Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- [PATCH] netfilter: nf_tables: remove redundant variables 'create' and 'ext'
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Rob Herring <robh@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 00/10] audit: implement container identifier
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 03/10] audit: log container info of syscalls
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 02/10] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 01/10] audit: collect audit task parameters
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 04/10] audit: add containerid support for ptrace and signals
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 05/10] audit: add support for non-syscall auxiliary records
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 06/10] audit: add containerid support for tty_audit
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 08/10] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 07/10] audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 10/10] debug audit: read container ID of a process
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 09/10] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/2 nf-next] nfnetlink_osf: rename nf_osf header file to nfnetlink_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next 1/2] fixup: nf_osf: move nf_osf_fingers to non-uapi nf_osf header file
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Christopher Lameter <cl@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Florian Westphal <fw@xxxxxxxxx>
- SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Andrey Ryabinin <aryabinin@xxxxxxxxxxxxx>
- Re: [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH net v2 0/2] fix glitch in IPVS /proc handlers
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH net v2 1/2] jiffies: add utility function to calculate delta in ms
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net v2 2/2] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net v2 1/2] jiffies: add utility function to calculate delta in ms
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net v2 0/2] fix glitch in IPVS /proc handlers
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH] nft: doc: changes in configure file for PDF creation
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: flow event notifier must use transaction mutex
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH nf-next] netfilter: kconfig: make ct zone/labels selectable without xtables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH] nft: doc: correct some typos in asciidoc
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf] netfilter: fix memory leaks on netlink_dump_start error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v3 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [netfilter-core] [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [netfilter-core] [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] Expose socket mark via socket expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 libnftnl] Add tproxy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v3] expr: add osf support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next v3] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v3] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v3] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use PTR_ERR_OR_ZERO()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v5 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH PATCH net-next 15/18] sunrpc: whitespace fixes
- From: Anna Schumaker <Anna.Schumaker@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Andy Lutomirski <luto@xxxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Nathan Harold <nharold@xxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- KMSAN: uninit-value in iptable_mangle_hook (3)
- From: syzbot <syzbot+60f2e2b690c5cf94e35d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 06/23] xtables: Fix ebtables-restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [iptables PATCH 03/23] xtables: Use correct built-in chain count
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/23] xtables: Implement arptables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/23] xtables: Use correct built-in chain count
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 20/23] arptables: Fix opcode printing in numeric output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 18/23] arptables: Fix jumps into user-defined chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/23] xtables: Fix debug output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/23] xtables: Fix memleak when adding builtin chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/23] ebtables: Fix memleak in do_commandeb()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 22/23] tests: Add arptables-{save,restore} testcase
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 15/23] arptables: Fix printing non-standard target parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 23/23] tests: Add ebtables-{save,restore} testcase
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/23] xtables: Fix symlinks/names for ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/23] arptables: Print policy only for base chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 19/23] arptables: Fix for trailing spaces in output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/23] ebtables: Print non-standard target parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/23] ebtables: Fix match_list insertion
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 17/23] arptables: Fix memleaks in target handling
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/23] xtables: Fix ebtables-restore
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 16/23] arptables: Fix memleak in do_commandarp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/23] ebtables: Support --init-table command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft v3 2/2] tests: py: add ct timeout tests
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft v3 1/2] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables-restore: free the table lock when skipping a table
- From: Joel Goguen <contact+netfilter@xxxxxxxxxx>
- Re: [PATCH] iptables-restore: free the table lock when skipping a table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nft: doc: Convert man page source to asciidoc
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- [PATCH 07/18] netlink: Pass groups pointer to .bind()
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: ip6t_rpfilter: set F_IFACE for linklocal addresses
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: linux-next: Tree for Jul 25 (netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_set: fix allocation size overflow in privsize callback.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Eric Garver <e@xxxxxxx>
- 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH PATCH net-next 08/18] sctp: whitespace fixes
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- Re: [PATCH PATCH net-next 07/18] ceph: fix whitespace
- From: Ilya Dryomov <idryomov@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: avoid use-after free on rmmod
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH] nft: doc: Convert man page source to asciidoc
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH][v3] netfilter: use kvmalloc_array to allocate memory for hashtable
- From: Li RongQing <lirongqing@xxxxxxxxx>
- Re: Re: [PATCH v2] ipvs: fix race between ip_vs_conn_new() andip_vs_del_dest()
- From: <tan.hu@xxxxxxxxxx>
- [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- 答复: [PATCH][v2] netfilter: use kvzalloc to allocate memory for hashtable
- From: "Li,Rongqing" <lirongqing@xxxxxxxxx>
- Re: [PATCH v2] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH][v2] netfilter: use kvzalloc to allocate memory for hashtable
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re:(3) $ 100, any 20 countries of your choice / $100 любые 20 стран на Ваш выбор...
