Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf] selftests: nft_concat_range: Move option for 'list ruleset' before command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH v2 4/4] xt_mttg_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH v2 3/4] recent_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH v2 2/4] synproxy_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH v2 1/4] ct_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH v2 0/4] netfilter: seq_file .next functions should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH] netfilter: clean up some indenting
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: add nfq_get_skbinfo()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ensure rcu_read_lock() in ipv4_find_option()
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: ensure rcu_read_lock() in ipv4_find_option()
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: ensure rcu_read_lock() in ipv4_find_option()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: ensure rcu_read_lock() in ipv4_find_option()
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH nft 0/6] allow s/dnat to map to both addr and port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/6] allow s/dnat to map to both addr and port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/6 nft,v2] tests: shell: adjust tests to new nat concatenation syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/6 nft,v2] src: nat concatenation support with anonymous maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipset: Update byte and packet counters regardless of whether they match
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 6/6] tests: nat: add and use maps with both address and service
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 3/3] bitwise: add support for passing mask and xor via registers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 1/3] tests: bitwise: fix error message.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 2/3] include: update nf_tables.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH libnftnl 0/3] bitwise: support for passing mask and xor via registers
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft 7/6] src: nat concatenation support with anonymous maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: bitwise: use more descriptive variable-names.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: bitwise: add support for passing mask and xor values in registers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: bitwise: support variable RHS operands
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: add nfq_get_skbinfo()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue v3] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v5 4/4] netfilter: flowtable: add tunnel encap/decap action offload support
- [PATCH nf-next v5 2/4] netfilter: flowtable: add indr block setup support
- [PATCH nf-next v5 3/4] netfilter: flowtable: add tunnel match offload support
- [PATCH nf-next v5 1/4] netfilter: flowtable: add nf_flow_table_block_offload_init()
- [PATCH nf-next v5 0/4] netfilter: flowtable: add indr-block offload
- [PATCH libnetfilter_queue v3] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: add nfq_get_skbinfo()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft 6/6] tests: nat: add and use maps with both address and service
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 5/6] src: allow nat maps containing both ip(6) address and port
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 4/6] evaluate: add two new helpers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/6] netlink: handle concatenations on set elements mappings
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/6] evaluate: process concat expressions when used as mapped-to expr
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/6] tests: add initial nat map test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/6] allow s/dnat to map to both addr and port
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: add nfq_get_skbinfo()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/5] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/5] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 5/5] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/5] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH 1/3] xtables: Align effect of -4/-6 options with legacy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulogd: printpkt: always print IPv6 protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH][nf-next] netfilter: cleanup unused macro
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/2] netfilter: nf_tables: make sets built-in
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next] netfilter: nft_tunnel: add support for geneve opts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [nf-next,v4] netfilter: xtables: Add snapshot of hardidletimer target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 3/5] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 4/5] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 2/5] nft_set_pipapo: Add support for 8-bit lookup groups and dynamic switch
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 0/5] nft_set_pipapo: Performance improvements: Season 1
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 1/5] nft_set_pipapo: Generalise group size for buckets
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH 2/2] netfilter: Pass lockdep expression to instance_lookup traversal
- From: Amol Grover <frextrite@xxxxxxxxx>
- [PATCH 1/2] netfilter: Pass lockdep expression to __instance_lookup traversal
- From: Amol Grover <frextrite@xxxxxxxxx>
- [PATCH nft] expression: use common code for expr_ops/expr_ops_by_type
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ipset 7.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- KMSAN: uninit-value in nf_flow_table_offload_setup
- From: syzbot <syzbot+8fbe17d9bdd5c8815211@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: Fix "INFO: rcu detected stall in hash_xxx" reports
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: Fix forceadd evaluation path
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/2] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [iptables PATCH] iptables-test.py: Fix --host mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Phil Sutter <phil@xxxxxx>
- Re: KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] parser_json: fix parsing prefix inside concat
- From: Eric Garver <eric@xxxxxxxxxxx>
