Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH nf-next v2 2/2] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: Use of oifname in input chains
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 04/12] net: sched: add tcf_block_setup()
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: Question about nf_conntrack_proto for IPsec
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v6] netfilter: nf_tables: Add SYNPROXY support
- From: Florian Westphal <fw@xxxxxxxxx>
- Question about nf_conntrack_proto for IPsec
- From: Naruto Nguyen <narutonguyen2018@xxxxxxxxx>
- [PATCH nf-next v6] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: Use of oifname in input chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Use of oifname in input chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v5] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: Use of oifname in input chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Use of oifname in input chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3 nf-next] netfilter:nf_flow_table: Refactor flow_offload_tuple to support more offload method
- [PATCH 3/3 nf-next] netfilter: Flow table support for the bridge family
- [PATCH 2/3 nf-next] netfilter:nf_flow_table: Support bridge type flow offload
- Re: Use of oifname in input chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: Fix regression in conntrack entry deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: ctnetlink: Fix regression in conntrack entry deletion
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- Re: [PATCH 00/26] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Use of oifname in input chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: 4.19: Traced deadlock during xfrm_user module load
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- [PATCH] ipvs: allow tunneling with gre encapsulation
- From: Vadim Fedorenko <vfedorenko@xxxxxxxxxxxxxx>
- 4.19: Traced deadlock during xfrm_user module load
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- [PATCH nf-next v4] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake
- From: linmiaohe <linmiaohe@xxxxxxxxxx>
- Re: [PATCH net-next 04/12] net: sched: add tcf_block_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 11/12] net: flow_offload: don't allow block sharing until drivers support this
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 11/12] net: flow_offload: don't allow block sharing until drivers support this
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] build: avoid unnecessary call to xargs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] build: avoid recursion into py/ if not selected
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] build: unbreak non-functionality of --disable-python
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] daemons: review owner and permissions on PF_LOCAL sockets
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/3] build: avoid unnecessary call to xargs
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/3] build: avoid recursion into py/ if not selected
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/3] build: unbreak non-functionality of --disable-python
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/3] msr: remove msr as it has moved to its own tree
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/3] libserver: fix incorrect warning message on resolveUserStore
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/3] daemons: review owner and permissions on PF_LOCAL sockets
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH v2] netfilter: synproxy: erroneous TCP mss option fixed.
- From: Ibrahim Ercan <ibrahim.ercan@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- [PATCH RESEND nftables v3] exthdr: doc: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH net] ipvs: defer hook registration to avoid leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] meta: hour: Fix integer overflow error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: erroneous TCP mss option fixed.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/2] Improve a few minor JSON glitches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/26] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/26] netfilter: ipset: merge uadd and udel functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/26] netfilter: ipset: Fix error path in set_target_v3_checkentry()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] build: unbreak non-functionality of --disable-python
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/26] netfilter: ipset: remove useless memset() calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/26] netfilter: ipset: fix a missing check of nla_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/26] ipset: Fix memory accounting for hash types on resize
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/26] netfilter: xt_owner: bail out with EINVAL in case of unsupported flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/26] netfilter: bridge: port sysctls to use brnf_net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/26] netfilter: synproxy: add common uapi for SYNPROXY infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/26] netfilter: synproxy: remove module dependency on IPv6 SYNPROXY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/26] netfilter: conntrack: small conntrack lookup optimization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/26] netfilter: nft_ct: add ct expectations support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/26] Update my email address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/26] netfilter: synproxy: fix building syncookie calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/26] netfilter: nft_ct: fix null pointer in ct expectations support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/26] netfilter: bridge: namespace bridge netfilter sysctls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/26] netfilter: nf_tables: enable set expiration time for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/26] netfilter: synproxy: use nf_cookie_v6_check() from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/26] netfilter: synproxy: ensure zero is returned on non-error return path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/26] netfilter: synproxy: fix manual bump of the reference counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/26] netfilter: fix nf_conntrack_bridge/ipv6 link error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/26] netfilter: bridge: prevent UAF in brnf_exit_net()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/26] netfilter: nf_tables: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/26] netfilter: bridge: Fix non-untagged fragment packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/26] netfilter: synproxy: extract SYNPROXY infrastructure from {ipt, ip6t}_SYNPROXY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/26] netfilter: ipset: Fix the last missing check of nla_parse_deprecated()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/26] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] build: avoid unnecessary call to xargs
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/3] build: unbreak non-functionality of --disable-python
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/3] build: avoid recursion into py/ if not selected
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [nf-next:master 9/20] net/ipv6/netfilter.c:237:26: error: '__cookie_v6_init_sequence' undeclared here (not in a function); did you mean 'cookie_init_sequence'?
