Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [iptables PATCH v4 7/8] nft: Support nft_is_table_compatible() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 0/8] Improve iptables-nft performance with large rulesets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 3/8] nft-cache: Cover for multiple fetcher invocation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 2/8] nft-cache: Fetch only chains in nft_chain_list_get()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 5/8] nft-cache: Support partial rule cache per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 6/8] nft: Reduce cache overhead of nft_chain_builtin_init()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v4 4/8] nft-cache: Support partial cache per table
- From: Phil Sutter <phil@xxxxxx>
- Re: First Contribution
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: First Contribution
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [RFC PATCH] net: flow_offload: tc_proto_udp_hdr[] can be static
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next,v5 3/4] net: flow_offload: mangle action at byte level
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nftables v2 1/2] cli: add linenoise CLI implementation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] selftests: netfilter: add ipvs tunnel test case
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/6] selftests: netfilter: add ipvs nat test case
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/6] ipvs: batch __ip_vs_cleanup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/6] ipvs: batch __ip_vs_dev_cleanup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 4/6] selftests: netfilter: add ipvs test script
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 0/6] [GIT PULL ipvs-next] IPVS updates for v5.5
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/6] ipvs: no need to update skb route entry for local destination packets.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- AW: [PATCH nftables v2 0/2] Add Linenoise support to the CLI.
- From: "Priebe, Sebastian" <sebastian.priebe@xxxxxx.group>
- Re: [PATCH net-next,v5 2/4] net: flow_offload: bitwise AND on mangle action value field
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net-next,v5 1/4] net: flow_offload: flip mangle action mask
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH net-next,v5 3/4] net: flow_offload: mangle action at byte level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 4/4] netfilter: nft_payload: packet mangling offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 2/4] net: flow_offload: bitwise AND on mangle action value field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 1/4] net: flow_offload: flip mangle action mask
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v5 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v4 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 2/4] net: flow_offload: mangle action at byte level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 4/4] net: flow_offload: add flow_rule_print()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 3/4] netfilter: nft_payload: packet mangling offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 1/4] net: flow_offload: bitwise AND on mangle action value field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v4 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks
- From: kbuild test robot <lkp@xxxxxxxxx>
- First Contribution
- From: UDAY MEWADA <udaymewada1@xxxxxxxxx>
- xtables-addons GEOIP not matching chain
- From: Marco Sommella <marco.sommella@xxxxxxxxx>
- [PATCH nf-next] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: add and use nf_hook_slow_list()
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: add and use nf_hook_slow_list()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libmnl] include: add MNL_SOCKET_DUMP_SIZE definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_flow_table: set timeout before insertion into hashes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: extend 'nft describe' to allow listing data types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnfnetlink 0/1] Minimally resurrect doxygen documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnfnetlink 1/1] src: Minimally resurrect doxygen documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: ecache: document extension area access rules
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH trivial] netfilter: nft_tproxy: Fix typo in IPv6 module description.
- From: Norman Rasmussen <norman@xxxxxxxxxxxxxxx>
- [PATCH nft] expression: extend 'nft describe' to allow listing data types
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] ipvs: don't ignore errors in case refcounting ip_vs module fails
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf] ipvs: don't ignore errors in case refcounting ip_vs module fails
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v6 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 18/21] audit: track container nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 17/21] audit: add support for loginuid/sessionid set/get by netlink
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 16/21] audit: add support for contid set/get by netlink
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 15/21] sched: pull task_is_descendant into kernel/sched/core.c
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 14/21] audit: contid check descendancy and nesting
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 13/21] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 12/21] audit: add support for containerid to network namespaces
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 08/21] audit: add contid support for signalling the audit daemon
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 06/21] audit: contid limit of 32k imposed to avoid DoS
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 05/21] audit: log drop of contid on exit of last task
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 04/21] audit: convert to contid list to check for orch/engine ownership
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: add and use nf_hook_slow_list()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: add and use nf_hook_slow_list()
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: add and use nf_hook_slow_list()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: add and use nf_hook_slow_list()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add and use nf_hook_slow_list()
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- [PATCH] ipset: Copy the right MAC address in hash:ip,mac IPv6 sets
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v6 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v6 3/3] selftests: netfilter: add ipvs tunnel test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v6 2/3] selftests: netfilter: add ipvs nat test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v6 1/3] selftests: netfilter: add ipvs test script
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v5 1/3] selftests: netfilter: add ipvs test script
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nft,v2] datatype: display description for header field < 8 bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack: avoid possible false sharing
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack: avoid possible false sharing
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack: avoid possible false sharing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: display description for header field < 8 bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] ipvs: more robust refcounting when sync thread starts