- [iptables PATCH 3/3] xtables: Review nft_init()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/3] xtables: Align effect of -4/-6 options with legacy
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/3] xtables: Drop -4 and -6 support from xtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] ulogd: printpkt: always print IPv6 protocol
- From: Andreas Jaggi <andreas.jaggi@xxxxxxxxxxxx>
- [PATCH nf] selftests: nft_concat_range: Move option for 'list ruleset' before command
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 2/2] selftests: nft_concat_range: Add test for reported add/flush/add issue
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 1/2] nft_set_pipapo: Actually fetch key data in nft_pipapo_remove()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 0/2] nft_set_pipapo: Fix crash due to dangling entries in mapping table
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH 2/2] tests: shell: json parsing prefix inside concat
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH 1/2] parser_json: fix parsing prefix inside concat
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH][next] netfilter: Replace zero-length array with flexible-array member
- From: "Gustavo A. R. Silva" <gustavo@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Phil Sutter <phil@xxxxxx>
- [PATCH][nf-next] netfilter: cleanup unused macro
- From: Li RongQing <lirongqing@xxxxxxxxx>
- Re: [Patch nf] netfilter: xt_hashlimit: unregister proc file before releasing mutex
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [PATCH nft 2/2,v2] mnl: do not use expr->identifier to fetch device name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] mnl: do not use expr->identifier to fetch device name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] parser_bison: memleak in device parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v5] tests: Introduce test for set with concatenated ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft 3/3] src: improve error reporting when remove rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] src: improve error reporting when setting policy on non-base chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] mnl: extended error support for create command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] src: Fix for reading garbage in nftnl_chain getters
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: ipt_CLUSTERIP: Pass lockdep expression to RCU lists
- From: Amol Grover <frextrite@xxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_ext_cleanup
- From: syzbot <syzbot+b554d01b6c7870b17da2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_destroy
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak25 v2 4/9] audit: record nfcfg params
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH 2/9] netfilter: xt_hashlimit: limit the max size of hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: conntrack: remove two args from resolve_clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: flowtable: skip offload setup if disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: conntrack: place confirm-bit setting in a helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nft_set_pipapo: Fix mapping table example in comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: conntrack: allow insertion of clashing entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nft_set_pipapo: Don't abuse unlikely() in pipapo_refill()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: conntrack: split resolve_clash function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: xt_hashlimit: unregister proc file before releasing mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf] netfilter: xt_hashlimit: unregister proc file before releasing mutex
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf] netfilter: xt_hashlimit: unregister proc file before releasing mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] Two non-functional fixes for nft_set_pipapo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] src: add nftnl_*_{get,set}_array()
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] ebtables: among: Support mixed MAC and MAC/IP entries
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] ebtables: among: Support mixed MAC and MAC/IP entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: add nftnl_*_{get,set}_array()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Drop pointless assignment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: combine extended netlink error reporting with mispelling support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: Fix "INFO: rcu detected stall in hash_xxx" reports
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: Strange nf_conntrack_tcp_timeout_established behavior
- From: FUSTE Emmanuel <emmanuel.fuste@xxxxxxxxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: nf_tables: make all set structs const
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/2] netfilter: nf_tables: make sets built-in
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/2] netfilter: nf_tables: make sets built-in
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: initial extended netlink error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH][next] netfilter: ebtables: Replace zero-length array with flexible-array member
- From: "Gustavo A. R. Silva" <gustavo@xxxxxxxxxxxxxx>
- Re: [PATCH nf 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Strange nf_conntrack_tcp_timeout_established behavior
- From: FUSTE Emmanuel <emmanuel.fuste@xxxxxxxxxxxxxxx>
- Re: Proposing to add a structure to UserData
- From: Phil Sutter <phil@xxxxxx>
- Re: Proposing to add a structure to UserData
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nf_tables: make all set structs const
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nf_tables: make all set structs const
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Proposing to add a structure to UserData
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] nft: Drop pointless assignment
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: make all set structs const
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables: make sets built-in
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: nf_tables: make sets built-in
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in nf_tables_table_destroy
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: Pass lockdep expression to RCU lists
- From: Amol Grover <frextrite@xxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- 0x14: Schedule out!
