Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [ulogd2 PATCH v4 00/32] Fixes for compiler warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables,v2 0/7] ruleset optimization infrastructure
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nftables,v2 0/7] ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 7/7] optimize: merge several selectors with different verdict into verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 6/7] optimize: merge same selector with different verdict into verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 4/7] src: add ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 5/7] optimize: merge rules with same selectors into a concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 3/7] src: remove '$' in symbol_expr_print
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 2/7] src: error reporting with -f and read from stdin
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 1/7] erec: expose print_location() and line_location()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables,v2 0/7] ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v6 11/11] selftests/bpf: Add test for race in btf_try_get_module
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 10/11] selftests/bpf: Extend kfunc selftests
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 09/11] selftests/bpf: Add test_verifier support to fixup kfunc call insns
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 08/11] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 07/11] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 06/11] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 05/11] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 04/11] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 03/11] bpf: Populate kfunc BTF ID sets in struct btf
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 02/11] bpf: Fix UAF due to race between btf_try_get_module and load_module
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 01/11] kernel: Implement try_module_get_live
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v6 00/11] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v5 1/9] kernel: Add kallsyms_on_each_symbol variant for single module
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v5 2/9] bpf: Prepare kfunc BTF ID sets when parsing kernel BTF
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v5 2/9] bpf: Prepare kfunc BTF ID sets when parsing kernel BTF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v5 2/9] bpf: Prepare kfunc BTF ID sets when parsing kernel BTF
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH] ipset: SCTP, UDPLITE support added to the bitmap:port type
- From: Quan Tian <tianquan23@xxxxxxxxx>
- Re: [PATCH linux] netfilter: Remove unnecessary ret assignment
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH linux] netfilter: Remove unnecessary ret assignment
- Re: [PATCH bpf-next v5 0/9] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 9/9] selftests/bpf: Extend kfunc selftests
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 8/9] selftests/bpf: Add test_verifier support to fixup kfunc call insns
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 7/9] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 6/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 5/9] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 4/9] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 3/9] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 2/9] bpf: Prepare kfunc BTF ID sets when parsing kernel BTF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 1/9] kernel: Add kallsyms_on_each_symbol variant for single module
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v5 0/9] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Stefano Garzarella <sgarzare@xxxxxxxxxx>
- Re: [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Nikolay Aleksandrov <nikolay@xxxxxxxxxx>
- Re: [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Florian Fainelli <f.fainelli@xxxxxxxxx>
- [PATCH bpf-next v2] net: don't include filter.h from net/sock.h
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH bpf-next] net: don't include filter.h from net/sock.h
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: exthdr: add support for tcp option removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: exthdr: add support for tcp option removal
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] selftests/netfilter: switch to socat for tests using -q option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests/netfilter: switch to socat for tests using -q option
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- [PATCH] netfilter: extend CONFIG_NF_CONNTRACK compile time checks
- [PATCH] netfilter: conntrack: Use max() instead of doing it manually
- From: Jiapeng Chong <jiapeng.chong@xxxxxxxxxxxxxxxxx>
- [iptables PATCH 00/11] Share do_parse() between nft and legacy
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/11] xshared: Move do_parse to shared space
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/11] iptables: Use xtables' do_parse() function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/11] xtables: Pass xtables_args to check_empty_interface()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/11] nft: Move proto_parse and post_parse callbacks to xshared
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/11] xtables: Do not pass nft_handle to do_parse()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/11] xtables: Pull table validity check out of do_parse()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/11] xtables: Move struct nft_xt_cmd_parse to xshared.h
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/11] xtables: Drop xtables' family on demand feature
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/11] xtables: Pass xtables_args to check_inverse()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/11] ip6tables: Use the shared do_parse, too
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/11] xshared: Store parsed wait and wait_interval in xtables_args
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: exthdr: add support for tcp option removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_set_pipapo_avx2: remove redundant pointer lt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 4/4] conntrack: pass sock to nfct_mnl_*() functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 2/4] conntrack: add netlink flags to nfct_mnl_nlmsghdr_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 3/4] conntrack: use libmnl to create entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 1/4] conntrack: add nfct_mnl_talk() and nfct_mnl_recv() helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack 0/4] more updates to use libmnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: seqadj: check seq offset before update
- From: zhang kai <zhangkaiheb@xxxxxxx>
- Re: [PATCH netfilter] netfilter: xt_owner: use sk->sk_uid for owner lookup
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- [PATCH iptables] xshared: Implement xtables lock timeout using signals
- From: Jethro Beekman <jethro@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter] netfilter: xt_owner: use sk->sk_uid for owner lookup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH netfilter] netfilter: xt_owner: use sk->sk_uid for owner lookup
