Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH ghak90 v10 01/11] audit: collect audit task parameters
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 v10 00/11] audit: implement container identifier
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: INFO: rcu detected stall in tipc_release
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [ANNOUNCE] ipset 7.10 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: INFO: rcu detected stall in tipc_release
- From: syzbot <syzbot+3654c027d861c6df4b06@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nftables: fix incorrect increment of loop counter
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net 2/4] netfilter: x_tables: Update remaining dereference to RCU
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/4] netfilter: ipset: fixes possible oops in mtype_resize
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: nftables: fix incorrect increment of loop counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: ipset: fix shift-out-of-bounds in htable_bits()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: set element multistatement support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: fix shift-out-of-bounds in htable_bits()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fixes possible oops in mtype_resize
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Update remaining dereference to RCU
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: fix shift-out-of-bounds in htable_bits()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fixes possible oops in mtype_resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: add set element multi-statement support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2,v2] src: add support for multi-statement in dynamic sets and maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] src: disallow burst 0 in ratelimits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3 libnftnl,v2] src: add NFTNL_EXPR_DYNSET_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3 libnftnl,v2] src: add NFTNL_SET_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3 libnftnl,v2] src: add NFTNL_SET_ELEM_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: ipset: fix shift-out-of-bounds in htable_bits()
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject quoted strings containing only wildcard
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject quoted strings containing only wildcard
- From: Phil Sutter <phil@xxxxxx>
- Re: [ovs-dev] [PATCH] conntrack: fix zone sync issue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] parser_bison: disallow burst 0 in ratelimits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Update remaining dereference to RCU
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] src: add set element multi-statement support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: add support for multi-statement in dynamic sets and maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/2] multi-statement support for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Write in __sco_sock_close
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH] netfilter: ipset: fixes possible oops in mtype_resize
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: x_tables: Update remaining dereference to RCU
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [ovs-dev] [PATCH] conntrack: fix zone sync issue
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [ovs-dev] [PATCH] conntrack: fix zone sync issue
- From: Flavio Leitner <fbl@xxxxxxxxxxxx>
- Re: [PATCH][next] netfilter: nftables: fix incorrect increment of loop counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Write in __sco_sock_close
- From: syzbot <syzbot+077eca30d3cb7c02b273@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH conntrack-tools] conntrack: pretty-print the portid
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH][next] netfilter: nftables: fix incorrect increment of loop counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- UBSAN: shift-out-of-bounds in hash_ipmark_create
- From: syzbot <syzbot+d81819ac03d8c36e3974@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH][next] netfilter: nftables: fix incorrect increment of loop counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- WARNING: suspicious RCU usage in nf_ct_iterate_cleanup
- From: syzbot <syzbot+dced7c2d89dde957f7dd@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] set_elem: Use nftnl_data_reg_snprintf()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] tests: py: Fix for changed concatenated ranges output
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 00/10] Netfilter/IPVS updates for net-next
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH][next] netfilter: nftables: fix incorrect increment of loop counter
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] set_elem: Use nftnl_data_reg_snprintf()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH 2/2] set_elem: Include key_end data reg in print output
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/2] set_elem: Use nftnl_data_reg_snprintf()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] nft: trace: print packet unconditionally
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH xtables-nft 3/3] xtables-monitor: print packet first
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] json: don't leave dangling pointers on hlist
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH xtables-nft 1/3] xtables-monitor: fix rule printing
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH xtables-nft 3/3] xtables-monitor: print packet first
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v3 0/9] nft: Sorted chain listing et al.
