Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH xtables-addons v2 1/2] xt_pknock, xt_SYSRQ: don't set shash_desc::flags.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 2/2] xt_DHCPMAC: replaced skb_make_writable with skb_ensure_writable.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons v2 0/2] Kernel API updates
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf-next] netfilter: connlabels: prefer static lock initialiser
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH xtables-addons 2/2] xt_DHCPMAC: replaced skb_make_writable with skb_ensure_writable.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH] tests: add json test for vlan rule fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH xtables-addons 2/2] xt_DHCPMAC: replaced skb_make_writable with skb_ensure_writable.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables-addons 1/2] xt_pknock, xt_SYSRQ: don't set shash_desc::flags.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 2/2] xt_DHCPMAC: replaced skb_make_writable with skb_ensure_writable.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- geoip doesn't work with ipv6
- From: "Thomas B. Clark" <kernel@xxxxxxxx>
- Re: xtables addons build on 5.2.6 ends with error: 'struct shash_desc' has no member named 'flags'
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH] tests: add json test for vlan rule fix
- From: michael-dev@xxxxxxxxxxxxx
- xtables addons build on 5.2.6 ends with error: 'struct shash_desc' has no member named 'flags'
- From: Franta Hanzlík <franta@xxxxxxxxxxx>
- Re: [PATCH 0/2 net,v4] flow_offload hardware priority fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/2 net,v4] flow_offload hardware priority fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] src: Support maps as left side expressions
- From: Brett Mastbergen <bmastbergen@xxxxxxxxxxxx>
- [PATCH nft,v2] tests: shell: use-after-free from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] include: refresh nf_tables.h cached copy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] tests: shell: use-after-free from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] tests: shell: move chain priority and policy to chain folder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_conntrack] libnetfilter_conntrack: support for IPS_OFFLOAD
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools] conntrack: support for IPS_OFFLOAD
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_flow_table: teardown flow timeout race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_flow_table: conntrack picks up expired flows
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: user-after-free in failing rule with bound set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- kernel BUG at lib/list_debug.c:47! invalid opcode: 0000 [#1] SMP NOPTI
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [PATCH net-next v7 0/6] flow_offload: add indr-block in nf_table_offload
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next] net: use "nb" for notifier blocks
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net v3] Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v3] Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_dynset: support for element deletion
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH net v2] netfilter: Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: [PATCH net v2] netfilter: Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v1 1/8] netfilter: inlined four headers files into another one.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net-next v1 1/8] netfilter: inlined four headers files into another one.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH net v2] netfilter: Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: nftables and set with interval
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: nftables and set with interval
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: nftables and set with interval
- From: Laura Garcia <nevola@xxxxxxxxx>
- nftables and set with interval
- From: "Serguei Bezverkhi (sbezverk)" <sbezverk@xxxxxxxxx>
- Re: [PATCH net-next v1 1/8] netfilter: inlined four headers files into another one.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] src: Support maps as left side expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2 nft v4] Introduce variables in chain priority and policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/nf_nat_proto.c - make tables static
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH AUTOSEL 4.19 04/42] netfilter: conntrack: always store window size un-scaled
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 4/9] netfilter: nft_payload: add nft_set_payload offload support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/9] netfilter: nft_fwd_netdev: add fw_netdev action support
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH] net/netfilter/nf_nat_proto.c - make tables static
- From: "Valdis Klētnieks" <valdis.kletnieks@xxxxxx>
- [PATCH] net/netfilter - add missing prototypes.
- From: "Valdis Klētnieks" <valdis.kletnieks@xxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: [PATCH nft 2/2] src: remove global symbol_table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC nft] src: avoid re-initing core library when a second context struct is allocated
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC nft] src: avoid re-initing core library when a second context struct is allocated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] src: remove global symbol_table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: add parse_ctx object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH net-next v1 6/8] netfilter: added missing IS_ENABLED(CONFIG_NETFILTER) checks to some header-files.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 7/8] netfilter: removed "#ifdef __KERNEL__" guards from some headers.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 8/8] kbuild: removed all netfilter headers from header-test blacklist.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 2/8] netfilter: added missing includes to a number of header-files.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 5/8] netfilter: added missing IS_ENABLED(CONFIG_NF_CONNTRACK) checks to some header-files.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 0/8] netfilter: header compilation fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 3/8] netfilter: added missing IS_ENABLED(CONFIG_BRIDGE_NETFILTER) checks to header-file.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 1/8] netfilter: inlined four headers files into another one.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next v1 4/8] netfilter: added missing IS_ENABLED(CONFIG_NF_TABLES) check to header-file.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: store data in offload context registers
- From: kbuild test robot <lkp@xxxxxxxxx>
- [bug report] netfilter: nf_tables: add hardware offload support
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf-next v3 4/9] netfilter: nft_payload: add nft_set_payload offload support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next v3 3/9] netfilter: nft_fwd_netdev: add fw_netdev action support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH net-next v7 1/6] cls_api: modify the tc_indr_block_ing_cmd parameters.