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH] netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check()
- From: Xin Xiong <xiongx18@xxxxxxxxxxxx>
- Re: [PATCH nft 0/3] ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/2] nat: force port remap to prevent shadowing well-known ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: flowtable: remove ipv4/ipv6 modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] nft-shared: set correc register value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: exthdr: add support for tcp option removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] parser: allow quoted string in flowtable_expr_member
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 10/11] tests: py: remove redundant payload expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 11/11] tests: shell: remove redundant payload expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] netfilter: nft_set_pipapo_avx2: remove redundant pointer lt
- From: Colin Ian King <colin.i.king@xxxxxxxxx>
- [nft PATCH 07/11] src: simplify logic governing storing payload dependencies
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 09/11] src: store more than one payload dependency
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 06/11] src: reduce indentation
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 08/11] src: add a helper that returns a payload dependency for a particular base
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 03/11] tests: py: fix inet/ip_tcp.t test
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 05/11] src: remove arithmetic on booleans
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 02/11] tests: py: fix inet/ip.t payloads
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 01/11] tests: py: fix inet/sets.t netdev payload
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 00/11] Store multiple payload dependencies
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 04/11] netlink_delinearize: fix typo
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables] parser: allow quoted string in flowtable_expr_member
- From: Stijn Tintel <stijn@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: exthdr: add support for tcp option removal
- From: Florian Westphal <fw@xxxxxxxxx>
- [syzbot] KASAN: use-after-free Read in nf_hook_entries_grow
- From: syzbot <syzbot+e918523f77e62790d6d9@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- netdevconf 0x16
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 03/10] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 04/10] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 04/10] bpf: Introduce mem, size argument pair support for kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v4 03/10] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH libnetfilter_queue v3] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH iptables] nft-shared: set correc register value
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,v2 5/5] netfilter: nf_tables: make counter support built-in
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- [PATCH nf-next,v3 5/5] netfilter: nf_tables: make counter support built-in
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,v2 5/5] netfilter: nf_tables: make counter support built-in
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- Re: [PATCH bpf-next v4 00/10] Introduce unstable CT lookup helpers
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- [PATCH nf-next] netfilter: flowtable: remove ipv4/ipv6 modules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 nf-next 2/2] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [nft PATCH] build: remove scanner.c and parser_bison.c with `maintainer-clean`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH 0/3] bison & flex autotools updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 5/5] netfilter: nf_tables: make counter support built-in
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/5] netfilter: nf_tables: replace WARN_ON by WARN_ON_ONCE for unknown verdicts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/5] netfilter: nft_payload: WARN_ON_ONCE instead of BUG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/5] netfilter: nf_tables: consolidate rule verdict trace call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/5] netfilter: nf_tables: remove rcu read-size lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] src: propagate key datatype for anonymous sets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH v4 nf-next 2/2] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4 1/2] netfilter: conntrack: tag conntracks picked up in local out hook
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4 0/2] nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v4 00/10] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH net 2/3] netfilter: fix regression in looped (broad|multi)cast's MAC handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: ctnetlink: remove expired entries first
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v4 07/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v4 07/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] graphics/graphviz: Updated for version 2.50
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: graphviz.SlackBuild
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH 1/1] graphics/graphviz: Updated for version 2.50
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: graphviz.SlackBuild
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH bpf-next v4 10/10] selftests/bpf: Extend kfunc selftests
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 09/10] selftests/bpf: Add test_verifier support to fixup kfunc call insns
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 08/10] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 07/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 04/10] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 03/10] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 02/10] bpf: Remove DEFINE_KFUNC_BTF_ID_SET
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 01/10] bpf: Refactor bpf_check_mod_kfunc_call
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v4 00/10] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH nf v3] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nft 2/2] Handle retriable errors from mnl functions
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH nft] proto: revisit short-circuit loops over upper protocols
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [conntrack-tools PATCH 0/3] bison & flex autotools updates
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [conntrack-tools PATCH 2/3] build: remove MAINTAINERCLEANFILES
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [conntrack-tools PATCH 3/3] build: replace `AM_PROG_LEX` with `AC_PROG_LEX`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [conntrack-tools PATCH 1/3] build: only require bison and flex if the generated files do not exist
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH] build: remove scanner.c and parser_bison.c with `maintainer-clean`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf v3] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf v3] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [iptables PATCH v3 0/6] Some more code de-duplication
