Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nft v3 09/10] doc: mention 'typeof' as alternative to 'type' keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 08/10] evaluate: print a hint about 'typeof' syntax on 0 keylen
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 07/10] mnl: round up the map data size too
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 06/10] src: add "typeof" build/parse/print support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 05/10] parser: add typeof keyword for declarations
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 04/10] expr: add expr_ops_by_type()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 03/10] proto: add proto_desc_id enumeration
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 02/10] src: store expr, not dtype to track data in sets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 01/10] parser: add a helper for concat expression handling
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v3 00/10] add typeof keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft,RFC] main: remove need to escape quotes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v2 3/3] netfilter: nf_flow_table_offload: fix the nat port mangle.
- [PATCH nf v2 1/3] netfilter: nf_flow_table_offload: fix dst_neigh lookup
- [PATCH nf v2 0/3] netfilter: nf_flow_table_offload: something fixes
- [PATCH nf v2 2/3] netfilter: nf_flow_table_offload: check the status of dst_neigh
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nft,RFC] main: remove need to escape quotes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,RFC] main: remove need to escape quotes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 2/2] src: doc: Eliminate doxygen warnings from udp.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/2] src: doc: udp.c: rename 1 more formal pkt arg to pktb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] typeof incremental enhancements
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 2/2] udata: support for TLV attribute nesting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/2] udata: add NFTNL_UDATA_SET_*TYPEOF* definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] expr: add parse and build userdata interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] proto: add proto_desc_id enumeration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] expr: add expr_ops_by_type()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/3] typeof incremental enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Introduction to Community
- From: Jaswanth Bommidi <jassu.bommidi@xxxxxxxxx>
- Re: KASAN: vmalloc-out-of-bounds Read in compat_copy_entries
- From: syzbot <syzbot+f68108fed972453a0ad4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: ebtables: compat: reject all padding in matches/watchers
- From: Florian Westphal <fw@xxxxxxxxx>
- Documentation question
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- KASAN: vmalloc-out-of-bounds Read in compat_copy_entries
- From: syzbot <syzbot+f68108fed972453a0ad4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next 5/5] netfilter: nft_tunnel: add the missing nla_nest_cancel()
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next 4/5] netfilter: nft_tunnel: also dump OPTS_ERSPAN/VXLAN
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next 3/5] netfilter: nft_tunnel: also dump ERSPAN_VERSION
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next 2/5] netfilter: nft_tunnel: add the missing ERSPAN_VERSION nla_policy
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCHv2 nf-next 1/5] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- [PATCH nft v2 11/11] tests: add typeof test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 10/11] doc: mention 'typeof' as alternative to 'type' keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 09/11] evaluate: print a hint about 'type,width' syntax on 0 keylen
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 08/11] src: netlink: remove assertion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 07/11] mnl: round up the map data size too
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 06/11] src: add "typeof" print support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 03/11] src: store expr, not dtype to track data in sets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 05/11] parser: add typeof keyword for declarations
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 04/11] src: parser: add syntax to provide size of variable-sized data types
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 02/11] libnftnl: split nft_ctx_new/free
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 01/11] parser: add a helper for concat expression handling
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 00/10] add typeof keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] main: enforce options before commands
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] main: enforce options before commands
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] main: enforce options before commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- [PATCHv2 nf-next 5/5] netfilter: nft_tunnel: add the missing nla_nest_cancel()
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 4/5] netfilter: nft_tunnel: also dump OPTS_ERSPAN/VXLAN
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 3/5] netfilter: nft_tunnel: also dump ERSPAN_VERSION
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 2/5] netfilter: nft_tunnel: add the missing ERSPAN_VERSION nla_policy
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 1/5] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCHv2 nf-next 0/5] netfilter: nft_tunnel: a bunch of fixes and improvements
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: remove two export symbols
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: extend flowtable test script with dnat rule
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] main: allow for getopt parser from top-level scope only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/7] netfilter: nft_tunnel: reinforce key opts support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 3/3] netfilter: nf_flow_table_offload: fix the nat port mangle.