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nftables v3] exthdr: doc: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH libnftnl v2] src: libnftnl: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- [nft PATCH 2/2] main: Bail if non-available JSON was requested
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/2] Improve a few minor JSON glitches
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/2] json: Print newline at end of list output
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] nftables 0.9.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v2] parser_bison: Accept arbitrary user-defined names by quoting
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] parser_bison: Accept arbitrary user-defined names by quoting
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well
- From: Phil Sutter <phil@xxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] ipset: Copy the right MAC address in bitmap:ip,mac and hash:ip,mac sets
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH 1/2] ipset: Actually allow destination MAC address for hash:ip,mac sets too
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH 0/2] ipset: Two fixes for destination MAC address matches in ip,mac types
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: erroneous TCP mss option fixed.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: synproxy: erroneous TCP mss option fixed.
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: linux-next: manual merge of the netfilter-next tree with Linus' tree
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH 08/13] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Felix Kaechele <felix@xxxxxxxxxxx>
- [PATCH] netfilter: Fix remainder of pseudo-header protocol 0
- From: <zhe.he@xxxxxxxxxxxxx>
- linux-next: manual merge of the netfilter-next tree with Linus' tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH] nft_meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nf_tables: Add SYNPROXY support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 1/2] meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH 2/2] meta: hour: Fix integer overflow error
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH] nft_meta: Introduce new conditions 'time', 'day' and 'hour'
- From: Ander Juaristi <a@xxxxxxxxxxxx>
- [PATCH nft v2] src: introduce SYNPROXY matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v3] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v9] tests: py: add netns feature
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH net-next 04/12] net: sched: add tcf_block_setup()
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH nft,v2] ct: support for NFT_CT_{SRC,DST}_{IP,IP6}
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft,v2] ct: support for NFT_CT_{SRC,DST}_{IP,IP6}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] ct: support for NFT_CT_{SRC,DST}_{IP,IP6}
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft,v2] ct: support for NFT_CT_{SRC,DST}_{IP,IP6}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 08/12] net: cls_api: do not expose tcf_block to drivers
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH libnftnl v2] src: libnftnl: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] src: enable set expiration date for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: defer hook registration to avoid leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: rename nf_SYNPROXY.h to nf_synproxy.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: synproxy: fix manual bump of the reference counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix nf_conntrack_bridge/ipv6 link error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 10/12] net: flow_offload: add flow_block_cb API
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net-next 00/12] netfilter: add hardware offload infrastructure
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] ct: support for NFT_CT_{SRC,DST}_{IP,IP6}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: Next 20190620: fails to compile in netfilter on x86-32
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Next 20190620: fails to compile in netfilter on x86-32
- From: Pavel Machek <pavel@xxxxxx>
- Re: [PATCH v2 20/29] docs: leds: convert to ReST
- From: Pavel Machek <pavel@xxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: Yuehaibing <yuehaibing@xxxxxxxxxx>
- Re: nft ct original oddity
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 01/12] net: sched: move tcf_block_cb before indr_block
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/12] netfilter: nf_tables: add hardware offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/12] net: flow_offload: add flow_block_cb API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/12] net: sched: add tcf_block_cb_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/12] net: cls_api: do not expose tcf_block to drivers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/12] net: sched: add release callback to struct tcf_block_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/12] net: sched: add tcf_block_cb_free()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/12] net: flow_offload: don't allow block sharing until drivers support this
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/12] net: use tcf_block_setup() infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/12] net: sched: remove tcf_block_cb_{register,unregister}()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/12] net: sched: add tcf_setup_block_offload()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/12] net: sched: add tcf_block_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/12] netfilter: add hardware offload infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: synproxy: fix manual bump of the reference counter
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v9]tests: py: fix pyhton3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v5] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: Yuehaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH nft v9]tests: py: fix pyhton3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the netfilter-next tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- linux-next: build failure after merge of the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: defer hook registration to avoid leaks
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nfnext v4] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: fix tinfo memory leak in start_sync_thread
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nftables v2] exthdr: doc: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- [PATCH libnftnl v2] src: libnftnl: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- [PATCH nfnext v4] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH iptables v3]iptables-test.py : fix python3.
