Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2 net 0/5] icmp: account for NAT when sending icmps from ndo layer
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [iptables PATCH v2] xtables-translate: Fix for interface name corner-cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xtables-translate: Fix for interface name corner-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 1/2] doc: nft.8: Mention wildcard interface matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/2] doc: nft.8: Mention wildcard interface matching
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft include v2 7/7] scanner: remove parser_state->indesc_idx
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 5/7] scanner: correctly compute include depth
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 6/7] scanner: fix indesc_list stack to be in the correct order
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 4/7] scanner: remove parser_state->indescs static array
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 0/7] Improve include behaviour
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 3/7] scanner: move indesc list append in scanner_push_indesc
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 1/7] tests: shell: add test for glob includes
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 2/7] scanner: move the file descriptor to be in the input_descriptor structure
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH next] nf_tables: make the symbol 'nft_pipapo_get' static
- From: Chen Wandun <chenwandun@xxxxxxxxxx>
- [PATCHv2 nf-next] netfilter: nft_tunnel: add support for geneve opts
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] xfrm: interface: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 4/5] wireguard: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 2/5] gtp: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] scanner: improving include handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] scanner: remove indescs and indescs_idx attributes from the parser, and directly use indesc_list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] scanner: correctly compute include depth
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] scanner: move the file descriptor to be in the input_descriptor structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: compute mnemonic port name much easier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 0/6] Remaining bitwise-shift-related changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: nft.8: Describe element commands in their own section
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: compute mnemonic port name much easier
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft PATCH 0/4] Extend testsuites to run against installed binaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: always init block_offload struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 2/4] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 1/4] include: resync nf_tables.h cache copy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] doc: nft.8: Describe element commands in their own section
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] xtables-translate: Fix for interface name corner-cases
- From: Phil Sutter <phil@xxxxxx>
- Re: How to continue to use Maxmind geoip csv in xtables-addons 3.8+
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] doc: nft.8: Mention wildcard interface matching
- From: Phil Sutter <phil@xxxxxx>
- How to continue to use Maxmind geoip csv in xtables-addons 3.8+
- From: jean-christophe manciot <actionmystique@xxxxxxxxx>
- [PATCH] [nf-next,v4] netfilter: xtables: Add snapshot of hardidletimer target
- From: Manoj Basapathi <manojbm@xxxxxxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: Xtalbes -> Xtables ?
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Xtalbes -> Xtables ?
- From: Franta Hanzlík <franta@xxxxxxxxxxx>
- [nft PATCH 3/4] tests: monitor: Support testing host's nft binary
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] tests: json_echo: Support testing host binaries
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] tests: py: Support testing host binaries
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] tests: json_echo: Fix for Python3
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Extend testsuites to run against installed binaries
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH v2] Documentation: changes.rst: update several outdated project URLs
- From: Jonathan Corbet <corbet@xxxxxxx>
- Re: masquerade
- From: Florian Westphal <fw@xxxxxxxxx>
- masquerade
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH libnftnl v4 0/3] Attributes for concatenated ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] scanner: remove indescs and indescs_idx attributes from the parser, and directly use indesc_list
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 2/3] scanner: correctly compute include depth
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 1/3] scanner: move the file descriptor to be in the input_descriptor structure
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 0/3] scanner: improving include handling
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- Re: NFT - delete rules per interface
- From: Daniel <tech@xxxxxxxxxx>
- Re: NFT - delete rules per interface
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: José M. Guisado <guigom@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: Manoj Basapathi <manojbm@xxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH iptables] extensions: time: add translation and tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] extensions: time: add translation and tests
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nft] tests: shell: add test for glob includes
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] src: Add nfq_hdr_put to library
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: invalid read in
- From: Phil Sutter <phil@xxxxxx>
- Re: invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: invalid read in
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf 1/4] netfilter: conntrack: remove two args from resolve_clash
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 4/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/4] netfilter: conntrack: split resolve_clash function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/4] netfilter: conntrack: place confirm-bit setting in a helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: flowtable: always init block_offload struct
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v4 6/6] tests: py: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 3/6] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 4/6] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 5/6] tests: py: add missing JSON output.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 2/6] evaluate: correct variable name.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 1/6] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 0/6] Remaining bitwise-shift-related changes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: Proxy load balancer rules
- From: Phil Sutter <phil@xxxxxx>
- [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 0/3] netfilter: xt_hashlimit: a few improvements
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- NFT - delete rules per interface
- From: Daniel <tech@xxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Ipset combined entry type like hash:ip,port,ip,port