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH AUTOSEL 4.19 18/26] netfilter: nft_connlimit: disable bh on garbage collection
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH net] netfilter: conntrack: avoid possible false sharing
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH tip/core/rcu 8/9] net/netfilter: Replace rcu_swap_protected() with rcu_replace()
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH nf] ipvs: more robust refcounting when sync thread starts
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next] netfilter: add and use nf_hook_slow_list()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v5 1/3] selftests: netfilter: add ipvs test script
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v5 3/3] selftests: netfilter: add ipvs tunnel test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v5 2/3] selftests: netfilter: add ipvs nat test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v5 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] set: Export nftnl_set_list_lookup_byname()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: obj: fix memleak in parser_bison.y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] checksum: Fix TCP/UDP checksum computation on big endian arches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] segtree: always close interval in non-anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 03/11] nft: Extract cache routines into nft-cache.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 02/11] nft: Avoid nested cache fetching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v3 01/11] nft: Pass nft_handle to flush_cache()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH v2] set: Export nftnl_set_list_lookup_byname()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] tests: shell: fix failed tests due to missing quotes
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: shell: fix failed tests due to missing quotes
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [iptables PATCH v3 03/11] nft: Extract cache routines into nft-cache.c
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 06/11] nft-cache: Cover for multiple fetcher invocation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 01/11] nft: Pass nft_handle to flush_cache()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 00/11] Improve iptables-nft performance with large rulesets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 11/11] nft: Optimize flushing all chains of a table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 09/11] nft: Reduce cache overhead of nft_chain_builtin_init()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 07/11] nft-cache: Support partial cache per table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 10/11] nft: Support nft_is_table_compatible() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 08/11] nft-cache: Support partial rule cache per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 04/11] nft-cache: Introduce cache levels
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 05/11] nft-cache: Fetch only chains in nft_chain_list_get()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 02/11] nft: Avoid nested cache fetching
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH tip/core/rcu 8/9] net/netfilter: Replace rcu_swap_protected() with rcu_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: obj: fix memleak in parser_bison.y
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH] checksum: Fix TCP/UDP checksum computation on big endian arches
- From: Alin Nastac <alin.nastac@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue 0/5] clang and documentation updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 1/3] selftests: netfilter: add ipvs test script
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH libnetfilter_queue 2/5] src: Enable clang build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 0/5] clang and documentation updates
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 1/5] src: doc: Miscellaneous updates
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 5/5] src: doc: Minor fix
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 3/5] doxygen: remove EXPORT_SYMBOL from the output
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue 4/5] src: Fix invalid conversion specifier
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/7] ipset: remove static inline functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/7] ipset: remove static inline functions
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] libmnl: doxygen: remove EXPORT_SYMBOL from the output
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] libmnl: doxygen: remove EXPORT_SYMBOL from the output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] src: fix doxygen function documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] src: fix doxygen function documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] BUG: src: Update UDP header length field after mangling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] BUG: src: Update UDP header length field after mangling
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v4 2/3] selftests: netfilter: add ipvs nat test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v4 1/3] selftests: netfilter: add ipvs test script
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v4 3/3] selftests: netfilter: add ipvs tunnel test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v4 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net, uapi: fix -Wpointer-arith warnings
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH net-next] net, uapi: fix -Wpointer-arith warnings
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- [PATCH nf-next 0/7] ipset: remove static inline functions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: ipset: remove inline from static functions in .c files.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: ipset: add a coding-style fix to ip_set_ext_destroy.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: ipset: move ip_set_comment functions from ip_set.h to ip_set_core.c.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: ipset: move function to ip_set_bitmap_ip.c.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: ipset: move functions to ip_set_core.c.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: ipset: make ip_set_put_flags extern.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: ipset: move ip_set_get_ip_port() to ip_set_bitmap_port.c.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] ipvs: more robust refcounting when sync thread starts
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] Fix a missing doxygen section trailer in nlmsg.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH tip/core/rcu 8/9] net/netfilter: Replace rcu_swap_protected() with rcu_replace()
- Re: [PATCH] Fix a missing doxygen section trailer in nlmsg.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nft_connlimit: disable bh on garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: drop bridge nf reset from nf_reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Add wildcard support to net,iface
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf] ipvs: more robust refcounting when sync thread starts
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] Fix a missing doxygen section trailer in nlmsg.c
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v2 1/3] selftests: netfilter: add ipvs test script
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH iptables] extensions: add libxt_SYNPROXY xlate method