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] br_netfilter: prevent UAF in brnf_exit_net()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: fix building syncookie calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] meta: add brpvid support
- [PATCH nft 2/2] meta: add brvlan support
- Re: [PATCH 1/2 nf-next] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support
- [nf-next:master 9/13] include/linux/netfilter_ipv6.h:174:9: error: implicit declaration of function '__cookie_v6_init_sequence'; did you mean 'cookie_init_sequence'?
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: fix building syncookie calls
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- [PATCH nft v9]tests: py: fix pyhton3
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft] src: introduce SYNPROXY matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH libnftnl] expr: add synproxy support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: fix building syncookie calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] src: prefer meta protocol as bridge l3 dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] src: statement: disable reject statement type omission for bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] netlink_delinerize: remove network header dep for reject statement also in bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v1] netfilter: nft_ct: fix null pointer in ct expectations support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 nf-next] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] br_netfilter: prevent UAF in brnf_exit_net()
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH 1/2 nf-next] netfilter: nft_meta: add NFT_META_BRI_PVID support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: synproxy: use nf_cookie_v6_check() from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: synproxy: fix nf_synproxy_ipv{4,6}_init() return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- KASAN: use-after-free Read in brnf_exit_net
- From: syzbot <syzbot+43a3fa52c0d9c5c94f41@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet
- [PATCH nft] tests: py: replace calls to cmp()
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft] tests: py: use tempfile module
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH] netfilter: synproxy: fix building syncookie calls
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH] netfilter: synproxy: fix nf_synproxy_ipv{4,6}_init() return code
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nft] nft-test.py: use tempfile module
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: netfilter fix for -stable 5.1.x
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v5] extensions: libxt_owner: Add supplementary groups option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v4 0/2] add ct expectation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: enable set expiration time for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH][V2][next] netfilter: synproxy: ensure zero is returned on non-error return path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] nft-test.py: use tempfile module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake
- From: linmiaohe <linmiaohe@xxxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: nft ct original oddity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf-next] netfilter: nft_meta: Add NFT_META_BRI_VLAN support
- [PATCH 1/2 nf-next] netfilter: nft_meta: add NFT_META_BRI_PVID support
- [PATCH nf-next v1] netfilter: nft_ct: fix null pointer in ct expectations support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Re: nft ct original oddity
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: add nft_bridge_pvid to tag the default pvid for non-tagged packet
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH v2 20/29] docs: leds: convert to ReST
- From: Mauro Carvalho Chehab <mchehab+samsung@xxxxxxxxxx>
- [PATCH net] ipvs: fix tinfo memory leak in start_sync_thread
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nft 3/3] src: prefer meta protocol as bridge l3 dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] src: statement: disable reject statement type omission for bridge
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] netlink_delinerize: remove network header dep for reject statement also in bridge family
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] use skb->protocol as l3 protocol dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH nft] nft-test.py: use tempfile module
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft] nft-test.py: use tempfile module
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix IPV6 dependency
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix IPV6 dependency
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v8]tests: py: add netns feature
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v8]tests: py: add netns feature
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft] rule: do not suggest anonymous sets on mispelling errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: add nft_bridge_pvid to tag the default pvid for non-tagged packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2,v3] evaluate: do not allow to list/flush anonymous sets via list command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v8]tests: py: add netns feature
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft,v2 2/2] evaluate: do not allow to list/flush anonymous sets via list command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/2] evaluate: allow get/list/flush dynamic sets and maps via list command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: do not allow to list anonymous sets via list command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v7 1/2]tests:py: conversion to python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: wenxu <wenxu@xxxxxxxxx>
- [PATCH][V2][next] netfilter: synproxy: ensure zero is returned on non-error return path
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [PATCH][next] netfilter: synproxy: ensure zero is returned on non-error return path
- From: Colin Ian King <colin.king@xxxxxxxxxxxxx>
- [PATCH][next] netfilter: synproxy: ensure zero is returned on non-error return path
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Florian Westphal <fw@xxxxxxxxx>
- re: netfilter: nft_ct: add ct expectations support
- From: Colin Ian King <colin.king@xxxxxxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: allow get/list/flush dynamic sets and maps via list command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Is this possible SYN Proxy bug?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Is this possible SYN Proxy bug?
