Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH net-net] netfilter: conntrack: nf_conncount_init is failing with IPv6 disabled
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: Can someone please update libnetfilter_queue online documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Can someone please update libnetfilter_queue online documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Can someone please update libnetfilter_queue online documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Laura García Liébana <nevola@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Laura García Liébana <nevola@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_meta: use socket user_ns to retrieve skuid and skgid
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- [PATCH nf] netfilter: nft_meta: use socket user_ns to retrieve skuid and skgid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: ebt_stp: Remove unused macro BPDU_TYPE_TCN
- From: Wang Hai <wanghai38@xxxxxxxxxx>
- Re: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Laura García Liébana <nevola@xxxxxxxxx>
- [PATCH nft,v4] mergesort: find base value expression type via recursion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v3] mergesort: find base value expression type via recursion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mergesort: find base value expression type via recursion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 3/3, v2] src: add comment support for objects
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH nf,v3] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- RE: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- Re: [PATCH nf,v3] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v3] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nftables 3/3] src: add comment support for objects
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH libnftnl 2/3] object: add userdata and comment support
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: add userdata support for nft_object
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH 0/3] add object userdata and comment support
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: William Mcvicker <willmcvicker@xxxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Will Deacon <will@xxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: fix mark based dump filtering regression
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- Re: [PATCHv5 net-next] ipvs: remove dependency on ip6_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/8] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCHv5 net-next] ipvs: remove dependency on ip6_tables
- From: Julian Anastasov <ja@xxxxxx>
- inserting rule at the top of the chain using libnftnl
- From: JM <jeevhi@xxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 2/2] build: bump supported kernel version to 5.9.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/2] xt_ACCOUNT: update prototype of `struct nf_sockopt_ops` `.set` call-back.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 2/2] build: bump supported kernel version to 5.9.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons] build: don't hard-code pkg-config.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH xtables-addons] build: don't hard-code pkg-config.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 3/8] selftests: netfilter: fix header example
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nfnetlink: nfnetlink_unicast() reports EAGAIN instead of ENOBUFS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] selftests: netfilter: exit on invalid parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] selftests: netfilter: remove unused variable in make_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] selftests: netfilter: simplify command testing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] selftests: netfilter: add command usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: conntrack: do not auto-delete clash entries on reply
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: delete repeated words
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH xtables-addons] build: clean some extra build artefacts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons] build: clean some extra build artefacts.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- KMSAN: uninit-value in translate_table
- From: syzbot <syzbot+1b3443758a99dc0f4ac6@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH xtables-addons] build: clean some extra build artefacts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nftables v2 5/5] tests: allow tests/monitor to use a custom nft executable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv5 net-next] ipvs: remove dependency on ip6_tables
- From: Yaroslav Bolyukin <iam@xxxxxxx>
- Re: [PATCH nftables v2 5/5] tests: allow tests/monitor to use a custom nft executable
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables v2 2/5] src/scanner.l: fix whitespace issue for the TRANSPARENT keyword
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/5] socket: add support for "wildcard" key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 3/5] doc: added documentation on "socket wildcard"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 4/5] tests: added "socket wildcard" testcases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 5/5] tests: allow tests/monitor to use a custom nft executable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nft_socket: add wildcard support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv4 net-next] Remove ipvs v6 dependency on iptables
- From: Yaroslav Bolyukin <iam@xxxxxxx>
- Re: [PATCH] Remove ipvs v6 dependency on iptables
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] Remove ipvs v6 dependency on iptables
- From: Yaroslav Bolyukin <iam@xxxxxxx>
- [PATCH nftables v2 5/5] tests: allow tests/monitor to use a custom nft executable
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables v2 4/5] tests: added "socket wildcard" testcases
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables v2 3/5] doc: added documentation on "socket wildcard"
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables v2 2/5] src/scanner.l: fix whitespace issue for the TRANSPARENT keyword
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables v2 1/5] socket: add support for "wildcard" key
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [no subject]
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nf-next v2] netfilter: nft_socket: add wildcard support
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_socket: add wildcard support
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_socket: add wildcard support