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.2 17/63] netfilter: nf_tables: allow lookups in dynamic sets
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 12/43] netfilter: nf_tables: allow lookups in dynamic sets
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 09/29] netfilter: nf_tables: allow lookups in dynamic sets
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH net] netfilter: drop bridge nf reset from nf_reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.3 18/71] netfilter: nf_tables: allow lookups in dynamic sets
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH v3 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v3 2/3] selftests: netfilter: add ipvs nat test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v3 1/3] selftests: netfilter: add ipvs test script
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v3 3/3] selftests: netfilter: add ipvs tunnel test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 0/2] ipvs: speedup ipvs netns dismantle
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] ipvs: no need to update skb route entry for local destination packets.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v2 1/3] selftests: netfilter: add ipvs test script
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter:get_next_corpse():No need to double check the *bucket
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter:get_next_corpse():No need to double check the *bucket
- Re: [PATCH libnetfilter_queue] checksum: Fix UDP checksum calculation
- From: Alin Năstac <alin.nastac@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] BUG: src: Fix UDP checksum calculation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH iptables] extensions: add libxt_SYNPROXY xlate method
- From: "Jose M. Guisado Gomez" <guigom@xxxxxxxxxx>
- Re: [iptables PATCH v2 08/24] nft: Fetch only chains in nft_chain_list_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 0/2] ipvs: speedup ipvs netns dismantle
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v2 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: no need to update skb route entry for local destination packets.
- From: Julian Anastasov <ja@xxxxxx>
- Re: [iptables PATCH v2 08/24] nft: Fetch only chains in nft_chain_list_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 04/24] nft: Fix for add and delete of same rule in single batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 17/24] xtables-restore: Carry in_table in struct nft_xt_restore_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 17/24] xtables-restore: Carry in_table in struct nft_xt_restore_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 03/24] tests: shell: Support running for legacy/nft only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] set: Export nftnl_set_list_lookup_byname()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] iptables-test: Run tests in lexical order
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] BUG: src: Fix UDP checksum calculation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] checksum: Fix UDP checksum calculation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] src: fix doxygen function documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_connlimit: disable bh on garbage collection
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH nft] src: obj: fix memleak in handle_free()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_connlimit: disable bh on garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: obj: fix memleak in handle_free()
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH net] netfilter: drop bridge nf reset from nf_reset
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Please add Bridge NAT in nftables
- From: Ttttabcd <ttttabcd@xxxxxxxxxxxxxx>
- Re: Please add Bridge NAT in nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- Please add Bridge NAT in nftables
- From: Ttttabcd <ttttabcd@xxxxxxxxxxxxxx>
- Re: [PATCH 0/5] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 06/24] xtables-restore: Minimize caching when flushing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v2 05/24] nft: Make nftnl_table_list_get() fetch only tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v2 04/24] nft: Fix for add and delete of same rule in single batch
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v2 03/24] tests: shell: Support running for legacy/nft only
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH v2 12/12] nft: bridge: Rudimental among extension support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 00/12] Implement among match support
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 09/12] nft: Bore up nft_parse_payload()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 05/12] nft: Keep nft_handle pointer in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 01/12] nft: family_ops: Pass nft_handle to 'add' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 10/12] nft: Embed rule's table name in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 08/12] nft: Support NFT_COMPAT_SET_ADD
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 11/12] nft: Support parsing lookup expression
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 07/12] nft: Fetch sets when updating rule cache
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] iptables-test: Run tests in lexical order
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnetfilter_queue] BUG: src: Update UDP header length field after mangling
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 06/21] audit: contid limit of 32k imposed to avoid DoS
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- [libnftnl PATCH] set: Export nftnl_set_list_lookup_byname()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnetfilter_queue] BUG: src: Fix UDP checksum calculation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft,v2] libnftables: memleak when list of commands is empty
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft,v2] libnftables: memleak when list of commands is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] libnftables: memleak when no batch commands in list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 1/3] selftests: netfilter: add ipvs test script
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 2/3] selftests: netfilter: add ipvs nat test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 3/3] selftests: netfilter: add ipvs tunnel test case
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 0/3] selftests: netfilter: introduce test cases for ipvs
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 2/2] ipvs: batch __ip_vs_dev_cleanup
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 0/2] ipvs: speedup ipvs netns dismantle
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 1/2] ipvs: batch __ip_vs_cleanup
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Enable clang build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Enable clang build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH ghak90 V7 04/21] audit: convert to contid list to check for orch/engine ownership
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- [PATCH] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v2 02/24] tests/shell: Speed up ipt-restore/0004-restore-race_0
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libmnl] src: fix doxygen function documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 03/14] nft: Keep nft_handle pointer in nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nftables v2 0/2] Add Linenoise support to the CLI.