- [PATCH nf 0/3] netfilter: nf_flow_table_offload: something fixes
- [PATCH nf 2/3] netfilter: nf_flow_table_offload: check the status of dst_neigh
- [PATCH nf 1/3] netfilter: nf_flow_table_offload: fix dst_neigh lookup for dnat
- Re: [PATCH nf 0/4] netfilter: nf_flow_table_offload: something fixes
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf 3/4] netfilter: nf_flow_table_offload: fix miss dst_neigh_lookup for ipv6
- [PATCH nf 1/4] netfilter: nf_flow_table_offload: fix dst_neigh lookup
- [PATCH nf 4/4] netfilter: nf_flow_table_offload: fix the nat port mangle.
- [PATCH nf 2/4] netfilter: nf_flow_table_offload: check the status of dst_neigh
- [PATCH nf 0/4] netfilter: nf_flow_table_offload: something fixes
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [PATCH nf-next 0/7] netfilter: nft_tunnel: reinforce key opts support
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] src: doc: Eliminate doxygen warnings from udp.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: doc: udp.c: rename 1 more formal pkt arg to pktb
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: fix big-endian integer overflow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Fix value returned by nfq_udp_get_payload_len()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 6/7] netfilter: nft_tunnel: add the missing nla_nest_cancel()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 5/7] netfilter: nft_tunnel: also dump OPTS_ERSPAN/VXLAN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/7] netfilter: nft_tunnel: also dump ERSPAN_VERSION
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/7] netfilter: nft_tunnel: parse VXLAN_GBP attr as u32 in nft_tunnel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] doc: nft.8: Add BUGS section about command line parsing
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v2] netfilter: connmark: introduce set-dscpmark
- From: Kevin Darbyshire-Bryant <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: nf_flow_table: fix big-endian integer overflow
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: slab-out-of-bounds Read in bit_putcs
- From: syzbot <syzbot+998dec6452146bd7a90c@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: Add alternative function to pktb_alloc to avoid malloc / free overhead
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] New pktb_usebuf() function
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nft PATCH] py: load the SONAME-versioned shared object
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH] py: load the SONAME-versioned shared object
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH nf-next v3 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- [PATCH nf-next v3 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- [PATCH nf-next v3 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- [PATCH nf-next v3 0/4] netfilter: nf_flow_table_offload: support tunnel offload
- [PATCH nf-next v3 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Xin Long <lucien.xin@xxxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: connmark: introduce set-dscpmark
- From: "Kevin 'ldir' Darbyshire-Bryant" <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Fix value returned by nfq_udp_get_payload_len()
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 00/17] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC PATCH nftables] Add "ct dscpmark" conntrack statement.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [RFC PATCH nf-next] netfilter: conntrack: add support for storing DiffServ code-point as CT mark.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 2/2] src: doc: Fully document available verdicts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/2] src: doc: Update sample code to agree with documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: RFC: libnetfilter_queue: nfq_udp_get_payload_len() gives wrong answer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- [PATCH 02/17] netfilter: nf_flow_table_offload: Fix block setup as TC_SETUP_FT cmd
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/17] netfilter: nf_flow_table_offload: add IPv6 match description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/17] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/17] netfilter: nf_tables_offload: Check for the NETDEV_UNREGISTER event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/17] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/17] netfilter: conntrack: tell compiler to not inline nf_ct_resolve_clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/17] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/17] netfilter: uapi: Avoid undefined left-shift in xt_sctp.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/17] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/17] netfilter: nf_tables: validate NFT_SET_ELEM_INTERVAL_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/17] selftests: netfilter: use randomized netns names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/17] netfilter: nf_tables: skip module reference count bump on object updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/17] netfilter: bridge: make sure to pull arp header in br_nf_forward_arp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/17] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/17] netfilter: nf_tables_offload: return EOPNOTSUPP if rule specifies no actions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/17] netfilter: nf_tables: validate NFT_DATA_VALUE after nft_data_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/17] netfilter: ctnetlink: netns exit must wait for callbacks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/17] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Justin Forbes <jmforbes@xxxxxxxxxxx>
- Re: [PATCH net] net: flow_dissector: fix tcp flags dissection on big-endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] net: flow_dissector: fix tcp flags dissection on big-endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: global-out-of-bounds Read in fb_pad_aligned_buffer
- From: syzbot <syzbot+0568d05e486eee0a1ba2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH net] net: flow_dissector: fix tcp flags dissection on big-endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter] netfilter: bridge: make sure to pull arp header in br_nf_forward_arp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] uapi: netfilter: Avoid undefined left-shift in xt_sctp.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] doc: Remove repeated paragraph and fix typo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: doc: Update sample code to agree with documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] src: doc: Fully document available verdicts
