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [conntrack-tools PATCH] nfct: Support for non-lazy binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [iptables PATCH] iptables.8: Describe the effect of multiple -v flags
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: cttimeout: use option structure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: Use verbose flag to toggle debug output
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next,v3] netfilter: nft_cmp: optimize comparison for 16-bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: Use verbose flag to toggle debug output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/4] nft: Set NFTNL_CHAIN_FAMILY in new chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH 1/2] tests: Fix for missing qa-connlabel.conf in tarball
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] json: add flow statement json export + parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] flowtable json fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 1/3] json: add flow statement json export + parser
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] json: add flow statement json export + parser
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_conntrack PATCH 2/2] tests: Add simple tests to TESTS variable
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_conntrack PATCH 1/2] tests: Fix for missing qa-connlabel.conf in tarball
- From: Phil Sutter <phil@xxxxxx>
- Re: [Patch] document nft statements undefine/redefine
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] build: update obsolete autoconf macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] json: add flow statement json export + parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] json: add flow statement json export + parser
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] flowtable json fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_cmp: optimize comparison for 16-bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] parser_json: permit empty device list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] parser_json: fix flowtable device datatype
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] json: add flow statement json export + parser
- From: Florian Westphal <fw@xxxxxxxxx>
- [Patch] document nft statements undefine/redefine
- From: Pierre Ducroquet <pducroquet@xxxxxxxxxxxxxx>
- Re: [PATCH v4 net-next 0/7] net: use kfree_skb_reason() for ip/udp packet receive
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH libnetfilter_queue v3 1-5/5] src: Speed-up
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] Document the undefine and redefine syntax
- From: Pierre Ducroquet <pducroquet@xxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v3 1-5/5] src: Speed-up
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH AUTOSEL 4.9 3/7] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Pavel Machek <pavel@xxxxxx>
- Re: [PATCH v4 net-next 3/7] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- [libnetfilter_conntrack PATCH] build: update obsolete autoconf macros
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Time for a libnetfilter_conntrack release?
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [xtables-addons PATCH 0/2] 5.17 Kernel Support
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nf-next v2] netfilter: ecache: don't use nf_conn spinlock
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ecache: don't use nf_conn spinlock
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH v4 net-next 7/7] net: udp: use kfree_skb_reason() in __udp_queue_rcv_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 6/7] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 5/7] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 4/7] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 3/7] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 2/7] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: menglong8.dong@xxxxxxxxx
- [PATCH v4 net-next 0/7] net: use kfree_skb_reason() for ip/udp packet receive
- From: menglong8.dong@xxxxxxxxx
- Re: [PATCH nf-next] netfilter: nft_cmp: optimize comparison for up to 16-bytes
- From: kernel test robot <lkp@xxxxxxxxx>
- [iptables PATCH] tests: iptables-test: Support variant deviation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/6] netfilter: conntrack: don't refresh sctp entries in closed state
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH nf-next] nfqueue: enable to set skb->priority
- From: kernel test robot <lkp@xxxxxxxxx>
- [iptables PATCH 3/4] nft: Add debug output to table creation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/4] nft: cache: Dump rules if debugging
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: Set NFTNL_CHAIN_FAMILY in new chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] ebtables: Support verbose mode
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net 4/6] netfilter: conntrack: re-init state for retransmitted syn-ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/6] MAINTAINERS: netfilter: update git links
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: ctnetlink: disable helper autoassign
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: conntrack: move synack init code to helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: nft_payload: don't allow th access for fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_cmp: optimize comparison for up to 16-bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 net-next 3/7] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: add synproxy test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_cmp: optimize comparison for up to 16-bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [xtables-addons PATCH 2/2] build: bump supported kernel version to 5.17
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [xtables-addons PATCH 1/2] extensions: replace `PDE_DATA`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [xtables-addons PATCH 0/2] 5.17 Kernel Support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] selftests: netfilter: add synproxy test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: ecache: don't use nf_conn spinlock
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: ctnetlink: use dump structure instead of raw args
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] nfqueue: enable to set skb->priority
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH libnetfilter_queue] libnetfilter_queue: add support of skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf-next] nfqueue: enable to set skb->priority
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_compat: suppress comment match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: exthdr: add support for tcp option removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: conntrack: remove extension register api
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] nfqueue: enable to get skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] nfqueue: enable to get skb->priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: disable helper autoassign