- From: Adam Kalisz <adam.kalisz@xxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Proxy load balancer rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [Patch nf 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 0/3] netfilter: xt_hashlimit: a few improvements
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [PATCH 6/6] netfilter: nf_flowtable: fix documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: flowtable: Fix missing flush hardware on table free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: flowtable: Fix setting forgotten NF_FLOW_HW_DEAD flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: Use kvcalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Use kvcalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] Various fixes for flowtable hardware offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: Proxy load balancer rules
- From: Phil Sutter <phil@xxxxxx>
- [MAINTENANCE] migrating git.netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 9/9] netfilter: audit table unregister actions
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 4/9] audit: record nfcfg params
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 2/9] netfilter: normalize ebtables function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_flowtable: fix documentation
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Proxy load balancer rules
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH nf-next] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 2/3] netfilter: flowtable: Fix missing flush hardware on table free
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 3/3] netfilter: flowtable: Fix setting forgotten NF_FLOW_HW_DEAD flag
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 1/3] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 0/3] Various fixes for flowtable hardware offload
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 2/4] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 1/4] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 0/4] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 3/3] set_elem: Introduce support for NFTNL_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 1/3] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 2/3] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 0/3] Attributes for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- use of netfilter-announce list
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [PATCH nf-next V2] netfilter: ctnetlink: add kernel side filtering for dump
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 2/2] utils: add NFCT_FILTER_DUMP_TUPLE example
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Use kvcalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/6] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: syzbot <syzbot+f3e96783d74ee8ea9aa3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- INFO: rcu detected stall in hash_ip4_gc
- From: syzbot <syzbot+68a806795ac89df3aa1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in ip_set_comment_free
- From: syzbot <syzbot+6a86565c74ebe30aea18@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 0/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/7] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] net: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nft_osf: add missing check for DREG attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_uadd
- From: syzbot <syzbot+4b0e9d4ff3cf117837e5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.4 060/107] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 059/107] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 090/107] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 092/107] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 094/107] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 091/107] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 093/107] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 095/107] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 29/56] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 30/56] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 48/56] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 49/56] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 52/56] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 51/56] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 14/32] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 15/32] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 11/18] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 10/18] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.4 5/9] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 50/56] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] src: Quote user-defined names
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: stranche@xxxxxxxxxxxxxx
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Darrick J. Wong" <darrick.wong@xxxxxxxxxx>
- [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Covscan-induced review of ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4/4] xt_mttg_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 3/4] recent_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 2/4] synproxy_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 0/4] netfilter: seq_file .next functions should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 1/4] ct_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Sean Tranchetti <stranche@xxxxxxxxxxxxxx>
- [PATCH] ipvs: fix spelling mistake "to" -> "too"
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] tests: shell: update list of rmmod modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: shell: set lookup and set update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 15/16] audit: check contid count per netns and add config param limit
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 14/16] audit: check contid depth and add limit config param
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: general protection fault in nf_flow_table_offload_setup
- From: syzbot <syzbot+e93c1d9ae19a0236289c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 8/9] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 6/9] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 7/9] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 4/9] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 3/9] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 2/9] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 1/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING: suspicious RCU usage in find_set_and_id
- From: syzbot <syzbot+fc69d7cb21258ab4ae4d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- general protection fault in __nf_tables_chain_type_lookup
- From: syzbot <syzbot+c4a099076c8ad98e282d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Update on UAF in ip6_do_table on 4.19.X kernel
- From: stranche@xxxxxxxxxxxxxx
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Fixes for a recent covscan run
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: kbuild test robot <lkp@xxxxxxxxx>
- [iptables PATCH] .gitignore: add nano/vim swap file