- From: İbrahim Ercan <ibrahim.metu@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers
- From: Igor Ryzhov <iryzhov@xxxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 nf-next] netfilter: enable set expiration time for set elements
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- netfilter fix for -stable 5.1.x
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: ipv6: fix CONFIG_SYN_COOKIES=n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: enable set expiration date for set elements
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH nf-next] src: enable set expiration date for set elements
- From: Laura Garcia <nevola@xxxxxxxxx>
- [PATCH v7] netfilter: nf_conntrack_sip: fix expectation clash
- From: xiao ruizhu <katrina.xiaorz@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: wenxu <wenxu@xxxxxxxxx>
- [nf-next:master 9/10] net/ipv6/netfilter.c:237:26: error: '__cookie_v6_init_sequence' undeclared here (not in a function); did you mean 'cookie_init_sequence'?
- From: kbuild test robot <lkp@xxxxxxxxx>
- [nf-next:master 9/10] include/linux/netfilter_ipv6.h:174:9: error: implicit declaration of function '__cookie_v6_init_sequence'; did you mean 'cookie_init_sequence'?
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 2/3] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 3/3] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nf_tables: fix module autoload with inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v6] netfilter: nf_conntrack_sip: fix expectation clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] src: enable set expiration date for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Phil Sutter <phil@xxxxxx>
- Re: [netfilter-core] [sparc64] possible circular locking / deadlock
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [netfilter-core] [sparc64] possible circular locking / deadlock
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [netfilter-core] [sparc64] possible circular locking / deadlock
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nft,v2 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5,v3] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft,v2 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 5/5] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 4/5] netlink: remove netlink_list_table()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 3/5] rule: skip cache population from do_command_monitor()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/5] src: remove useless parameter from cache_flush()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: enable set expiration date for set elements
- From: nevola <nevola@xxxxxxxxx>
- [PATCH libnftnl] src: enable set expiration date for set elements
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf-next] src: enable set expiration date for set elements
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 3/5] src: add cache level flags
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] [sparc64] possible circular locking / deadlock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] [sparc64] possible circular locking / deadlock
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [sparc64] possible circular locking / deadlock
- From: Anatoly Pugachev <matorola@xxxxxxxxx>
- Re: [PATCH nft v2] datatype: fix print of raw numerical symbol values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v8]tests: py: add netns feature
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nf-next v5] netfilter: nft_ct: add ct expectations support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/3] Extract SYNPROXY infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v7 2/2]tests:py: add netns feature
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: small conntrack lookup optimization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2 0/2] br_netfilter: enable in non-initial netns
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: fix nf_conntrack_bridge/ipv6 link error
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5] netlink: remove netlink_list_table()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] src: add cache level flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/5] rule: skip cache population from do_command_monitor()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/5] tests: shell: cannot use handle for non-existing rule in kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/5] src: remove useless parameter from cache_flush()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft WIP] src: introduce SYNPROXY matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft WIP] src: introduce SYNPROXY matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next WIP] netfilter: nf_tables: Add SYNPROXY support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH libnftnl WIP] expr: add synproxy support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nft v2] datatype: fix print of raw numerical symbol values
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] datatype: fix print of raw numerical symbol values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- working with libnetfilter_queue and linbetfilter_contrack
- From: Mojtaba <mespio@xxxxxxxxx>
- Re: [PATCH nft] datatype: fix print of raw numerical symbol values
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] datatype: fix print of raw numerical symbol values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: fix print of raw numerical symbol values
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables v4 0/1] add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH net-next] netfilter: bridge: add nft_bridge_pvid to tag the default pvid for non-tagged packet
- [PATCH WIP v1]tests: Makefile.am (Work in Progress)
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft v7 2/2]tests:py: add netns feature
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft v7 1/2]tests:py: conversion to python3
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: do not populate the cache in case of flush ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables v2]iptables-test: fix python3