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH netfilter] netfilter: bridge: make sure to pull arp header in br_nf_forward_arp()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nf_flow on big-endian (was: Re: linux-next: build warning after merge of the net-next tree)
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- [PATCH nftables] doc: Remove repeated paragraph and fix typo
- From: nl6720 <nl6720@xxxxxxxxx>
- Re: [PATCH nf-next 0/7] netfilter: nft_tunnel: reinforce key opts support
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: nft_tunnel: add support for geneve opts
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: nft_tunnel: add the missing nla_nest_cancel()
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: nft_tunnel: also dump OPTS_ERSPAN/VXLAN
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: nft_tunnel: also dump ERSPAN_VERSION
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: nft_tunnel: parse VXLAN_GBP attr as u32 in nft_tunnel
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: nft_tunnel: parse ERSPAN_VERSION attr as u8
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: nft_tunnel: no need to call htons() when dumping ports
- From: Xin Long <lucien.xin@xxxxxxxxx>
- [PATCH nf-next 0/7] netfilter: nft_tunnel: reinforce key opts support
- From: Xin Long <lucien.xin@xxxxxxxxx>
- RFC: libnetfilter_queue: nfq_udp_get_payload_len() gives wrong answer
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 2/2] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH netfilter] netfilter: bridge: make sure to pull arp header in br_nf_forward_arp()
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: use randomized netns names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 0/6] A series of covscan-indicated fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 2/2] Minor tweak to pktb_len function description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/2] src: doc: Major re-work of user packet buffer documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Fix test for IPv6 header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nf_flow on big-endian (was: Re: linux-next: build warning after merge of the net-next tree)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation question (verdicts)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Documentation question (verdicts)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Documentation question (verdicts)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Phil Sutter <phil@xxxxxx>
- Re: KASAN: use-after-free Read in soft_cursor
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: Documentation question (verdicts)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/2] src: doc: Major re-work of user packet buffer documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Fix test for IPv6 header
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Justin Forbes <jmforbes@xxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables_offload: return EOPNOTSUPP if rule specifies no actions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: skip module reference count bump on object updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: validate NFT_DATA_VALUE after nft_data_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: validate NFT_SET_ELEM_INTERVAL_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 2/2] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in soft_cursor
- From: syzbot <syzbot+cf43fb300aa142fb024b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [iptables PATCH 1/6] xtables-restore: Avoid access of uninitialized data
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/6] extensions: time: Avoid undefined shift
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/6] extensions: cluster: Avoid undefined shift
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/6] A series of covscan-indicated fixes
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/6] xtables-translate: Guard strcpy() call in xlate_ifname()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 6/6] extensions: among: Check call to fstat()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/6] libxtables: Avoid buffer overrun in xtables_compatible_revision()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf] selftests: netfilter: use randomized netns names
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH] nftables: Bump dependency on libnftnl to 1.1.5
- From: Jan-Philipp Litza <jpl@xxxxxxxxx>
- Re: [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft v2] doc: Clarify conditions under which a reject verdict is permissible
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] doc: Clarify conditions under which a reject verdict is permissible
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 2/2] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] segtree: don't remove nul-root element from interval set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_set_rbtree: bogus lookup/get on consecutive elements in named sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf PATCH] uapi: netfilter: Avoid undefined left-shift in xt_sctp.h
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] ipvsadm: allow tunneling with gre encapsulation
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH] nftables: Bump dependency on libnftnl to 1.1.5
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] build: nftables 0.9.3 depends on libnftnl 1.1.5
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/7] iptables: install iptables-apply script and manpage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nftables: Bump dependency on libnftnl to 1.1.5
- From: Jan-Philipp Litza <jpl@xxxxxxxxx>
- Re: [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: "Kevin 'ldir' Darbyshire-Bryant" <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] build: nftables 0.9.3 depends on libnftnl 1.1.5
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: use randomized netns names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: use randomized netns names
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/2] Fix DEBUG build
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [iptables PATCH 1/7] iptables: install iptables-apply script and manpage
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 7/7] iptables-apply: script and manpage update
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 6/7] extensions: libxt_sctp: add manpage description
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 5/7] iptables: mention iptables-apply(8) in manpages
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 4/7] libipq: fix spelling in manpage
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 3/7] extensions: manpages: cleanup hyphens
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 2/7] iptables: cleanup "allows to" usage
