Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH] examples: Replace use of deprecated symbols
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [iptables PATCH] extensions: CLUSTERIP: Mark as deprecated in man page
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] extensions: CLUSTERIP: Mark as deprecated in man page
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Numen with reference to vmap
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] xtables-restore: Fix parser feed from line buffer
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] Fix DEBUG build
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] doc: Clarify conditions under which a reject verdict is permissible
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Numen with reference to vmap
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Laura Abbott <labbott@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH] build: remove stray @ sign in manpage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCH 1/1] netfilter: connmark: introduce set-dscpmark
- From: Kevin Darbyshire-Bryant <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/1] netfilter: connmark: introduce set-dscpmark
- From: Kevin Darbyshire-Bryant <ldir@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: nf_flow_table_offload: Correct memcpy size for flow_overload_mangle
- From: Laura Abbott <labbott@xxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.4 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.4 release
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.3 release
- From: Paweł Krawczyk <pawel.krawczyk@xxxxxxxx>
- 答复: [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: "Li,Rongqing" <lirongqing@xxxxxxxxx>
- [PATCH nft] include: include nf_tables_compat.h in tarball
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 0/4] Fix covscan-detected issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH 2/4] chain: Fix memleak in error path of nftnl_chain_parse_devs()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 0/4] Fix covscan-detected issues
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/4] flowtable: Fix memleak in error path of nftnl_flowtable_parse_devs()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 4/4] chain: Correctly check realloc() call
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 3/4] flowtable: Correctly check realloc() call
- From: Phil Sutter <phil@xxxxxx>
- Re: [ANNOUNCE] ebtables 2.0.11 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.3 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: remove stray @ sign in manpage
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] ebtables 2.0.11 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft PATCH v3] src: Support maps as left side expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_queue: enqueue skbs with NULL dst
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- [PATCH nft] netlink: off-by-one write in netdev chain device array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] segtree: Fix add and delete of element in same batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] build: bump dependency on libnftnl
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2] doc: fix inconsistency in set statement documentation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] selftests: netfilter: use randomized netns names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH] tests: flowtable: Don't check NFTNL_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] tests: flowtable: Don't check NFTNL_FLOWTABLE_SIZE
- From: Phil Sutter <phil@xxxxxx>
- [PATCH iptables] build: bump dependency on libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] iptables 1.8.4 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- Re: [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: forwarded bridged packets enqueuing is broken
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ebtables 2.0.11 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] arptables 0.0.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 2/2] netfilter: nf_tables: add NFTA_SET_ELEM_KEY_END attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 1/2] netfilter: nf_tables: add nft_setelem_parse_key()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH,nf-next RFC 0/2] add NFTA_SET_ELEM_KEY_END
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- forwarded bridged packets enqueuing is broken
- From: Marco Oliverio <marco.oliverio@xxxxxxxxxx>
- Documentation question (verdicts)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH xtables-addons v2 2/3] xt_geoip: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 1/3] configure: update max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH xtables-addons 1/3] configure: Fix max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 3/3] xt_geoip: fix in6_addr little-endian byte-swapping.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 0/3] xt_geoip: ipv6 fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 2/3] xt_geoip: white-space fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/3] configure: update max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 1/3] configure: Fix max. supported kernel version.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: geoip doesn't work with ipv6
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH v3] src: Support maps as left side expressions
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft v2] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/1] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH v2 nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH nf] netfilter: nf_flow_table_offload: add IPv6 match description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: netns exit must wait for callbacks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: tell compile to not inline nf_ct_resolve_clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: conntrack: tell compile to not inline nf_ct_resolve_clash
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: KASAN: use-after-free Read in ccid2_hc_tx_packet_recv
- From: syzbot <syzbot+554ccde221001ab5479a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nft.8: Fix nat family spec position
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nft.8: Describe numgen expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] nft.8: Describe numgen expression
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [nft PATCH] nft.8: Fix nat family spec position
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: INFO: task hung in do_ip_vs_set_ctl (2)
