Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- iptables: reverting 34f085b16073 ("Revert "xshared: Print protocol numbers if --numeric was given"")
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: unconditionally flush pending work before notifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: unconditionally flush pending work before notifier
- From: Hillf Danton <hdanton@xxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: unconditionally flush pending work before notifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: unconditionally flush pending work before notifier
- From: Hillf Danton <hdanton@xxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: unconditionally flush pending work before notifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH nf-next] selftests: netfilter: nft_queue.sh: sctp coverage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: remove unnecessary assignment in translate_table
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [RFC nf-next 3/4] netfilter: nf_tables: insert register zeroing instructions for dodgy chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 3/4] netfilter: nf_tables: insert register zeroing instructions for dodgy chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC nf-next 2/4] netfilter: nf_tables: allow loads only when register is initialized
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- Re: [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- Re: [RFC nf-next 2/4] netfilter: nf_tables: allow loads only when register is initialized
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 3/4] netfilter: nf_tables: insert register zeroing instructions for dodgy chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] KASAN: slab-use-after-free Read in nf_tables_trans_destroy_work
- From: syzbot <syzbot+4fd66a69358fc15ae2ad@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: linux-next: duplicate patch in the ipvs-next tree
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH v6 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: remove unnecessary assignment in translate_table
- From: Liu Jing <liujing@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH net-next 01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- linux-next: duplicate patch in the ipvs-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH net-next v2] ipvs: properly dereference pe in ip_vs_add_service
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH v6 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v6 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v6 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v6 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v5 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v5 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v5 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH v5 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH v5 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [syzbot] [netfilter?] bpf test error: WARNING: suspicious RCU usage in corrupted
- From: syzbot <syzbot+784a3db26e5409459be4@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 11/17] netfilter: nf_tables: do not store nft_ctx in transaction objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/17] netfilter: nf_tables: rise cap on SELinux secmark context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/17] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/17] selftests: netfilter: nft_queue.sh: add test for disappearing listener
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/17] netfilter: nf_tables: pass nft_table to destroy function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/17] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/17] netfilter: cttimeout: remove 'l3num' attr check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/17] netfilter: nf_conncount: fix wrong variable type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/17] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/17] netfilter: nf_tables: reduce trans->ctx.chain references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/17] netfilter: nf_tables: store chain pointer in rule transaction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/17] netfilter: nf_tables: avoid usage of embedded nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/17] netfilter: nf_tables: pass more specific nft_trans_chain where possible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/17] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/17] netfilter: nf_tables: reduce trans->ctx.table references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/17] netfilter: nf_tables: compact chain+ft transaction objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/17] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] build: Speed up build_man.sh
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PATCH -stable,4.19.x] netfilter: nf_tables: validate family when identifying table via handle
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH -stable,6.1.x] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2] ipvs: properly dereference pe in ip_vs_add_service
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [ipset PATCH 0/3] Two fixes and fallout
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [RFC nf-next 4/4] netfilter: nf_tables: don't initialize registers in nft_do_chain()
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 3/4] netfilter: nf_tables: insert register zeroing instructions for dodgy chains
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 1/4] netfilter: nf_tables: pass context structure to nft_parse_register_load
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 2/4] netfilter: nf_tables: allow loads only when register is initialized
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 0/4] nf_tables: remove explicit register zeroing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 19/19] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 18/19] selftests: netfilter: nft_queue.sh: add test for disappearing listener