- From: kernel test robot <lkp@xxxxxxxxx>
- RE: [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Tong Zhang <ztong0001@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Tong Zhang <ztong0001@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xt_HMARK: Use ip_is_fragment() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: revisit conntrack statistics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 3/3] src: add comment support when adding tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 2/3] table: add userdata support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/3] netfilter: nf_tables: add userdata attributes to nft_table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net-next v2] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: No increment ctx->level for NFT_GOTO
- From: Steve Hill <steve@xxxxxxxxxxxx>
- Re: [PATCH v3 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2 1/5 nf] selftests: netfilter: fix header example
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: delete repeated words
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: do not auto-delete clash entries on reply
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/4] socket: add support for "wildcard" key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_socket: add wildcard support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Remove ipvs v6 dependency on iptables
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next v3 0/3] Netfilter egress hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next v3 0/3] Netfilter egress hook
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH] Remove ipvs v6 dependency on iptables
- Re: [PATCH] Remove ipvs v6 dependency on iptables
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] Remove ipvs v6 dependency on iptables
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: coalesce multiple notifications into one skbuff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: nftables: fix documentation for dup statement
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next] netfilter: xt_HMARK: Use ip_is_fragment() helper
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH nf-next v3 0/3] Netfilter egress hook
- From: Laura García Liébana <nevola@xxxxxxxxx>
- [PATCH nf-next v3 2/3] netfilter: Generalize ingress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next v3 1/3] netfilter: Rename ingress hook include file
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next v3 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next v3 0/3] Netfilter egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH lnf-conntrack] include: add CTA_STATS_CLASH_RESOLVE
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools] conntrack: add support for CLASH_RESOLVED counter
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: conntrack: remove unneeded nf_ct_put
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: conntrack: add clash resolution stat counter
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: conntrack: remove ignore stats
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: conntrack: do not increment two error counters at same time
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/4] netfilter: revisit conntrack statistics
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: do not auto-delete clash entries on reply
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Will McVicker <willmcvicker@xxxxxxxxxx>
- [PATCH v3 0/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Will McVicker <willmcvicker@xxxxxxxxxx>
- [PATCH AUTOSEL 5.8 23/63] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.7 22/54] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 18/38] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Phil Sutter <phil@xxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: nf_tables: add NFTA_SET_USERDATA if not null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: nft_set_rbtree: Handle outcomes of tree rotations in overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: nf_tables: fix destination register zeroing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: nf_tables: incorrect enum nft_list_attributes definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nft_set_rbtree: Detect partial overlap with start endpoint match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH V2 5/5 nf] selftests: netfilter: add command usage
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH V2 4/5 nf] selftests: netfilter: simplify command testing
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH V2 3/5 nf] selftests: netfilter: remove unused variable in make_file()
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH V2 2/5 nf] selftests: netfilter: exit on invalid parameters
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH V2 1/5 nf] selftests: netfilter: fix header example
- From: Fabian Frederick <fabf@xxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink: nfnetlink_unicast() reports EAGAIN instead of ENOBUFS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: delete repeated words
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net: netfilter: delete repeated words
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 1/4] socket: add support for "wildcard" key
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables 2/4] doc: added documentation on "socket wildcard"
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables 3/4] tests: added "socked wildcard" testcases
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables 4/4] tests: allow tests to use a custom nft executable
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 1/3] netfilter: nf_tables: add userdata attributes to nft_table
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nf_tables: add userdata attributes to nft_table
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- [PATCH nftables 0/4] socket: add support for "wildcard" key
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables 3/4] tests: added "socked wildcard" testcases
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables 4/4] tests: allow tests to use a custom nft executable
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables 2/4] doc: added documentation on "socket wildcard"
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- [PATCH nftables 1/4] socket: add support for "wildcard" key
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- nfnetlink: Busy-loop in nfnetlink_rcv_msg()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V9 11/13] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 02/13] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 05/13] audit: log container info of syscalls