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH v3 4/6] xtables_globals: Embed variant name in .program_version
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 6/6] iptables-*-restore: Drop pointless line reference
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 0/6] Some more code de-duplication
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 2/6] xshared: Share a common printhelp function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 5/6] libxtables: Extend basic_exit_err()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 3/6] xshared: Share exit_tryhelp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 1/6] xshared: Share print_match_save() between legacy ip*tables
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v2 4/6] xtables_globals: Introduce program_variant
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] ruleset optimization infrastructure
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 2/2] netfilter: nf_nat_masquerade: add netns refcount tracker to masq_dev_work
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nfnetlink: add netns refcount tracker to struct nfulnl_instance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/7] ipvs: remove unused variable for ip_vs_new_dest
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: conntrack: Remove useless assignment statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: bridge: add support for pppoe filtering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: nft_fwd_netdev: Support egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: conntrack: Use memset_startat() to zero struct nf_conn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: ctnetlink: remove useless type conversion to bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: nf_queue: remove leftover synchronize_rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/7] ipvs: remove unused variable for ip_vs_new_dest
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/7] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: extend catchall tests for maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] proto: revisit short-circuit loops over upper protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: Warn user if html docs will be missing diagrams
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] src: propagate key datatype for anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH linux-next] netfilter: Remove useless assignment statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: fix regression in looped (broad|multi)cast's MAC handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nfnetlink: add netns refcount tracker to struct nfulnl_instance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nfnetlink: add netns refcount tracker to struct nfulnl_instance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nftables: fix use-after-free in nft_set_catchall_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 4/6] xtables_globals: Introduce program_variant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: fix autoconf warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tests: shell: remove stray debug flag.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/3] inet reject statement fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] optimize: merge rules with same selectors into a concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] optimize: merge same selector with different verdict into verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] src: add ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/3] ruleset optimization infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: fix autoconf warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] tests: shell: remove stray debug flag.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] build: fix autoconf warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] tests: shell: remove stray debug flag.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/2] netfilter: conntrack: tag conntracks picked up in local out hook
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/2] nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] tests: shell: implicit chains simple coverage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 9/9] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v3 9/9] selftests/bpf: Add test for unstable CT lookup API
- From: Maxim Mikityanskiy <maximmi@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- [PATCH v31 18/28] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v31 16/28] LSM: Use lsmcontext in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v31 15/28] LSM: Ensure the correct LSM context releaser
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v31 09/28] LSM: Use lsmblob in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v31 08/28] LSM: Use lsmblob in security_secctx_to_secid
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- [iptables PATCH v2 5/6] libxtables: Extend basic_exit_err()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 0/6] Some more code de-duplication
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 2/6] xshared: Share a common printhelp function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 4/6] xtables_globals: Introduce program_variant
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 1/6] xshared: Share print_match_save() between legacy ip*tables
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 3/6] xshared: Share exit_tryhelp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 6/6] iptables-*-restore: Drop pointless line reference
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next 2/2] netfilter: nf_nat_masquerade: add netns refcount tracker to masq_dev_work
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net-next 1/2] netfilter: nfnetlink: add netns refcount tracker to struct nfulnl_instance
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net] netfilter: nftables: fix use-after-free in nft_set_catchall_destroy()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [libnftnl PATCH v2 1/7] src: add infrastructure to infer byteorder from keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 0/3] inet reject statement fix
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 3/3] evaluate: reject: support ethernet as L2 protcol for inet table
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 2/3] evaluate: correct typo's
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH 1/3] proto: short-circuit loops over upper protocols
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] netfilter: fix regression in looped (broad|multi)cast's MAC handling
- From: Ignacy Gawędzki <ignacy.gawedzki@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next v3 9/9] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 8/9] selftests/bpf: Extend kfunc selftests
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 6/9] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 5/9] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 4/9] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 3/9] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 2/9] bpf: Remove DEFINE_KFUNC_BTF_ID_SET