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Joe Perches <joe@xxxxxxxxxxx>
- UBSAN: shift-out-of-bounds in hash_mac_create
- From: syzbot <syzbot+d66bfadebca46cf61a2b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Tom Rix <trix@xxxxxxxxxx>
- [PATCH net-next 02/10] ipvs: replace atomic_add_return()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/10] netfilter: Remove unnecessary conversion to bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/10] netfilter: nft_reject_bridge: fix build errors due to code movement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/10] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/10] netfilter: nftables: move nft_expr before nft_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/10] netfilter: use actual socket sk for REJECT action
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/10] netfilter: nftables: generalize set expressions support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/10] netfilter: nftables: netlink support for several set element expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/10] netfilter: ctnetlink: add timeout and protoinfo to destroy events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/10] netfilter: nftables: generalize set extension to support for several expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/10] netfilter: nfnl_acct: remove data from struct net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 3/3] src: add NFTNL_EXPR_DYNSET_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/3] src: add NFTNL_SET_ELEM_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/3] src: add NFTNL_SET_EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] nft: trace: print packet unconditionally
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables-nft 3/3] xtables-monitor: print packet first
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables-nft 2/3] xtables-monitor: fix packet family protocol
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables-nft 1/3] xtables-monitor: fix rule printing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables-nft 0/3] xt-monitor fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,v4 1/4] netfilter: nftables: generalize set expressions support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 4/4] netfilter: nftables: netlink support for several set element expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 3/4] netfilter: nftables: generalize set extension to support for several expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 2/4] netfilter: nftables: move nft_expr before nft_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/10] nft: add automatic icmp/icmpv6 dependencies
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next,v3] netfilter: ctnetlink: add timeout and protoinfo to destroy events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset 7.9 compilation fix on kernel 4.14
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: ctnetlink: add timeout and protoinfo to destroy events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next,v3 3/4] netfilter: nftables: generalize set extension to support for several expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/4] netfilter: nftables: generalize set expressions support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/4] netfilter: nftables: move nft_expr before nft_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/4] netfilter: nftables: netlink support for several set element expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 1/1] netfilter: ctnetlink: add timeout and protoinfo to destroy events
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: always include remaining timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: always include remaining timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [iptables PATCH v3 9/9] nft: Avoid pointless table/chain creation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 1/9] nft: Fix selective chain compatibility checks
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 5/9] nft: Introduce struct nft_chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 3/9] nft: Implement nft_chain_foreach()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 4/9] nft: cache: Move nft_chain_find() over
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 8/9] tests: shell: Drop any dump sorting in place
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 6/9] nft: Introduce a dedicated base chain array
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 0/9] nft: Sorted chain listing et al.
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 2/9] nft: cache: Introduce nft_cache_add_chain()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 7/9] nft: cache: Sort custom chains by name
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- [PATCH nf-next] netfilter: ctnetlink: always include remaining timeout
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_dynset: fix timeouts layer than 23 days
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net 0/4] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- linux-next: manual merge of the net-next tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH net] net: sched: incorrect Kconfig dependencies on Netfilter modules
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: nft_ct: Remove confirmation check for NFT_CT_ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/4] netfilter: nftables: comment indirect serialization of commit_mutex with rtnl_mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: x_tables: Switch synchronization to RCU
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 09/10] tests: ip: add one test case to cover both id and sequence
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 10/10] tests: icmp, icmpv6: check we don't add second dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 08/10] tests: icmp, icmpv6: avoid remaining warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 06/10] tests: fix exepcted payload of icmpv6 expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 02/10] proto: reduce size of proto_desc structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 07/10] payload: auto-remove simple icmp/icmpv6 dependency expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 05/10] src: add auto-dependencies for ipv6 icmp6