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Christian Brauner <christian.brauner@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: Phil Sutter <phil@xxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+c400f7b04cadb5df6ea7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+6491ea8f6dddbf04930e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+6491ea8f6dddbf04930e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v3 3/9] netlink_delinearize: fix typo.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 5/9] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 7/9] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 8/9] netlink: add support for handling shift expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 6/9] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 4/9] netlink_delinearize: remove commented out pr_debug statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 2/9] src: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 1/9] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: use bitmap infrastructure completely
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+b554d01b6c7870b17da2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v2 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Jiri Wiesner <jwiesner@xxxxxxxx>
- general protection fault in nf_flow_table_offload_setup
- From: syzbot <syzbot+e93c1d9ae19a0236289c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl v3 2/2] set_elem: Introduce support for NFTNL_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v3 0/2] Attributes for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 1/3] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v3 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 8/9] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 7/9] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 6/9] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 4/9] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 3/9] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 2/9] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 1/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v3 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+b554d01b6c7870b17da2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] include: nf_tables: correct bitwise header comment.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_ext_cleanup
- From: syzbot <syzbot+7b6206fb525c1f5ec3f8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_ext_cleanup
- From: syzbot <syzbot+7b6206fb525c1f5ec3f8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: nf_tables_offload: fix check the chain offload flag
- [PATCH nf] netfilter: nf_tables_offload: fix check the chain offload flag
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_gc
- From: syzbot <syzbot+df0d0f5895ef1f41a65b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- From: wenxu <wenxu@xxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: syzbot <syzbot+f3e96783d74ee8ea9aa3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_gc
- From: syzbot <syzbot+53cdd0ec0bbabd53370a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v2 2/9] src: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 5/9] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 7/9] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 8/9] netlink: add support for handling shift expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 1/9] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 6/9] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 4/9] netlink_delinearize: remove commented out pr_debug statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 3/9] netlink_delinearize: fix typo.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove tail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v2 0/6] bitwise shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: flowtable: remove dying bit, use teardown bit instead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: flowtable: add nf_flowtable_hw_offload() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: flowtable: add nf_flow_offload_work_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: nf_tables: white-space fixes.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: flowtable: refresh flow if hardware offload fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: hashlimit: do not use indirect calls during gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: bitwise: replace gotos with returns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: flowtable: add nf_flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: bitwise: add helper for initializing boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: bitwise: add helper for dumping boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: bitwise: only offload boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: bitwise: add support for shifts.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: flowtable: use atomic bitwise operations for flow flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: flowtable: fetch stats only if flow is still alive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: nft_bitwise: correct uapi header comment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Patch nf] netfilter: nft_osf: NFTA_OSF_DREG must not be null
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_port_destroy
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_gc
- From: syzbot <syzbot+53cdd0ec0bbabd53370a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in bitmap_port_destroy
- From: syzbot <syzbot+8ccfc03b082d0ab9b84b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_test
- From: syzbot <syzbot+b08bd19bb37513357fd4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_gc
- From: syzbot <syzbot+df0d0f5895ef1f41a65b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: BUG: corrupted list in __nf_tables_abort
- From: syzbot <syzbot+437bf61d165c87bd40fb@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Jiri Wiesner <jwiesner@xxxxxxxx>
- Re: [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Fernando Fernández Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_osf: add missing check for DREG attribute
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl v2 0/6] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_list
- From: syzbot <syzbot+190d63957b22ef673ea5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in __nf_tables_abort
- From: syzbot <syzbot+437bf61d165c87bd40fb@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in nft_parse_register
- From: syzbot <syzbot+cf23983d697c26c34f60@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_add
- From: syzbot <syzbot+dfccdb2bdb4a12ad425e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_list
- From: syzbot <syzbot+190d63957b22ef673ea5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ip_list
- From: syzbot <syzbot+827ced406c9a1d9570ed@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_list
- From: syzbot <syzbot+fabca5cbf5e54f3fe2de@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl v2 6/6] bitwise: add support for left- and right-shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 5/6] bitwise: add support for new netlink attributes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 4/6] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 2/6] bitwise: fix some incorrect indentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 3/6] bitwise: add helper to print boolean expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 0/6] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl v2 1/6] Update gitignore.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH netfilter/iptables] Add new slavedev match extension
- From: Martin Willi <martin@xxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Simplify struct pkt_buff: remove head
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter updates for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: BUG: corrupted list in nf_tables_commit