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 06/13] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 08/13] audit: add containerid support for user records
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_rbtree: Two fixes for overlap detection on insert
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nf_tables: add userdata attributes to nft_table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.7 55/61] netfilter: nf_tables: report EEXIST on overlaps
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nftables v2 3/3] src: add comment support when adding tables
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH AUTOSEL 5.8 56/62] netfilter: nf_tables: report EEXIST on overlaps
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_tables: fix destination register zeroing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] src: add chain hashtable cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: add chain hashtable cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: add expression handler hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: nf_tables: fix destination register zeroing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: fix destination register zeroing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nft v2] nftables: dump raw element info from libnftnl when netlink debugging is on
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] nftables: dump raw element info from libnftnl when netlink debugging is on
- From: Florian Westphal <fw@xxxxxxxxx>
- bridge firewall "bypass" using VLAN 0 stacking
- From: Etienne Champetier <champetier.etienne@xxxxxxxxx>
- [PATCH libnftnl] libnftnl: export nftnl_set_elem_fprintf
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: add NFTA_SET_USERDATA if not null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables: incorrect enum nft_list_attributes definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: allow sctp hearbeat after connection re-use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: add userdata attributes to nft_table
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nftables 3/3] src: add comment support when adding tables
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH 0/3] Add userdata and comment support for tables
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH libnftnl 2/3] table: add userdata support
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nft] mergesort: unbreak listing with binops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: sets: Check rbtree overlap detection after tree rotations
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: revisit partial overlap detection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 1/2] nft_set_rbtree: Handle outcomes of tree rotations in overlap detection
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 2/2] nft_set_rbtree: Detect partial overlap with start endpoint match
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 0/2] nft_set_rbtree: Two fixes for overlap detection on insert
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [iptables] connlabel, increase the number of labels supported
- From: Amiq Nahas <m992493@xxxxxxxxx>
- [iptables PATCH 3/4] nft: Fold nftnl_rule_list_chain_save() into caller
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/4] nft: Use nft_chain_find() in nft_chain_builtin_init()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/4] nft: Extend use of nftnl_chain_list_foreach()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/4] nft: cache: Check consistency with NFT_CL_FAKE, too
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/4] ordered chain listing fallout
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 2/2 nf] selftests: netfilter: exit on invalid parameters
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH nf v2] netfilter: conntrack: allow sctp hearbeat after connection re-use
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2 nf] selftests: netfilter: exit on invalid parameters
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- KASAN: slab-out-of-bounds Write in xt_compat_target_from_user
- From: syzbot <syzbot+cfc0247ac173f597aaaa@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [iptables] Use ipset with conntrack module
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables] Use ipset with conntrack module
- From: Amiq Nahas <m992493@xxxxxxxxx>
- [PATCH nft] src: add comment support for map too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] Makefile: Add missing man pages to CLEANFILES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] Makefile: Add missing man pages to CLEANFILES
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 0/8] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] selftests: netfilter: add checktool function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nft_compat: remove flush counter optimization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] selftests: netfilter: add MTU arguments to flowtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: ebtables: reject bogus getopt len value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] selftests: netfilter: kill running process only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: nf_tables: free chain context when BINDING flag is missing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: fix parsing error
- From: Tong Zhang <ztong0001@xxxxxxxxx>
- iptables: undefined symbol xtables_fini
- From: Amiq Nahas <m992493@xxxxxxxxx>
- [PATCH nf] netfilter: nft_set_rbtree: revisit partial overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf] selftests: netfilter: exit on invalid parameters
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH 1/2 nf] selftests: netfilter: fix header example
- From: Fabian Frederick <fabf@xxxxxxxxx>
- KMSAN: uninit-value in __skb_checksum_complete (5)
- From: syzbot <syzbot+b024befb3ca7990fea37@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: nftables: permit any priority for nat hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter/ebtables: reject bogus getopt len value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnf-conntrack] conntrack: sctp: update states
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnf-conntrack] conntrack: dccp print function should use dccp state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: allow sctp hearbeat after connection re-use
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-conntrack] conntrack: sctp: update states
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-conntrack] conntrack: dccp print function should use dccp state
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter/ebtables: reject bogus getopt len value