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 17/19] selftests: netfilter: nft_queue.sh: sctp coverage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 16/19] netfilter: nfnetlink_queue: unbreak SCTP traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 15/19] netfilter: nf_tables: rise cap on SELinux secmark context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 14/19] netfilter: cttimeout: remove 'l3num' attr check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 13/19] netfilter: nf_conncount: fix wrong variable type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 12/19] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 11/19] netfilter: nf_tables: do not store nft_ctx in transaction objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 10/19] netfilter: nf_tables: pass nft_table to destroy function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 08/19] netfilter: nf_tables: store chain pointer in rule transaction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 09/19] netfilter: nf_tables: reduce trans->ctx.chain references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 07/19] netfilter: nf_tables: avoid usage of embedded nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 06/19] netfilter: nf_tables: pass more specific nft_trans_chain where possible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 05/19] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 04/19] netfilter: nf_tables: reduce trans->ctx.table references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 02/19] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 03/19] netfilter: nf_tables: compact chain+ft transaction objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/2] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [ipset PATCH 1/3] lib: data: Fix for global-buffer-overflow warning by ASAN
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 3/3] tests: Reduce testsuite run-time
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 2/3] lib: ipset: Avoid 'argv' array overstepping
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH 0/3] Two fixes and fallout
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next v2] ipvs: properly dereference pe in ip_vs_add_service
- From: Chen Hanxiao <chenhx.fnst@xxxxxxxxxxx>
- Re: [PATCH net-next] ipvs: properly dereference pe in ip_vs_add_service
- From: Ratheesh Kannoth <rkannoth@xxxxxxxxxxx>
- 回复: [PATCH net-next] ipvs: properly dereference pe in ip_vs_add_service
- From: "Hanxiao Chen (Fujitsu)" <chenhx.fnst@xxxxxxxxxxx>
- [PATCH nft] tests: shell: check for removing table via handle with incorrect family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxx>
- [PATCH -stable,5.10.x] netfilter: nf_tables: validate family when identifying table via handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x] netfilter: nf_tables: validate family when identifying table via handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x] netfilter: nf_tables: validate family when identifying table via handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
- From: Phil Sutter <phil@xxxxxx>
- [PATCH -stable,6.1.x] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Phil Sutter <phil@xxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PATCH net-next] ipvs: properly dereference pe in ip_vs_add_service
- From: Julian Anastasov <ja@xxxxxx>
- Re: [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: rise cap on SELinux secmark context
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v1] netfilter: cttimeout: remove 'l3num' attr check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_conncount: fix wrong variable type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: rise cap on SELinux secmark context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] ipvs: properly dereference pe in ip_vs_add_service
- From: Chen Hanxiao <chenhx.fnst@xxxxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: let nftables indicate incomplete dissections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: let nftables indicate incomplete dissections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [lvs?] possible deadlock in start_sync_thread
- From: syzbot <syzbot+e929093395ec65f969c7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PROBLEM] make randconfig: net/netfilter/core.c:830: undefined reference to `netfilter_lwtunnel_fini'
- From: Mirsad Todorovac <mtodorovac69@xxxxxxxxx>
- Re: [PATCH] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH v6.1] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Kuntal Nayak <kuntal.nayak@xxxxxxxxxxxx>
- Re: [syzbot] [netfilter?] [usb?] INFO: rcu detected stall in NF_HOOK
- From: Alan Stern <stern@xxxxxxxxxxxxxxxxxxx>
- [syzbot] [netfilter?] [usb?] INFO: rcu detected stall in NF_HOOK
- From: syzbot <syzbot+696cffe71c444e4a2dd8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v9 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [no subject]
- [PATCH] netfilter: ctnetlink: support CTA_FILTER for flush
- From: Changliang Wu <changliang.wu@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net 4/5] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [PATCH nf-next] selftests: netfilter: nft_queue.sh: add test for disappearing listener
- From: Florian Westphal <fw@xxxxxxxxx>
- [no subject]
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- [PATCH net 5/5] selftests: add selftest for the SRv6 End.DX6 behavior with netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] netfilter: move the sysctl nf_hooks_lwtunnel into the netfilter core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: AW: [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] Forbid illegitimate binding via listen(2)
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- AW: [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: pda Pfeil Daniel <pda@xxxxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add string preprocessor and use it for log prefix string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- [no subject]
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- AW: [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: pda Pfeil Daniel <pda@xxxxxxxx>
- [PATCH v8 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] net-next test error: WARNING: suspicious RCU usage in corrupted
- From: syzbot <syzbot+6c048081aec46ad4ddf5@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- [PATCH nft] tests: py: drop redundant JSON outputs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: let nftables indicate incomplete dissections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 01/11] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 01/11] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: let nftables indicate incomplete dissections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v7 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH v2 0/7] Dynamic hook interface binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Vlastimil Babka <vbabka@xxxxxxx>
- [PATCH 0/1] ipset patch for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: Fix suspicious rcu_dereference_protected()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nft 1/2] libnftables: add base directory of -f/--filename to include path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] libnftables: search for default include path last