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.5 126/542] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.5 125/542] netfilter: flowtable: Fix missing flush hardware on table free
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.5 220/542] netfilter: nft_tunnel: add the missing ERSPAN_VERSION nla_policy
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.5 386/542] netfilter: flowtable: restrict flow dissector match on meta ingress device
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nft v5] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- [PATCH AUTOSEL 5.4 193/459] netfilter: nft_tunnel: add the missing ERSPAN_VERSION nla_policy
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next 0/2] Two non-functional fixes for nft_set_pipapo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] src: Fix nftnl_assert() on data_len
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_set_pipapo: Don't abuse unlikely() in pipapo_refill()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 0/2] Two non-functional fixes for nft_set_pipapo
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_set_pipapo: Fix mapping table example in comments
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 100/252] netfilter: nft_tunnel: add the missing ERSPAN_VERSION nla_policy
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nft v5] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [iptables PATCH] xtables-translate: Fix for iface++
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] ebtables: among: Support mixed MAC and MAC/IP entries
- From: Phil Sutter <phil@xxxxxx>
- Thank you for your fundamental work!
- From: Max Mehl <max.mehl@xxxxxxxx>
- Re: [iptables PATCH] xtables-translate: Fix for iface++
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 net 0/5] icmp: account for NAT when sending icmps from ndo layer
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Proposing to add a structure to UserData
- From: sbezverk <sbezverk@xxxxxxxxx>
- [iptables PATCH] xtables-translate: Fix for iface++
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] scanner: use list_is_first() from scanner_pop_indesc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nft] src: maps: update data expression dtype based on set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: maps: update data expression dtype based on set
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: shell: validate error reporting with include and glob
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Patch nf] netfilter: xt_hashlimit: unregister proc file before releasing mutex
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH nft include v2 4/7] scanner: remove parser_state->indescs static array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 1/7] tests: shell: add test for glob includes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/4] glob and maximum number of includes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] tests: shell: Fix skip checks with --host mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] xtables-restore: fix for --noflush and empty lines
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] scanner: multi-level input file stack for glob
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] scanner: call scanner_push_indesc() after scanner_push_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] scanner: add indesc_file_alloc() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] scanner: call scanner_push_file() after scanner_push_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] glob and maximum number of includes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v4 net 0/5] icmp: account for NAT when sending icmps from ndo layer
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [iptables PATCH] xtables-restore: fix for --noflush and empty lines
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 net 0/9] icmp: account for NAT when sending icmps from ndo layer
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [iptables PATCH v2] xtables-translate: Fix for interface name corner-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nft include v2 7/7] scanner: remove parser_state->indesc_idx
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 6/7] scanner: fix indesc_list stack to be in the correct order
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 4/7] scanner: remove parser_state->indescs static array
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 4/7] scanner: remove parser_state->indescs static array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: WARNING: proc registration bug in hashlimit_mt_check_common
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nft include v2 3/7] scanner: move indesc list append in scanner_push_indesc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 2/7] scanner: move the file descriptor to be in the input_descriptor structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 6/7] scanner: fix indesc_list stack to be in the correct order
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft include v2 7/7] scanner: remove parser_state->indesc_idx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- WARNING: proc registration bug in hashlimit_mt_check_common
- From: syzbot <syzbot+d195fd3b9a364ddd6731@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Adding NAT64 to Netfilter
- From: Alberto Leiva <ydahhrk@xxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH next] nf_tables: make the symbol 'nft_pipapo_get' static
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2 net 0/5] icmp: account for NAT when sending icmps from ndo layer
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [iptables PATCH v2] xtables-translate: Fix for interface name corner-cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [iptables PATCH] xtables-translate: Fix for interface name corner-cases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 1/2] doc: nft.8: Mention wildcard interface matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/2] doc: nft.8: Mention wildcard interface matching
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft include v2 7/7] scanner: remove parser_state->indesc_idx
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 5/7] scanner: correctly compute include depth
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 6/7] scanner: fix indesc_list stack to be in the correct order
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 4/7] scanner: remove parser_state->indescs static array
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 0/7] Improve include behaviour
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 3/7] scanner: move indesc list append in scanner_push_indesc
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 1/7] tests: shell: add test for glob includes
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft include v2 2/7] scanner: move the file descriptor to be in the input_descriptor structure
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH next] nf_tables: make the symbol 'nft_pipapo_get' static