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Nick Desaulniers <ndesaulniers@xxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- [PATCH] netfilter: nf_flow_table_offload: Don't use offset uninitialized in flow_offload_port_{d,s}nat
- From: Nathan Chancellor <natechancellor@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nft 2/2] segtree: restore automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Phil Sutter <phil@xxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: INFO: task hung in do_ip_vs_set_ctl (2)
- From: syzbot <syzbot+7810ed2e0cb359580c17@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: Operation not supported when adding jump command
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] segtree: restore automerge
- From: Phil Sutter <phil@xxxxxx>
- nf_flow on big-endian (was: Re: linux-next: build warning after merge of the net-next tree)
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Delete code not needed since Linux 3.8 in examples/nf-queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] segtree: restore automerge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] Revert "segtree: Check ranges when deleting elements"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Delete code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] doc: fix inconsistency in set statement documentation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH v4 00/12] Implement among match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Operation not supported when adding jump command
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nftables v2 2/2] files: add example secmark config
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- From: Paul Blakey <paulb@xxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- net-next is CLOSED
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: KASAN: use-after-free Read in blkdev_get
- From: syzbot <syzbot+eaeb616d85c9a0afec7d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: Fix test for IPv6 header
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- KMSAN: uninit-value in __skb_checksum_complete (4)
- From: syzbot <syzbot+721b564cd88ebb710182@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nftables v2 2/2] files: add example secmark config
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [PATCH nftables v2 1/2] src: add ability to set/get secmarks to/from connection
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Certificate of https://wiki.nftables.org expired
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 5/5] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 0/5] Netfilter egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH libnetfilter_queue 1/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/1] src: Comment-out code not needed since Linux 3.8 in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] scanner: fix out-of-bound memory write in include_file()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH nf-next v2 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 7/8] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 6/8] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 4/8] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 5/8] nft_set_pipapo: Provide unrolled lookup loops for common field sizes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 2/8] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Mysql has problem with synproxy
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH AUTOSEL 4.19 088/219] netfilter: nf_nat_sip: fix RTP/RTCP source port translations
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 158/219] netfilter: nf_tables: fix a missing check of nla_put_failure
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: Fix Kconfig indentation, continued
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnftnl v2] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 3/3] tests: Introduce test for set with concatenated ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 01/12] nft: family_ops: Pass nft_handle to 'add' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 12/12] nft: bridge: Rudimental among extension support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 08/12] nft: Support NFT_COMPAT_SET_ADD
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 05/12] nft: Keep nft_handle pointer in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 00/12] Implement among match support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 09/12] nft: Bore up nft_parse_payload()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 11/12] nft: Support parsing lookup expression
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 10/12] nft: Embed rule's table name in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 07/12] nft: Introduce NFT_CL_SETS cache level
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnftnl v2] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft v2 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue v2] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 3/3] libarptc: Simplify alloc_handle by using calloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 1/3] Add .gitignore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [arptables PATCH 2/3] Eliminate compiler warning about size passed to strncmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: Define __visible even if not supported by compiler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] net: Fix Kconfig indentation, continued
- From: Krzysztof Kozlowski <krzk@xxxxxxxxxx>
- Re: [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 4/4] src: add ability to reset secmarks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 3/4] files: add example secmark config
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC 1/4] statement: make secmark statements idempotent
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/4] netfilter: nf_flow_table_offload: support tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings
- From: Michal Rostecki <mrostecki@xxxxxxxxxxxx>
- [libnftnl PATCH] utils: Define __visible even if not supported by compiler
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 1/3] Add .gitignore
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 3/3] libarptc: Simplify alloc_handle by using calloc()
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 0/3] Some minor fixes
- From: Phil Sutter <phil@xxxxxx>
- [arptables PATCH 2/3] Eliminate compiler warning about size passed to strncmp()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] segtree: Fix add and delete of element in same batch