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH trivial 1/2] net: Fix Kconfig indentation
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] src: fix doxygen function documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [iptables PATCH v2 01/24] xtables_error() does not return
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v2 01/24] xtables_error() does not return
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH v2 19/24] xtables-restore: Carry curtable in struct nft_xt_restore_parse
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 20/24] xtables-restore: Introduce line parsing function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 00/24] Improve iptables-nft performance with large rulesets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 06/24] xtables-restore: Minimize caching when flushing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 03/24] tests: shell: Support running for legacy/nft only
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 21/24] tests: shell: Add ipt-restore/0007-flush-noflush_0
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 02/24] tests/shell: Speed up ipt-restore/0004-restore-race_0
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 16/24] xtables-restore: Introduce rule counter tokenizer function
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 23/24] xtables-restore: Allow lines without trailing newline character
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 04/24] nft: Fix for add and delete of same rule in single batch
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 01/24] xtables_error() does not return
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 10/24] nft: Support fetch_chain_cache() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 09/24] nft: Support fetch_chain_cache() per table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 07/24] nft: Support fetch_rule_cache() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 14/24] nft: Support nft_is_table_compatible() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 12/24] nft: Reduce cache overhead of adding a custom chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 18/24] xtables-restore: Use xt_params->program_name
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 05/24] nft: Make nftnl_table_list_get() fetch only tables
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 08/24] nft: Fetch only chains in nft_chain_list_get()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 24/24] xtables-restore: Improve performance of --noflush operation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 22/24] xtables-restore: Remove some pointless linebreaks
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 17/24] xtables-restore: Carry in_table in struct nft_xt_restore_parse
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 11/24] nft: Support nft_chain_list_get() per chain
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 15/24] nft: Optimize flushing all chains of a table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 13/24] nft: Reduce cache overhead of nft_chain_builtin_init()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH 3/5] netfilter: nf_tables: allow lookups in dynamic sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nf_tables_offload: fix always true policy is unset check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: ebtables: use __u8 instead of uint8_t in uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: nf_tables: add NFT_CHAIN_POLICY_UNSET and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] ipset: Add wildcard support to net,iface
- From: Kadlecsik József <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH libmnl] src: fix doxygen function documentation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: use __u8 instead of uint8_t in uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: delete flowtable after flush chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Enable clang build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [RFC] ipset: Add wildcard support to net,iface
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 nf] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: Enable clang build
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH nftables 0/3] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables v2 1/2] cli: add linenoise CLI implementation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables v2 2/2] main: add more information to `nft -v`.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables v2 0/2] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 2/3] cli: add linenoise CLI implementation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 3/3] main: add more information to `nft -v`.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 0/3] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH trivial 2/2] drivers: net: Fix Kconfig indentation
- From: Leon Romanovsky <leon@xxxxxxxxxx>
- AW: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: "Priebe, Sebastian" <sebastian.priebe@xxxxxx.group>
- Re: [PATCH trivial 2/2] drivers: net: Fix Kconfig indentation
- From: Kalle Valo <kvalo@xxxxxxxxxxxxxx>
- [PATCH v2] netfilter: use __u8 instead of uint8_t in uapi header
- From: Masahiro Yamada <yamada.masahiro@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH trivial 1/2] net: Fix Kconfig indentation
- From: Sven Eckelmann <sven@xxxxxxxxxxxxx>
- Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
- From: Phil Sutter <phil@xxxxxx>
- [PATCH trivial 2/2] drivers: net: Fix Kconfig indentation
- From: Krzysztof Kozlowski <krzk@xxxxxxxxxx>
- [PATCH trivial 1/2] net: Fix Kconfig indentation
- From: Krzysztof Kozlowski <krzk@xxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: use __u8 instead of uint8_t in uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use __u8 instead of uint8_t in uapi header
- From: Masahiro Yamada <yamada.masahiro@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft,v2] mnl: do not cache sender buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use __u8 instead of uint8_t in uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use __u8 instead of uint8_t in uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: Enable clang build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] netfilter: use __u8 instead of uint8_t in uapi header