- From: Chen Wandun <chenwandun@xxxxxxxxxx>
- [PATCHv2 nf-next] netfilter: nft_tunnel: add support for geneve opts
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/5] xfrm: interface: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 4/5] wireguard: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 3/5] sunvnet: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 2/5] gtp: use icmp_ndo_send helper
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH net 1/5] icmp: introduce helper for NAT'd source address in ndo context
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: "make" builds & installs a full set of man pages
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] scanner: improving include handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] scanner: remove indescs and indescs_idx attributes from the parser, and directly use indesc_list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] scanner: correctly compute include depth
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] scanner: move the file descriptor to be in the input_descriptor structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: compute mnemonic port name much easier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 0/6] Remaining bitwise-shift-related changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: nft.8: Describe element commands in their own section
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch nf v2 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: compute mnemonic port name much easier
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft PATCH 0/4] Extend testsuites to run against installed binaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: always init block_offload struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 2/4] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 1/4] include: resync nf_tables.h cache copy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] doc: nft.8: Describe element commands in their own section
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] xtables-translate: Fix for interface name corner-cases
- From: Phil Sutter <phil@xxxxxx>
- Re: How to continue to use Maxmind geoip csv in xtables-addons 3.8+
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH 2/2] scanner: Extend asteriskstring definition
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] doc: nft.8: Mention wildcard interface matching
- From: Phil Sutter <phil@xxxxxx>
- How to continue to use Maxmind geoip csv in xtables-addons 3.8+
- From: jean-christophe manciot <actionmystique@xxxxxxxxx>
- [PATCH] [nf-next,v4] netfilter: xtables: Add snapshot of hardidletimer target
- From: Manoj Basapathi <manojbm@xxxxxxxxxxxxxx>
- Re: [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: Xtalbes -> Xtables ?
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Xtalbes -> Xtables ?
- From: Franta Hanzlík <franta@xxxxxxxxxxx>
- [nft PATCH 3/4] tests: monitor: Support testing host's nft binary
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] tests: json_echo: Support testing host binaries
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] tests: py: Support testing host binaries
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] tests: json_echo: Fix for Python3
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Extend testsuites to run against installed binaries
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH v2] Documentation: changes.rst: update several outdated project URLs
- From: Jonathan Corbet <corbet@xxxxxxx>
- Re: masquerade
- From: Florian Westphal <fw@xxxxxxxxx>
- masquerade
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH libnftnl v4 0/3] Attributes for concatenated ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] scanner: remove indescs and indescs_idx attributes from the parser, and directly use indesc_list
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 2/3] scanner: correctly compute include depth
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 1/3] scanner: move the file descriptor to be in the input_descriptor structure
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH nft 0/3] scanner: improving include handling
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- Re: NFT - delete rules per interface
- From: Daniel <tech@xxxxxxxxxx>
- Re: NFT - delete rules per interface
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [MAINTENANCE] migrating git.netfilter.org
- From: José M. Guisado <guigom@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH] [nf-next v3] netfilter: xtables: Add snapshot of hardidletimer target
- From: Manoj Basapathi <manojbm@xxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH iptables] extensions: time: add translation and tests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] extensions: time: add translation and tests
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- [PATCH nft] tests: shell: add test for glob includes
- From: Laurent Fasnacht <fasnacht@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: move static nfq_hdr_put from examples/nf-queue.c into the library since everyone is going to want it.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] src: Add nfq_hdr_put to library
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: invalid read in
- From: Phil Sutter <phil@xxxxxx>
- Re: invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: invalid read in
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf 1/4] netfilter: conntrack: remove two args from resolve_clash
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 4/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/4] netfilter: conntrack: split resolve_clash function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/4] netfilter: conntrack: place confirm-bit setting in a helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 0/4] netfilter: conntrack: allow insertion of clashing entries
- From: Florian Westphal <fw@xxxxxxxxx>
- invalid read in
- From: dyslexicatheist <dyslexicatheist@xxxxxxxxxxxxxx>
- Re: [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: flowtable: always init block_offload struct
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v4 6/6] tests: py: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 3/6] evaluate: change shift byte-order to host-endian.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 4/6] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 5/6] tests: py: add missing JSON output.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 2/6] evaluate: correct variable name.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 1/6] parser: add parenthesized statement expressions.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v4 0/6] Remaining bitwise-shift-related changes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: Proxy load balancer rules
- From: Phil Sutter <phil@xxxxxx>
- [Patch nf v2 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf v2 0/3] netfilter: xt_hashlimit: a few improvements
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- NFT - delete rules per interface