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v2 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- [PATCH nf-next v2 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- [PATCH nf-next v2 0/4] netfilter: nf_flow_table_offload: support tunnel offload
- [PATCH nf-next v2 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- [PATCH nf-next v2 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- Re: Documentation question
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Documentation question
- From: Florian Westphal <fw@xxxxxxxxx>
- Documentation question
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] nf_tables_offload: vlan matching support
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC 1/4] statement: make secmark statements idempotent
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 4/4] src: add ability to reset secmarks
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 3/4] files: add example secmark config
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- [RFC 2/4] src: add ability to set/get secmarks to/from connection
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 7/7] netfilter: nf_tables: add encapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: nf_tables: add decapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: nft_objref: add support for operation on objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: nf_tables: pass nft_object_ref to object evaluation function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: nft_objref: add nft_obj_ref structure and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: nft_objref: validate map object type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: nft_objref: rename NFTA_OBJREF_IMM_TYPE to NFTA_OBJREF_TYPE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/7] nf_tables encapsulation/decapsulation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: Document ingress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next] netfilter: Clean up unnecessary #ifdef
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Choosing best API-way to full dump/restore nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/4] nf_tables_offload: vlan matching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/4] netfilter: nf_tables: constify nft_reg_load{8,16,64}()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/4] netfilter: nft_payload: add VLAN offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/4] netfilter: nft_payload: add C-VLAN offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/4] netfilter: nf_tables_offload: allow ethernet interface type only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Choosing best API-way to full dump/restore nftables
- From: Alexander Mikhalitsyn <alexander.mikhalitsyn@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- Mysql has problem with synproxy
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 3/3] tests: Introduce test for set with concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 2/3] src: Add support for concatenated set ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 1/3] src: Add support for and export NFT_SET_SUBKEY attributes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nft 0/3] Introduce support for concatenated ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 7/8] nft_set_pipapo: Prepare for vectorised implementation: helpers
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 6/8] nft_set_pipapo: Prepare for vectorised implementation: alignment
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 5/8] nft_set_pipapo: Provide unrolled lookup loops for common field sizes
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 4/8] selftests: netfilter: Introduce tests for sets with range concatenation
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 3/8] nf_tables: Add set type for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 2/8] bitmap: Introduce bitmap_cut(): cut bits and shift remaining
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 1/8] nf_tables: Support for subkeys, set with multiple ranged fields
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next 0/8] nftables: Set implementation for arbitrary concatenation of ranges
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH 00/18] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/18] netfilter: ipset: Add wildcard support to net,iface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/18] netfilter: nft_payload: simplify vlan header handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/18] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/18] netfilter: xt_time: use time64_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/18] netfilter: nf_tables: add nft_payload_rebuild_vlan_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/18] netfilter: nft_meta: offload support for interface index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/18] netfilter: nf_flow_table_offload: add IPv6 support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/18] netfilter: nf_flow_table_offload: add flow_action_entry_next() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/18] netfilter: nf_flow_table_offload: Fix check ndo_setup_tc when setup_block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/18] netfilter: nf_flow_table: remove unnecessary parameter in flow_offload_fill_dir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/18] netfilter: nft_meta: use 64-bit time arithmetic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/18] netfilter: Support iif matches in POSTROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/18] netfilter: nf_tables_offload: remove reference to flow rule from deletion path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/18] netfilter: nf_tables: add nft_unregister_flowtable_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/18] netfilter: nf_tables_offload: undo updates if transaction fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/18] netfilter: nf_tables_offload: release flow_rule on error from commit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/18] netfilter: nf_tables: check if bind callback fails and unbind if hook registration fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/18] netfilter: nft_payload: add C-VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/18] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] files: Drop shebangs from config files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] scanner: Introduce numberstring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: secmark support