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 04/10] tests: fix exepcted payload of icmp expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 03/10] src: add auto-dependencies for ipv4 icmp
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 01/10] exthdr: remove unused proto_key member from struct
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/10] nft: add automatic icmp/icmpv6 dependencies
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [iptables PATCH v2 03/10] nft: cache: Introduce nft_cache_add_chain()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH 5/5 nf-next,v2] netfilter: nftables: netlink support for several set element expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: Remove confirmation check for NFT_CT_ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nftables: fix incorrect element timeout
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: Remove confirmation check for NFT_CT_ID
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_ct: Remove confirmation check for NFT_CT_ID
- From: Brett Mastbergen <brett.mastbergen@xxxxxxxxx>
- Re: [PATCH] Remove IP_NF_IPTABLES dependency for NET_ACT_CONNMARK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] net: sched: incorrect Kconfig dependencies on Netfilter modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nftables: comment indirect serialization of commit_mutex with rtnl_mutex
- From: Vladimir Oltean <olteanv@xxxxxxxxx>
- [PATCH nf,v4] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Remove IP_NF_IPTABLES dependency for NET_ACT_CONNMARK
- From: Andreas Sundstrom <sunkan@xxxxxxxx>
- [PATCH nf,v4] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: shell: timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nftables: comment indirect serialization of commit_mutex with rtnl_mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nftables: fix incorrect element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_dynset: fix timeouts layer than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nftables: fix incorrect element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser_bison: double close_scope() call for implicit chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Remove IP_NF_IPTABLES dependency for NET_ACT_CONNMARK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnetfilter_queue 1/2] build: choose right automake variables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_conntrack 1/2] build: use the right automake variables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] Remove IP_NF_IPTABLES dependency for NET_ACT_CONNMARK
- From: Andreas Sundstrom <sunkan@xxxxxxxx>
- Re: [PATCH nf v2] netfilter: x_tables: Switch synchronization to RCU
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_log] build: choose right automake variables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH v2 2/2] conntrackd: external_inject: report inject issues as warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH v2 1/2] .gitignore: add nano swap file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 2/2] monitor: fix formatting of if statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/2] monitor: add assignment check for json_echo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 5/5] netfilter: nftables: netlink support for several set element expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: (subset) [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Martin K. Petersen" <martin.petersen@xxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nftables: generalize set extension to support for several expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nftables: netlink support for several set element expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nftables: move nft_expr before nft_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nftables: add nft_expr_parse() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nftables: generalize set expressions support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/5] support for several expression in set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH v2] xfrm: interface: Don't hide plain packets from netfilter
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] xfrm: interface: Don't hide plain packets from netfilter
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- [PATCH] xfrm: interface: Don't hide plain packets from netfilter
- From: Phil Sutter <phil@xxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Phil Sutter <phil@xxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- [PATCH nftables 2/2] monitor: fix formatting of if statements
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nftables 1/2] monitor: add assignment check for json_echo
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [iptables PATCH] tests/shell: Test for fixed extension registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Ed W <lists@xxxxxxxxxxxxxx>
- [conntrack-tools PATCH v2 2/2] conntrackd: external_inject: report inject issues as warning
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH v2 1/2] .gitignore: add nano swap file
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [nft PATCH] json: Fix seqnum_to_json() functionality
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libftnl,RFC] src: add infrastructure to infer byteorder from keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libftnl,RFC] src: add infrastructure to infer byteorder from keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: System crash on Ubuntu 18, in netlink code when using iptables / netfilter
- From: Yuri Lipnesh <yuri.lipnesh@xxxxxxxxx>
- Re: [PATCH libftnl,RFC] src: add infrastructure to infer byteorder from keys
- From: Phil Sutter <phil@xxxxxx>
- Re: [conntrack-tools PATCH 2/2] conntrackd: external_inject: report inject issues as warning
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] src: report EPERM for non-root users