- From: Daniel <tech@xxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Ipset combined entry type like hash:ip,port,ip,port
- From: Adam Kalisz <adam.kalisz@xxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Add faster alternatives to pktb_alloc()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [Patch nf 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Proxy load balancer rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [Patch nf 2/3] xt_hashlimit: reduce hashlimit_mutex scope for htable_put()
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 1/3] xt_hashlimit: avoid OOM for user-controlled vmalloc
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 3/3] xt_hashlimit: limit the max size of hashtable
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [Patch nf 0/3] netfilter: xt_hashlimit: a few improvements
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [PATCH 6/6] netfilter: nf_flowtable: fix documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: flowtable: Fix missing flush hardware on table free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: flowtable: Fix setting forgotten NF_FLOW_HW_DEAD flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: Use kvcalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Use kvcalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] Various fixes for flowtable hardware offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: Proxy load balancer rules
- From: Phil Sutter <phil@xxxxxx>
- [MAINTENANCE] migrating git.netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 9/9] netfilter: audit table unregister actions
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 8/9] netfilter: add audit operation field
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 7/9] netfilter: ebtables audit table registration
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 4/9] audit: record nfcfg params
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 3/9] netfilter: normalize ebtables function declarations II
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 2/9] netfilter: normalize ebtables function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak25 v2 1/9] netfilter: normalize x_table function declarations
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_flowtable: fix documentation
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Proxy load balancer rules
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH nf-next] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 2/3] netfilter: flowtable: Fix missing flush hardware on table free
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 3/3] netfilter: flowtable: Fix setting forgotten NF_FLOW_HW_DEAD flag
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 1/3] netfilter: flowtable: Fix hardware flush order on nf_flow_table_cleanup
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- [PATCH 0/3] Various fixes for flowtable hardware offload
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: xtables: Add snapshot of hardidletimer target
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH nft v4 4/4] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 3/4] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 2/4] src: Add support for NFTNL_SET_DESC_CONCAT
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 1/4] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v4 0/4] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 3/3] set_elem: Introduce support for NFTNL_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 1/3] include: resync nf_tables.h cache copy
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 2/3] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH libnftnl v4 0/3] Attributes for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- use of netfilter-announce list
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- [PATCH nf-next V2] netfilter: ctnetlink: add kernel side filtering for dump
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 2/2] utils: add NFCT_FILTER_DUMP_TUPLE example
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- [PATCH libnftnl 1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API
- From: Romain Bellan <romain.bellan@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnftnl v3 1/2] set: Add support for NFTA_SET_DESC_CONCAT attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v3 9/9] tests: shell: add bit-shift tests.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Use kvcalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH nft v3 0/9] bitwise shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [netfilter-core] INFO: rcu detected stall in hash_ip4_gc
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't eval unary arguments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/6] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_add
- From: syzbot <syzbot+f3e96783d74ee8ea9aa3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2 0/1] New pktb_make() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- INFO: rcu detected stall in hash_ip4_gc
- From: syzbot <syzbot+68a806795ac89df3aa1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- general protection fault in ip_set_comment_free
- From: syzbot <syzbot+6a86565c74ebe30aea18@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 00/10] netfilter: nft_bitwise: shift support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: INFO: task hung in hashlimit_mt_check_common
- From: syzbot <syzbot+adf6c6c2be1c3a718121@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 1/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 0/1] Simplify struct pkt_buff: remove tail
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/7] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: fix suspicious RCU usage in find_set_and_id
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] net: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nft_osf: add missing check for DREG attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Theodore Y. Ts'o" <tytso@xxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_udel
- From: syzbot <syzbot+c27b8d5010f45c666ed1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_destroy
- From: syzbot <syzbot+a85062dec5d65617cc1c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- INFO: rcu detected stall in ip_set_uadd
- From: syzbot <syzbot+4b0e9d4ff3cf117837e5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_tables_offload: fix check the chain offload flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: sctp: use distinct states for new SCTP connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.4 060/107] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 059/107] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 090/107] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 092/107] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 094/107] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 091/107] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 093/107] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.4 095/107] netfilter: nat: fix ICMP header corruption on ICMP errors