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [iptables PATCH 1/7] iptables: install iptables-apply script and manpage
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [iptables PATCH 1/2] Fix DEBUG build
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2] xtables-restore: Fix parser feed from line buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] examples: Replace use of deprecated symbols
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] examples: Replace use of deprecated symbols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Numen with reference to vmap
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH] examples: Replace use of deprecated symbols
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [iptables PATCH] extensions: CLUSTERIP: Mark as deprecated in man page
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] extensions: CLUSTERIP: Mark as deprecated in man page
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] xtables-restore: Fix parser feed from line buffer
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] Fix DEBUG build
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] doc: Clarify conditions under which a reject verdict is permissible
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Laura Abbott <labbott@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH] build: remove stray @ sign in manpage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCH 1/1] netfilter: connmark: introduce set-dscpmark
- From: Kevin Darbyshire-Bryant <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Kevin Darbyshire-Bryant <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Laura Abbott <labbott@xxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.4 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.4 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.3 release
- From: Paweł Krawczyk <pawel.krawczyk@xxxxxxxx>
- 答复: [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: "Li,Rongqing" <lirongqing@xxxxxxxxx>
- [PATCH nft] include: include nf_tables_compat.h in tarball
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 0/4] Fix covscan-detected issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH 2/4] chain: Fix memleak in error path of nftnl_chain_parse_devs()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 0/4] Fix covscan-detected issues
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/4] flowtable: Fix memleak in error path of nftnl_flowtable_parse_devs()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 4/4] chain: Correctly check realloc() call
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 3/4] flowtable: Correctly check realloc() call
- From: Phil Sutter <phil@xxxxxx>
- Re: [ANNOUNCE] ebtables 2.0.11 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.3 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: remove stray @ sign in manpage
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] ebtables 2.0.11 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft PATCH v3] src: Support maps as left side expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- [PATCH nft] netlink: off-by-one write in netdev chain device array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] segtree: Fix add and delete of element in same batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] build: bump dependency on libnftnl
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2] doc: fix inconsistency in set statement documentation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: netfilter: use randomized netns names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH] tests: flowtable: Don't check NFTNL_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] tests: flowtable: Don't check NFTNL_FLOWTABLE_SIZE
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables] build: bump dependency on libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] iptables 1.8.4 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: forwarded bridged packets enqueuing is broken
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ebtables 2.0.11 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] arptables 0.0.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 2/2] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- forwarded bridged packets enqueuing is broken
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- Documentation question (verdicts)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH xtables-addons v2 2/3] xt_geoip: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 1/3] configure: update max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons 1/3] configure: Fix max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 2/3] xt_geoip: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/3] configure: update max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/3] configure: Fix max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: geoip doesn't work with ipv6
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH v3] src: Support maps as left side expressions
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft v2] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/1] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH nf] netfilter: nf_flow_table_offload: add IPv6 match description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: netns exit must wait for callbacks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: tell compile to not inline nf_ct_resolve_clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: conntrack: tell compile to not inline nf_ct_resolve_clash
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: KASAN: use-after-free Read in ccid2_hc_tx_packet_recv
- From: syzbot <syzbot+554ccde221001ab5479a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nft.8: Fix nat family spec position
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nft.8: Describe numgen expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] nft.8: Describe numgen expression
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [nft PATCH] nft.8: Fix nat family spec position
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: INFO: task hung in do_ip_vs_set_ctl (2)
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Nathan Chancellor <natechancellor@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nft 2/2] segtree: restore automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: INFO: task hung in do_ip_vs_set_ctl (2)
- From: syzbot <syzbot+7810ed2e0cb359580c17@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] segtree: restore automerge
- From: Phil Sutter <phil@xxxxxx>
- nf_flow on big-endian (was: Re: linux-next: build warning after merge of the net-next tree)