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: conntrack: re-init state for retransmitted syn-ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: conntrack: move synack init code to helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_payload: don't allow th access for fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH AUTOSEL 5.16 05/52] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH AUTOSEL 5.16 05/52] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 4/9] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 3/7] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.10 05/25] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 04/10] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 04/15] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.15 05/41] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.16 05/52] netfilter: nf_conntrack_netbios_ns: fix helper module alias
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH 4.14.y 0/2] netfilter: nat: fix soft lockup when most ports are used
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nat: limit port clash resolution attempts
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.14.y 2/2] netfilter: nat: limit port clash resolution attempts
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.14.y 1/2] netfilter: nat: remove l4 protocol port rovers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.14.y 0/2] netfilter: nat: fix soft lockup when most ports are used
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.9.y 2/2] netfilter: nat: limit port clash resolution attempts
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.9.y 1/2] netfilter: nat: remove l4 protocol port rovers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4.9.y 0/2] netfilter: nat fix soft lockup when most ports are used
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/3] net/mlx5: Support GRE conntrack offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH net-next 2/3] act_ct: Support GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH net-next 1/3] netfilter: flowtable: Support GRE
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- [PATCH net-next 0/3] Conntrack GRE offload
- From: Toshiaki Makita <toshiaki.makita1@xxxxxxxxx>
- Re: [PATCH] netfilter: nat: limit port clash resolution attempts
- From: Vimal Agrawal <avimalin@xxxxxxxxx>
- [PATCH] netfilter: nat: limit port clash resolution attempts
- From: Vimal Agrawal <avimalin@xxxxxxxxx>
- [PATCH v32 18/28] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v32 16/28] LSM: Use lsmcontext in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v32 15/28] LSM: Ensure the correct LSM context releaser
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v32 09/28] LSM: Use lsmblob in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v32 08/28] LSM: Use lsmblob in security_secctx_to_secid
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: commit a504b703bb1da526a01593da0e4be2af9d9f5fa8 missing from 4.x LTS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- commit a504b703bb1da526a01593da0e4be2af9d9f5fa8 missing from 4.x LTS
- From: Vimal Agrawal <avimalin@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: disable helper autoassign
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pham Thanh Tuyen <phamtyn@xxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nf-next] netfilter: nft_compat: suppress comment match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pham Thanh Tuyen <phamtyn@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pham Thanh Tuyen <phamtyn@xxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3 net-next 3/7] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v3 net-next 7/7] net: udp: use kfree_skb_reason() in __udp_queue_rcv_skb()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v3 net-next 6/7] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v3 net-next 5/7] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v3 net-next 4/7] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pham Thanh Tuyen <phamtyn@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Pham Thanh Tuyen <phamtyn@xxxxxxxxx>
- Re: PROBLEM: Injected conntrack lost helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v2 1/1] xt_ECHO, xt_TARPIT: make properly conditional on IPv6
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: conntrack: re-init state for retransmitted syn-ack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: conntrack: re-init state for retransmitted syn-ack
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: conntrack: move synack init code to helper
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nf] MAINTAINERS: netfilter: update git links
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: conntrack: re-init state for retransmitted syn-ack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] netfilter: conntrack: move synack init code to helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_payload: don't allow th access for fragments
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- new iptables release?
- From: First Mate Rummey <fmrummey@xxxxxxxxx>
- Re: [PATCH iptables-nft 0/7] iptables: prefer native expressions for udp and tcp matches
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- [iptables PATCH 1/2] nft: Use verbose flag to toggle debug output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] iptables-restore: Support for extra debug output
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: conntrack: don't refresh sctp entries in closed state
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: exthdr: add support for tcp option removal
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables,v2] iface: handle EINTR case when creating the cache
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH v2 net-next 1/8] net: socket: intrudoce SKB_DROP_REASON_SOCKET_FILTER
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- [PATCH v3 net-next 7/7] net: udp: use kfree_skb_reason() in __udp_queue_rcv_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 6/7] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 5/7] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 4/7] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 3/7] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 2/7] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 1/7] net: skb_drop_reason: add document for drop reasons
- From: menglong8.dong@xxxxxxxxx
- [PATCH v3 net-next 0/7] net: use kfree_skb_reason() for ip/udp packet receive
- From: menglong8.dong@xxxxxxxxx
- Re: [PATCH net 1/8] netfilter: Remove flowtable relics
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 8/8] netfilter: nf_tables: remove assignment with no effect in chain blob builder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/8] netfilter: nft_reject_bridge: Fix for missing reply from prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/8] selftests: nft_concat_range: add test for reload with no element add/del
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/8] netfilter: nft_byteorder: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/8] selftests: netfilter: reduce zone stress test running time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/8] selftests: netfilter: check stateless nat udp checksum fixup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/8] netfilter: nft_ct: fix use after free when attaching zone template