- [PATCH net-next v7 5/6] flow_offload: support get multi-subsystem block
- [PATCH net-next v7 3/6] cls_api: add flow_indr_block_call function
- [PATCH net-next v7 6/6] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next v7 4/6] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v7 2/6] cls_api: remove the tcf_block cache
- [PATCH net-next v7 0/6] flow_offload: add indr-block in nf_table_offload
- Re: [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: Use consistent ct id hash calculation
- From: Dirk Morris <dmorris@xxxxxxxxxxxx>
- Re: [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH 0/2 net,v4] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 net,v4] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 net,v4] net: sched: use major priority number as hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2 net,v4] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nf-next] Introducing stateful object update operation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC nf-next] Introducing stateful object update operation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH RFC nf-next] Introducing stateful object update operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nf-next] Introducing stateful object update operation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RFC nf-next] Introducing stateful object update operation
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_log:add support for VLAN information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v6 0/6] flow_offload: add indr-block in nf_table_offload
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- [PATCH RFC nft] src: avoid re-initing core library when a second context struct is allocated
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] net: use "nb" for notifier blocks
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_log:add support for VLAN information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nf_flow_table: fix offload for flows that are subject to xfrm
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] selftests: netfilter: extend flowtable test script for ipsec
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_log:add support for VLAN information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_log:add support for VLAN information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/3,v2] net: sched: use major priority number as hardware priority
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH] netfilter: nfnetlink_log:add support for VLAN information
- From: Michael Braun <michael-dev@xxxxxxxxxxxxx>
- Re: [PATCH net-next 3/6] cls_api: add flow_indr_block_call function
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next 3/6] cls_api: add flow_indr_block_call function
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH net-next v6 4/6] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v6 6/6] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next v6 5/6] flow_offload: support get multi-subsystem block
- [PATCH net-next v6 1/6] cls_api: modify the tc_indr_block_ing_cmd parameters.
- [PATCH net-next v6 3/6] cls_api: add flow_indr_block_call function
- [PATCH net-next v6 2/6] cls_api: remove the tcf_block cache
- [PATCH net-next v6 0/6] flow_offload: add indr-block in nf_table_offload
- Re: [PATCH net-next] netfilter: conntrack: use shared sysctl constants
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v3] ipvs: Improve robustness to the ipvs sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 nf-next] netfilter: synproxy: rename mss synproxy_options field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: conntrack: use shared sysctl constants
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/3,v2] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH] expr: allow export of notrack expr
- From: Ivan Babrou <ivan@xxxxxxxxxxxxxx>
- [PATCH AUTOSEL 5.2 02/76] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.2 07/76] netfilter: conntrack: always store window size un-scaled
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.2 08/76] netfilter: nft_hash: fix symhash with modulus one
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.2 15/76] netfilter: nf_tables: Support auto-loading for inet nat
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 01/42] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 03/42] netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 04/42] netfilter: conntrack: always store window size un-scaled
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 05/42] netfilter: nft_hash: fix symhash with modulus one
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 01/30] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 04/30] netfilter: nft_hash: fix symhash with modulus one
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH net-next 3/3] filter: nf_tables_offload: set priority field for rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/3,v2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/3] netfilter: nf_tables_offload: add offload field to basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/3,v2] net: sched: use major priority number as hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH AUTOSEL 4.14 03/30] netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.4 01/17] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.9 01/22] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.2 06/76] netfilter: nf_tables: fix module autoload for redir
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.2 05/76] netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH v6] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH v6] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v6] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2 nft v4] src: allow variable in chain policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft v4] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 0/2 nft v4] Introduce variables in chain priority and policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] expr: allow export of notrack expr