- From: Christian Göttsche <cgzones@xxxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: set reference from variable definition
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: shell: set reference from variable definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] parser_bison: Avoid set references in odd places
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,v2] parser_bison: Avoid set references in odd places
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: doc: Major re-work of user packet buffer documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] Minor tweak to pktb_len function description
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [nft PATCH] tests/py: Set a fixed timezone in nft-test.py
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] parser_bison: Avoid set references in odd places
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] segtree: Check ranges when deleting elements
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf-next v2 4/4] netfilter: nft_tunnel: add nft_tunnel_get_offload support
- [PATCH nf-next v2 2/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV4_SRC/DST match
- [PATCH nf-next v2 1/4] netfilter: nft_tunnel: add nft_tunnel_mode_match function
- [PATCH nf-next v2 3/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV6_SRC/DST match
- [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload
- [PATCH libnetfilter_queue] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/5] netfilter: nft_tunnel: support NFT_TUNNEL_IPV6_SRC/DST match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/5] netfilter: nft_tunnel: add inet type check in nft_tunnel_mode_validate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/5] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/16] netfilter: nft_meta: use 64-bit time arithmetic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/8] netfilter: xt_time: use time64_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftnl: NFTA_FLOWTABLE_SIZE missing from kernel uapi headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] scanner: Introduce numberstring
- From: Phil Sutter <phil@xxxxxx>
- libnftnl: NFTA_FLOWTABLE_SIZE missing from kernel uapi headers
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: nf_flow_table_offload: add indr block setup support
- [PATCH nf-next 4/4] netfilter: nf_flow_table_offload: add tunnel encap/decap action offload support
- [PATCH nf-next 1/4] netfilter: nf_flow_table_offload: refactor nf_flow_table_offload_setup to support indir setup
- [PATCH nf-next 3/4] netfilter: nf_flow_table_offload: add tunnel match offload support
- [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: netns exit must wait for callbacks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed
- Re: [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add nft_unregister_flowtable_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 2/2] nft: Fix -Z for rules with NFTA_RULE_COMPAT
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] nft: CMD_ZERO needs a rule cache
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/2] Restore rule counter zeroing
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] cache: Reduce caching for get command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] segtree: Fix get element for little endian ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/4] netfilter: nf_tables: Fix check the err for FLOW_BLOCK_BIND setup call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] netfilter: flow_table_offload something fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/4] netfilter: flow_table_offload something fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next 1/1] netfilter: nf_tables_offload: Fix dangling extack pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [net-next 1/1] netfilter: nf_tables_offload: Fix dangling extack pointer
- From: Saeed Mahameed <saeedm@xxxxxxxxxxxx>
- [nft PATCH] cache: Reduce caching for get command
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] segtree: Fix get element for little endian ranges
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables_offload: undo updates if transaction fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables_offload: release flow_rule on error from commit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables_offload: remove reference to flow rule from deletion path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset bitmap:port question
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING
- From: Phil Sutter <phil@xxxxxx>
- Re: ipset bitmap:port question
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] segtree: Check ranges when deleting elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- libnetfilter_queue git pull has stopped working
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH mlx5-next 0/7] netfilter flowtable hardware offload support
- From: Saeed Mahameed <saeedm@xxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_flow_table_offload: add IPv6 support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_flow_table_offload: add flow_action_entry_next() and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Phil Sutter <phil@xxxxxx>
- [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: Li RongQing <lirongqing@xxxxxxxxx>
- [PATCH net-next 3/4] netfilter: nf_tables: Fix check the err for FLOW_BLOCK_BIND setup call
- [PATCH net-next 4/4] netfilter: nf_tables_api: Fix UNBIND setup in the nft_flowtable_event
- [PATCH net-next 0/4] netfilter: flow_table_offload something fixes
- [PATCH net-next 1/4] netfilter: flow_table_offload: Fix check ndo_setup_tc when setup_block
- [PATCH net-next 2/4] netfilter: flow_table_core: remove unnecessary parameter in flow_offload_fill_dir
- [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event
- Re: [PATCH net-next 0/6] netfilter flowtable hardware offload
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.19 195/209] netfilter: nft_compat: do not dump private area
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 105/115] netfilter: nft_compat: do not dump private area
- From: Sasha Levin <sashal@xxxxxxxxxx>
- 答复: [PATCH] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: "Li,Rongqing" <lirongqing@xxxxxxxxx>
- Re: [PATCH net-next 6/6] netfilter: nf_flow_table: hardware offload support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 3/4] tests: add meta time test cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] meta: Rewrite hour_type_print()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 0/2] Miscellaneous fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/4] tests: add meta time test cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [conntrack-tools PATCH] helpers: Fix for warning when compiling against libtirpc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] Makefile.am: Use ${} instead of @...@