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] netfilter/ebtables: reject bogus getopt len value
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH nf] netfilter/ebtables: reject bogus getopt len value
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in compat_do_ebt_get_ctl
- From: syzbot <syzbot+5accb5c62faa1d346480@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 3/3 linux-next] selftests: netfilter: kill running process only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 linux-next] selftests: netfilter: add MTU arguments to flowtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 linux-next] selftests: netfilter: add checktool function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: free chain context when BINDING flag is missing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add comment support for set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] udata: add NFTNL_UDATA_SET_COMMENT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Fix for ruleset flush while restoring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xtables-monitor: Fix ip6tables rule printing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 2/2] tests: shell: Merge and extend return codes test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 1/2] nft: Fix command name in ip6tables error message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net-next v2] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables memory leak
- From: Phil Sutter <phil@xxxxxx>
- iptables memory leak
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH nf] netfilter: free chain context when BINDING flag is missing
- From: Florian Westphal <fw@xxxxxxxxx>
- KASAN: wild-memory-access Read in do_ebt_set_ctl
- From: syzbot <syzbot+64d60892aaa4d4c34812@xxxxxxxxxxxxxxxxxxxxxxxxx>
- memory leak in nf_tables_addchain
- From: syzbot <syzbot+c99868fde67014f7e9f5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in ip6t_do_table (2)
- From: syzbot <syzbot+dcaf7e1befbc40105535@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] src: add comment support for set declarations
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH libnftnl] udata: add NFTNL_UDATA_SET_COMMENT
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net-next v2] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net-next v2] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- [Linux-kernel-mentees] [PATCH net-next v2] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Peilin Ye <yepeilin.cs@xxxxxxxxx>
- Re: [PATCH nf] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Peilin Ye <yepeilin.cs@xxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Peilin Ye <yepeilin.cs@xxxxxxxxx>
- Re: [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl()
- From: Peilin Ye <yepeilin.cs@xxxxxxxxx>
- [PATCH nf] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: remove flush counter optimization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_compat: remove flush counter optimization
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: David Laight <David.Laight@xxxxxxxxxx>
- [PATCH 3/3 linux-next] selftests: netfilter: kill running process only
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH 2/3 linux-next] selftests: netfilter: add MTU arguments to flowtables
- From: Fabian Frederick <fabf@xxxxxxxxx>
- [PATCH 1/3 linux-next] selftests: netfilter: add checktool function
- From: Fabian Frederick <fabf@xxxxxxxxx>
- Re: [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH ghak90 V9 11/13] audit: contid check descendancy and nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [iptables PATCH] xtables-monitor: Fix ip6tables rule printing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 1/2] nft: Fix command name in ip6tables error message
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 2/2] tests: shell: Merge and extend return codes test
- From: Phil Sutter <phil@xxxxxx>
- RE: [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- WARNING in compat_do_ebt_get_ctl
- From: syzbot <syzbot+5accb5c62faa1d346480@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v2] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Michael Zhou <mzhou@xxxxxxxxxxxxxxx>
- Re: [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nft] src: cache gets out of sync in interactive mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] tests: shell: Merge and extend return codes test
- From: Phil Sutter <phil@xxxxxx>
- Re: xtables-addon official website changed from sourceforge to inai.de?
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: xtables-addon official website changed from sourceforge to inai.de?
- From: Amish <anon.amish@xxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: xtables-addon official website changed from sourceforge to inai.de?
- From: Jan Engelhardt <jengelh@xxxxxxx>
- xtables-addon official website changed from sourceforge to inai.de?
- From: Amish <anon.amish@xxxxxxxxx>
- Re: WARNING: refcount bug in l2cap_global_chan_by_psm
- From: syzbot <syzbot+39ad9f042519082fcec9@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] segtree: memleaks in interval_map_decompose()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH 0/5] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 3/5] selftests: netfilter: add meta iif/oif match test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: flowtable: Set offload timeout when adding flow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: conntrack: Move nf_ct_offload_timeout to header file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nft_meta: fix iifgroup matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: nft_compat: make sure xtables destructors have run
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add cookie support for rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add cookie support for rules
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- [PATCH nft] src: add cookie support for rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] udata: add cookie support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nft] tests: 0043concatenated_ranges_0: Fix checks for add/delete failures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] tests: 0044interval_overlap_0: Repeat insertion tests with timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4] src: enable json echo output when reading native syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v4] src: enable json echo output when reading native syntax
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: "Jose M. Guisado" <guigom@xxxxxxxxxx>
- Re: [PATCH 0/7] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: kernel BUG at lib/list_debug.c:45!