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/2] nft include path updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [nf-next PATCH v2 2/2] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Fabio Pedretti <pedretti.fabio@xxxxxxxxx>
- [PATCH v5 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v5 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v5 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [nf-next PATCH v2 2/2] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2 2/2] netfilter: xt_recent: Lift restrictions on max hitcount value
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2 0/2] netfilter: xt_recent: Allow for larger hitcount values
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value
- From: Phil Sutter <phil@xxxxxx>
- [syzbot] [netfilter?] upstream test error: WARNING: suspicious RCU usage in _destroy_all_sets
- From: syzbot <syzbot+b62c37cdd58103293a5a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [syzbot] [netfilter?] net test error: WARNING: suspicious RCU usage in _destroy_all_sets
- From: syzbot <syzbot+565a9cd16f2d99544b94@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [syzbot] [netfilter?] net-next test error: WARNING: suspicious RCU usage in _destroy_all_sets
- From: syzbot <syzbot+cfbe1da5fdfc39efc293@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [linus:master] [netfilter] 4e7aaa6b82: WARNING:suspicious_RCU_usage
- From: kernel test robot <oliver.sang@xxxxxxxxx>
- Re: [PATCH v4 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- [PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Daniel Xu <dxu@xxxxxxxxx>
- Re: [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 1/2] netfilter: xt_reent: Reduce size of struct recent_entry::nstamps
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 0/2] netfilter: xt_recent: Allow for much larger hitcount values
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Uladzislau Rezki <urezki@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH 4.19 179/213] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 188/213] netfilter: nft_dynset: relax superfluous check on set updates
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 187/213] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 186/213] netfilter: nftables: exthdr: fix 4-byte stack OOB write
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 185/213] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 184/213] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 183/213] netfilter: nf_tables: disable toggling dormant table state more than once
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 182/213] netfilter: nf_tables: fix table flag updates
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 181/213] netfilter: nftables: update table flags from the commit phase
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 198/213] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 197/213] netfilter: nf_tables: reject new basechain after table flag update
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 196/213] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 195/213] netfilter: nf_tables: do not compare internal table flags on updates
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 194/213] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 193/213] netfilter: nf_tables: set dormant flag on hook register failure
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 192/213] netfilter: nft_set_rbtree: skip end interval element from gc
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 191/213] netfilter: nf_tables: validate NFPROTO_* family
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 190/213] netfilter: nf_tables: skip dead set elements in netlink dump
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 189/213] netfilter: nf_tables: mark newset as dead on transaction abort
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 180/213] netfilter: nf_tables: double hook unregistration in netns path
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 178/213] netfilter: nf_tables: fix memleak when more than 255 elements expired
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 177/213] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 176/213] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 175/213] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 173/213] netfilter: nf_tables: GC transaction race with abort path
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 174/213] netfilter: nf_tables: defer gc run if previous batch is still pending
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 172/213] netfilter: nf_tables: GC transaction race with netns dismantle
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 171/213] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 170/213] netfilter: nf_tables: remove busy mark and gc batch API
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 169/213] netfilter: nf_tables: adapt set backend to use GC transaction API
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 168/213] netfilter: nf_tables: GC transaction API to avoid race with control plane
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 167/213] netfilter: nf_tables: dont skip expired elements during walk
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 166/213] netfilter: nft_set_rbtree: fix overlap expiration walk
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 165/213] netfilter: nft_set_rbtree: fix null deref on element insertion
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 163/213] netfilter: nft_set_rbtree: Add missing expired checks
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 162/213] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 161/213] netfilter: nf_tables: drop map element references from preparation phase
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 160/213] netfilter: nftables: rename set element data activation/deactivation functions
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 4.19 159/213] netfilter: nf_tables: pass context to nft_set_destroy()
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH -stable,4.19.x 00/40] Netfilter fixes for -stable
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] Stop a memory leak in nfq_close
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [no subject]