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2 nft v3] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/2 nft v3] src: allow variable in chain policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft v3] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 0/2 nft v3] Introduce variables in chain priority and policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH v3] netfilter: nft_meta: support for time matching
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH v3] netfilter: nft_meta: support for time matching
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH v6] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH] expr: allow export of notrack expr
- From: Ivan Babrou <ivan@xxxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net 0/2] flow_offload hardware priority fixes
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: nftables feature request: modify set element timeout
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: nftables feature request: modify set element timeout
- From: Fran Fitzpatrick <francis.x.fitzpatrick@xxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v3 0/9] netfilter: nf_tables_offload: support more expr and obj offload
- [PATCH nf-next v3 9/9] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next v3 7/9] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next v3 1/9] netfilter: nf_flow_offload: add net in offload_ctx
- [PATCH nf-next v3 5/9] netfilter: nft_tunnel: support NFT_TUNNEL_SRC/DST_IP match
- [PATCH nf-next v3 4/9] netfilter: nft_payload: add nft_set_payload offload support
- [PATCH nf-next v3 6/9] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next v3 8/9] netfilter: nft_objref: add nft_objref_type offload
- [PATCH nf-next v3 2/9] netfilter: nf_tables_offload: add offload_actions callback
- [PATCH nf-next v3 3/9] netfilter: nft_fwd_netdev: add fw_netdev action support
- Re: [PATCH nf-next v2 03/11] netfilter: nf_tables_offload: split nft_offload_reg to match and action type
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 03/11] netfilter: nf_tables_offload: split nft_offload_reg to match and action type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft: Drop stale include directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: store data in offload context registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] nft: Drop stale include directive
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net 2/2,v3] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] net: sched: use major priority number as hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] flow_offload hardware priority fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v5 6/6] netfilter: nf_tables_offload: support indr block call
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v5 6/6] netfilter: nf_tables_offload: support indr block call
- From: Yunsheng Lin <linyunsheng@xxxxxxxxxx>
- [PATCH net-next v5 1/6] cls_api: modify the tc_indr_block_ing_cmd parameters.
- [PATCH net-next v5 6/6] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next 3/6] cls_api: add flow_indr_block_call function
- [PATCH net-next v5 5/6] flow_offload: support get flow_block immediately
- [PATCH net-next v5 4/6] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v5 2/6] cls_api: replace block with flow_block in tc_indr_block_dev
- [PATCH net-next v5 0/6] flow_offload: add indr-block in nf_table_offload
- Re: [PATCH nf,v2] netfilter: nf_tables: map basechain priority to hardware priority
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/6] flow_offload: add indr-block in nf_table_offload
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net v3] ipvs: Improve robustness to the ipvs sysctl
- From: Julian Anastasov <ja@xxxxxx>
- Re: [iptables PATCH 5/5] xtables-monitor: Add family-specific aliases
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/5] xtables-monitor: Improve error messages
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/5] doc: Clean generated *-restore-translate man pages
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/5] doc: Fix xtables-monitor man page
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/5] xtables-monitor: Support ARP and bridge families
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 0/5] xtables-monitor enhancements
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 5/5] xtables-monitor: Add family-specific aliases
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net v3] ipvs: Improve robustness to the ipvs sysctl
- From: hujunwei <hujunwei4@xxxxxxxxxx>
- Re: [PATCH net v2] ipvs: Improve robustness to the ipvs sysctl
- From: hujunwei <hujunwei4@xxxxxxxxxx>
- Re: [PATCH 0/8] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] src: store expr, not dtype to track data in sets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] src: store expr, not dtype to track data in sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] Fix dumping vlan rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: ebtables: fix a memory leak bug in compat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: add include guard to xt_connlabel.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: ipset: Copy the right MAC address in bitmap:ip,mac and hash:ip,mac sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: ebtables: also count base chain policies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: ipset: Actually allow destination MAC address for hash:ip,mac sets too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: ipset: Fix rename concurrency with listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nft_meta_bridge: Eliminate 'out' label
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] cache: incorrect flush flag for table/chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/6] flow_offload: support get flow_block immediately
- [PATCH net-next 1/6] cls_api: modify the tc_indr_block_ing_cmd parameters.