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 1/9] bpf: Refactor bpf_check_mod_kfunc_call
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v3 0/9] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH libnetfilter_conntrack] conntrack: don't cancel nest on unknown layer 4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/x_tables.c: Use kvalloc to make your code better
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net/netfilter/x_tables.c: Use kvalloc to make your code better
- From: lizhe <sensor1010@xxxxxxx>
- [PATCH nf-next 11/11] netfilter: nft_bitwise: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 09/11] netfilter: nft_payload: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 10/11] netfilter: nft_meta: track register operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 06/11] netfilter: nft_limit: move stateful fields out of expression data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 05/11] netfilter: nft_limit: rename stateful structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 03/11] netfilter: nft_quota: move stateful fields out of expression data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 08/11] netfilter: nf_tables: add register tracking infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 02/11] netfilter: nft_last: move stateful fields out of expression data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 07/11] netfilter: nf_tables: add rule blob layout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 04/11] netfilter: nft_numgen: move stateful fields out of expression data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 00/11] nf_tables datapath ruleset blob and register tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 01/11] netfilter: nft_connlimit: move stateful fields out of expression data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: make counter support built-in
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables: replace WARN_ON by WARN_ON_ONCE for unknown verdicts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nf_tables: consolidate rule verdict trace call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nft_payload: WARN_ON_ONCE instead of BUG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nf_tables: remove rcu read-size lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/5] nf_tables misc updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL] Networking for 5.16-rc5
- From: pr-tracker-bot@xxxxxxxxxx
- [PATCH nft v2 2/2] Handle retriable errors from mnl functions
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [PATCH nft v2 1/2] Use abort() in case of netlink_abi_error
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [PATCH nft v2 0/2] Improve handling of errors from mnl* functions"
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- [GIT PULL] Networking for 5.16-rc5
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 9/9] selftests/bpf: Add test for unstable CT lookup API
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 8/9] selftests/bpf: Extend kfunc selftests
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 7/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 6/9] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 5/9] bpf: Add reference tracking support to kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 4/9] bpf: Introduce mem, size argument pair support for kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 3/9] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 2/9] bpf: Remove DEFINE_KFUNC_BTF_ID_SET
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 1/9] bpf: Refactor bpf_check_mod_kfunc_call
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 0/9] Introduce unstable CT lookup helpers
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- [PATCH nf] netfilter: ctnetlink: remove expired entries first
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Fwd: conntrack -L does not show the full table
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- [PATCH nft 2/2] src: propagate key datatype for anonymous sets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] tcpopt: add phony mptcp suboption datatype
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/2 nft] mptcp: add mptcp subtype mnemonics
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Fwd: conntrack -L does not show the full table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 3/6] libxtables: Add xtables_exit_tryhelp()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/7] netfilter: nfnetlink_queue: silence bogus compiler warning
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [iptables PATCH 3/6] libxtables: Add xtables_exit_tryhelp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/4] second batch of typeof fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH 2/6] xshared: Share a common printhelp function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/6] iptables-*-restore: Drop pointless line reference
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/6] xshared: Share print_match_save() between legacy ip*tables
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/6] libxtables: Add xtables_exit_tryhelp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/6] libxtables: Extend basic_exit_err()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/6] xtables_globals: Introduce program_variant
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/6] Some more code de-duplication
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net 6/7] selftests: netfilter: switch zone stress to socat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/7] netfilter: conntrack: annotate data-races around ct->timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/7] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/7] netfilter: nft_exthdr: break evaluation if setting TCP option fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/7] vrf: don't run conntrack on vrf with !dflt qdisc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/7] selftests: netfilter: Add correctness test for mac,net set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/7] netfilter: nfnetlink_queue: silence bogus compiler warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] Handle retriable errors from mnl functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] Handle retriable errors from mnl functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] Improve handling of errors from mnl* functions"
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [PATCH nft 2/2] Handle retriable errors from mnl functions
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [PATCH nft 1/2] Use abort() in case of netlink_abi_error
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [PATCH nft] Improve handling of errors from mnl* functions"
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Fwd: conntrack -L does not show the full table
- From: Vitaly Zuevsky <vzuevsky@xxxxxxx>
- Re: [PATCH nft] tests: shell: better parameters for the interval stack overflow test
- From: Phil Sutter <phil@xxxxxx>
- Re: [syzbot] possible deadlock in blkdev_put (2)
- From: syzbot <syzbot+643e4ce4b6ad1347d372@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH linux-next] netfilter: Remove useless assignment statements
- [PATCH net-next] net: netfilter: fix code indentation
- From: Jεan Sacren <sakiwit@xxxxxxxxx>