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH 2/2] conntrackd: external_inject: report inject issues as warning
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH 1/2] .gitignore: add nano swap file
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH nft] src: report EPERM for non-root users
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Tom Rix <trix@xxxxxxxxxx>
- [PATCH nft] mnl: reply netlink error message might be larger than MNL_SOCKET_BUFFER_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH v3] extensions: dccp: Fix for DCCP type 'INVALID'
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- [nft PATCH] json: Fix seqnum_to_json() functionality
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] doc: Document 'dccp type' match
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2] extensions: dccp: Fix for DCCP type 'INVALID'
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] parser_bison: allow to restore limit from dynamic set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] extensions: dccp: Fix translation of --dccp-type
- From: Phil Sutter <phil@xxxxxx>
- Re: KMSAN: uninit-value in __skb_checksum_complete (5)
- From: syzbot <syzbot+b024befb3ca7990fea37@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] json: echo: Speedup seqnum_to_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: UBSAN: array-index-out-of-bounds in arch_uprobe_analyze_insn
- From: Masami Hiramatsu <mhiramat@xxxxxxxxxx>
- Re: UBSAN: array-index-out-of-bounds in arch_uprobe_analyze_insn
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: use actual socket sk for REJECT action
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH] netfilter: use actual socket sk for REJECT action
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: use actual socket sk for REJECT action
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use actual socket sk for REJECT action
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: use actual socket sk for REJECT action
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nfnl_acct: remove data from struct net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Remove unnecessary conversion to bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Martin K. Petersen" <martin.petersen@xxxxxxxxxx>
- Re: [nft PATCH] json: echo: Speedup seqnum_to_json()
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- Re: System crash on Ubuntu 18, in netlink code when using iptables / netfilter
- From: Florian Westphal <fw@xxxxxxxxx>
- System crash on Ubuntu 18, in netlink code when using iptables / netfilter
- From: Yuri Lipnesh <yuri.lipnesh@xxxxxxxxx>
- [PATCH libnetfilter_conntrack 2/2] Update .gitignore
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libnetfilter_conntrack 1/2] build: use the right automake variables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libnetfilter_queue 2/2] Update .gitignore
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libnetfilter_queue 1/2] build: choose right automake variables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH libnetfilter_log] build: choose right automake variables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH libnetfilter_log 0/2] build: a couple of `-lnfnetlink` fixes.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_log 2/2] build: link libnetfilter_log_libipulog.so explicitly to libnfnetlink.so.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnetfilter_log 0/2] build: a couple of `-lnfnetlink` fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnetfilter_log 1/2] build: remove duplicate `-lnfnetlink` from LDFLAGS.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- WARNING: suspicious RCU usage in get_counters
- From: syzbot <syzbot+5cfc290df4bbf069bc65@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: reset skb->pkt_type after NF_INET_POST_ROUTING traversal
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net 0/5] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [FYI] summary of Netfilter workshop 2020 virtual
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: reset skb->pkt_type after NF_INET_POST_ROUTING traversal
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: remove trailing semicolon in macro definition
- Re: [PATCH net-next] netfilter: bridge: reset skb->pkt_type after NF_INET_POST_ROUTING traversal
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] netfilter: nftables_offload: build mask based from the matching bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] netfilter: nf_tables: avoid false-postive lockdep splat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net v3] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Karol Herbst <kherbst@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libftnl,RFC] src: add infrastructure to infer byteorder from keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: XFRM interface and NF_INET_LOCAL_OUT hook
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH nf,v2 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf,v2 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf,v2 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf,v2 2/2] netfilter: nftables_offload: build mask based from the matching bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Edward Cree <ecree.xilinx@xxxxxxxxx>
- [HEADS UP] Rebasing nf tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Edward Cree <ecree.xilinx@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- [PATCH nf v2] netfilter: x_tables: Switch synchronization to RCU
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- XFRM interface and NF_INET_LOCAL_OUT hook
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Andy Shevchenko <andy.shevchenko@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Sean Young <sean@xxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH net v3] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH xtables-addons 0/4] geoip: script fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH xtables-addons 0/4] geoip: script fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH 108/141] netfilter: ipt_REJECT: Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH net v2] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: "wanghai (M)" <wanghai38@xxxxxxxxxx>