- [PATCH net-next 4/6] flow_offload: move tc indirect block to flow offload
- [PATCH net-next 2/6] cls_api: replace block with flow_block in tc_indr_block_dev
- [PATCH net-next 6/6] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next 3/6] cls_api: add flow_indr_block_call function
- [PATCH net-next 0/6] flow_offload: add indr-block in nf_table_offload
- Re: [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net v2] ipvs: Improve robustness to the ipvs sysctl
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [FINAL REMINDER!!] LPC 2019 Networking Track CFP
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nft,RFC,PoC 2/2] src: restore typeof datatype when listing set definition
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft,RFC,PoC 2/2] src: restore typeof datatype when listing set definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libiptc] libip6tc.h: Add extern "C" wrapping for C++ linking.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,RFC,PoC 2/2] src: restore typeof datatype when listing set definition
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] typeof keyword
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2] src: store expr, not dtype to track data in sets
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC 0/2] typeof keyword, alternate patch
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,RFC,PoC 2/2] src: restore typeof datatype when listing set definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,RFC,PoC 1/2] parser: add typeof keyword for declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,RFC,PoC 0/2] typeof support for set / map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] bridge:fragmented packets dropped by bridge
- From: Rundong Ge <rdong.ge@xxxxxxxxx>
- Re: [PATCH] bridge:fragmented packets dropped by bridge
- From: Rundong Ge <rdong.ge@xxxxxxxxx>
- [PATCH nft] src: fix flush chain cache flag
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_flow_table: fix offload for flows that are subject to xfrm
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] selftests: netfilter: extend flowtable test script for ipsec
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] bridge:fragmented packets dropped by bridge
- From: Nikolay Aleksandrov <nikolay@xxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge:fragmented packets dropped by bridge
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] src: Support maps as left side expressions
- From: Brett Mastbergen <bmastbergen@xxxxxxxxxxxx>
- [PATCH] bridge:fragmented packets dropped by bridge
- From: Rundong Ge <rdong.ge@xxxxxxxxx>
- Re: [PATCH nft] scanner: don't rely on fseek for input stream repositioning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches for the nf tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ebtables: also count base chain policies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_bitwise: add offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net v2] ipvs: Improve robustness to the ipvs sysctl
- From: hujunwei <hujunwei4@xxxxxxxxxx>
- Re: [PATCH net] ipvs: Improve robustness to the ipvs sysctl
- From: hujunwei <hujunwei4@xxxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net] ipvs: Improve robustness to the ipvs sysctl
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 0/3] ipset patches for the nf tree
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: Fix rename concurrency with listing
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipset: Copy the right MAC address in bitmap:ip,mac and hash:ip,mac sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [net-next 1/2] ipvs: batch __ip_vs_cleanup
- From: Julian Anastasov <ja@xxxxxx>
- [ANNOUNCE] ipset 7.3 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: Actually allow destination MAC address for hash:ip,mac sets too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: ebtables: also count base chain policies
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] ipvs: Improve robustness to the ipvs sysctl
- From: hujunwei <hujunwei4@xxxxxxxxxx>
- Re: [PATCH nft] src: Support maps as left side expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: Support maps as left side expressions
- From: Brett Mastbergen <bmastbergen@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: add include guard to xt_connlabel.h
- From: Masahiro Yamada <yamada.masahiro@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2] xtables: Drop support for /etc/xtables.conf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 1/2] nft: Set errno in nft_rule_flush()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add include guard to xt_connlabel.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v4 1/3] flow_offload: move tc indirect block to flow offload
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net-next v4 1/3] flow_offload: move tc indirect block to flow offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v4 1/3] flow_offload: move tc indirect block to flow offload
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net-next v4 1/3] flow_offload: move tc indirect block to flow offload
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH] netfilter: nfacct: Fix alignment mismatch in xt_nfacct_match_info
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nfacct: Fix alignment mismatch in xt_nfacct_match_info
- From: Juliana Rodrigueiro <juliana.rodrigueiro@xxxxxxxxxxxxx>
- Re: memory leak in __nf_hook_entries_try_shrink
- From: syzbot <syzbot+c51f73e78e7e2ce3a31e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_table_offload: Fix zero prio of flow_cls_common_offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: memory leak in bio_copy_user_iov
- From: Bob Liu <bob.liu@xxxxxxxxxx>
- Re: [PATCH net] ipvs: Improve robustness to the ipvs sysctl
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: memory leak in bio_copy_user_iov
- From: syzbot <syzbot+03e5c8ebd22cc6c3a8cb@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH iptables v2]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: add include guard to xt_connlabel.h
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: memory leak in fdb_create
- From: Nikolay Aleksandrov <nikolay@xxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: add include guard to xt_connlabel.h
- From: Masahiro Yamada <yamada.masahiro@xxxxxxxxxxxxx>
- Re: memory leak in fdb_create
- From: syzbot <syzbot+88533dc8b582309bf3ee@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH net-next v4 1/3] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v4 3/3] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next v4 2/3] flow_offload: Support get default block from tc immediately