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/8] netfilter: Remove flowtable relics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2] iface: handle EINTR case when creating the cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 2/2] Handle retriable errors from mnl functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 2/2] Handle retriable errors from mnl functions
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH nft v2 2/2] Handle retriable errors from mnl functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables] iface: handle EINTR case when creating the cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xshared: Fix response to unprivileged users
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xshared: Fix response to unprivileged users
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] xshared: Fix response to unprivileged users
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xshared: Fix response to unprivileged users
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: nf_tables: remove assignment with no effect in chain blob builder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net-next 1/8] net: socket: intrudoce SKB_DROP_REASON_SOCKET_FILTER
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v2 net-next 4/8] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [iptables PATCH] xshared: Fix response to unprivileged users
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net-next 2/8] net: skb_drop_reason: add document for drop reasons
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH v2 net-next 1/8] net: socket: intrudoce SKB_DROP_REASON_SOCKET_FILTER
- From: David Ahern <dsahern@xxxxxxxxx>
- [PATCH v2 net-next 8/8] net: udp: use kfree_skb_reason() in __udp_queue_rcv_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 7/8] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 6/8] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 5/8] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 4/8] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 3/8] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 2/8] net: skb_drop_reason: add document for drop reasons
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 1/8] net: socket: intrudoce SKB_DROP_REASON_SOCKET_FILTER
- From: menglong8.dong@xxxxxxxxx
- [PATCH v2 net-next 0/8] net: use kfree_skb_reason() for ip/udp packet receive
- From: menglong8.dong@xxxxxxxxx
- Re: [nf PATCH] netfilter: nft_reject_bridge: Fix for missing reply from prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: reduce zone stress test running time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: fix use after free when attaching zone template
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Remove flowtable relics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH] Merge nfct tool into conntrackd
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nftables 4/4] optimize: do not merge raw payload expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 2/4] optimize: merge verdict maps with same lookup key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 3/4] optimize: check for payload base and offset when searching for mergers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 0/4] optimization updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 1/4] optimize: add __expr_cmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH nf] selftests: nft_concat_range: add test for reload with no element add/del
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf] selftests: nft_concat_range: add test for reload with no element add/del
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 3/6] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net-next 3/6] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 4/6] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 3/6] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 2/6] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: Menglong Dong <menglong8.dong@xxxxxxxxx>
- Re: [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net-next 4/6] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net-next 3/6] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net-next 2/6] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH nft v2 1/2] Use abort() in case of netlink_abi_error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/6] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_byteorder: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/6] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [nf PATCH] netfilter: nft_reject_bridge: Fix for missing reply from prerouting
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v6 01/11] kernel: Implement try_module_get_live
- From: Luis Chamberlain <mcgrof@xxxxxxxxxx>
- [PATCH iptables-nft 6/7] nft-shared: add tcp flag dissection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 0/7] iptables: prefer native expressions for udp and tcp matches
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 7/7] nft: add support for native tcp flag matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 4/7] nft: prefer native expressions instead of udp match
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 3/7] nft-shared: support native udp port delinearize
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 5/7] nft: prefer native expressions instead of tcp match
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 1/7] nft-shared: support native tcp port delinearize
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables-nft 2/7] nft-shared: support native tcp port range delinearize
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: check stateless nat udp checksum fixup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/6] net: udp: use kfree_skb_reason() in __udp_queue_rcv_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 5/6] net: udp: use kfree_skb_reason() in udp_queue_rcv_one_skb()
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 4/6] net: ipv4: use kfree_skb_reason() in ip_protocol_deliver_rcu()
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 3/6] net: ipv4: use kfree_skb_reason() in ip_rcv_finish_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 2/6] net: ipv4: use kfree_skb_reason() in ip_rcv_core()
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 1/6] net: netfilter: use kfree_drop_reason() for NF_DROP
- From: menglong8.dong@xxxxxxxxx
- [PATCH net-next 0/6] net: use kfree_skb_reason() for ip/udp packet receive
- From: menglong8.dong@xxxxxxxxx
- [ANNOUNCE] Settlement with Patrick McHardy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix duplicate logs of iptables TRACE target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix duplicate logs of iptables TRACE target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net: fix duplicate logs of iptables TRACE target
- From: kai zhang <zhangkaiheb@xxxxxxx>
- [PATCH] net: fix duplicate logs of iptables TRACE target
- From: kai zhang <zhangkaiheb@xxxxxxx>
- [PATCH nf] selftests: netfilter: reduce zone stress test running time
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_ct: fix use after free when attaching zone template
- From: Florian Westphal <fw@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]