- [PATCH net-next] net: bridge: netfilter: fix code indentation
- From: Jεan Sacren <sakiwit@xxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: switch zone stress to socat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack: annotate data-races around ct->timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix AVX2 MAC address match, add test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] vrf: don't run conntrack on vrf with !dflt qdisc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: Update build_man.sh for doxygen 1.9.2
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net: Enable some sysctls for the userns root with privilege
- From: Joanne Koong <joannekoong@xxxxxx>
- [PATCH net] netfilter: conntrack: annotate data-races around ct->timeout
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nft 4/4] netlink_delinearize: zero shift removal
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/4] netlink_delinearize: and/shift postprocessing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/4] payload: skip templates with meta key set
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/4] tests: add shift+and typeof test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/4] second batch of typeof fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: better parameters for the interval stack overflow test
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next] net: Enable some sysctls for the userns root with privilege
- From: CGEL <cgel.zte@xxxxxxxxx>
- Re: [PATCH net-next] net: Enable some sysctls for the userns root with privilege
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [ulogd2 PATCH] build: bump libnetfilter_log dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ulogd2 PATCH v4 00/32] Fixes for compiler warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Suboptimal error handling in libnftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Suboptimal error handling in libnftables
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: Meaning of "." (dot) in netfilter
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [ulogd2 PATCH] build: bump libnetfilter_log dependency
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Meaning of "." (dot) in netfilter
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: Meaning of "." (dot) in netfilter
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Inability to IPVS DR with nft dnat since 9971a514ed26
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Sean Christopherson <seanjc@xxxxxxxxxx>
- [PATCH nft 3/3] iptopt: fix crash with invalid field/type combo
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] exthdr: support ip/tcp options and sctp chunks in typeof expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] ipopt: drop unused 'ptr' argument
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] typeof fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: switch zone stress to socat
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Inability to IPVS DR with nft dnat since 9971a514ed26
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH v2] net: Enable some sysctls for the userns root
- Re: Inability to IPVS DR with nft dnat since 9971a514ed26
- From: Simon Kirby <sim@xxxxxxxxxx>
- [PATCH net-next] net: Enable some sysctls for the userns root with privilege
- Re: [PATCH nft 0/8] mptcp subtype option match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/5] Reduce cache overhead a bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Suboptimal error handling in libnftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: better parameters for the interval stack overflow test
- From: Štěpán Němec <snemec@xxxxxxxxxx>
- Re: Suboptimal error handling in libnftables
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: Suboptimal error handling in libnftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Suboptimal error handling in libnftables
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- [nft PATCH v2 5/5] cache: Support filtering for a specific flowtable
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 3/5] cache: Filter chain list on kernel side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/5] cache: Filter rule list on kernel side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/5] cache: Filter tables on kernel side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 0/5] Reduce cache overhead a bit
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 4/5] cache: Filter set list on server side
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Bixuan Cui <cuibixuan@xxxxxxxxxxxxxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH -next] mm: delete oversized WARN_ON() in kvmalloc() calls
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 0/5] Reduce cache overhead a bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/5] Reduce cache overhead a bit
- From: Phil Sutter <phil@xxxxxx>
- [PATCH 6/6] conntrack: use libmnl for flushing conntrack table
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 3/6] conntrack: pass sock to nfct_mnl_xxx functions
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 5/6] conntrack: use libmnl for ct entries deletion
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 4/6] conntrack: use libmnl for updating conntrack table
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 2/6] conntrack: use libmnl for conntrack entry creation
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 1/6] conntrack: generic nfct_mnl_call function
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- [PATCH 0/6] conntrack: use libmnl for various operations
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxx>
- Re: [nft PATCH 0/5] Reduce cache overhead a bit
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 0/5] Reduce cache overhead a bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 1/5] cache: Filter tables on kernel side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/5] Reduce cache overhead a bit
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/5] cache: Filter set list on server side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 5/5] cache: Support filtering for a specific flowtable
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/5] cache: Filter rule list on kernel side
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/5] cache: Filter chain list on kernel side
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 0/3] netlink_delinearize cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] netlink_delinearize: binop: make accesses to expr->left/right conditional
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] netlink_delinearize: rename misleading variable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] netlink_delinearize cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] netlink_delinearize: use correct member type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/8] mptcp subtype option match support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: better parameters for the interval stack overflow test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: shell: better parameters for the interval stack overflow test
- From: Štěpán Němec <snemec@xxxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: Warn user if html docs will be missing diagrams