- [PATCH -stable,4.19.x 40/40] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 38/40] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 39/40] netfilter: nf_tables: reject new basechain after table flag update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 37/40] netfilter: nf_tables: do not compare internal table flags on updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 36/40] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 35/40] netfilter: nf_tables: set dormant flag on hook register failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 33/40] netfilter: nf_tables: validate NFPROTO_* family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 34/40] netfilter: nft_set_rbtree: skip end interval element from gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 32/40] netfilter: nf_tables: skip dead set elements in netlink dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 31/40] netfilter: nf_tables: mark newset as dead on transaction abort
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 30/40] netfilter: nft_dynset: relax superfluous check on set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 29/40] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 28/40] netfilter: nftables: exthdr: fix 4-byte stack OOB write
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 27/40] netfilter: nft_dynset: fix timeouts later than 23 days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 26/40] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 24/40] netfilter: nf_tables: fix table flag updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 25/40] netfilter: nf_tables: disable toggling dormant table state more than once
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 23/40] netfilter: nftables: update table flags from the commit phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 22/40] netfilter: nf_tables: double hook unregistration in netns path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 21/40] netfilter: nf_tables: unregister flowtable hooks on netns exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 20/40] netfilter: nf_tables: fix memleak when more than 255 elements expired
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 18/40] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 19/40] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 10/40] netfilter: nf_tables: GC transaction API to avoid race with control plane
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 16/40] netfilter: nf_tables: defer gc run if previous batch is still pending
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 17/40] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 14/40] netfilter: nf_tables: GC transaction race with netns dismantle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 15/40] netfilter: nf_tables: GC transaction race with abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 13/40] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 12/40] netfilter: nf_tables: remove busy mark and gc batch API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 11/40] netfilter: nf_tables: adapt set backend to use GC transaction API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 09/40] netfilter: nf_tables: don't skip expired elements during walk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 08/40] netfilter: nft_set_rbtree: fix overlap expiration walk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 07/40] netfilter: nft_set_rbtree: fix null deref on element insertion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 06/40] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 05/40] netfilter: nft_set_rbtree: Add missing expired checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 03/40] netfilter: nf_tables: drop map element references from preparation phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 04/40] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 02/40] netfilter: nftables: rename set element data activation/deactivation functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 01/40] netfilter: nf_tables: pass context to nft_set_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,4.19.x 00/40] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH nft 4/4] tests: shell: skip NFTA_RULE_POSITION_ID tests if kernel does not support it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] tests: shell: skip ipsec tests if kernel does not support it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] tests: shell: skip ip option tests if kernel does not support it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] tests: shell: add dependencies to skip unsupported tests in older kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: nft_inner: validate mandatory meta and payload
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Jens Axboe <axboe@xxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxx>
- Re: [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [iptables PATCH] ebtables: Include 'bitmask' value when comparing rules
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] extensions: libxt_sctp: Add an extra assert()
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] man: extensions: recent: Clarify default value of ip_list_hash_size
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] man: recent: Adjust to changes around ip_pkt_list_tot parameter
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v6 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [iptables PATCH] man: recent: Adjust to changes around ip_pkt_list_tot parameter
- From: Fabio Pedretti <pedretti.fabio@xxxxxxxxx>
- [iptables PATCH] man: recent: Adjust to changes around ip_pkt_list_tot parameter
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 1/2 v5.10] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV
- From: Greg KH <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v6.1] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] man: extensions: recent: Clarify default value of ip_list_hash_size
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] ebtables: Include 'bitmask' value when comparing rules
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] extensions: libxt_sctp: Add an extra assert()
- From: Phil Sutter <phil@xxxxxx>
- Re: let nftables indicate incomplete dissections
- From: Phil Sutter <phil@xxxxxx>
- let nftables indicate incomplete dissections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] Stop a memory leak in nfq_close
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: Use flowlabel flow key when re-routing mangled packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nft_inner: validate mandatory meta and payload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] monitor: too large shift exponent displaying payload expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] cmd: skip variable set elements when collapsing commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: Use flowlabel flow key when re-routing mangled packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cmd: skip variable set elements when collapsing commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: Testing stable backports for netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Testing stable backports for netfilter