- From: Masahiro Yamada <yamada.masahiro@xxxxxxxxxxxxx>
- [PATCH nftables 1/3] src, include: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 2/3] cli: add linenoise CLI implementation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 3/3] main: add more information to `nft -v`.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nftables 0/3] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH 0/1] netfilter: bridge: build fix for 5.3
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC nftables 4/4] cli: add linenoise CLI implementation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH RFC nftables 0/4] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 0/1] netfilter: bridge: build fix for 5.3
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH 1/1] netfilter: add missing IS_ENABLED(CONFIG_NF_TABLES) check to header-file.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] src: Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libmnl, v3] Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libmnl, v2] Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: do not cache sender buffer size
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] xtables-restore: Fix --table parameter check
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] mnl: do not cache sender buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools,v2 2/2] conntrackd: incorrect filtering of Address with cidr /0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools,v2 1/2] conntrackd: Fix "Address Accept" filter case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools 2/2] conntrackd: incorrect filtering of Address with cidr /0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools 1/2] conntrackd: Fix "Address Accept" filter case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 05/14] nft: Introduce nft_bridge_commit()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 04/14] nft: Use nftnl_*_set_str() functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 03/14] DEBUG: Print to stderr to not disturb iptables-save
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 01/14] tests/shell: Make ebtables-basic test more verbose
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nftables 4/4] cli: add linenoise CLI implementation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nftables 2/4] cli: remove unused declaration.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nftables 1/4] configure: remove unused AC_SUBST macros.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nftables 0/4] Add Linenoise support to the CLI.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: drop a broken include
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: fix iptables-{nft,translate} with conntrack EXPECTED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Fix add_bitwise_u16() on Big Endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] nft: Fix add_bitwise_u16() on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: meter: avoid double-space in list ruleset output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] src: Enable doxygen to generate Function Documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: allow lookups in dynamic sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] src: Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [BUG] nft: "XT target TCPMSS not found" when TCPMSS clamp to PMTU rule is added for *both* ip and ip6
- From: "Timo Sigurdsson" <public_timo.s@xxxxxxxxxxxxxx>
- netfilter.org HTTPS certificate expired today (Sept 19)
- From: Dan Williams <dcbw@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: allow lookups in dynamic sets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Contributing to the Netfilter Project.
- From: Florian Westphal <fw@xxxxxxxxx>
- Contributing to the Netfilter Project.
- From: Wambui Karuga <wambui.dev@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: meter: avoid double-space in list ruleset output
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ghak90 V7 21/21] audit: add proc interface for capcontid
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 20/21] audit: add capcontid to set contid outside init_user_ns
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 19/21] audit: check cont depth
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 18/21] audit: track container nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 17/21] audit: add support for loginuid/sessionid set/get by netlink
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 16/21] audit: add support for contid set/get by netlink
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 15/21] sched: pull task_is_descendant into kernel/sched/core.c
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 14/21] audit: contid check descendancy and nesting
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 13/21] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 12/21] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 11/21] audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 10/21] audit: add containerid support for user records
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 09/21] audit: add support for non-syscall auxiliary records
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 08/21] audit: add contid support for signalling the audit daemon
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 07/21] audit: log container info of syscalls
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 06/21] audit: contid limit of 32k imposed to avoid DoS
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 05/21] audit: log drop of contid on exit of last task
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 04/21] audit: convert to contid list to check for orch/engine ownership
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 03/21] audit: read container ID of a process
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 02/21] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 01/21] audit: collect audit task parameters
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 V7 00/21] audit: implement container identifier
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: What is 'dynamic' set flag supposed to mean?