- [PATCH net v3] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 015/141] netfilter: Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Jason Gunthorpe <jgg@xxxxxxxxxx>
- Re: [PATCH net v2] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: reset skb->pkt_type after NF_INET_POST_ROUTING traversal
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] netfilter: bridge: reset skb->pkt_type after NF_INET_POST_ROUTING traversal
- From: Antoine Tenart <atenart@xxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Rafael J. Wysocki" <rafael@xxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Lukas Bulwahn <lukas.bulwahn@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Jani Nikula <jani.nikula@xxxxxxxxxxxxxxx>
- Re: [PATCH net v2] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: "wanghai (M)" <wanghai38@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [Intel-wired-lan] [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] json: echo: Speedup seqnum_to_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Finn Thain <fthain@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Sam Ravnborg <sam@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH nf] netfilter: x_tables: Switch synchronization to RCU
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH xtables-addons 0/4] geoip: script fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [PATCH xtables-addons 2/4] geoip: fix man-page typo'.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Tom Rix <trix@xxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Alexander Lobakin <alobakin@xxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Tom Rix <trix@xxxxxxxxxx>
- [PATCH xtables-addons 4/4] geoip: use correct download URL for MaxMind DB's.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 3/4] geoip: add man-pages for MaxMind scripts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/4] geoip: remove superfluous xt_geoip_fetch_maxmind script.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 2/4] geoip: fix man-page typo'.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 0/4] geoip: script fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] ipvs: replace atomic_add_return()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Julian Anastasov <ja@xxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Alexander Lobakin <alobakin@xxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: [PATCH net 1/4] netfilter: nftables_offload: set address type in control dissector
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC] MAINTAINERS tag for cleanup robot
- From: Joe Perches <joe@xxxxxxxxxxx>
- [RFC] MAINTAINERS tag for cleanup robot
- [PATCH net 3/4] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: nf_tables: avoid false-postive lockdep splat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] netfilter: nftables_offload: build mask based from the matching bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] json: echo: Speedup seqnum_to_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: use actual socket sk for REJECT action
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH 108/141] netfilter: ipt_REJECT: Fix fall-through warnings for Clang
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 015/141] netfilter: Fix fall-through warnings for Clang
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Miguel Ojeda <miguel.ojeda.sandonis@xxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- [PATCH v23 16/23] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v23 14/23] LSM: Use lsmcontext in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v23 13/23] LSM: Ensure the correct LSM context releaser
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v23 06/23] LSM: Use lsmblob in security_secid_to_secctx
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH v23 05/23] LSM: Use lsmblob in security_secctx_to_secid
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavo@xxxxxxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavo@xxxxxxxxxxxxxx>
- [nft PATCH] json: echo: Speedup seqnum_to_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 108/141] netfilter: ipt_REJECT: Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- Re: [PATCH 000/141] Fix fall-through warnings for Clang
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 015/141] netfilter: Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- [PATCH 000/141] Fix fall-through warnings for Clang
- From: "Gustavo A. R. Silva" <gustavoars@xxxxxxxxxx>
- [iptables PATCH] tests: shell: Stabilize nft-only/0009-needless-bitwise_0
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2] net: openvswitch: Be liberal in tcp conntrack.
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Alexander Lobakin <alobakin@xxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: avoid false-postive lockdep splat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 5/9] bridge: resolve forwarding path for bridge devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 2/9] netfilter: flowtable: add xmit path types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 6/9] netfilter: flowtable: use dev_fill_forward_path() to obtain ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 7/9] netfilter: flowtable: use dev_fill_forward_path() to obtain egress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 9/9] selftests: netfilter: flowtable bridge and VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 8/9] netfilter: flowtable: add vlan support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 4/9] net: 8021q: resolve forwarding path for vlan devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 1/9] netfilter: flowtable: add hash offset field to tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: "wanghai (M)" <wanghai38@xxxxxxxxxx>
- [PATCH net v2] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2] net: openvswitch: Be liberal in tcp conntrack.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH net-next v2] net: openvswitch: Be liberal in tcp conntrack.