- From: Vegard Nossum <vegard.nossum@xxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Testing stable backports for netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 2/2] selftests: net: netfilter: nft_queue.sh: sctp coverage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 1/2] netfilter: nfnetlink_queue: unbreak SCTP traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Jianguo Wu <wujianguo106@xxxxxxx>
- Re: Testing stable backports for netfilter
- From: Harshit Mogalapalli <harshit.m.mogalapalli@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] Stop a memory leak in nfq_close
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Testing stable backports for netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Testing stable backports for netfilter
- From: Harshit Mogalapalli <harshit.m.mogalapalli@xxxxxxxxxx>
- [PATCH nft] cmd: provide better hint if chain is already declared with different type/hook/priority
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] monitor: too large shift exponent displaying payload expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- [PATCH 14/14] netfilter: replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Julia Lawall <Julia.Lawall@xxxxxxxx>
- [PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
- From: Julia Lawall <Julia.Lawall@xxxxxxxx>
- Re: [PATCH net-next 1/2] net: add and use skb_get_hash_net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v6.1] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Kuntal Nayak <kuntal.nayak@xxxxxxxxxxxx>
- [PATCH 2/2 v5.10] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
- From: Kuntal Nayak <kuntal.nayak@xxxxxxxxxxxx>
- [PATCH 1/2 v5.10] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV
- From: Kuntal Nayak <kuntal.nayak@xxxxxxxxxxxx>
- Re: [RFC PATCH v2 02/12] landlock: Add hook on socket creation
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next 2/2] net: add and use __skb_get_hash_symmetric_net
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [PATCH net-next 1/2] net: add and use skb_get_hash_net
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 01/12] landlock: Support socket access-control
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] net: add and use skb_get_hash_net
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next 2/2] net: add and use __skb_get_hash_symmetric_net
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH net-next 1/2] net: add and use skb_get_hash_net
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH net-next 2/2] net: add and use __skb_get_hash_symmetric_net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/2] net: add and use skb_get_hash_net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/2] net: flow dissector: allow explicit passing of netns
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v5 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: Use flowlabel flow key when re-routing mangled packets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re: [PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: missing objects with no memcg accounting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH v2 02/12] landlock: Add hook on socket creation
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 01/12] landlock: Support socket access-control
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] Stop a memory leak in nfq_close
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] nf_tables: nft_inner: validate mandatory meta and payload netlink attributes
- From: Davide Ornaghi <d.ornaghi97@xxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ipset 7.22 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH] fix json output format for IPSET_OPT_IP
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH nft] Check for NULL netlink attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH V6] fs/ext4: Filesystem without casefold feature cannot be mounted with spihash
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- [PATCH nft] Check for NULL netlink attributes
- From: Davide Ornaghi <d.ornaghi97@xxxxxxxxx>
- Re: [RFC PATCH v2 00/12] Socket type control for Landlock
- From: Günther Noack <gnoack3000@xxxxxxxxx>
- Re: [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Gabriel Krisman Bertazi <krisman@xxxxxxx>
- [PATCH nft] scanner: inet_pton() allows for broader IPv4-Mapped IPv6 addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v1] netfilter: cttimeout: remove 'l3num' attr check
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH v4 net-next 06/14] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH 0/1] ipset patch for nf tree
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: restore default behavior for nf_conntrack_events
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] tests: shell: add test case for reset tcp warning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V3] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH V3] ext4: check hash version and filesystem casefolded consistent
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: rise cap on SELinux secmark context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Gabriel Krisman Bertazi <krisman@xxxxxxx>
- Re: [PATCH net-next v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH net-next v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: [syzbot] [netfilter?] [mm?] [usb?] INFO: rcu detected stall in addrconf_rs_timer (6)
- From: syzbot <syzbot+fecf8bd19c1f78edb255@xxxxxxxxxxxxxxxxxxxxxxxxx>
- libnetfilter_queue patch ping
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH V5] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH V4] ext4: check hash version and filesystem casefolded consistent
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [PATCH net-next v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH V4] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH V2] ext4: add casefolded feature check before setup encrypted info
- From: kernel test robot <lkp@xxxxxxxxx>
- [PATCH V3] ext4: check hash version and filesystem casefolded consistent
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- [PATCH nf-next v2] netfilter: nf_conncount: fix wrong variable type
- From: Yunjian Wang <wangyunjian@xxxxxxxxxx>
- Re: [PATCH V2] ext4: add casefolded feature check before setup encrypted info
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [PATCH V2] ext4: add casefolded feature check before setup encrypted info
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH V2] ext4: add casefolded feature check before setup encrypted info