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: nat: add a range check for l3/l4 protonum
- From: William Mcvicker <willmcvicker@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in hci_chan_del
- From: syzbot <syzbot+305a91e025a73e4fd6ce@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: 0043concatenated_ranges_0: Fix checks for add/delete failures
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2] tests: 0044interval_overlap_0: Repeat insertion tests with timeout
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: fix obj list output when reset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Write in __sco_sock_close
- From: syzbot <syzbot+077eca30d3cb7c02b273@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: Use fallthrough pseudo-keyword
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nf_tables: extended netlink error reporting for expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: ip6tables: Remove redundant null checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: nf_tables: report EEXIST on overlaps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: Replace HTTP links with HTTPS ones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] ipvs: queue delayed work to expire no destination connections if expire_nodest_conn=1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_meta: fix iifgroup matching
- From: "Demi M. Obenour" <demiobenour@xxxxxxxxx>
- Re: WARNING in hci_conn_timeout
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_meta: fix iifgroup matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: report EEXIST on overlaps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables: extended netlink error reporting for expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/2] improve error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_meta: fix iifgroup matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: add meta iif/oif match test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in hci_conn_timeout
- From: syzbot <syzbot+2446dd3cb07277388db6@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] src: fix obj list output when reset command
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: WARNING: ODEBUG bug in cancel_delayed_work
- From: syzbot <syzbot+338f014a98367a08a114@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft] evaluate: disregard ct address matching without family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: add range checks for access to nf_nat_l[34]protos[]
- From: William Mcvicker <willmcvicker@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: make sure xtables destructors have run
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: add range checks for access to nf_nat_l[34]protos[]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- KASAN: null-ptr-deref Write in amp_read_loc_assoc_final_data
- From: syzbot <syzbot+f4fb0eaafdb51c32a153@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [iptables PATCH] nft: Fix for ruleset flush while restoring
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft v3] src: enable output with "nft --echo --json" and nftables syntax
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nat: add range checks for access to nf_nat_l[34]protos[]
- From: William Mcvicker <willmcvicker@xxxxxxxxxx>
- [PATCH nft v2 1/1] src: enable output with "nft --echo --json" and nftables syntax
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nft v2 0/1] src: enable output with "nft --echo --json" and nftables syntax
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: TEST Re: [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Florian Westphal <fw@xxxxxxxxx>
- TEST Re: [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Michael Zhou <mzhou@xxxxxxxxxxxxxxx>
- [PATCH nft] src: enable output with "nft --echo --json" and nftables syntax
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Eliminate table list from cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] nft: Eliminate table list from cache
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 1/1] netfilter: nat: add range checks for access to nf_nat_l[34]protos[]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ip6tables: Remove redundant null checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: Replace HTTP links with HTTPS ones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 02/13] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V9 05/13] audit: log container info of syscalls
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V9 06/13] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nft] netlink_delinearize: transform binary operation to prefix only with values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink_delinearize: transform binary operation to prefix only with values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] json: Expect refcount increment by json_array_extend()
- From: Phil Sutter <phil@xxxxxx>
- KASAN: vmalloc-out-of-bounds Read in get_counters
- From: syzbot <syzbot+a450cb4aa95912e62487@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/1] Improve detecting the kernel version logic
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- Re: Xtables-addons 3.10 (Re: [PATCH 1/1] geoip: add quiet flag to xt_geoip_build)
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft 2/3] src: remove cache lookups after the evaluation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] evaluate: remove table from cache on delete table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] evaluate: flush set cache from the evaluation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] evaluate: UAF in hook priority expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] evaluate: memleak in invalid default policy definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] parser_bison: memleak symbol redefinition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] evaluate: UAF in hook priority expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] evaluate: memleak in invalid default policy definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] parser_bison: memleak symbol redefinition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Xtables-addons 3.10 (Re: [PATCH 1/1] geoip: add quiet flag to xt_geoip_build)
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- RE: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH xtables-addons v2] doc: fix quoted string in libxt_DNETMAP man-page.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Ido Schimmel <idosch@xxxxxxxxxx>
- [PATCH 1/1] netfilter: nat: add range checks for access to nf_nat_l[34]protos[]
- From: Will McVicker <willmcvicker@xxxxxxxxxx>
- [PATCH 0/1] Netfilter OOB memory access security patch
- From: Will McVicker <willmcvicker@xxxxxxxxxx>
- Re: [PATCH libnftnl] examples: add support for NF_PROTO_INET family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH nft] nft: rearrange help output to group related options together
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- RE: get rid of the address_space override in setsockopt v2
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt v2
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Ido Schimmel <idosch@xxxxxxxxxx>
- RE: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Ido Schimmel <idosch@xxxxxxxxxx>
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al.