- From: "Business groups (cuexcech)" <dsnhzboeuh@xxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Michael Ellerman <mpe@xxxxxxxxxxxxxx>
- Re: Re: [PATCH] ipvs: fix race between ip_vs_conn_new() andip_vs_del_dest()
- From: <tan.hu@xxxxxxxxxx>
- [PATCH v2] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH libnftnl v3] expr: add osf support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/3 nf-next v3] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/3 nf-next v3] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/3 nf-next v3] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH PATCH net-next 00/18] net whitespace cleanups
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Jonathan Cameron <jic23@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH PATCH net-next 00/18] net whitespace cleanups
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 01/18] sched: fix trailing whitespace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 02/18] wimax: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 04/18] llc: fix whitespace issues
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 03/18] rds: remove trailing whitespace and blank lines
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 06/18] xfrm: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 07/18] ceph: fix whitespace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 08/18] sctp: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 09/18] ila: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 10/18] 9p: fix whitespace issues
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 13/18] x25: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 14/18] decnet: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 16/18] bpfilter: remove trailing newline
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 17/18] l2tp: remove trailing newline
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 18/18] net: remove blank lines at end of file
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 15/18] sunrpc: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 12/18] ax25: remove blank line at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 11/18] atm: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 05/18] mpls: remove trailing whitepace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_tables: free flow table struct too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: don't allow to rename to already-pending name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_tables: move dumper state allocation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_tables: use dev->name directly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: fix memory leaks on chain rename
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: nf_tables: fix jumpstack depth validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH xtables] xtables: avoid bogus 'is incompatible' warning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [PATCH] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- netfilter xt_alloc_table_info regression
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: linux-next: Tree for Jul 23 (netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next v2] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_conntrack: bsf.c: fix verdict
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netlink: fix memory leak of dump
- From: Shaochun Chen <cscnull@xxxxxxxxx>
- Re: iptables-save - suggest patch to add functionality
- From: Alban Vidal <alban.vidal@xxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH] netlink: fix memory leak
- From: Shaochun Chen <cscnull@xxxxxxxxx>
- Re: typo found in socket.h at nftables repository
- From: Florian Westphal <fw@xxxxxxxxx>
- typo found in socket.h at nftables repository
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [RFC PATCH ghak90 (was ghak32) V3 08/10] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Laura Garcia <nevola@xxxxxxxxx>
- [PATCH] libnetfilter_conntrack: bsf.c: fix verdict
- From: Florian Lehner <nfct@xxxxxxxxxxx>
- Re: [PATCH 00/38] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH libnftnl v2] expr: add osf support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/3 nf-next v2] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 0/4] netfilter: nf_tables: fix resource leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Felix Fietkau <nbd@xxxxxxxx>
- [PATCH 05/38] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/38] netfilter: conntrack: avoid l4proto pkt_to_tuple calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/38] netfilter: nf_conncount: Move locking into count_tree()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/38] netfilter: nf_conncount: Split insert and traversal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/38] netfilter: nf_conncount: Switch to plain list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/38] netfilter: nf_conncount: Add list lock and gc worker, and RCU for init tree search
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/38] netfilter: nf_tables: take module reference when starting a batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/38] netfilter: nf_tables: use dedicated mutex to guard transactions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/38] netfilter: nf_osf: add missing definitions to header file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 37/38] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/38] netfilter: nf_osf: add struct nf_osf_hdr_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 36/38] netfilter: nft_socket: Expose socket mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 35/38] netfilter: nft_socket: Break evaluation if no socket found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/38] netfilter: conntrack: remove l3proto abstraction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/38] netfilter: nf_tables: avoid global info storage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/38] netfilter: nf_tables: add and use helper for module autoload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/38] netfilter: nf_osf: add nf_osf_match_one()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/38] netfilter: nf_tables: make valid_genid callback mandatory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/38] ipvs: drop conn templates under attack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/38] netfilter: Remove useless param helper of nf_ct_helper_ext_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/38] ipvs: provide just conn to