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- [PATCH V2] ext4: add casefolded feature check before setup encrypted info
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- Re: [PATCH] ext4: add casefolded file check
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [PATCH] ext4: add casefolded file check
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- [PATCH net-next v1] netfilter: cttimeout: remove 'l3num' attr check
- From: Lin Ma <linma@xxxxxxxxxx>
- Re: [PATCH] ext4: add casefolded file check
- From: Eric Biggers <ebiggers@xxxxxxxxxx>
- Re: [RFC PATCH v2 07/12] selftests/landlock: Add protocol.inval to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 08/12] selftests/landlock: Add tcp_layers.ruleset_overlap to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH v2 03/12] selftests/landlock: Add protocol.create to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 02/12] landlock: Add hook on socket creation
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 01/12] landlock: Support socket access-control
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- RE: [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: wangyunjian <wangyunjian@xxxxxxxxxx>
- Re: [PATCH net 1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] ext4: add casefolded file check
- From: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>
- RE: [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: wangyunjian <wangyunjian@xxxxxxxxxx>
- Re: [PATCH v4 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [syzbot] [fscrypt?] WARNING in fscrypt_fname_siphash
- From: syzbot <syzbot+340581ba9dceb7e06fb3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v3 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v4 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v4 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v4 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 0/5] net: constify ctl_table arguments of utility functions
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net] netfilter: nf_conncount: fix wrong variable type
- From: Yunjian Wang <wangyunjian@xxxxxxxxxx>
- [PATCH net 5/6] netfilter: tproxy: bail out if IP has been disabled on the device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: nft_fib: allow from forward/input without iif selector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: nft_payload: restore vlan q-in-q match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: ipset: Add list flush to cancel_gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6,v3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2,v2] cache: check for NFT_CACHE_REFRESH in current requested cache too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2,v2] cache: recycle existing cache with incremental updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: drop duplicate ARP HEADER EXPRESSION
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] doc: drop duplicate ARP HEADER EXPRESSION
- From: 谢致邦 (XIE Zhibang) <Yeking@xxxxxxxxx>
- [PATCH net-next v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCHv4 net-next 09/14] ipvs: switch to per-net connection table
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 02/14] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 07/14] ipvs: add resizable hash tables
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 04/14] ipvs: use single svc table
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 06/14] ipvs: use more counters to avoid service lookups
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 11/14] ipvs: no_cport and dropentry counters can be per-net
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 03/14] ipvs: some service readers can use RCU
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 13/14] ipvs: add ip_vs_status info
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 05/14] ipvs: do not keep dest_dst after dest is removed
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 01/14] rculist_bl: add hlist_bl_for_each_entry_continue_rcu
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 14/14] ipvs: add conn_lfactor and svc_lfactor sysctl vars
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 12/14] ipvs: use more keys for connection hashing
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 10/14] ipvs: show the current conn_tab size to users
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 08/14] ipvs: use resizable hash table for services
- From: Julian Anastasov <ja@xxxxxx>
- [PATCHv4 net-next 00/14] ipvs: per-net tables and optimizations
- From: Julian Anastasov <ja@xxxxxx>
- Re: nftables with thousands of chains is unreasonably slow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] cache: recycle existing cache with incremental updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] cache: check for NFT_CACHE_REFRESH in current requested cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v2 07/12] selftests/landlock: Add protocol.inval to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 06/12] selftests/landlock: Add protocol.rule_with_unhandled_access to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 05/12] selftests/landlock: Add protocol.rule_with_unknown_access to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 08/12] selftests/landlock: Add tcp_layers.ruleset_overlap to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net-next 5/5] ipvs: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next 0/5] net: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next 4/5] net/ipv6/ndisc: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next 1/5] net/neighbour: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next 3/5] net/ipv6/addrconf: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next 2/5] net/ipv4/sysctl: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Re: [RFC PATCH v2 03/12] selftests/landlock: Add protocol.create to socket tests
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH net 0/6,v2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/6,v2] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH net 0/6,v2] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [RFC PATCH v2 01/12] landlock: Support socket access-control
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v2 02/12] landlock: Add hook on socket creation
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH] iptables: cleanup FIXME
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 0/6,v2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: cleanup FIXME
- From: Michael Estner <michaelestner@xxxxxx>
- [PATCH] iptables: cleanup FIXME
- From: Michael Estner <michaelestner@xxxxxx>