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH net v2] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net v2] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: avoid false-postive lockdep splat
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v2] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH 5.9 000/255] 5.9.9-rc1 review
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: Issues w/ db-ip country database
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH net] ipvs: fix possible memory leak in ip_vs_control_net_init
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- Re: [PATCH net] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: ipset: prevent uninit-value in hash_ip6_add
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net v2] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- Re: [MPTCP] WARNING: net/mptcp/protocol.c:719 mptcp_reset_timer+0x40/0x50
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- WARNING: net/mptcp/protocol.c:719 mptcp_reset_timer+0x40/0x50
- From: Naresh Kamboju <naresh.kamboju@xxxxxxxxxx>
- Re: [PATCH net] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH net] ipv6: Remove dependency of ipv6_frag_thdr_truncated on ipv6 module
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- Re: [PATCH net-next,v4 2/9] netfilter: flowtable: add xmit path types
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next,v4 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: "Georg Kohmann (geokohma)" <geokohma@xxxxxxxxx>
- [PATCH net-next,v4 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 6/9] netfilter: flowtable: use dev_fill_forward_path() to obtain ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 8/9] netfilter: flowtable: add vlan support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 9/9] selftests: netfilter: flowtable bridge and VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 5/9] bridge: resolve forwarding path for bridge devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 7/9] netfilter: flowtable: use dev_fill_forward_path() to obtain egress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 4/9] net: 8021q: resolve forwarding path for vlan devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 2/9] netfilter: flowtable: add xmit path types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 1/9] netfilter: flowtable: add hash offset field to tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Nov 18 (net/ipv6/netfilter/nf_conntrack_reasm.o)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Will Deacon <will@xxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Will Deacon <will@xxxxxxxxxx>
- Re: [PATCH 5.9 000/255] 5.9.9-rc1 review
- From: Naresh Kamboju <naresh.kamboju@xxxxxxxxxx>
- Re: Issues w/ db-ip country database
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] ipvs: replace atomic_add_return()
- From: Julian Anastasov <ja@xxxxxx>
- Re: Issues w/ db-ip country database
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: Issues w/ db-ip country database
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Issues w/ db-ip country database
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- [iptables PATCH 2/2] iptables-test.py: Try to unshare netns by default
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] iptables-test.py: Accept multiple test files on commandline
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] ebtables: Fix for broken chain renaming
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] ebtables: Fix for broken chain renaming
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] ebtables: Fix for broken chain renaming
- From: Phil Sutter <phil@xxxxxx>
- Re: Issues w/ db-ip country database
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Issues w/ db-ip country database
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_reject: bridge: fix build errors due to code movement
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 0/3] Merge some common code
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/3] xshared: Merge some command option-related code
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] libxtables: Extend MAC address printing/parsing support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] xtables-arp: Don't use ARPT_INV_*
- From: Phil Sutter <phil@xxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Numan Siddique <nusiddiq@xxxxxxxxxx>
- [PATCH net-next v2] net: openvswitch: Be liberal in tcp conntrack.
- From: nusiddiq@xxxxxxxxxx
- Re: [PATCH] tests: py: update format of registers in bitwise payloads.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_reject: bridge: fix build errors due to code movement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] MAINTAINERS: rectify file patterns for NETFILTER
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: replace atomic_add_return()
- From: Yejune Deng <yejune.deng@xxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: subashab@xxxxxxxxxxxxxx
- [PATCH v2] netfilter: nfnl_acct: remove data from struct net
- From: Wang Shanker <shankerwangmiao@xxxxxxxxx>
- Re: [PATCH] MAINTAINERS: rectify file patterns for NETFILTER
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next] netfilter: nf_reject: bridge: fix build errors due to code movement
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH] tests: py: update format of registers in bitwise payloads.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnftnl 1/1] bitwise: improve formatting of registers in bitwise dumps.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH RFC v3] ipvs: add genetlink cmd to dump all services and destinations
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] MAINTAINERS: rectify file patterns for NETFILTER
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 1/1] bitwise: improve formatting of registers in bitwise dumps.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnl_acct: remove data from struct net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH] netfilter: nfnl_acct: remove data from struct net
- From: Wang Shanker <shankerwangmiao@xxxxxxxxx>