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 29/56] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 30/56] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 48/56] netfilter: nf_tables: store transaction list locally while requesting module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 49/56] netfilter: nft_tunnel: fix null-attribute check
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 52/56] netfilter: nf_tables: fix flowtable list del corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 51/56] netfilter: nf_tables: remove WARN and add NLA_STRING upper limits
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 14/32] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 15/32] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 11/18] netfilter: arp_tables: init netns pointer in xt_tgdtor_param struct
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 10/18] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.4 5/9] netfilter: fix a use-after-free in mtype_destroy()
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 50/56] netfilter: nft_tunnel: ERSPAN_VERSION must not be null
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_port_destroy
- From: syzbot <syzbot+b96275fd6ad891076ced@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] src: Quote user-defined names
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v4] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: stranche@xxxxxxxxxxxxxx
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: "Darrick J. Wong" <darrick.wong@xxxxxxxxxx>
- [PATCH] Documentation: changes.rst: update several outdated project URLs
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH 4/4] segtree: Refactor ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] segtree: Drop needless insertion in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/4] segtree: Simplify overlap case in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Covscan-induced review of ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] segtree: Drop dead code in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: WARNING in nf_tables_table_destroy
- From: syzbot <syzbot+2a3b1b28cad90c608e20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4/4] xt_mttg_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 3/4] recent_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 2/4] synproxy_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 0/4] netfilter: seq_file .next functions should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH 1/4] ct_cpu_seq_next should increase position index
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] Revert "netfilter: unlock xt_table earlier in __do_replace"
- From: Sean Tranchetti <stranche@xxxxxxxxxxxxxx>
- [PATCH] ipvs: fix spelling mistake "to" -> "too"
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] tests: shell: update list of rmmod modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: shell: set lookup and set update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 16/16] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 15/16] audit: check contid count per netns and add config param limit
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 14/16] audit: check contid depth and add limit config param
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 12/16] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 13/16] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 11/16] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 07/16] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 05/16] audit: log drop of contid on exit of last task
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 04/16] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V8 02/16] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: autoload modules from the abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: general protection fault in nf_flow_table_offload_setup
- From: syzbot <syzbot+e93c1d9ae19a0236289c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: add __nft_chain_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- RE: [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH nf-next v4 9/9] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 8/9] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 6/9] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 7/9] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 4/9] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 3/9] netfilter: nf_tables: Support for sets with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 2/9] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 1/9] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v4 0/9] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING: suspicious RCU usage in find_set_and_id
- From: syzbot <syzbot+fc69d7cb21258ab4ae4d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: check for valid chain type pointer before dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in __nf_tables_abort
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- general protection fault in __nf_tables_chain_type_lookup
- From: syzbot <syzbot+c4a099076c8ad98e282d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ip_destroy
- From: syzbot <syzbot+8b5f151de2f35100bbc5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: KASAN: use-after-free Read in bitmap_ipmac_ext_cleanup
- From: syzbot <syzbot+33fc3ad6fa11675e1a7e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Update on UAF in ip6_do_table on 4.19.X kernel
- From: stranche@xxxxxxxxxxxxxx
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: load balancing between two chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: use bitmap infrastructure completely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: load balancing between two chains
- From: sbezverk <sbezverk@xxxxxxxxx>
- [nft PATCH 3/4] segtree: Fix for potential NULL-pointer deref in ei_insert()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] netlink: Fix leak in unterminated string deserializer
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] netlink: Avoid potential NULL-pointer deref in netlink_gen_payload_stmt()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] netlink: Fix leaks in netlink_parse_cmp()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/4] Fixes for a recent covscan run
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v3 5/9] nf_tables: Add set type for arbitrary concatenation of ranges
- From: kbuild test robot <lkp@xxxxxxxxx>
- [iptables PATCH] .gitignore: add nano/vim swap file
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bitmap_ip_ext_cleanup
- From: Christian Brauner <christian.brauner@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Write in bitmap_ip_del
- From: syzbot <syzbot+24d0577de55b8b8f6975@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: slab-out-of-bounds Read in bitmap_ipmac_gc
- From: syzbot <syzbot+c1a1fb435465986efe35@xxxxxxxxxxxxxxxxxxxxxxxxx>
- KASAN: use-after-free Read in __nf_tables_abort
- From: syzbot <syzbot+29125d208b3dae9a7019@xxxxxxxxxxxxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]