- From: syzbot <syzbot+37a6804945a3a13b1572@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/4] netfilter: flowtable: add indr-block offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter/iptables] Add new slavedev match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nf_tables: store transaction list locally while requesting module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nft_tunnel: fix null-attribute check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nf_tables: fix flowtable list del corruption
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: fix a use-after-free in mtype_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter updates for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.4 148/205] netfilter: nf_tables_offload: release flow_rule on error from commit path
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 032/671] netfilter: nft_osf: usage from output path is not valid
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 037/671] netfilter: nf_flow_table: do not remove offload when other netns's interface is down
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.19 225/671] netfilter: nft_set_hash: fix lookups with fixed size hash on big endian
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 226/671] netfilter: nft_set_hash: bogus element self comparison from deactivation path
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 320/671] netfilter: nft_flow_offload: add entry to flowtable after confirmation
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 349/671] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 355/671] netfilter: nf_tables: correct NFT_LOGLEVEL_MAX value
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 524/671] netfilter: ctnetlink: honor IPS_OFFLOAD flag
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 126/371] netfilter: nft_set_hash: fix lookups with fixed size hash on big endian
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 197/371] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 137/251] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.4 089/174] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH] Fixed some man pages typos ('This modules' -> 'This module')
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak25 v2 0/9] Address NETFILTER_CFG issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: BUG: corrupted list in nft_obj_del
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_bitwise: correct uapi header comment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: hashlimit: do not use indirect calls during gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 8/9] netfilter: flowtable: add nf_flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Fix indenting weirdness is pktbuff.c w/out changing indent
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_tunnel: fix null-attribute check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix flowtable list del corruption
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] cache: Fix for doubled output after reset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] tests: shell: Search diff tool once and for all
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix flowtable list del corruption
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in nft_request_module
- From: syzbot <syzbot+0e63ae76d117ae1c3a01@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix memory leak in nf_tables_parse_netdev_hooks()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_tunnel: fix null-attribute check
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: BUG: corrupted list in nft_obj_del
- From: syzbot <syzbot+6ca99af7e70e298bd09d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- memory leak in nf_tables_parse_netdev_hooks
- From: syzbot <syzbot+f9d4095107fc8749c69c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] Fixed some man pages typos ('This modules' -> 'This module')
- From: aa.santos@xxxxxxxxxxxxxxxxx
- WARNING in nft_request_module
- From: syzbot <syzbot+0e63ae76d117ae1c3a01@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in nf_tables_commit
- From: syzbot <syzbot+37a6804945a3a13b1572@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in nft_tunnel_get_init
- From: syzbot <syzbot+76d0b80493ac881ff77b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- BUG: corrupted list in nft_obj_del
- From: syzbot <syzbot+6ca99af7e70e298bd09d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf-next v4 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 04/10] netfilter: bitwise: add NFTA_BITWISE_OP attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- general protection fault in nft_chain_parse_hook
- From: syzbot <syzbot+156a04714799b1d480bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 04/10] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next v2 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Fix indenting weirdness is pktbuff.c w/out changing indent
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 10/10] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 03/10] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 06/10] netfilter: bitwise: add helper for evaluating boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 09/10] netfilter: bitwise: add NFTA_BITWISE_DATA attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 07/10] netfilter: bitwise: add helper for dumping boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 08/10] netfilter: bitwise: only offload boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 02/10] netfilter: bitwise: remove NULL comparisons from attribute checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 05/10] netfilter: bitwise: add helper for initializing boolean operations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 04/10] netfilter: bitwise: add NFTA_BITWISE_OP netlink attribute.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 01/10] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v2 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: bitwise: replace gotos with returns.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: bitwise: add support for shifts.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC nf-next 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] tests: shell: Search diff tool once and for all
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/2] cache: Fix for doubled output after reset command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] xfrm: spi is big endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] xfrm: spi is big endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] xfrm: spi is big endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] libnftables: add nft_ctx_set_netns()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v4 3/4] netfilter: flowtable: add tunnel match offload support
- [PATCH nf-next v4 4/4] netfilter: flowtable: add tunnel encap/decap action offload support
- [PATCH nf-next v4 2/4] netfilter: flowtable: add indr block setup support
- [PATCH nf-next v4 0/4] netfilter: flowtable: add indr-block offload
- [PATCH nf-next v4 1/4] netfilter: flowtable: add nf_flow_table_block_offload_init()
- [PATCH nf-next,v2 9/9] netfilter: flowtable: add nf_flow_table_offload_cmd()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 8/9] netfilter: flowtable: add flow_offload_tuple() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [net,v2] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]