- From: Laura Garcia <nevola@xxxxxxxxx>
- What is 'dynamic' set flag supposed to mean?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- icmp_hdr is wrong on CentOS 6 kernels (2.6.32-754.12.1)
- From: Olivia Nelson <the.warl0ck.1989@xxxxxxxxx>
- [PATCH] extensions: fix iptables-{nft,translate} with conntrack EXPECTED
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: drop a broken include
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: bridge: drop a broken include
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: drop a broken include
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 02/14] tests/shell: Speed up ipt-restore/0004-restore-race_0
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 14/14] nft: Reduce impact of nft_chain_builtin_init()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/14] nft: Rename have_cache into have_chain_cache
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/14] nft: Allow to fetch only a specific chain from kernel
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/14] nft: Introduce nft_bridge_commit()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/14] nft: Fetch rule cache only if needed
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/14] tests/shell: Speed up ipt-restore/0004-restore-race_0
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/14] nft: Fix for add and delete of same rule in single batch
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/14] nft: Use nftnl_*_set_str() functions
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 13/14] nft: Optimize flushing all chains of a table
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/14] DEBUG: Print to stderr to not disturb iptables-save
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/14] tests/shell: Make ebtables-basic test more verbose
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 00/14] Improve iptables-nft performance with large rulesets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/14] nft: Support fetching rules for a single chain only
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables_offload: fix always true policy is unset check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: add NFT_CHAIN_POLICY_UNSET and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: parser_json: fix crash while restoring secmark object
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: drop a broken include
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH RFC nftables 3/4] cli: add upstream linenoise source.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH RFC nftables 1/4] configure: remove unused AC_SUBST macros.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH RFC nftables 0/4] Add Linenoise support to the CLI.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH RFC nftables 4/4] cli: add linenoise CLI implementation.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH RFC nftables 2/4] cli: remove unused declaration.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2] src: parser_json: fix crash while restoring secmark object
- From: Eric Jallot <ejallot@xxxxxxxxx>
- [PATCH nft] src: parser_json: fix crash while restoring secmark object
- From: Eric Jallot <ejallot@xxxxxxxxx>
- Re: [PATCH] nftables: don't crash in 'list ruleset' if policy is not set
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nftables: don't crash in 'list ruleset' if policy is not set
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH] nftables: don't crash in 'list ruleset' if policy is not set
- From: Sergei Trofimovich <slyfox@xxxxxxxxxx>
- [PATCH] netfilter: bridge: drop a broken include
- From: Adam Borowski <kilobyte@xxxxxxxxxx>
- Re: [PATCH nft] json: tests: fix typo in ct expectation json test
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next:master 7/27] net/netfilter/nf_tables_offload.c:316 nft_flow_offload_chain() warn: always true condition '(policy != -1) => (0-255 != (-1))'
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nft] json: tests: fix typo in ct expectation json test
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [iptables PATCH] iptables-test: Support testing host binaries
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] src: Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [iptables PATCH] iptables-test: Support testing host binaries
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] json: fix type mismatch on "ct expect" json exporting
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] json: fix type mismatch on "ct expect" json exporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v6 5/8] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next v6 6/8] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next v6 7/8] netfilter: nft_objref: add nft_objref_type offload
- [PATCH nf-next v6 8/8] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next v6 2/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP_SRC/DST match
- [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- [PATCH nf-next v6 1/8] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
- [PATCH nf-next v6 3/8] netfilter: nft_tunnel: add ipv6 check in nft_tunnel_mode_validate
- [PATCH nf-next v6 4/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP6_SRC/DST match
- Re: [PATCH] netfilter: trivial: remove extraneous space from message
- From: Rui Salvaterra <rsalvaterra@xxxxxxxxx>
- Re: [PATCH 00/27] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nft] json: fix type mismatch on "ct expect" json exporting
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v5] src: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/27] netfilter: nf_tables: Fix an Oops in nf_tables_updobj() error handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/27] netfilter: nf_tables_offload: refactor the nft_flow_offload_rule function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/27] netfilter: nf_tables_offload: add __nft_offload_get_chain function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/27] netfilter: nft_{fwd,dup}_netdev: add offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/27] netfilter: ip_tables: remove unused function declarations.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/27] netfilter: nft_synproxy: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/27] netfilter: fix coding-style errors.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/27] netfilter: remove nf_conntrack_icmpv6.h header.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/27] netfilter: move inline nf_ip6_ext_hdr() function to a more appropriate header.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/27] netfilter: update include directives.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/27] netfilter: conntrack: move code to linux/nf_conntrack_common.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/27] netfilter: conntrack: remove CONFIG_NF_CONNTRACK check from nf_conntrack_acct.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/27] netfilter: conntrack: remove CONFIG_NF_CONNTRACK checks from nf_conntrack_zones.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/27] netfilter: conntrack: wrap two inline functions in config checks.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/27] netfilter: br_netfilter: update stub br_nf_pre_routing_ipv6 parameter to `void *priv`.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/27] netfilter: replace defined(CONFIG...) || defined(CONFIG...MODULE) with IS_ENABLED(CONFIG...).