- [PATCH net-next v4 0/3] flow_offload: add indr-block in nf_table_offload
- Re: [PATCHv2] Fix dumping vlan rules
- From: michael-dev@xxxxxxxxxxxxx
- Re: [PATCH nf] netfilter: conntrack: always store window size un-scaled
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3 1/3] flow_offload: move tc indirect block to flow offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v3 2/3] flow_offload: support get tcf block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next v3 1/3] flow_offload: move tc indirect block to flow offload
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3 2/3] flow_offload: support get tcf block immediately
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- [PATCH net-next v3 1/3] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v3 3/3] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next v3 2/3] flow_offload: support get tcf block immediately
- [PATCH net-next v3 0/3] flow_offload: add indr-block in nf_table_offload
- Re: [PATCH net-next v2 1/3] flow_offload: move tc indirect block to flow offload
- From: Vlad Buslov <vladbu@xxxxxxxxxxxx>
- Re: vrf and flowtable problems
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH iptables]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Adel Belhouane <bugs.a.b@xxxxxxx>
- [PATCH iptables v2]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Adel Belhouane <bugs.a.b@xxxxxxx>
- [PATCH net-next v2 1/3] flow_offload: move tc indirect block to flow offload
- [PATCH net-next v2 2/3] flow_offload: Support get tcf block immediately
- [PATCH net-next v2 0/3] flow_offload: add indr-block in nf_table_offload
- [PATCH net-next v2 3/3] netfilter: nf_tables_offload: support indr block call
- Re: memory leak in dma_buf_ioctl
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: memory leak in dma_buf_ioctl
- From: syzbot <syzbot+b2098bc44728a4efb3e9@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft,v1 2/2] src: add tunnel expression support
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload
- From: Jakub Kicinski <jakub.kicinski@xxxxxxxxxxxxx>
- [iptables PATCH 2/2] xtables: Drop support for /etc/xtables.conf
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] nft: Set errno in nft_rule_flush()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next v2 11/11] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next v2 10/11] netfilter: nft_objref: add nft_objref_type offload
- Re: [PATCH nf-next v6 0/8] netfilter: nf_flow_offload: support bridge family offload for both ipv4 and ipv6
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf-next v2 03/11] netfilter: nf_tables_offload: split nft_offload_reg to match and action type
- [PATCH nf-next v2 06/11] netfilter: nft_payload: add nft_set_payload offload support
- [PATCH nf-next v2 05/11] netfilter: nft_fwd_netdev: add fw_netdev action support
- [PATCH nf-next v2 09/11] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next v2 08/11] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next v2 07/11] netfilter: nft_tunnel: support NFT_TUNNEL_SRC/DST_IP match
- [PATCH nf-next v2 02/11] netfilter: nf_tables_offload: add offload_actions callback
- [PATCH nf-next v2 00/11] netfilter: nf_tables_offload: support more expr and obj offload
- [PATCH nf-next v2 01/11] netfilter: nf_flow_offload: add net in offload_ctx
- [PATCH nf-next v2 04/11] netfilter: nft_immediate: add offload support for actions
- Re: nftables feature request: modify set element timeout
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH 1/2 nft] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v6 3/8] netfilter:nf_flow_table_ip: Separate inet operation to single function
- [PATCH nf-next v6 8/8] netfilter: Support the bridge family in flow table
- [PATCH nf-next v6 6/8] netfilter:nf_flow_table_ip: Support bridge family flow offload
- [PATCH nf-next v6 5/8] netfilter:nf_flow_table_core: Support bridge family flow offload
- [PATCH nf-next v6 7/8] netfilter:nft_flow_offload: Support bridge family flow offload
- [PATCH nf-next v6 4/8] bridge: add br_vlan_get_info_rcu()
- [PATCH nf-next v6 0/8] netfilter: nf_flow_offload: support bridge family offload for both ipv4 and ipv6
- [PATCH nf-next v6 1/8] netfilter:nf_flow_table: Refactor flow_offload_tuple to destination
- [PATCH nf-next v6 2/8] netfilter:nf_flow_table_core: Separate inet operation to single function
- Re: [PATCH net-next 2/3] flow_offload: Support get tcf block immediately
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH iptables]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH 2/2 nft] src: allow variable in chain policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v2 0/5] sipport nft_tunnel offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: vrf and flowtable problems
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next 3/5] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next 2/7] netfilter: nf_tables_offload: add offload_actions callback
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH 2/2 nft] src: allow variable in chain policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_table_offload: Add rtnl for chain and rule operations
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH iptables]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 1/2 nft] src: allow variables in the chain priority specification
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 2/3] flow_offload: Support get tcf block immediately
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 0/5] sipport nft_tunnel offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/5] sipport nft_tunnel offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/5] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/7] netfilter: nf_tables_offload: add offload_actions callback
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/7] netfilter: nft_table_offload: Add rtnl for chain and rule operations
- From: Florian Westphal <fw@xxxxxxxxx>
- vrf and flowtable problems
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/3] netfilter: nf_tables_offload: support indr block call
- [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload
- [PATCH net-next 2/3] flow_offload: Support get tcf block immediately
- Re: [PATCH nf-next 3/7] netfilter: nft_table_offload: Add rtnl for chain and rule operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 3/5] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next v2 4/5] netfilter: nft_objref: add nft_objref_type offload