ip_vs_state_name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/38] ipvs: add assured state for conn templates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/38] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/38] netfilter: conntrack: remove get_timeout() indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/38] netfilter: nf_conncount: Early exit in nf_conncount_lookup() and cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/38] netfilter: Kconfig: Change select IPv6 dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/38] netfilter: nf_conncount: Early exit for garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/38] netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/38] netfilter: conntrack: remove invert_tuple indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/38] netfilter: conntrack: avoid calls to l4proto invert_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/38] netfilter: conntrack: remove ctnetlink callbacks from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/38] netfilter: conntrack: remove pkt_to_tuple indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/38] netfilter: Kconfig: Make NETFILTER_XT_MATCH_SOCKET select NF_SOCKET_IPV4/6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/38] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/38] netfilter: utils: move nf_ip_checksum* from ipv4 to utils
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/38] netfilter: nft_tproxy: Move nf_tproxy_assign_sock() to nf_tproxy.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/38] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/38] netfilter: nft_reject_bridge: remove unnecessary ttl set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v3 nft] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 libnftnl] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH xtables] nft: decode meta l4proto
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore}
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH V2 nf 3/3] netfilter: nf_tables: add default set size
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [iptables PATCH 06/17] xtables: Use new callbacks in nft_rule_print_save()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/17] xtables: Merge nft_ipv{4,6}_parse_target()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/17] iptables: Replace memset by c99-style initializers
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/17] xtables: Eliminate nft_ipv{4,6}_rule_find()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/17] xtables: Simplify struct nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/17] xtables: Rename {print,save}_rule functions
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/17] xtables: Merge {ip,arp}tables_command_state structs
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/17] xtables: Get rid of nft_ipv{4,6}_print_header()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 15/17] xtables: Parameter to add_argv() may be const
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 14/17] xtables: Pass format to nft_rule_save()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 17/17] xtables: Implement ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 13/17] xtables: Introduce save_chain callback
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/17] xtables: arp: Make rule_to_cs callback private
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 16/17] xtables: Introduce nft_init_eb()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/17] xtables: Get rid of nft_ipv{4,6}_save_counters()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/17] xtables: Introduce rule_to_cs/clear_cs callbacks
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- [PATCH] netfilter: use PTR_ERR_OR_ZERO()
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCHv2 net-next 0/3] Drop IPVS conn templates under attack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Michael Richardson <mcr@xxxxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v2 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH V2 nf 3/3] netfilter: nf_tables: add default set size
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: linux-next: Tree for Jul 18 (netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH V2 nf 3/3] netfilter: nf_tables: add default set size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: linux-next: build failure after merge of the ida tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Failed to run nft script with ingress hook for netdev family
- From: "Rosysong" <rosysong@xxxxxxxxxxxx>
- Re: [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- linux-next: build failure after merge of the ida tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Miller <davem@xxxxxxxxxxxxx>
- linux-next: manual merge of the ipvs-next tree with the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- linux-next: build failure after merge of the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- linux-next: manual merge of the netfilter-next tree with the net tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- heads up, rebasing nf-next ahead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nfnetlink_osf: add netlink support for osf module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nfnetlink_osf: add netlink support for osf module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nfnetlink_osf: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: nfnetlink_osf: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH V2 nf 0/3] netfilter: nf_tables: fix set destroying bugs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Remove useless param helper of nf_ct_helper_ext_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: add missing definitions in nf_osf.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 2/2] netfilter: fix IPV6=m CONNTRACK=y link failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- KMSAN: uninit-value in __nf_conntrack_find_get
- From: syzbot <syzbot+6f18401420df260e37ed@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft_socket: Expose socket mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_socket: Break evaluation if no socket found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: handle meta/lookup with direct call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/5] netfilter: nf_tables: per-netns transactions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next 0/3] Drop IPVS conn templates under attack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Kconfig: Change select dependencies from IPV6 to NF_TABLES_IPV6 and IP6_NF_IPTABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v6] net: netfilter: nf_tables_api: Use id allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/6] netfilter: nf_conncount: optimize nf_conncount performance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next 0/3] Drop IPVS conn templates under attack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next 0/3] Drop IPVS conn templates under attack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- [PATCH RFC/RFT net-next 01/17] net/ipv4: rename ipv4_neigh_lookup to ipv4_dst_neigh_lookup