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnftnl] examples: add support for NF_PROTO_INET family
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: get rid of the address_space override in setsockopt v2
- From: David Laight <David.Laight@xxxxxxxxxx>
- [PATCH] netfilter: ip6tables: Remove redundant null checks
- From: Gaurav Singh <gaurav1086@xxxxxxxxx>
- Re: [PATCH 1/1] geoip: add quiet flag to xt_geoip_build
- From: Philip Prindeville <philipp@xxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] nft: rearrange help output to group related options together
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt v2
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt v2
- From: Andreas Schwab <schwab@xxxxxxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt v2
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH v2] netfilter: Replace HTTP links with HTTPS ones
- From: "Alexander A. Klimov" <grandmaster@xxxxxxxxxxxx>
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al.
- From: Phil Sutter <phil@xxxxxx>
- Re: get rid of the address_space override in setsockopt v2
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH for v5.9] netfilter: Replace HTTP links with HTTPS ones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3] iptables: accept lock file name at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nft: rearrange help output to group related options together
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/2] ipvs: fix the connection sync failed in some cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nf_tables: fix nat hook table deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 04/26] net: add a new sockptr_t type
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 04/26] net: add a new sockptr_t type
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH 04/26] net: add a new sockptr_t type
- From: Jan Engelhardt <jengelh@xxxxxxx>
- RE: [PATCH 03/26] bpfilter: reject kernel addresses
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 03/26] bpfilter: reject kernel addresses
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- RE: [PATCH 03/26] bpfilter: reject kernel addresses
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] iptables: replace libnftnl table list by linux list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 13/26] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- RE: [PATCH 13/26] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 01/26] bpfilter: fix up a sparse annotation
- From: Luc Van Oostenryck <luc.vanoostenryck@xxxxxxxxx>
- [nft PATCH 2] nft: rearrange help output to group related options together
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [nft PATCH] nft: rearrange help output to group related options together
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [MPTCP] [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- Re: [MPTCP] [PATCH 08/26] net: switch sock_set_timeout to sockptr_t
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- [PATCH 03/26] bpfilter: reject kernel addresses
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 05/26] net: switch copy_bpf_fprog_from_user to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 04/26] net: add a new sockptr_t type
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 08/26] net: switch sock_set_timeout to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 07/26] net: switch sock_set_timeout to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 01/26] bpfilter: fix up a sparse annotation
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 09/26] net/xfrm: switch xfrm_user_policy to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 02/26] net/bpfilter: split __bpfilter_process_sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- get rid of the address_space override in setsockopt v2
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 06/26] net: switch sock_setbindtodevice to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 11/26] netfilter: switch xt_copy_counters to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 13/26] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 10/26] netfilter: remove the unused user argument to do_update_counters
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 20/26] net/ipv6: factor out a ipv6_set_opt_hdr helper
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 21/26] net/ipv6: switch do_ipv6_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 22/26] net/udp: switch udp_lib_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 23/26] net/tcp: switch ->md5_parse to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 15/26] net/ipv4: merge ip_options_get and ip_options_get_from_user
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 16/26] net/ipv4: switch do_ip_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 24/26] net/tcp: switch do_tcp_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 17/26] net/ipv6: switch ip6_mroute_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 18/26] net/ipv6: split up ipv6_flowlabel_opt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 25/26] net: pass a sockptr_t into ->setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 26/26] net: optimize the sockptr_t for unified kernel/user address spaces
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 14/26] net/ipv4: switch ip_mroute_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH nft 2/2] tests: extend 0043concatenated_ranges_0 to cover maps too
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 1/2] netlink: fix concat range expansion in map case
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- LPC 2020 Networking and BPF Track CFP (Reminder)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: KMSAN: uninit-value in __skb_checksum_complete (4)
- From: Alexander Potapenko <glider@xxxxxxxxxx>
- [PATCH nft] evaluate: bail out with concatenations and singleton values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Netdev conf 0x14 update and logistics
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH nft 2/2] tests: extend 0043concatenated_ranges_0 to cover maps too
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] netlink: fix concat range expansion in map case
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] extensions: libxt_conntrack: provide translation for DNAT and SNAT --ctstate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [MPTCP] [PATCH 24/24] net: pass a sockptr_t into ->setsockopt