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Delete code not needed since Linux 3.8 in examples/nf-queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] segtree: restore automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] Revert "segtree: Check ranges when deleting elements"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Delete code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH v4 00/12] Implement among match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables v2 2/2] files: add example secmark config
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- net-next is CLOSED
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: syzbot <syzbot+eaeb616d85c9a0afec7d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: Fix test for IPv6 header
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- KMSAN: uninit-value in __skb_checksum_complete (4)
- From: syzbot <syzbot+721b564cd88ebb710182@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nftables v2 2/2] files: add example secmark config
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Certificate of https://wiki.nftables.org expired
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 5/5] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 0/5] Netfilter egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH nf-next v2 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 7/8] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 6/8] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 4/8] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 5/8] nft_set_pipapo: Provide unrolled lookup loops for common field sizes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 2/8] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Mysql has problem with synproxy
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH AUTOSEL 4.19 088/219] netfilter: nf_nat_sip: fix RTP/RTCP source port translations
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 158/219] netfilter: nf_tables: fix a missing check of nla_put_failure
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: Fix Kconfig indentation, continued
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnftnl v2] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 3/3] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 01/12] nft: family_ops: Pass nft_handle to 'add' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 12/12] nft: bridge: Rudimental among extension support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 08/12] nft: Support NFT_COMPAT_SET_ADD
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 05/12] nft: Keep nft_handle pointer in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 00/12] Implement among match support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 09/12] nft: Bore up nft_parse_payload()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 11/12] nft: Support parsing lookup expression
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 10/12] nft: Embed rule's table name in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 07/12] nft: Introduce NFT_CL_SETS cache level
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnftnl v2] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 3/3] libarptc: Simplify alloc_handle by using calloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 1/3] Add .gitignore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 2/3] Eliminate compiler warning about size passed to strncmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: Define __visible even if not supported by compiler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] net: Fix Kconfig indentation, continued
- From: Krzysztof Kozlowski <krzk@xxxxxxxxxx>
- Re: [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 4/4] src: add ability to reset secmarks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 3/4] files: add example secmark config
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 1/4] statement: make secmark statements idempotent
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/4] netfilter: nf_flow_table_offload: support tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Michal Rostecki <mrostecki@xxxxxxxxxxxx>
- [libnftnl PATCH] utils: Define __visible even if not supported by compiler
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 1/3] Add .gitignore
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 3/3] libarptc: Simplify alloc_handle by using calloc()
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 0/3] Some minor fixes
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 2/3] Eliminate compiler warning about size passed to strncmp()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] segtree: Fix add and delete of element in same batch
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- [PATCH nf-next v2 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- [PATCH nf-next v2 0/4] netfilter: nf_flow_table_offload: support tunnel offload
- [PATCH nf-next v2 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- [PATCH nf-next v2 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- Re: Documentation question
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Documentation question
- From: Florian Westphal <fw@xxxxxxxxx>
- Documentation question
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] nf_tables_offload: vlan matching support
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC 1/4] statement: make secmark statements idempotent
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 4/4] src: add ability to reset secmarks
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 3/4] files: add example secmark config
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 7/7] netfilter: nf_tables: add encapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: nf_tables: add decapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: nft_objref: add support for operation on objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: nf_tables: pass nft_object_ref to object evaluation function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: nft_objref: add nft_obj_ref structure and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: nft_objref: validate map object type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: nft_objref: rename NFTA_OBJREF_IMM_TYPE to NFTA_OBJREF_TYPE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/7] nf_tables encapsulation/decapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: Document ingress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next] netfilter: Clean up unnecessary #ifdef