- [PATCH nf-next v2 2/5] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next v2 5/5] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next v2 1/5] netfilter: nft_tunnel: support NFT_TUNNEL_SRC/DST_IP match
- [PATCH nf-next v2 0/5] sipport nft_tunnel offload
- Re: [PATCH iptables v2] nfnl_osf: fix snprintf -Wformat-truncation warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nft_tunnel: Fix don't convert tun id to host endian
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter:nft_meta: add NFT_META_VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 2/2] src: add tunnel expression support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v1 1/2] src: add tunnel support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: Signed-off-by missing for commit in the netfilter tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nft_tunnel: Fix don't convert tun id to host endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: nft_tunnel: Fix don't convert tun id to host endian
- Re: [PATCH nf] netfilter: nft_tunnel: Fix convert tunnel id to host endian
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_tunnel: Fix convert tunnel id to host endian
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [v2 net-next] ipvs: reduce kernel stack usage
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf-next 3/5] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
- [PATCH nf-next 4/5] netfilter: nft_objref: add nft_objref_type offload
- [PATCH nf-next 2/5] netfilter: nft_tunnel: support tunnel meta match offload
- [PATCH nf-next 5/5] netfilter: nft_tunnel: support nft_tunnel_obj offload
- [PATCH nf-next 1/5] netfilter: nft_tunnel: support NFT_TUNNEL_SRC/DST_IP match
- [PATCH nf-next 0/5] sipport nft_tunnel offload
- Re: [PATCH net-next] netfilter: nf_table_offload: Fix zero prio of flow_cls_common_offload
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_table_offload: Fix zero prio of flow_cls_common_offload
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_table_offload: Fix zero prio of flow_cls_common_offload
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: linux-next: Signed-off-by missing for commit in the netfilter tree
- From: Phil Sutter <phil@xxxxxx>
- linux-next: Signed-off-by missing for commit in the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- [PATCH iptables]: restore legacy behaviour of iptables-restore when rules start with -4/-6
- From: Adel Belhouane <bugs.a.b@xxxxxxx>
- [PATCH] netfilter: trivial: remove extraneous space from message
- From: Rui Salvaterra <rsalvaterra@xxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 2/2] net: netfilter: nft_meta_bridge: Eliminate 'out' label
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_tunnel: Fix convert tunnel id to host endian
- Re: [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables v2] nfnl_osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables] nfnl_osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH iptables] nfnl_osf: fix snprintf -Wformat-truncation warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: Sync comments with current expr definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2 00/11] Larger xtables-save review
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: Sync comments with current expr definition
- From: Brett Mastbergen <bmastbergen@xxxxxxxxxxxx>
- [iptables PATCH 2/2] doc: Install ip{6,}tables-restore-translate.8 man pages
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] doc: Install nft-variant man pages only if enabled
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Phil Sutter <phil@xxxxxx>
- Re: ct state vmap (nft noob question)
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: add NFT_CACHE_UPDATE and NFT_CACHE_FLUSHED flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 2/2] net: netfilter: nft_meta_bridge: Eliminate 'out' label
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/2] parser_bison: Fix for deprecated statements
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/2] src: Call bison with -Wno-yacc to silence warnings
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next 6/7] netfilter: nft_fwd_netdev: add fw_netdev action support
- [PATCH nf-next 1/7] netfilter: nf_flow_offload: add net in offload_ctx
- [PATCH nf-next 5/7] netfilter: nft_immediate: add offload support for actions
- [PATCH nf-next 7/7] netfilter: nft_payload: add nft_set_payload offload support
- [PATCH nf-next 4/7] netfilter: nf_tables_offload: split nft_offload_reg to match and action type
- [PATCH nf-next 3/7] netfilter: nft_table_offload: Add rtnl for chain and rule operations
- [PATCH nf-next 2/7] netfilter: nf_tables_offload: add offload_actions callback
- [PATCH nf-next 0/7] netfilter: nf_tables_offload: support more actions
- [PATCH net-next] netfilter: conntrack: use shared sysctl constants
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH nft v2 0/2] netlink_ctx initialization fixes.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrackd: cthelper: Add new SLP helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables feature request: modify set element timeout
- From: Fran Fitzpatrick <francis.x.fitzpatrick@xxxxxxxxx>
- Re: [PATCH nft v3] src: osf: fix snprintf -Wformat-truncation warning
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2 nft v2] src: allow variable in chain policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft v2] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 0/2 nft v2] Introduce variables in chain priority and policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: memleak when using "nft -f"
- From: Phil Sutter <phil@xxxxxx>
- Re: memleak when using "nft -f"
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v3] src: osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- memleak when using "nft -f"
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/2 nft] src: allow variable in chain policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 0/2 nft] Introduce variables in chain priority and policy
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: ebtables: compat: fix a memory leak bug
- From: Wenwen Wang <wenwen@xxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH v2 00/11] Larger xtables-save review
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: missing location for chain nested in table definition
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] src: evaluate: support prefix expression in statements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ebtables: compat: fix a memory leak bug
- From: "Liam R. Howlett" <Liam.Howlett@xxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3] netfilter: synproxy: erroneous TCP mss option fixed.