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/1] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH mlx5-next 7/7] net/mlx5: TC: Offload flow table rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/4] tests: add meta time test cases
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] segtree: Check ranges when deleting elements
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] meta: Rewrite hour_type_print()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: xtables: Add snapshot of hardidletimer target
- From: manojbm@xxxxxxxxxxxxxx
- Re: [PATCH nft 3/4] tests: add meta time test cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: xtables: Add snapshot of hardidletimer target
- From: manojbm@xxxxxxxxxxxxxx
- Re: ipv6 forward rule after prerouting - Howto
- From: Daniel Huhardeaux <tech@xxxxxxxxxx>
- [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 1/2] files: Drop shebangs from config files
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] files: Drop shebangs from config files
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 1/2] files: Drop shebangs from config files
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xtables: Add snapshot of hardidletimer target
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xtables: Add snapshot of hardidletimer target
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] helpers: Fix for warning when compiling against libtirpc
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] Makefile.am: Use ${} instead of @...@
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH mlx5-next 7/7] net/mlx5: TC: Offload flow table rules
- From: Saeed Mahameed <saeedm@xxxxxxxxxxxx>
- [PATCH mlx5-next 1/7] net/mlx5: Simplify fdb chain and prio eswitch defines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 4/7] net/mlx5: Accumulate levels for chains prio namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 6/7] net/mlx5: Add new chain for netfilter flow table offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 3/7] net/mlx5: Define fdb tc levels per prio
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 7/7] net/mlx5: TC: Offload flow table rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 5/7] net/mlx5: Refactor creating fast path prio chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 2/7] net/mlx5: Rename FDB_* tc related defines to FDB_TC_* defines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH mlx5-next 0/7] netfilter flowtable hardware offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/6] netfilter: nf_tables: add flowtable offload control plane
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 6/6] netfilter: nf_flow_table: hardware offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/6] netfilter: nf_flow_table: detach routing information from flow description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/6] netfilter: nf_flow_table: move conntrack object to struct flow_offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/6] netfilter: nf_flowtable: remove flow_offload_entry structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/6] netfilter: nf_flow_table: remove union from flow_offload structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/6] netfilter flowtable hardware offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: UAF in ip6_do_table on 4.19 kernel
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- UAF in ip6_do_table on 4.19 kernel
- From: stranche@xxxxxxxxxxxxxx
- [conntrack-tools PATCH] helpers: Fix for warning when compiling against libtirpc
- From: Phil Sutter <phil@xxxxxx>
- [conntrack-tools PATCH] Makefile.am: Use ${} instead of @...@
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: xtables: Add snapshot of hardidletimer target
- From: Manoj Basapathi <manojbm@xxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/2] Miscellaneous fixes
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: pktb_trim() was not updating tail after updating len
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] src: Make sure pktb_alloc() works for AF_INET6 since we document that it does
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.19 183/191] netfilter: masquerade: don't flush all conntracks if only one address deleted on device
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 105/109] netfilter: masquerade: don't flush all conntracks if only one address deleted on device
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH 09/16] netfilter: nft_meta: use 64-bit time arithmetic
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: only call csum_tcpudp_magic for TCP/UDP packets
- From: Li RongQing <lirongqing@xxxxxxxxx>
- [PATCH 09/16] netfilter: nft_meta: use 64-bit time arithmetic
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 00/16] drivers: y2038 updates
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 5/8] netfilter: xt_time: use time64_t
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 0/8] y2038: bug fixes from y2038 work
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH ghak90 V7 04/21] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 06/21] audit: contid limit of 32k imposed to avoid DoS
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 08/21] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.19 203/205] netfilter: nf_tables: avoid BUG_ON usage
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next,RFC 0/5] Netfilter egress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- KCSAN: data-race in pcpu_alloc / pcpu_free_area (2)
- From: syzbot <syzbot+0b3bfb9cbec193033650@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 2/2] files: Install sample scripts from files/examples
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] files: Drop shebangs from config files
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] conntrackd UDP IPv6 destination address not usable (Bug 1378)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipv6 forward rule after prerouting - Howto
- From: Daniel Huhardeaux <tech@xxxxxxxxxx>
- [PATCH] conntrackd UDP IPv6 destination address not usable (Bug 1378)
- From: Jan-Martin Raemer <raemer@xxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- Re: [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Phil Sutter <phil@xxxxxx>
- RE: [netfilter]: Fix skb->csum calculation when netfilter manipulation for NF_NAT_MANIP_SRC\DST is done on IPV6 packet.