- [PATCH libnftnl 0/1] Bitwise dump format fix.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 1/1] bitwise: improve formatting of registers in bitwise dumps.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Tobias Waldekranz <tobias@xxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] x_tables: Properly close read section with read_seqcount_retry
- From: Sean Tranchetti <stranche@xxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v3 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next,v3 5/9] bridge: resolve forwarding path for bridge devices
- From: Nikolay Aleksandrov <nikolay@xxxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf,v2 2/2] netfilter: nftables_offload: build mask based from the matching bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 5/9] bridge: resolve forwarding path for bridge devices
- From: Nikolay Aleksandrov <nikolay@xxxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 3/9] net: resolve forwarding path from virtual netdevice and HW destination address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 5/9] bridge: resolve forwarding path for bridge devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 6/9] netfilter: flowtable: use dev_fill_forward_path() to obtain ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 9/9] selftests: netfilter: flowtable bridge and VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 8/9] netfilter: flowtable: add vlan support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 7/9] netfilter: flowtable: use dev_fill_forward_path() to obtain egress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 2/9] netfilter: flowtable: add xmit path types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 1/9] netfilter: flowtable: add hash offset field to tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 4/9] net: 8021q: resolve forwarding path for vlan devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 0/9] netfilter: flowtable bridge and vlan enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net v4] ipv6/netfilter: Discard first fragment not including all headers
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [PATCH v22 16/23] LSM: security_secid_to_secctx in netlink netfilter
- From: James Morris <jmorris@xxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- [PATCH RFC v3] ipvs: add genetlink cmd to dump all services and destinations
- From: Cezar Sa Espinola <cezarsa@xxxxxxxxx>
- [iptables PATCH] tests/shell: Add test for bitwise avoidance fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v22 16/23] LSM: security_secid_to_secctx in netlink netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Numan Siddique <nusiddiq@xxxxxxxxxx>
- [nft PATCH] proto: Fix ARP header field ordering
- From: Phil Sutter <phil@xxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Numan Siddique <nusiddiq@xxxxxxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Numan Siddique <nusiddiq@xxxxxxxxxx>
- Re: [PATCH v22 06/23] LSM: Use lsmblob in security_secid_to_secctx
- From: James Morris <jmorris@xxxxxxxxx>
- Re: [PATCH v22 05/23] LSM: Use lsmblob in security_secctx_to_secid
- From: James Morris <jmorris@xxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net v3] ipv6/netfilter: Discard first fragment not including all headers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net v3] ipv6/netfilter: Discard first fragment not including all headers
- From: "Georg Kohmann (geokohma)" <geokohma@xxxxxxxxx>
- Re: [PATCH] tests: py: remove duplicate payloads.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC v2] ipvs: add genetlink cmd to dump all services and destinations
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net v3] ipv6/netfilter: Discard first fragment not including all headers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [net-next] netfiler: conntrack: Add the option to set ct tcp flag - BE_LIBERAL per-ct basis.
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH v2 4/4] tests: conntrack -L/-D ip family filtering
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxxxxxxxx>
- [PATCH v2 1/4] conntrack: accept commands from file
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxxxxxxxx>
- [PATCH v2 3/4] tests: saving and loading ct entries, save format
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxxxxxxxx>
- [PATCH v2 2/4] conntrack.8: man update for --load-file support
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxxxxxxxx>
- [PATCH v2 0/4] conntrack: accept commands from file + tests
- From: Mikhail Sennikovsky <mikhail.sennikovskii@xxxxxxxxxxxxxxx>
- [PATCH] tests: py: remove duplicate payloads.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH net v3] ipv6/netfilter: Discard first fragment not including all headers
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- Re: [PATCH nft 5/7] tcpopt: allow to check for presence of any tcp option
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft 5/7] tcpopt: allow to check for presence of any tcp option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] MAINTAINERS: rectify file patterns for NETFILTER
- From: Lukas Bulwahn <lukas.bulwahn@xxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Lukas Bulwahn <lukas.bulwahn@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: fix -Wformat
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH] netfilter: conntrack: fix -Wformat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: Support fullcone NAT
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_nat: Support fullcone NAT
- From: Paul Menzel <pmenzel@xxxxxxxxxxxxx>
- Re: [PATCH net v2] ipv6/netfilter: Discard first fragment not including all headers
- From: "Georg Kohmann (geokohma)" <geokohma@xxxxxxxxx>
- Re: [PATCH net v2] ipv6/netfilter: Discard first fragment not including all headers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH RFC v2] ipvs: add genetlink cmd to dump all services and destinations
- From: Cezar Sa Espinola <cezarsa@xxxxxxxxx>
- [PATCH net v2] ipv6/netfilter: Discard first fragment not including all headers
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- [PATCH] netfilter: remove unused macro DUMP_INIT to tame gcc
- From: Alex Shi <alex.shi@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: Remove unnecessary conversion to bool
- From: xiakaixu1987@xxxxxxxxx
- [PATCH net] vrf: Fix fast path output packet handling with async Netfilter rules