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- RE: get rid of the address_space override in setsockopt
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- Re: [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- Re: [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: "'Christoph Hellwig'" <hch@xxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 03/24] net: add a new sockptr_t type
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH,v2] ipvs: fix the connection sync failed in some cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 10/13] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nft] evaluate: permit get element on maps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] src: allow for negative value in variable definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] evaluate: replace variable expression by the value expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-addons v2] doc: fix quoted string in libxt_DNETMAP man-page.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons] doc: fix quoted string in libxt_DNETMAP man-page.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- RE: get rid of the address_space override in setsockopt
- From: David Laight <David.Laight@xxxxxxxxxx>
- RE: [PATCH 03/24] net: add a new sockptr_t type
- From: David Laight <David.Laight@xxxxxxxxxx>
- RE: [PATCH 03/24] net: add a new sockptr_t type
- From: David Laight <David.Laight@xxxxxxxxxx>
- RE: get rid of the address_space override in setsockopt
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH xtables-addons] doc: fix quoted string in libxt_DNETMAP man-page.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH xtables-addons] doc: fix quoted string in libxt_DNETMAP man-page.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- RE: [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 02/24] bpfilter: fix up a sparse annotation
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 02/24] bpfilter: fix up a sparse annotation
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 02/24] bpfilter: fix up a sparse annotation
- From: Luc Van Oostenryck <luc.vanoostenryck@xxxxxxxxx>
- [PATCH nft] rule: missing map command expansion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] rule: flush set cache before flush command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: flush set cache after flush command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 24/24] net: pass a sockptr_t into ->setsockopt
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 03/24] net: add a new sockptr_t type
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [PATCH 03/24] net: add a new sockptr_t type
- From: Christoph Hellwig <hch@xxxxxx>
- Re: get rid of the address_space override in setsockopt
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [PATCH 03/24] net: add a new sockptr_t type
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- [PATCH v4 14/24] netfilter: conntrack: Use sequence counter with associated spinlock
- From: "Ahmed S. Darwish" <a.darwish@xxxxxxxxxxxxx>
- [PATCH v4 15/24] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock
- From: "Ahmed S. Darwish" <a.darwish@xxxxxxxxxxxxx>
- Re: [PATCH 24/24] net: pass a sockptr_t into ->setsockopt
- From: Stefan Schmidt <stefan@xxxxxxxxxxxxxxxxxx>
- [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet
- From: Michael Zhou <mzhou@xxxxxxxxxxxxxxx>
- [PATCH 01/24] bpfilter: reject kernel addresses
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 02/24] bpfilter: fix up a sparse annotation
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 05/24] net: switch sock_setbindtodevice to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 06/24] net: switch sock_set_timeout to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 03/24] net: add a new sockptr_t type
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 04/24] net: switch copy_bpf_fprog_from_user to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 07/24] net: switch sock_set_timeout to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- get rid of the address_space override in setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 09/24] netfilter: remove the unused user argument to do_update_counters
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 10/24] netfilter: switch xt_copy_counters to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 11/24] netfilter: switch nf_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 14/24] net/ipv4: merge ip_options_get and ip_options_get_from_user
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 15/24] net/ipv4: switch do_ip_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 16/24] net/ipv6: switch ip6_mroute_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 18/24] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 17/24] net/ipv6: split up ipv6_flowlabel_opt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 21/24] net/udp: switch udp_lib_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 19/24] net/ipv6: factor out a ipv6_set_opt_hdr helper
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 23/24] net/tcp: switch do_tcp_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 20/24] net/ipv6: switch do_ipv6_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 24/24] net: pass a sockptr_t into ->setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 22/24] net/tcp: switch ->md5_parse to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 13/24] net/ipv4: switch ip_mroute_setsockopt to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 08/24] net/xfrm: switch xfrm_user_policy to sockptr_t
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: sockopt cleanups
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: KMSAN: uninit-value in __skb_checksum_complete (4)
- From: syzbot <syzbot+721b564cd88ebb710182@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member
- From: "Gustavo A. R. Silva" <gustavo@xxxxxxxxxxxxxx>
- [PATCH for v5.9] netfilter: xtables: Replace HTTP links with HTTPS ones
- From: "Alexander A. Klimov" <grandmaster@xxxxxxxxxxxx>
- [PATCH for v5.9] netfilter: Replace HTTP links with HTTPS ones
- From: "Alexander A. Klimov" <grandmaster@xxxxxxxxxxxx>
- [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH,v2] ipvs: fix the connection sync failed in some cases