- From: Ibrahim Ercan <ibrahim.ercan@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v2] src: evaluate: support prefix expression in statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] evaluate: missing location for chain nested in table definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] [v2 net-next] ipvs: reduce kernel stack usage
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH 4/4] ipvs: reduce kernel stack usage
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [iptables PATCH v2 05/11] nft: Make nft_for_each_table() more versatile
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 09/11] xtables-save: Pass format flags to do_output()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 06/11] xtables-save: Avoid mixed code and declarations
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 10/11] arptables-save: Merge into xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 03/11] xtables-save: Unify *-save header/footer comments
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 4/4] ipvs: reduce kernel stack usage
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [iptables PATCH v2 11/11] ebtables-save: Merge into xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 02/11] ebtables-save: Fix counter formatting
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 00/11] Larger xtables-save review
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 07/11] xtables-save: Pass optstring/longopts to xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 01/11] ebtables: Fix error message for invalid parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 08/11] xtables-save: Make COMMIT line optional
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 04/11] xtables-save: Fix table compatibility check
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft v2] src: evaluate: support prefix expression in statements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: evaluate: support prefix expression in statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: synproxy: erroneous TCP mss option fixed.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: synproxy: erroneous TCP mss option fixed.
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- [PATCH iptables] nfnl_osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v2] src: osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] netfilter: ebtables: compat: fix a memory leak bug
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 00/12] Larger xtables-save review
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 03/12] xtables-save: Use argv[0] as program name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: evaluate: support prefix expression in statements
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] doc: fib: explain example in more detail
- From: Jones Desougi <jones.desougi+netfilter@xxxxxxxxx>
- Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft] doc: fib: explain example in more detail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] scanner: don't rely on fseek for input stream repositioning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] netfilter: ebtables: compat: fix a memory leak bug
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] src: evaluate: don't rely on global chain ctx for error reporting
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] src: erec: fall back to internal location if its null
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] fix crash bug during rule restore
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: WARNING in xt_compat_add_offset
- From: syzbot <syzbot+276ddebab3382bbf72db@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 00/12] Larger xtables-save review
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 03/12] xtables-save: Use argv[0] as program name
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 00/12] Larger xtables-save review
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/12] ebtables-save: Merge into xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/12] ebtables-save: Fix counter formatting
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/12] xtables-save: Unify *-save header/footer comments
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/12] xtables-save: Pass optstring/longopts to xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/12] ebtables: Fix error message for invalid parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/12] xtables-save: Pass format flags to do_output()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/12] xtables-save: Avoid mixed code and declarations
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/12] arptables-save: Merge into xtables_save_main()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/12] nft: Make nft_for_each_table() more versatile
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/12] xtables-save: Use argv[0] as program name
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/12] xtables-save: Fix table compatibility check
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: ebtables: compat: fix a memory leak bug
- From: Wenwen Wang <wang6495@xxxxxxx>
- Re: [PATCH nf,v5 0/4] flow_offload fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next,v2 2/3] net: flow_offload: rename tc_setup_cb_t to flow_setup_cb_t
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH ghak90 V6 03/10] audit: read container ID of a process
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: userspace conntrack helper and confirming the master conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/14] netfilter: bridge: make NF_TABLES_BRIDGE tristate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/14] netfilter: bridge: NF_CONNTRACK_BRIDGE does not depend on NF_TABLES_BRIDGE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/14] netfilter: nft_meta: skip EAGAIN if nft_meta_bridge is not a module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/14] netfilter: synproxy: fix rst sequence number mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/14] netfilter: nf_tables: Support auto-loading for inet nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/14] netfilter: nf_tables: don't fail when updating base chain policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/14] netfilter: synproxy: fix erroneous tcp mss option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/14] netfilter: nf_conntrack_sip: fix expectation clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/14] netfilter: nft_hash: fix symhash with modulus one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/14] netfilter: conntrack: always store window size un-scaled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/14] netfilter: Update obsolete comments referring to ip_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/14] netfilter: nf_tables: fix module autoload for redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/14] netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/14] netfilter: nfnetlink: avoid deadlock due to synchronous request_module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/14] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 4/4] net: flow_offload: add flow_block structure and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 3/4] net: flow_offload: rename tc_setup_cb_t to flow_setup_cb_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 2/4] net: flow_offload: remove netns parameter from flow_block_cb_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 1/4] net: openvswitch: rename flow_stats to sw_flow_stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v5 0/4] flow_offload fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH ghak90 V6 03/10] audit: read container ID of a process
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- [PATCH nft] src: allow variables in the chain priority specification
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/2] net: netfilter: nft_meta_bridge: Eliminate 'out' label
- From: Phil Sutter <phil@xxxxxx>
- [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 1/2] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v2 2/2] rule: removed duplicate member initializer.
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft v2 2/2] rule: removed duplicate member initializer.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 1/2] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/2] netlink_ctx initialization fixes.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nft] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net,v4 4/4] net: flow_offload: add flow_block structure and use it
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net,v4 1/4] net: openvswitch: rename flow_stats to sw_flow_stats
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH conntrack-tools] conntrackd: cthelper: Add new SLP helper
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH] [net-next] netfilter: bridge: make NF_TABLES_BRIDGE tristate
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] [net-next] netfilter: bridge: make NF_TABLES_BRIDGE tristate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net/netfilter: remove unnecessary spaces
- From: yangxingwu <xingwu.yang@xxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nft] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH net,v4 0/4] flow_offload fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net,v4 0/4] flow_offload fixes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] [net-next] netfilter: bridge: make NF_TABLES_BRIDGE tristate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nft_meta: Fix build error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3] netfilter: synproxy: fix rst sequence number mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net/netfilter: remove unnecessary spaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [net-next] netfilter: bridge: make NF_TABLES_BRIDGE tristate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: bridge: NF_CONNTRACK_BRIDGE does not depend on NF_TABLES_BRIDGE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nft_meta: skip EAGAIN if nft_meta_bridge is not a module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] net: nf_tables: Support auto-loading for inet nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] net: nf_tables: Make nft_meta expression more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] expr: meta: Make NFT_META_{I,O}IFKIND known
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] json: Fix memleak in timeout_policy_json()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v4 4/4] net: flow_offload: add flow_block structure and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v4 3/4] net: flow_offload: rename tc_setup_cb_t to flow_setup_cb_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v4 2/4] net: flow_offload: remove netns parameter from flow_block_cb_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v4 1/4] net: openvswitch: rename flow_stats to sw_flow_stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v4 0/4] flow_offload fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: support for element deletion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_dynset: support for element deletion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables-save: Use argv[0] as program name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] json: Fix memleak in timeout_policy_json()
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] xtables-save: Use argv[0] as program name
- From: Phil Sutter <phil@xxxxxx>
- Re: json_cmd_assoc and cmd
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [iptables PATCH] xtables-save: Use argv[0] as program name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: json_cmd_assoc and cmd
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next 1/2] ipvs: batch __ip_vs_cleanup
- From: Haishuang Yan <yanhaishuang@xxxxxxxxxxxxxxxxxxxx>
- Re: json_cmd_assoc and cmd
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v5 1/3] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v5 1/3] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [iptables PATCH] xtables-save: Use argv[0] as program name
- From: Phil Sutter <phil@xxxxxx>
- Re: json_cmd_assoc and cmd
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [RFC net] net: generate icmp redirects after netfilter forward hook
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: userspace conntrack helper and confirming the master conntrack
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH nft] include: json: add missing synproxy stmt print stub
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft] include: json: add missing synproxy stmt print stub
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] include: json: add missing synproxy stmt print stub
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: userspace conntrack helper and confirming the master conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]