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_fwd_netdev: Support egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: bridge: add support for ppoe filtering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter: remove useless type conversion to bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_queue: silence bogus compiler warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_queue: remove leftover synchronize_rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: Use memset_startat() to zero struct nf_conn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_fwd_netdev: Support egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: remove unused variable for ip_vs_new_dest
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/8] mptcp subtype option match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 3/7] set: Introduce NFTNL_SET_DESC_CONCAT_DATA
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [nft PATCH 00/15] Fix netlink debug output on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 00/15] Fix netlink debug output on Big Endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 3/7] set: Introduce NFTNL_SET_DESC_CONCAT_DATA
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] exthdr: fix type number saved in udata
- From: Phil Sutter <phil@xxxxxx>
- [ulogd2 PATCH v4 23/32] output: SQLITE3: catch errors creating SQL statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 29/32] output: JSON: fix possible leak in error-handling.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 30/32] output: JSON: optimize appending of newline to output
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 27/32] output: JSON: fix output of GMT offset
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 20/32] output: SQLITE3: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 26/32] db: simplify initialization of ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 24/32] db: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 12/32] output: DBI: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 32/32] output: IPFIX: remove compiler attribute macros
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 11/32] output: DBI: fix deprecation warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 28/32] output: JSON: increase time-stamp buffer size
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 22/32] output: SQLITE3: improve mapping of fields to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 15/32] output: MYSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 17/32] output: PGSQL: fix non-`connstring` configuration of DB connection
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 19/32] output: SQLITE3: fix memory-leak in error-handling
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 18/32] output: SQLITE3: fix possible buffer overruns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 14/32] output: DBI: fix configuration of DB connection
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 16/32] output: PGSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 13/32] output: DBI: fix NUL-termination of escaped SQL string
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 21/32] output: SQLITE3: improve mapping of DB columns to fields
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 31/32] output: JSON: fix possible truncation of socket path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 25/32] db: improve mapping of input-keys to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 10/32] input: UNIXSOCK: prevent unaligned pointer access
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 09/32] input: UNIXSOCK: fix possible truncation of socket path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 07/32] filter: PWSNIFF: replace malloc+strncpy with strndup
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 08/32] input: UNIXSOCK: remove stat of socket-path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 04/32] filter: HWHDR: re-order KEY_RAW_MAC checks
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 06/32] Replace malloc+memset with calloc
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 05/32] filter: HWHDR: remove zero-initialization of MAC type
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 01/32] jhash: add "fall through" comments to switch cases
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 03/32] filter: HWHDR: simplify flow-control
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 02/32] db: add missing `break` to switch case
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v4 00/32] Fixes for compiler warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [ulogd2 PATCH v3 00/32] Fixes for compiler warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_exthdr: break evaluation if setting TCP option fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] exthdr: fix type number saved in udata
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nf] netfilter: nat: force port remap to prevent shadowing well-known ports
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 1/2] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups
- From: Nikita Yushchenko <nikita.yushchenko@xxxxxxxxxxxxx>
- Re: [PATCH nf] vrf: don't run conntrack on vrf with !dflt qdisc
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH nf 2/2] selftests: netfilter: Add correctness test for mac,net set type
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 2/2] selftests: netfilter: Add correctness test for mac,net set type
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH nf 2/2] selftests: netfilter: Add correctness test for mac,net set type
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 1/2] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 0/2] nft_set_pipapo: Fix AVX2 MAC address match, add test
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf] vrf: don't run conntrack on vrf with !dflt qdisc
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] vrf: don't run conntrack on vrf with !dflt qdisc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink_queue: silence bogus compiler warning
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] cli: print newline with ctrl-d with editline
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] cli: save history on ctrl-d with editline
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ulogd2 PATCH v3 16/30] output: SQLITE3: fix possible buffer overruns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 25/30] output: JSON: fix output of GMT offset
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 23/32] output: SQLITE3: catch errors creating SQL statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 18/30] output: SQLITE3: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 26/30] output: JSON: increase time-stamp buffer size
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 14/30] output: MYSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 24/30] db: replace `strncpy` with `strcpy`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 30/30] output: IPFIX: remove compiler attribute macros
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 25/32] db: improve mapping of input-keys to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 17/32] output: PGSQL: fix non-`connstring` configuration of DB connection