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH ghak90 V9 08/13] audit: add containerid support for user records
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled
- From: Andrew Sy Kim <kim.andrewsy@xxxxxxxxx>
- Re: [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [PATCH net-next] ipvs: missing unlock in ip_vs_expire_nodest_conn_flush()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [iptables PATCH v3] iptables: accept lock file name at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 05/22] net: remove compat_sock_common_{get,set}sockopt
- From: Stefan Schmidt <stefan@xxxxxxxxxxxxxxxxxx>
- Re: [iptables PATCH v3] iptables: accept lock file name at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [MPTCP] [PATCH 05/22] net: remove compat_sock_common_{get,set}sockopt
- From: Matthieu Baerts <matthieu.baerts@xxxxxxxxxxxx>
- [iptables PATCH v3] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [iptables PATCH v2] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [PATCH 22/22] net: make ->{get,set}sockopt in proto_ops optional
- From: Marc Kleine-Budde <mkl@xxxxxxxxxxxxxx>
- [PATCH 04/22] net: simplify cBPF setsockopt compat handling
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 02/22] net: streamline __sys_setsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 01/22] net/atm: remove the atmdev_ops {get,set}sockopt methods
- From: Christoph Hellwig <hch@xxxxxx>
- sockopt cleanups
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 05/22] net: remove compat_sock_common_{get,set}sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 08/22] netfilter/ip_tables: clean up compat {get,set}sockopt handling
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 09/22] netfilter/ip6_tables: clean up compat {get,set}sockopt handling
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 10/22] netfilter/ebtables: clean up compat {get,set}sockopt handling
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 13/22] netfilter: split nf_sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 11/22] netfilter: remove the compat_{get,set} methods
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 14/22] net/ipv4: factor out MCAST_MSFILTER getsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 15/22] net/ipv4: factor out MCAST_MSFILTER setsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 16/22] net/ipv4: factor out mcast join/leave setsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 17/22] net/ipv4: remove compat_ip_{get,set}sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 18/22] net/ipv6: factor out MCAST_MSFILTER getsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 20/22] net/ipv6: factor out mcast join/leave setsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 19/22] net/ipv6: factor out MCAST_MSFILTER setsockopt helpers
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 22/22] net: make ->{get,set}sockopt in proto_ops optional
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 21/22] net/ipv6: remove compat_ipv6_{get,set}sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 12/22] netfilter: remove the compat argument to xt_copy_counters_from_user
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 07/22] netfilter/arp_tables: clean up compat {get,set}sockopt handling
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 06/22] net: remove compat_sys_{get,set}sockopt
- From: Christoph Hellwig <hch@xxxxxx>
- [PATCH 03/22] net: streamline __sys_getsockopt
- From: Christoph Hellwig <hch@xxxxxx>
- Re: [iptables PATCH v2] iptables: accept lock file name at runtime
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft 2/4] src: allow to use variables in flowtable and chain devices
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] tests: shell: remove check for reject from prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] evaluate: use evaluate_expr_variable() for chain policy evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] tests: shell: chmod 755 testcases/chains/0030create_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipvs: ensure RCU read unlock when connection flushing and ipvs is disabled
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net-next] ipvs: ensure RCU read unlock when connection flushing and ipvs is disabled
- From: Andrew Sy Kim <kim.andrewsy@xxxxxxxxx>
- Re: [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit
- From: Julian Anastasov <ja@xxxxxx>
- Re: [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit
- From: Andrew Kim <kim.andrewsy@xxxxxxxxx>
- Re: [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH,v2] ipvs: fix the connection sync failed in some cases
- From: guodeqing <geffrey.guo@xxxxxxxxxx>
- 答复: [PATCH] ipvs: fix the connection sync failed in some cases
- From: "Guodeqing (A)" <geffrey.guo@xxxxxxxxxx>
- Re: [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next] ipvs: queue delayed work to expire no destination connections if expire_nodest_conn=1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2][next] netfilter: Use fallthrough pseudo-keyword
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix nat hook table deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: fix the connection sync failed in some cases
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] ipvs: fix the connection sync failed in some cases
- From: guodeqing <geffrey.guo@xxxxxxxxxx>
- [iptables PATCH v2] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [PATCH] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [PATCH] iptables: accept lock file name at runtime
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft 2/2] tests: extend existing dormat test case to catch a kernel bug
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] monitor: print "dormant" flag in monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: accept lock file name at runtime
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix nat hook table deletion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- WARNING in __nf_unregister_net_hook (2)
- From: syzbot <syzbot+2570f2c036e3da5db176@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 01/13] audit: collect audit task parameters
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V9 01/13] audit: collect audit task parameters
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member
- From: Phil Sutter <phil@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]