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft 2/2] evaluate: double datatype_free() with dynamic integer datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] evaluate: update byteorder only for implicit maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: use-after-free in meter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- memory leak in __nf_hook_entries_try_shrink
- From: syzbot <syzbot+c51f73e78e7e2ce3a31e@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] netlink_delinearize: use-after-free in expr_postprocess_string()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] netlink_delinearize: use-after-free in expr_postprocess_string()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] monitor: Accept -j flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables release
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v1 22/31] docs: leds: convert to ReST
- From: Mauro Carvalho Chehab <mchehab+samsung@xxxxxxxxxx>
- [PATCH 1/2 nft,v4] src: add reference counter for dynamic datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nft,v2] datatype: dtype_clone() should clone flags too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables v1] iptables-test: fix python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v6 2/2]tests: py: add netns feature
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v6 1/2]tests: py: conversion to python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- [nft PATCH] monitor: Accept -j flag
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft 1/3,v3] src: add reference counter for dynamic datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] datatype: dtype_clone() should clone flags too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] datatype: add datatype_set()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH iptables v1] iptables-test: fix python3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v6 2/2]tests: py: add netns feature
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nft v6 1/2]tests: py: conversion to python3
- From: shekhar sharma <shekhar250198@xxxxxxxxx>
- Re: mmotm 2019-06-11-16-59 uploaded (nf_conntrack_bridge)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: memory leak in start_sync_thread
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH iptables v1] iptables-test: fix python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH nft v6 2/2]tests: py: add netns feature
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft,v2] src: add reference counter for dynamic datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add reference counter for dynamic datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] src: add reference counter for dynamic datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v6 1/2]tests: py: conversion to python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH RESEND nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- 答复: [PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake
- From: linmiaohe <linmiaohe@xxxxxxxxxx>
- [PATCH v6] netfilter: nf_conntrack_sip: fix expectation clash
- From: xiao ruizhu <katrina.xiaorz@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: wenxu <wenxu@xxxxxxxxx>
- Re: memory leak in start_sync_thread
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- [PATCH net-next v2 0/2] br_netfilter: enable in non-initial netns
- From: Christian Brauner <christian@xxxxxxxxxx>
- [PATCH net-next v2 2/2] br_netfilter: namespace bridge netfilter sysctls
- From: Christian Brauner <christian@xxxxxxxxxx>
- [PATCH net-next v2 1/2] br_netfilter: port sysctls to use brnf_net
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH net-next v1 1/1] br_netfilter: namespace bridge netfilter sysctls
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH v5] netfilter: nf_conntrack_sip: fix expectation clash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v1 1/1] br_netfilter: namespace bridge netfilter sysctls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser_bison: free chain name after creating constant expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] netlink_delinearize: release expression before calling netlink_parse_concat_expr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] netlink_delinearize: release expressions in context registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] ipset 7.2 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] Update my email address
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: ipset: Fix error path in set_target_v3_checkentry()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: ipset: fix a missing check of nla_parse
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: ipset: remove useless memset() calls
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/7] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: merge uadd and udel functions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 6/7] ipset: Fix memory accounting for hash types on resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: ipset: Fix the last missing check of nla_parse_deprecated()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft] expression: use expr_clone() from verdict_expr_clone()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: invalid read when importing chain name (trace and json)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: invalid read when importing chain name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v5] extensions: libxt_owner: Add supplementary groups option
- From: Lukasz Pawelczyk <l.pawelczyk@xxxxxxxxxxx>
- Re: [PATCH v4] extensions: libxt_owner: Add supplementary groups option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4] extensions: libxt_owner: Add supplementary groups option
- From: Lukasz Pawelczyk <l.pawelczyk@xxxxxxxxxxx>
- [PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG
- Re: [iptables PATCH] xtables-restore: Fix program names in help texts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v6 2/2]tests: py: add netns feature