- [PATCH nft,v2] tests: shell: add vlan double tagging match simple test case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH v2 12/12] samples/landlock: Support socket protocol restrictions
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 11/12] selftests/landlock: Add mini.socket_invalid_type to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 10/12] selftests/landlock: Add mini.socket_overflow to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 09/12] selftests/landlock: Add mini.ruleset_with_unknown_access to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 08/12] selftests/landlock: Add tcp_layers.ruleset_overlap to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 07/12] selftests/landlock: Add protocol.inval to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 06/12] selftests/landlock: Add protocol.rule_with_unhandled_access to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 05/12] selftests/landlock: Add protocol.rule_with_unknown_access to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 03/12] selftests/landlock: Add protocol.create to socket tests
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 02/12] landlock: Add hook on socket creation
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 01/12] landlock: Support socket access-control
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v2 00/12] Socket type control for Landlock
- From: Mikhail Ivanov <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 15/15] build: Remove libnfnetlink from the build
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 13/15] src: Convert all nlif_* functions to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 14/15] include: Use libmnl.h instead of libnfnetlink.h
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 12/15] doc: Add iftable.c to the doxygen system
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 11/15] src: Copy nlif-related files from libnfnetlink
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 10/15] src: Convert remaining nfq_* functions to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 09/15] src: Convert nfq_fd() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 07/15] src: Convert nfq_set_verdict() and nfq_set_verdict2() to use libmnl if there is no data
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 06/15] src: Convert nfq_handle_packet(), nfq_get_secctx(), nfq_get_payload() and all the nfq_get_ functions to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 08/15] src: Incorporate nfnl_rcvbufsiz() in libnetfilter_queue
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 04/15] src: Convert nfq_create_queue(), nfq_bind_pf() & nfq_unbind_pf() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 05/15] src: Convert nfq_set_queue_flags(), nfq_set_queue_maxlen() & nfq_set_mode() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 03/15] src: Convert nfq_close() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 02/15] src: Convert nfq_open_nfnl() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 01/15] src: Convert nfq_open() to use libmnl
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue v2 00/15] Convert libnetfilter_queue to not need libnfnetlink
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH] ipvs: Avoid unnecessary calls to skb_is_gso_sctp
- From: Ismael Luceno <iluceno@xxxxxxx>
- Re: [PATCH] iptables: cleanup FIXME
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft v3 0/2] Support for variables in map expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: nft_fib: allow from forward/input without iif selector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/6] netfilter: tproxy: bail out if IP has been disabled on the device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6,v2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: nft_payload: restore vlan q-in-q match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: ipset: Add list flush to cancel_gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 4/6] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: cleanup FIXME
- From: Michael Estner <michaelestner@xxxxxx>
- [PATCH v3 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v3 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v3 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH v3 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH net 4/6] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH] fix json output format for IPSET_OPT_IP
- From: Zhixu Liu <zhixu.liu@xxxxxxxxx>
- Re: [PATCH] fix json output format for IPSET_OPT_IP
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/6] netfilter: tproxy: bail out if IP has been disabled on the device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: nft_fib: allow from forward/input without iif selector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: nft_payload: restore vlan q-in-q match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: ipset: Add list flush to cancel_gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v4 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH bpf-next v4 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Brad Cowie <brad@xxxxxxxxx>
- [PATCH bpf-next v4 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Brad Cowie <brad@xxxxxxxxx>
- [PATCH v5 36/68] selftests/net: Drop define _GNU_SOURCE
- From: Edward Liaw <edliaw@xxxxxxxxxx>
- [PATCH nf v2] netfilter: nft_fib: allow from forward/input without iif selector
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH bpf-next v2 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH bpf-next v2 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v2 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Toke Høiland-Jørgensen <toke@xxxxxxxxxx>
- Re: [PATCH bpf-next v2 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v2 4/4] selftests/bpf: Add selftest for bpf_xdp_flow_offload_lookup kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v2 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH bpf-next v3 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] fix json output format for IPSET_OPT_IP
- From: Zhixu Liu <zhixu.liu@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nft_fib: allow from forward/input without iif selector
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Add list flush to cancel_gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nft_fib: allow from forward/input without iif selector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nft_fib: allow from forward/input without iif selector
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v2 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next v2 4/4] selftests/bpf: Add selftest for bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next v2 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]