- [PATCH RFC/RFT net-next 02/17] net/neigh: export neigh_find_table
- [PATCH RFC/RFT net-next 04/17] net/ipv4: Remove open coded use of arp table
- [PATCH RFC/RFT net-next 03/17] net/ipv4: wrappers for arp table references
- [PATCH RFC/RFT net-next 05/17] net/ipv6: wrappers for neighbor table references
- [PATCH RFC/RFT net-next 07/17] drivers/net: remove open coding of neighbor tables
- [PATCH RFC/RFT net-next 06/17] net/ipv6: Remove open coded use of neighbor table
- [PATCH RFC/RFT net-next 09/17] net: Remove arp_tbl and nd_tbl from headers
- [PATCH RFC/RFT net-next 08/17] net: Remove nd_tbl from ipv6 stub
- [PATCH RFC/RFT net-next 11/17] net: Change neigh_table_init and neigh_table_clear signature
- [PATCH RFC/RFT net-next 13/17] net/neighbor: Convert internal functions away from neigh_tables
- [PATCH RFC/RFT net-next 10/17] net: Add key_len to neighbor constructor
- [PATCH RFC/RFT net-next 12/17] net/neigh: Change neigh_xmit to take an address family
- [PATCH RFC/RFT net-next 14/17] net/ipv4: Convert arp table to per namespace
- [PATCH RFC/RFT net-next 17/17] net/neighbor: Remove neigh_tables and NEIGH enum
- [PATCH RFC/RFT net-next 16/17] net/decnet: Move neighbor table to per-namespace
- [PATCH RFC/RFT net-next 15/17] net/ipv6: Convert neighbor table to per-namespace
- Re: [PATCH nf-next 3/3] netfilter: nf_osf: add nf_osf_find()
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: add missing definitions in nf_osf.h
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: Failed to run nft script with ingress hook for netdev family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- Failed to run nft script with ingress hook for netdev family
- From: "Rosysong" <rosysong@xxxxxxxxxxxx>
- [PATCH nf 4/4] netfilter: nf_tables: don't allow to rename to already-pending name
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/4] netfilter: nf_tables: fix memory leaks on chain rename
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/4] netfilter: nf_tables: free flow table struct too
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/4] netfilter: nf_tables: use dev->name directly
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 0/4] netfilter: nf_tables: fix resource leaks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: add test case for rename-to-same-name
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: add tests for listing objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [next-20180713][NET] linux-next kernel panics when booting powerpc
- From: Abdul Haleem <abdhalee@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 2/3 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/3 nf-next] netfilter: add netlink support for osf module
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/3 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/3 nf-next] netfilter: add missing definitions in nf_osf.h
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next v7] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next v7] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: nf_osf: add nf_osf_find()
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH v3 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v7] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH v2 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH v2 nf-next 2/2] netfilter: fix IPV6=m CONNTRACK=y link failure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_osf: add struct nf_osf_hdr_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_osf: add nf_osf_find()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_osf: add nf_osf_match_one()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH V2 nf] netfilter: nf_tables: fix jumpstack depth validation
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nft] Expose socket mark via socket expression
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: nft_socket: Expose socket mark
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_socket: Break evaluation if no socket found
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: Expose socket mark
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: fix IPV6=m CONNTRACK=y link failure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: Expose socket mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: Expose socket mark
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: Expose socket mark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nf_tables: Expose socket mark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH WIP libnftnl] expr: add osf support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH] iptables-restore: free the table lock when skipping a table
- From: Joel Goguen <contact+netfilter@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: Expose socket mark
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH libnftnl] Expose socket mark via socket expression
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] Expose socket mark via socket expression
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- nf_tables: Expose socket mark
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v19 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: use dedicated mutex to guard transactions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables: avoid global info storage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nf_tables: take module reference when starting a batch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nf_tables: make valid_genid callback mandatory
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nf_tables: add and use helper for module autoload
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/5] netfilter: nf_tables: per-netns transactions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Support nft suffix for arptables and ebtables
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] xtables: Support nft suffix for arptables and ebtables
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v19 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: add tests for listing objects