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 12/32] output: DBI: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 23/30] db: improve mapping of input-keys to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 24/32] db: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 15/32] output: MYSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 32/32] output: IPFIX: remove compiler attribute macros
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 31/32] output: JSON: fix possible truncation of socket path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 14/32] output: DBI: fix configuration of DB connection
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 18/32] output: SQLITE3: fix possible buffer overruns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 22/32] output: SQLITE3: improve mapping of fields to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 22/30] db: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 30/32] output: JSON: optimize appending of newline to output
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 29/32] output: JSON: fix possible leak in error-handling.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 19/30] output: SQLITE3: improve mapping of DB columns to fields
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 27/30] output: JSON: fix possible leak in error-handling.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 19/32] output: SQLITE3: fix memory-leak in error-handling
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 15/30] output: PGSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 20/30] output: SQLITE3: improve mapping of fields to DB columns
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 21/30] output: SQLITE3: catch errors creating SQL statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 10/32] input: UNIXSOCK: prevent unaligned pointer access
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 11/32] output: DBI: fix deprecation warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 27/32] output: JSON: fix output of GMT offset
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 26/32] db: simplify initialization of ring-buffer
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 17/30] output: SQLITE3: fix memory-leak in error-handling
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 28/32] output: JSON: increase time-stamp buffer size
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 20/32] output: SQLITE3: improve formatting of insert statement
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 21/32] output: SQLITE3: improve mapping of DB columns to fields
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 28/30] output: JSON: optimize appending of newline to output
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 13/32] output: DBI: fix NUL-termination of escaped SQL string
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 16/32] output: PGSQL: improve mapping of DB columns to input-keys
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 29/30] output: JSON: fix possible truncation of socket path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] cli: save history on ctrl-d
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ulogd2 PATCH v3 02/32] db: add missing `break` to switch case
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 06/32] Replace malloc+memset with calloc
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 04/32] filter: HWHDR: re-order KEY_RAW_MAC checks
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 09/32] input: UNIXSOCK: fix possible truncation of socket path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 08/32] input: UNIXSOCK: remove stat of socket-path
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 07/32] filter: PWSNIFF: replace malloc+strncpy with strndup
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 05/32] filter: HWHDR: remove zero-initialization of MAC type
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 00/32] Fixes for compiler warnings
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 03/32] filter: HWHDR: simplify flow-control
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH v3 01/32] jhash: add "fall through" comments to switch cases
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [nft PATCH 03/15] mnl: Fix for missing info in rule dumps
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 09/15] netlink_delinearize: Fix for escaped asterisk strings on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 04/15] src: Fix payload statement mask on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 10/15] Make string-based data types Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 06/15] meta: Fix hour_type size
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 14/15] tests/py/tools: Add regen_payloads.sh
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 00/15] Fix netlink debug output on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 01/15] tests/py: Avoid duplicate records in *.got files
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 08/15] ct: Fix ct label value parser
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 05/15] meta: Fix {g,u}id_type on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 11/15] evaluate: Fix key byteorder value in range sets/maps
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 13/15] mnl: Provide libnftnl with set element meta info when dumping
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 12/15] include: Use struct nftnl_set_desc
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 07/15] datatype: Fix size of time_type
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 02/15] exthdr: Fix for segfault with unknown exthdr
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 6/7] include: Introduce and publish struct nftnl_set_desc
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 2/7] set: Introduce NFTNL_SET_DESC_BYTEORDER
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 7/7] set: Introduce nftnl_set_elem_snprintf_desc()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 5/7] data_reg: Respect each value's size
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 0/7] Stabilize debug output on different endian systems
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH v2 1/7] src: add infrastructure to infer byteorder from keys
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 4/7] data_reg: Support varying byteorder in concat data
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 3/7] set: Introduce NFTNL_SET_DESC_CONCAT_DATA
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Karel Rericha <karel@xxxxxxxxx>
- [PATCH] net/netfilter: remove useless type conversion to bool
- From: Bernard Zhao <bernard@xxxxxxxx>
- [PATCH v30 18/28] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v30 16/28] LSM: Use lsmcontext in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v30 15/28] LSM: Ensure the correct LSM context releaser
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v30 09/28] LSM: Use lsmblob in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v30 08/28] LSM: Use lsmblob in security_secctx_to_secid
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH net v2 RESEND] netfilter: fix conntrack flows stuck issue on cleanup.