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Choosing best API-way to full dump/restore nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/4] nf_tables_offload: vlan matching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/4] netfilter: nf_tables: constify nft_reg_load{8,16,64}()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/4] netfilter: nft_payload: add VLAN offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/4] netfilter: nft_payload: add C-VLAN offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/4] netfilter: nf_tables_offload: allow ethernet interface type only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Choosing best API-way to full dump/restore nftables
- From: Alexander Mikhalitsyn <alexander.mikhalitsyn@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- Mysql has problem with synproxy
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 7/8] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 6/8] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 5/8] nft_set_pipapo: Provide unrolled lookup loops for common field sizes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 4/8] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 2/8] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 1/8] nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH 00/18] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/18] netfilter: ipset: Add wildcard support to net,iface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/18] netfilter: nft_payload: simplify vlan header handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/18] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/18] netfilter: xt_time: use time64_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/18] netfilter: nf_tables: add nft_payload_rebuild_vlan_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/18] netfilter: nft_meta: offload support for interface index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/18] netfilter: nf_flow_table_offload: add IPv6 support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/18] netfilter: nf_flow_table_offload: add flow_action_entry_next() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/18] netfilter: nf_flow_table_offload: Fix check ndo_setup_tc when setup_block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/18] netfilter: nf_flow_table: remove unnecessary parameter in flow_offload_fill_dir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/18] netfilter: nft_meta: use 64-bit time arithmetic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/18] netfilter: Support iif matches in POSTROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/18] netfilter: nf_tables_offload: remove reference to flow rule from deletion path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/18] netfilter: nf_tables: add nft_unregister_flowtable_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/18] netfilter: nf_tables_offload: undo updates if transaction fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/18] netfilter: nf_tables_offload: release flow_rule on error from commit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/18] netfilter: nf_tables: check if bind callback fails and unbind if hook registration fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/18] netfilter: nft_payload: add C-VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/18] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] files: Drop shebangs from config files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] scanner: Introduce numberstring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: set reference from variable definition
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: shell: set reference from variable definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] parser_bison: Avoid set references in odd places
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,v2] parser_bison: Avoid set references in odd places
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: doc: Major re-work of user packet buffer documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] Minor tweak to pktb_len function description
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] parser_bison: Avoid set references in odd places
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] segtree: Check ranges when deleting elements
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf-next v2 4/4] netfilter: nft_tunnel: add nft_tunnel_get_offload support
- [PATCH nf-next v2 2/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV4_SRC/DST match
- [PATCH nf-next v2 1/4] netfilter: nft_tunnel: add nft_tunnel_mode_match function
- [PATCH nf-next v2 3/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV6_SRC/DST match
- [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload
- [PATCH libnetfilter_queue] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/5] netfilter: nft_tunnel: support NFT_TUNNEL_IPV6_SRC/DST match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/5] netfilter: nft_tunnel: add inet type check in nft_tunnel_mode_validate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/5] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/16] netfilter: nft_meta: use 64-bit time arithmetic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/8] netfilter: xt_time: use time64_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftnl: NFTA_FLOWTABLE_SIZE missing from kernel uapi headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] scanner: Introduce numberstring
- From: Phil Sutter <phil@xxxxxx>
- libnftnl: NFTA_FLOWTABLE_SIZE missing from kernel uapi headers
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- [PATCH nf-next 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- [PATCH nf-next 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- [PATCH nf-next 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: netns exit must wait for callbacks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- Re: [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add nft_unregister_flowtable_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/2] Restore rule counter zeroing
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] cache: Reduce caching for get command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] segtree: Fix get element for little endian ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/4] netfilter: nf_tables: Fix check the err for FLOW_BLOCK_BIND setup call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] netfilter: flow_table_offload something fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] netfilter: flow_table_offload something fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next 1/1] netfilter: nf_tables_offload: Fix dangling extack pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [net-next 1/1] netfilter: nf_tables_offload: Fix dangling extack pointer
- From: Saeed Mahameed <saeedm@xxxxxxxxxxxx>
- [nft PATCH] cache: Reduce caching for get command
- From: Phil Sutter <phil@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]