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/27] netfilter: synproxy: move code between headers.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/27] netfilter: remove CONFIG_NETFILTER checks from headers.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/27] netfilter: conntrack: remove two unused functions from nf_conntrack_timestamp.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/27] netfilter: move nf_bridge_frag_data struct definition to a more appropriate header.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/27] netfilter: conntrack: use consistent style when defining inline functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/27] netfilter: inline xt_hashlimit, ebt_802_3 and xt_physdev headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/27] netfilter: nf_tables_offload: remove rules when the device unregisters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/27] netfilter: fix include guards.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/27] netfilter: nf_tables_offload: refactor the nft_flow_offload_chain function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/27] netfilter: nf_tables_offload: move indirect flow_block callback logic to core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/27] netfilter: nf_tables_offload: avoid excessive stack usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/27] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v6 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v3 12/18] netfilter: wrap two inline functions in config checks.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 10/18] netfilter: use consistent style when defining inline functions in nf_conntrack_ecache.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 11/18] netfilter: replace defined(CONFIG...) || defined(CONFIG...MODULE) with IS_ENABLED(CONFIG...).
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 15/18] netfilter: remove CONFIG_NF_CONNTRACK check from nf_conntrack_acct.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 16/18] netfilter: remove CONFIG_NETFILTER checks from headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 17/18] netfilter: remove CONFIG_NF_CONNTRACK checks from nf_conntrack_zones.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 13/18] netfilter: update stub br_nf_pre_routing_ipv6 parameter to `void *priv`.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 18/18] netfilter: remove two unused functions from nf_conntrack_timestamp.h.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 06/18] netfilter: remove nf_conntrack_icmpv6.h header.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 01/18] netfilter: fix include guards.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 09/18] netfilter: move struct definition function to a more appropriate header.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 02/18] netfilter: fix coding-style errors.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 03/18] netfilter: remove unused function declarations.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 04/18] netfilter: inline three headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 05/18] netfilter: update include directives.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 08/18] netfilter: move code between synproxy headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next v3 07/18] netfilter: move inline function to a more appropriate header.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v5] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v4] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v4] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH ebtables-nft] ebtables: fix over-eager -o checks on custom chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] netfilter: hashlimit: prefer PRIu64 to avoid warnings on 32bit platforms
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] libnftables: use-after-free in exit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: userspace conntrack helper and confirming the master conntrack
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: iptables release
- From: Fabio Pedretti <pedretti.fabio@xxxxxxxxx>
- [PATCH nf-next v6 4/4] netfilter: nf_offload: clean offload things when the device unregister
- [PATCH nf-next v6 1/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
- [PATCH nf-next v6 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
- [PATCH nf-next v6 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
- [PATCH nf-next v6 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: wenxu <wenxu@xxxxxxxxx>
- Re: userspace conntrack helper and confirming the master conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ebtables-nft] ebtables: fix over-eager -o checks on custom chains
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] netfilter: hashlimit: prefer PRIu64 to avoid warnings on 32bit platforms
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v3] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v3] src: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] src: synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_synproxy: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: fix wrong conversion to "list" in ct mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- iptables release
- From: Fabio Pedretti <pedretti.fabio@xxxxxxxxx>
- Re: [conntrack-tools PATCH] nfct: helper: Fix NFCTH_ATTR_PROTO_L4NUM size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_json: fix crash on insert rule to bad references
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 1/3] tests: shell: verify huge transaction returns expected number of rules
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] parser_json: fix crash on insert rule to bad references
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft 3/3] tests: shell: add huge transaction from firewalld
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft 2/3] tests: shell: add huge JSON transaction
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft 1/3] tests: shell: verify huge transaction returns expected number of rules
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Eric Garver <eric@xxxxxxxxxxx>
- [conntrack-tools PATCH] nfct: helper: Fix NFCTH_ATTR_PROTO_L4NUM size
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: mnl: fix --echo buffer size -- again
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 3/3] src: mnl: retry when we hit -ENOBUFS
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables 3/3] src: mnl: retry when we hit -ENOBUFS
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft] netlink_delinearize: fix wrong conversion to "list" in ct mark