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH nft v6 1/2]tests: py: conversion to python3
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- [PATCH net-next v1 1/1] br_netfilter: namespace bridge netfilter sysctls
- From: Christian Brauner <christian@xxxxxxxxxx>
- [PATCH net-next v1 0/1] br_netfilter: enable in non-initial netns
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Christian Brauner <christian@xxxxxxxxxx>
- [iptables PATCH] xtables-restore: Fix program names in help texts
- From: Phil Sutter <phil@xxxxxx>
- [PATCH AUTOSEL 5.1 09/70] netfilter: nf_tables: fix oops during rule dump
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 12/70] netfilter: nft_fib: Fix existence check support
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 13/70] ipvs: Fix use-after-free in ip_vs_in
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 15/70] netfilter: nat: fix udp checksum corruption
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 03/31] netfilter: nf_queue: fix reinject verdict handling
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.14 04/31] ipvs: Fix use-after-free in ip_vs_in
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 05/49] netfilter: nf_queue: fix reinject verdict handling
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 06/49] ipvs: Fix use-after-free in ip_vs_in
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 11/70] netfilter: nf_queue: fix reinject verdict handling
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [nft PATCH 0/4] Some fixes and minor improvements in tests/
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v6 0/5] Support intra-transaction rule references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 0/4] Some fixes and minor improvements in tests/
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/4] tests/shell: Fix warning from awk call
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/4] tests/shell: Print unified diffs in dump errors
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/4] tests/py: Fix JSON equivalents
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/4] tests/py: Add missing arp.t JSON equivalents
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 5/5] src: Support intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 2/5] tests/json_echo: Drop needless workaround
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 3/5] rule: Introduce rule_lookup_by_index()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 0/5] Support intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 1/5] cache: Fix evaluation for rules with index reference
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v6 4/5] src: Make cache_is_complete() public
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: xt_owner: bail out with EINVAL in case of unsupported flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] libnftables: check for errors after evaluations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: bogus error when running monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] libnftables: keep evaluating until parser_max_errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: use-after-free in implicit set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2,v2] rule: ensure cache consistency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: generation ID is 32-bit long
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v4 3/3] netfilter: synproxy: extract SYNPROXY infrastructure from {ipt,ip6t}_SYNPROXY
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v4 2/3] netfilter: synproxy: remove module dependency on IPv6 SYNPROXY
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v4 1/3] netfilter: synproxy: add common uapi for SYNPROXY infrastructure
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v4 0/3] Extract SYNPROXY infrastructure
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: How to use concatenation ipv4_addr . inet_proto . inet_service
- From: Vladimir Khailenko <vkhailenko@xxxxxxxxx>
- Re: How to use concatenation ipv4_addr . inet_proto . inet_service
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables v1] iptables-test: fix python3
- From: Shekhar Sharma <shekhar250198@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Guillaume Nault <gnault@xxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: ipv6: nf_defrag: accept duplicate fragments again
- From: Guillaume Nault <gnault@xxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH nft] rule: ensure cache consistency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RESEND net-next 1/2] br_netfilter: add struct netns_brnf
- From: Christian Brauner <christian@xxxxxxxxxx>
- [PATCH RESEND net-next 2/2] br_netfilter: namespace bridge netfilter sysctls
- From: Christian Brauner <christian@xxxxxxxxxx>
- [PATCH RESEND net-next 0/2] br_netfilter: enable in non-initial netns
- From: Christian Brauner <christian@xxxxxxxxxx>
- Re: [PATCH net-next v2] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [nft PATCH v5 00/10] Cache update fix && intra-transaction rule references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/4] split parse and evaluation phase to simplify cache logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v5 03/10] libnftables: Drop cache in error case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v5 01/10] src: Fix cache_flush() in cache_needs_more() logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4,v2] src: single cache_update() call to build cache before evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v5 00/10] Cache update fix && intra-transaction rule references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: bogus error when running monitor mode
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 4/4] src: single cache_update() call to build cache before evaluation
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v5 00/10] Cache update fix && intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] mnl: bogus error when running monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v4 0/2] add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers
- From: Igor Ryzhov <iryzhov@xxxxxxxxxx>
- [PATCH nft 3/4] src: Display parser and evaluate errors in one shot
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables v4 1/1] add ct expectations support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH nft 4/4] src: single cache_update() call to build cache before evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables v4 0/1] add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH nft 2/4] src: perform evaluation after parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] src: dynamic input_descriptor allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] split parse and evaluation phase to simplify cache logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v4 0/2] add ct expectation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v5 00/10] Cache update fix && intra-transaction rule references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v4 0/2] add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH net] ipvs: defer hook registration to avoid leaks
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipset: Fix memory accounting for hash types on resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- LPC 2019 Networking Track CFP
- From: David Miller <davem@xxxxxxxxxxxxx>
- [nft PATCH v5 06/10] src: Restore local entries after cache update
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 02/10] src: Utilize CMD_FLUSH for cache->cmd
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 03/10] libnftables: Drop cache in error case
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 04/10] libnftables: Keep list of commands in nft context
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 00/10] Cache update fix && intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 10/10] src: Support intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 07/10] rule: Introduce rule_lookup_by_index()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 08/10] src: Make cache_is_complete() public
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 05/10] src: Make {table,chain}_not_found() public
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 01/10] src: Fix cache_flush() in cache_needs_more() logic
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v5 09/10] include: Collect __stmt_binary_error() wrapper macros
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments
- From: Guillaume Nault <gnault@xxxxxxxxxx>
- Re: [PATCH net] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: small conntrack lookup optimization
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v5] netfilter: nf_conntrack_sip: fix expectation clash
- From: xiao ruizhu <katrina.xiaorz@xxxxxxxxx>
- Re: [nft PATCH v4 7/7] src: Support intra-transaction rule references
- From: Phil Sutter <phil@xxxxxx>
- Re: memory leak in nf_hook_entries_grow
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- memory leak in nf_hook_entries_grow
- From: syzbot <syzbot+722da59ccb264bc19910@xxxxxxxxxxxxxxxxxxxxxxxxx>
- WARNING: suspicious RCU usage in in_dev_dump_addr
- From: syzbot <syzbot+bad6e32808a3a97b1515@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH v4 7/7] src: Support intra-transaction rule references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V6] fixup! audit: add containerid filtering
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH net-next v2] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables release
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net-next v2] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v2] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- [PATCH] netfilter: ipv6: Fix undefined symbol nf_ct_frag6_gather
- [PATCH net] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments
- From: Guillaume Nault <gnault@xxxxxxxxxx>
- Re: [PATCH 00/15] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 07/15] netfilter: bridge: convert skb_make_writable to skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/15] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/15] netfilter: ipvs: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/15] netfilter: nf_flow_table: remove unnecessary variable in flow_offload_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/15] ipvs: add function to find tunnels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/15] netfilter: nf_tables: free base chain counters from worker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/15] ipvs: strip udp tunnel headers from icmp errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/15] netfilter: ipv4: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/15] netfilter: nf_tables: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/15] netfilter: tcpmss, optstrip: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/15] ipvs: add checksum support for gue encapsulation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/15] netfilter: replace skb_make_writable with skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/15] netfilter: conntrack, nat: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/15] netfilter: xt_HL: prefer skb_ensure_writable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/15] netfilter: xt_owner: Add supplementary groups option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/15] ipvs: allow rs_table to contain different real server types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- [PATCH AUTOSEL 5.1 070/186] netfilter: nf_conntrack_h323: restore boundary check correctness
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 069/186] netfilter: nf_flow_table: fix missing error check for rhashtable_insert_fast
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 066/186] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.0 061/173] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.0 064/173] netfilter: nf_flow_table: fix missing error check for rhashtable_insert_fast
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.0 065/173] netfilter: nf_conntrack_h323: restore boundary check correctness
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.0 067/173] netfilter: nf_tables: fix base chain stat rcu_dereference usage