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH V2 nf 3/3] netfilter: nf_tables: add default set size
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V2 nf 1/3] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy()
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V2 nf 0/3] netfilter: nf_tables: fix set destroying bugs
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: Kconfig: Change select dependencies from IPV6 to NF_TABLES_IPV6 and IP6_NF_IPTABLES
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] rule: obj: list only the table containing object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v6] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: tests: add test for iptables-save and iptables-restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.0 release
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [ANNOUNCE] iptables 1.8.0 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf 0/4] netfilter: nf_tables: fix set destroying bugs
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf 3/4] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH 0/6] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipvs: Fix invalid bytes in IP_VS_MH_TAB_INDEX help text
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: x_tables: set module owner for icmp(6) matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nf_tables: place all set backends in one single module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: nft_compat: explicitly reject ERROR and standard target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tproxy: fix possible non-linear access to transport header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: ipv6: nf_defrag: drop skb dst before queueing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: nf_conntrack: Fix possible possible crash on module loading.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_conntrack: Fix possible possible crash on module loading.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: drop skb dst before queueing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 1/7] netfilter: nf_conncount: Early exit for garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next 1/7] netfilter: nf_conncount: Early exit for garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH] netfilter: xt_tee: fix calling nf_dup_ipv6
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH xtables] extensions: don't bother to build libebt/libarp extensions if nft backend was disabled
- From: Thomas Deutschmann <whissi@xxxxxxxxxx>
- [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH xtables] extensions: don't bother to build libebt/libarp extensions if nft backend was disabled
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: ipv6: nf_defrag: drop skb dst before queueing
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: iptables-1.8.0: Cannot build without libnftnly
- From: Florian Westphal <fw@xxxxxxxxx>
- iptables-1.8.0: Cannot build without libnftnl
- From: Thomas Deutschmann <whissi@xxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: nft_compat: explicitly reject ERROR and standard target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/4] netfilter: nf_tables: fix set destroying bugs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 3/4] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: ipv6: nf_defrag: drop skb dst before queueing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: Remove useless param helper of nf_ct_helper_ext_add
- From: gfree.wind@xxxxxxxxxxx
- [PATCH] iptables: tests: add test for iptables-save and iptables-restore
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nft] tests: py: add ct timeout tests
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH] rule: obj: list only the table containing object
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next v6] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] iptables: tests: shell: Add README
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl v3 3/3] examples: Add test for assigning timeout objects via rule
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v3 2/3] examples: add nft-ct-timeout-{add,del,get}
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v3 1/3] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v3 0/3] Add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nft v2] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft v2] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Martynas Pumputis <martynas@weave.works>
- [PATCH] iptables: tests: shell: Add README
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: KASAN: stack-out-of-bounds Read in vmalloc_fault
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- KASAN: stack-out-of-bounds Read in vmalloc_fault
- From: syzbot <syzbot+7b269953d076326d7de0@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft] nft: set: print dynamic flag when set
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: describe dynamic flag and caveats for packet-path updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: skip evaluation of datatype concatenations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf] netfilter: nft_compat: explicitly reject ERROR and standard target
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: place all set backends in one single module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: add --literal option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] doc: update manpage to document --literal option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: explicitly reject builtin targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v19 4/8] netfilter: Add nf_ct_get_tuple_skb global lookup function
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v19 5/8] sch_cake: Add NAT awareness to packet classifier
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v19 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- Re: [PATCH v4 nf] netfilter: nf_tproxy: fix possible non-linear access to transport header
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] nf_conntrack: Fix possible possible crash on module loading.
- From: Andrey Ryabinin <aryabinin@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: explicitly reject builtin targets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH] netfilter: conntrack: add weak IPV6 dependency
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: explicitly reject builtin targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_compat: explicitly reject builtin targets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]