- From: Praveen Chaudhary <praveen5582@xxxxxxxxx>
- Re: [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipv6 forward rule after prerouting - Howto
- From: Phil Sutter <phil@xxxxxx>
- ipv6 forward rule after prerouting - Howto
- From: Daniel Huhardeaux <tech@xxxxxxxxxx>
- Re: [PATCH] src: add `set_is_meter` helper.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 0/7] Improve xtables-restore performance
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: flowtable: add support for delete command by handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] flowtable: add support for handle attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: nf_tables_offload: check for register data length mismatches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: ipset: Fix an error code in ip_set_sockfn_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: ipset: Fix nla_policies to fully support NL_VALIDATE_STRICT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: fix unexpected EOPNOTSUPP error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_tables_offload: skip EBUSY on chain update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nf_tables: bogus EOPNOTSUPP on basechain update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_tables: Align nft_expr private data to 64-bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] bridge: ebtables: don't crash when using dnat target in output chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: ipset: Copy the right MAC address in hash:ip,mac IPv6 sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] [netfilter]: Fix skb->csum calculation when netfilter manipulation for NF_NAT_MANIP_SRC\DST is done on IPV6 packet.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 0/7] Improve xtables-restore performance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] icmp: move duplicate code in helper functions
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nft] src: add `set_is_meter` helper.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] src: add `set_is_meter` helper.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [nft PATCH] doc: Drop incorrect requirement for nft configs
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] src: flowtable: add support for delete command by handle
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH libnftnl] flowtable: add support for handle attribute
- From: Eric Jallot <ejallot@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix unexpected EOPNOTSUPP error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] bridge: ebtables: don't crash when using dnat target in output chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Align nft_expr private data to 64-bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Eliminate doxygen warnings from ipv{4,6}.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Fix spelling of CTA_LABELS in examples/nf-queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue 0/2] src: doc: Main Page updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnfnetlink v3 2/2] Make it clear that this library is deprecated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnfnetlink v3 1/2] Minimally resurrect doxygen documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables_offload: skip EBUSY on chain update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: bogus EOPNOTSUPP on basechain update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_payload: add C-VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf] bridge: ebtables: don't crash when using dnat target in output chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ebtables dnat rule gets system frozen
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: doc: Eliminate doxygen warnings from ipv{4,6}.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- ebtables dnat rule gets system frozen
- From: Tom Yan <tom.ty89@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: doc: Fix spelling of CTA_LABELS in examples/nf-queue.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] tests: add stateful object update operation test
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix unexpected EOPNOTSUPP error
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 2/2] src: doc: Update the Main Page to be nft-focussed
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/2] src: doc: Main Page updates
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/2] src: whitespace: Eliminate useless spaces before tabs
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- "Sets" element cannot update "struct proto_ctx"
- From: Ttttabcd <ttttabcd@xxxxxxxxxxxxxx>
- [PATCH net-next 2/2] icmp: remove duplicate code
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net-next 1/2] icmp: add helpers to recognize ICMP error packets
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net-next 0/2] icmp: move duplicate code in helper functions
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH 0/1] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: Add wildcard support to net,iface
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipset: Copy the right MAC address in hash:ip,mac IPv6 sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: Fix nla_policies to fully support NL_VALIDATE_STRICT
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: Fix an error code in ip_set_sockfn_get()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/3] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 7.4 released
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Fernando Fernández Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: Nat redirect using map