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v5 4/4] netfilter: nf_offload: clean offload things when the device unregister
- [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- [PATCH nf-next v5 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
- [PATCH nf-next v5 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
- [PATCH nf-next v5 1/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
- Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_{fwd,dup}_netdev: add offload support
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nft v3] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v2] src: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v2 00/30] Add config option checks to netfilter headers.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_{fwd,dup}_netdev: add offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: nf_tables_offload: move indirect flow_block callback logic to core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: Fix an Oops in nf_tables_updobj() error handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v6 7/8] netfilter: nft_objref: add nft_objref_type offload
- [PATCH nf-next v6 5/8] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next v6 1/8] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
- [PATCH nf-next v6 8/8] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next v6 2/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP_SRC/DST match
- [PATCH nf-next v6 3/8] netfilter: nft_tunnel: add ipv6 check in nft_tunnel_mode_validate
- [PATCH nf-next v6 6/8] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
- [PATCH nf-next v6 4/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP6_SRC/DST match
- [PATCH nf-next v4 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
- [PATCH nf-next v4 2/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
- [PATCH nf-next v4 1/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
- [PATCH nf-next v4 3/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
- [PATCH] src: Enable doxygen to generate Function Documentation
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 00/30] Add config option checks to netfilter headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft v2] src: add synproxy stateful object support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: avoid excessive stack usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: avoid excessive stack usage
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH nft v2] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: avoid excessive stack usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH libnftnl] src: synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_synproxy: add synproxy stateful object support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 0/8] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: flag fwd and queue statements as terminal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: avoid excessive stack usage
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: flag fwd and queue statements as terminal
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [PATCH xtables-addons v2 1/2] xt_pknock, xt_SYSRQ: don't set shash_desc::flags.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: nf_tables: Fix an Oops in nf_tables_updobj() error handling
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH] netfilter: nf_tables: Fix an Oops in nf_tables_updobj() error handling
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf-next v3 3/4] netfilter: nf_tables_offload: add nft_offload_netdev_iterate function
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH 2/2] tests: shell: check that rule add with index works with echo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] cache: fix --echo with index/position
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 3/4] netfilter: nf_tables_offload: add nft_offload_netdev_iterate function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] tests: shell: check that rule add with index works with echo
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH 1/2] cache: fix --echo with index/position
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 4/4] netfilter: nft_payload: packet mangling offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 3/4] net: flow_offload: mangle action at byte level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 2/4] net: flow_offload: bitwise AND on mangle action value field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 1/4] net: flow_offload: flip mangle action mask
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v3 0/4] flow_offload: update mangle action representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] cache: fix --echo with index/position
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] cache: fix --echo with index/position
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: check that rule add with index works with echo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: fix --echo with index/position
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: check that rule add with index works with echo
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH 4/8] netfilter: nft_dynset: support for element deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nfnetlink_log: add support for VLAN information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: not mark a spinlock as __read_mostly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nft_meta: support for time matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nf_tables: Introduce stateful object update operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nft_quota: add quota object update support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: nf_tables: Introduce new 64-bit helper register functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: check that rule add with index works with echo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: fix possible null-pointer dereference in object update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 0/8] netfilter: nf_tables_offload: support tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf-next v3 4/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- [PATCH nf-next v3 1/4] netfilter: nf_tables_offload: refactor the nft_flow_offload_chain function
- [PATCH nf-next v3 2/4] netfilter: nf_tables_offload: refactor the nft_flow_offload_rule function
- [PATCH nf-next v3 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
- [PATCH nf-next v3 3/4] netfilter: nf_tables_offload: add nft_offload_netdev_iterate function
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]