- From: "Volodymyr Mytnyk [C]" <vmytnyk@xxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [PATCH ulogd] XML: show both nflog packet and conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 ulogd 2/2] NFLOG: attach struct nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 ulogd 2/2] NFLOG: attach struct nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/8] mptcp subtype option match support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCHv2 ulogd 1/2] NFLOG: add NFULNL_CFG_F_CONNTRACK flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] Revert "configure: default to libedit for cli"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ulogd2 PATCH 0/5] Format string fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/8] mptcp subtype option match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: bridge: add support for ppoe filtering
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft,v2] cli: remove #include <editline/history.h>
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cli: remove #include <editline/history.h>
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: different signedness compilation warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [ulogd2 PATCH 1/5] include: add `format` attribute to `__ulogd_log` declaration
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH 5/5] output: IPFIX: correct format specifiers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH 3/5] ulogd: fix order of log arguments
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH 4/5] input: UNIXSOCK: correct format specifiers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH 2/5] ulogd: remove empty log-line
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [ulogd2 PATCH 0/5] Format string fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: allow to tune gc behavior
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: conntrack: configurable conntrack gc scan interval
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: conntrack: configurable conntrack gc scan interval
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [syzbot] WARNING in cgroup_finalize_control
- From: Waiman Long <longman@xxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: conntrack: configurable conntrack gc scan interval
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [syzbot] WARNING in cgroup_finalize_control
- From: syzbot <syzbot+9c08aaa363ca5784c9e9@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: configurable conntrack gc scan interval
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: configurable conntrack gc scan interval
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- [PATCH nft 8/8] tests: py: add tcp subtype match test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 7/8] exthdr: fix tcpopt_find_template to use length after mask adjustment
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 6/8] mptcp: add subtype matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 5/8] tests: py: add test cases for md5sig, fastopen and mptcp mnemonics
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 4/8] tcpopt: add md5sig, fastopen and mptcp options
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/8] parser: split tcp option rules
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/8] scanner: add tcp flex scope
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/8] tcpopt: remove KIND keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/8] mptcp subtype option match support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_queue: remove leftover synchronize_rcu
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 01/11] selftests: netfilter: add a vrf+conntrack testcase
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [libnetfilter_log PATCH] build: fix `--disable-static`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnetfilter_log PATCH] build: fix `--disable-static`
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net 11/11] selftests: nft_nat: switch port shadow test cases to socat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 09/11] netfilter: xt_IDLETIMER: replace snprintf in show functions with sysfs_emit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 10/11] netfilter: flowtable: fix IPv6 tunnel addr match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 05/11] selftests: nft_nat: Simplify port shadow notrack test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 08/11] netfilter: ipvs: Fix reuse connection if RS weight is 0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 03/11] netfilter: nft_payload: Remove duplicated include in nft_payload.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 07/11] netfilter: ctnetlink: do not erase error code with EINVAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 06/11] netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 04/11] selftests: nft_nat: Improve port shadow test stability
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 02/11] selftests: netfilter: extend nfqueue tests to cover vrf device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 00/11] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 01/11] selftests: netfilter: add a vrf+conntrack testcase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] Revert "configure: default to libedit for cli"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2 RESEND] netfilter: fix conntrack flows stuck issue on cleanup.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: Use memset_startat() to zero struct nf_conn
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- [PATCH nft] configure: fall back to readline if libedit is not available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] cache: do not skip populating anonymous set with -t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: do not skip populating anonymous set with -t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 1.0.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv2 ulogd 2/2] NFLOG: attach struct nf_conntrack
- From: Ken-ichirou MATSUZAWA <chamas@xxxxxxxxxxxxx>
- [PATCHv2 ulogd 1/2] NFLOG: add NFULNL_CFG_F_CONNTRACK flag
- From: Ken-ichirou MATSUZAWA <chamas@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.2.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_log 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: remove unused variable for ip_vs_new_dest
- From: zhenggy <zhenggy@xxxxxxxxxxxxxxx>
- Re: [ulogd2 PATCH v4 00/15] Build Improvements
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] monitor: do not call interval_map_decompose() for concat intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] monitor: do not call interval_map_decompose() for concat intervals
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Nikita Yushchenko <nikita.yushchenko@xxxxxxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: conntrack: speed up netns cleanup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: conntrack: split nf_conntrack_cleanup_net_list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: conntrack: speed up netns dismantle
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] parser_json: add raw payload inner header match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] expr: payload: print inner header base offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: 32bit x86 build broken (was: Re: [GIT PULL] Networking for 5.16-rc1)
- From: "Rafael J. Wysocki" <rafael.j.wysocki@xxxxxxxxx>
- Re: "AVX2-based lookup implementation" has broken ebtables --among-src
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [ulogd2 PATCH v4 00/15] Build Improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser: allow for string raw payload base
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: redefining a variable
- From: Matt Zagrabelny <mzagrabe@xxxxxxxxx>
- Re: [PATCH nf] selftests: nft_nat: switch port shadow test cases to socat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]