- From: Daniel Huhardeaux <tech@xxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Fernando Fernández Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 5/5] netfilter: Introduce egress hook
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: Nat redirect using map
- From: Florian Westphal <fw@xxxxxxxxx>
- Nat redirect using map
- From: Daniel Huhardeaux <tech@xxxxxxxxxx>
- [nft PATCH] evaluate: Reject set references in mapping LHS
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v3 0/7] Improve xtables-restore performance
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: nft_payload: simplify vlan header handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nf_tables: add nft_payload_rebuild_vlan_hdr()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v3 0/7] Improve xtables-restore performance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 00/12] Implement among match support
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: add nft_payload_rebuild_vlan_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_payload: simplify vlan header handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/2] Revisit vlan support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [iptables PATCH v3 00/12] Implement among match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Add wildcard support to net,iface
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [iptables PATCH v3 00/12] Implement among match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,RFC] src: Support netdev egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [iptables PATCH v3 07/12] nft: Introduce NFT_CL_SETS cache level
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next,RFC 5/5] netfilter: Introduce egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [iptables PATCH v3 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 01/12] nft: family_ops: Pass nft_handle to 'add' callback
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 07/12] nft: Introduce NFT_CL_SETS cache level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 3/5] netfilter: Rename ingress hook include file
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf-next,RFC 4/5] netfilter: Generalize ingress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next,RFC 2/5] netfilter: Document ingress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf-next,RFC 1/5] netfilter: Clean up unnecessary #ifdef
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [libnftnl PATCH 2/2] Deprecate untyped data setters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/2] Deprecate untyped data setters
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next,RFC 0/5] Netfilter egress hook
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [libnftnl PATCH 1/1] flowtable: Fix symbol export for clang
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fix missing family in plural forms list command.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: flowtable: add support for named flowtable listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/2] Deprecate untyped data setters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] libnftnl.map: Export nftnl_{obj,flowtable}_set_data()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] libnftnl.map: Export nftnl_{obj,flowtable}_set_data()
- From: Phil Sutter <phil@xxxxxx>
- [tip: core/rcu] net/netfilter: Replace rcu_swap_protected() with rcu_replace_pointer()
- From: "tip-bot2 for Paul E. McKenney" <tip-bot2@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Copy the right MAC address in hash:ip,mac IPv6 sets
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset make modules_install always fail unless module already loaded?
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- nft: secmark output not understood by parser
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Align nft_expr private data to 64-bit
- From: Lukas Wunner <lukas@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: Align nft_expr private data to 64-bit
- From: Lukas Wunner <lukas@xxxxxxxxx>
- Re: [PATCH] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [libnftnl PATCH 1/1] flowtable: Fix symbol export for clang
- From: Marvin Schmidt <marvin_schmidt@xxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] libnftables: Store top_scope in struct nft_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH ghak90 V7 14/21] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nft] doc: fix missing family in plural forms list command.
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [libnftnl PATCH 2/2] Deprecate untyped data setters
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/2] libnftnl.map: Export nftnl_{obj,flowtable}_set_data()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 11/12] nft: Support parsing lookup expression
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 07/12] nft: Introduce NFT_CL_SETS cache level
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 00/12] Implement among match support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 08/12] nft: Support NFT_COMPAT_SET_ADD
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 09/12] nft: Bore up nft_parse_payload()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 10/12] nft: Embed rule's table name in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 05/12] nft: Keep nft_handle pointer in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 12/12] nft: bridge: Rudimental among extension support
- From: Phil Sutter <phil@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]