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- Re: [PATCH nft 5/7] tcpopt: allow to check for presence of any tcp option
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft 5/7] tcpopt: allow to check for presence of any tcp option
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft 1/7] parser: merge sack-perm/sack-permitted and maxseg/mss
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/7] parser: merge sack-perm/sack-permitted and maxseg/mss
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 7/7] json: tcp: add raw tcp option match support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 6/7] tcp: add raw tcp option match support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 5/7] tcpopt: allow to check for presence of any tcp option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 4/7] tcpopt: split tcpopt_hdr_fields into per-option enum
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/7] tcpopt: rename noop to nop
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/7] tcpopts: clean up parser -> tcpopt.c plumbing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/7] parser: merge sack-perm/sack-permitted and maxseg/mss
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/7] rework tcp option handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 0/8] Netfilter updates for net-next
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH v22 16/23] LSM: security_secid_to_secctx in netlink netfilter
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nftables_offload: build mask based from the matching bytes
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net] ipv6/netfilter: Discard first fragment not including all headers
- From: "Georg Kohmann (geokohma)" <geokohma@xxxxxxxxx>
- [PATCH net-next 2/8] netfilter: nft_reject: unify reject init and dump into nft_reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/8] netfilter: nf_reject: add reject skbuff creation helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 6/8] netfilter: ipset: Expose the initval hash parameter to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 8/8] netfilter: nft_reject_inet: allow to use reject from inet ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/8] netfilter: ipset: Add bucketsize parameter to all hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/8] netfilter: ipset: Support the -exist flag with the destroy command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 7/8] netfilter: nftables: Add __printf() attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/8] netfilter: nft_reject: add reject verdict support for netdev
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/8] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/8] conntrack: accept parameters from stdin
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] ipv6/netfilter: Discard first fragment not including all headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2] ebtables: Optimize masked MAC address matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 1/2] nft: Optimize class-based IP prefix matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/2] src: Optimize prefix matches on byte-boundaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] json: resolve multiple test case failures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] ipv6/netfilter: Discard first fragment not including all headers
- From: Georg Kohmann <geokohma@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: nftables_offload: build mask based from the matching bytes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nftables_offload: set address type in control dissector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 0/2] fixes for nftables offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] ipvs: add genetlink cmd to dump all services and destinations
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nft 3/3] json: add missing nat_type flag and netmap nat flag
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] tests: avoid warning and add missing json test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] tests: json: add missing test case output
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] json: resolve multiple test case failures
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC] ipvs: add genetlink cmd to dump all services and destinations
- From: Cezar Sá Espinola <cezarsa@xxxxxxxxx>
- Re: [PATCH RFC] ipvs: add genetlink cmd to dump all services and destinations
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH conntrack] conntrack: do not allow to update offload status bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack] conntrack: do not allow to update offload status bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 2/2] conntrack.8: man update for opts format support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] conntrack: implement save output format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 5/5] tests: py: add netdev folder and reject.t icmp cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 4/5] evaluate: add netdev support for reject default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset 7.7 modules fail to build on kernel 4.19.152
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- ipset 7.7 modules fail to build on kernel 4.19.152
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [PATCH] doc: correct chain name in example of adding a rule.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] doc: correct chain name in example of adding a rule.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_reject_inet: allow to use reject from inet ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_reject_inet: allow to use reject from inet ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/5] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net 4/5] netfilter: nf_tables: missing validation from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] netfilter: ipset: Update byte and packet counters regardless of whether they match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: use actual socket sk rather than skb sk when routing harder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]