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 051/141] netfilter: nf_flow_table: fix missing error check for rhashtable_insert_fast
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 054/141] netfilter: nf_tables: fix base chain stat rcu_dereference usage
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 4.19 052/141] netfilter: nf_conntrack_h323: restore boundary check correctness
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 5.1 072/186] netfilter: nf_tables: fix base chain stat rcu_dereference usage
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Kernel compilation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Kernel compilation error
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Stephen Suryaputra <ssuryaextr@xxxxxxxxx>
- Re: [PATCH nft,v2 5/7] mnl: estimate receiver buffer size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v2 5/7] mnl: estimate receiver buffer size
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_bridge: fix CONFIG_IPV6=y
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH ghak90 V6] fixup! audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: add support for matching IPv4 options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v4 7/7] src: Support intra-transaction rule references
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH libnftnl v4 2/2] examples: add ct expectation examples
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH libnftnl v4 1/2] src: add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- [PATCH libnftnl v4 0/2] add ct expectation support
- From: Stéphane Veyret <sveyret@xxxxxxxxx>
- Re: [nft PATCH 4/4] tests/shell: Test large transaction with echo output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] ipvs: add checksum support for gue encapsulation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5] netfilter: nft_ct: add ct expectations support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v4 0/2] JSON schema for nftables.py
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/2] Fix and simplify mnl_batch_talk()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_flow_table: remove unnecessary variable in flow_offload_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: avoid unnecessary rebuild of iptables when rerunning configure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/8] netfilter: remove skb_make_writable helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: free base chain counters from worker
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: xt_owner: Add supplementary groups option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next 0/3] Add UDP tunnel support for ICMP errors in IPVS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 1/2] mnl: Initialize fd_set before select(), not after
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/2] Fix and simplify mnl_batch_talk()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/2] mnl: Simplify mnl_batch_talk()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] conntrackd: Fix "Address Accept" filter case
- From: Robin Geuze <robing@xxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nft 2/7,v4] mnl: mnl_set_rcvbuffer() skips buffer size update if it is too small
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,v3 2/7] mnl: mnl_set_rcvbuffer() skips buffer size update if it is too small
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,v2] netfilter: nf_conntrack_bridge: fix CONFIG_IPV6=y
- From: wenxu <wenxu@xxxxxxxxx>
- Re: [PATCH nft,v3 2/7] mnl: mnl_set_rcvbuffer() skips buffer size update if it is too small
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next] netfilter: ipv6: fix compile err unknown field br_defrag and br_fragment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_bridge: fix CONFIG_IPV6=y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,v2] netfilter: nf_conntrack_bridge: fix CONFIG_IPV6=y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_bridge: fix CONFIG_IPV6=y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: ipv6: fix compile err unknown field br_defrag and br_fragment
- Re: [PATCH net-next] netfilter: missing #include for nf_ct_frag6_gather declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_conntrack_bridge: Fix build error without IPV6
- From: Yuehaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH v4] ipvs: add checksum support for gue encapsulation
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf-next 2/8] netfilter: ipvs: prefer skb_ensure_writable
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH net-next] netfilter: missing #include for nf_ct_frag6_gather declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_conntrack_bridge: Fix build error without IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: avoid unnecessary rebuild of iptables when rerunning configure
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net-next] netfilter: nf_conntrack_bridge: Fix build error without IPV6
- From: Yuehaibing <yuehaibing@xxxxxxxxxx>
- [PATCH net-next] netfilter: nf_conntrack_bridge: Fix build error without IPV6
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nft v4] tests: py: fix python3
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH net-next,v3 0/9] connection tracking support for bridge
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH ghak90 V6 02/10] audit: add container id
- From: Tycho Andersen <tycho@xxxxxxxx>
- Re: nftables release
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak90 V6 08/10] audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH v2] conntrackd: Use strdup in lexer
- From: Ash Hughes <sehguh.hsa@xxxxxxxxx>
- Re: [PATCH 2/2] build: avoid unnecessary rebuild of iptables when rerunning configure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak90 V6 08/10] audit: add containerid filtering
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH] build: remove -Wl,--no-as-needed and libiptc.so
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ghak90 V6 08/10] audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]