Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 1/8] netfilter: nft_osf: use NFT_OSF_MAXGENRELEN instead of IFNAMSIZ
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: nfnetlink_osf: fix using plain integer as NULL warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nft_ct: enable conntrack for helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: cttimeout: decouple timeout policy from nfnetlink_cttimeout object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] doc: net: Add nf_tables part in tproxy.txt
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [iptables PATCH] ebtables: Remove flags misinterpretations
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] ebtables: Remove flags misinterpretations
- From: Phil Sutter <phil@xxxxxx>
- Re: Creating custom ipsets
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- Re: Creating custom ipsets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Creating custom ipsets
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- Re: Creating custom ipsets
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Don't pass full invflags to add_compat()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnftnl v5 3/3] examples: Add test for assigning timeout objects via rule
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v5 2/3] examples: add nft-ct-timeout-{add,del,get}
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v5 1/3] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Creating custom ipsets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Creating custom ipsets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Creating custom ipsets
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- [iptables PATCH] xtables: Don't pass full invflags to add_compat()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] tests: Fix skipping for recent nft-only tests
- From: Phil Sutter <phil@xxxxxx>
- Re: Creating custom ipsets
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH nft] tests: shell: validate too deep jumpstack from basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] nft: doc: changes in configure file for PDF creation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: doc: Fixed all the typos in asciidoc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nfnetlink_osf: fix using plain integer as NULL warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink_osf: add missing enum in nfnetlink_osf uapi header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: doc: Fixed all the typos in asciidoc
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netfilter/x_tables: do not fail xt_alloc_table_info too easilly
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [PATCH] netfilter/x_tables: do not fail xt_alloc_table_info too easilly
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [PATCH] nft: doc: Fixed all the typos in asciidoc
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] nft: doc: fix make distcheck
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH] nft: doc: Fixed all the typos in asciidoc
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] nft: doc: fix make distcheck
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH net-next] netfilter: nfnetlink_osf: fix using plain integer as NULL warning
- From: Wei Yongjun <weiyongjun1@xxxxxxxxxx>
- [PATCH v2] nft: doc: changes in configure file for PDF creation
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf-next] netfilter: nfnetlink_osf: add missing enum in nfnetlink_osf uapi header
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH] netfilter/x_tables: do not fail xt_alloc_table_info too easilly
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] doc: user niggles
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: Add comment possibility to man page
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fix syntax for RULES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser_bison: allow to use new osf expression from assignment statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] expr: osf: modify _snprintf_default function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nft v2] src: use NFT_OSF_MAXGENRELEN instead of IFNAMSIZ in osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nft_osf: use NFT_OSF_MAXGENRELEN instead of IFNAMSIZ
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v4 1/3] src: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_ct: enable conntrack for helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: cttimeout: decouple timeout policy from nfnetlink_cttimeout object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/4,v5] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: remove ifdef around cttimeout in struct nf_conntrack_l4proto
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: url filtering with netfiler
- From: Oleg <lego12239@xxxxxxxxx>
- Re: url filtering with netfiler
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Mike Rapoport <rppt@xxxxxxxxxxxxxxxxxx>
- Re: url filtering with netfiler
- From: Saber Rezvani <irsaber@xxxxxxxx>
- Re: url filtering with netfiler
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [iptables PATCH] xtables: Spelling fixes in xtables-monitor
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] xtables: Spelling fixes in xtables-monitor
- From: Phil Sutter <phil@xxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [iptables PATCH] xtables: Improve xtables-monitor first impression
- From: Phil Sutter <phil@xxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [iptables PATCH] xtables: Fix for wrong counter format in -S output
- From: Phil Sutter <phil@xxxxxx>
- [PATCH 2/2 nft v2] tests: improve test cases for osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft v2] src: use NFT_OSF_MAXGENRELEN instead of IFNAMSIZ in osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: nft_osf: use NFT_OSF_MAXGENRELEN instead of IFNAMSIZ
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH libnftnl] expr: osf: modify _snprintf_default function
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH] doc: user niggles
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [BUG] 4.18-rcX iptables regression
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- linux-next: manual merge of the net-next tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH nft] doc: Add comment possibility to man page
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] doc: fix syntax for RULES
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Jan Kara <jack@xxxxxxx>
- [PATCH nft] doc: Add comment possibility to man page
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] doc: fix syntax for RULES
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Fix potential segfault in nft_rule_append()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v3 0/7] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] xtables: Fix potential segfault in nft_rule_append()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v3 0/7] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 5/7] xtables: Implement arptables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 7/7] tests: Add ebtables-{save,restore} testcases
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 2/7] xtables-restore: Make COMMIT support configurable
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 1/7] xtables-restore: Improve user-defined chain detection
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 4/7] ebtables: Review match/target lookup
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 3/7] ebtables-restore: Use xtables_restore_parse()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 6/7] tests: Add arptables-{save,restore} testcases
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables] xtables: Match verbose ip{,6}tables output with legacy
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter: nft_osf: use OSF_GENRE_SIZE instead of IFNAMSIZ
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 2/2 nft] tests: improve test cases for osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_osf: use OSF_GENRE_SIZE instead of IFNAMSIZ
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/2] obj: add tunnel support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/2] expr: add support for matching tunnel metadata
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nft] src: use OSF_GENRE_SIZE instead of IFNAMSIZ in osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_osf: use OSF_GENRE_SIZE instead of IFNAMSIZ
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nft] tests: improve test cases for osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nft] src: use OSF_GENRE_SIZE instead of IFNAMSIZ in osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_osf: use OSF_GENRE_SIZE instead of IFNAMSIZ
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH] doc: Changes following detailed comparison with last XML version
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH] doc: Changes following detailed comparison with last XML version
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: use PTR_ERR_OR_ZERO()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: nf_tables: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: use kvmalloc_array to allocate memory for hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: nfnetlink_osf: rename nf_osf header file to nfnetlink_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: nf_osf: move nf_osf_fingers to non-uapi header file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: nf_tables: Add native tproxy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: nf_tables: add tunnel support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: nft_tunnel: fix sparse errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: conntrack: avoid use-after free on rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: kconfig: remove ct zone/label dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: nf_tables: simplify NLM_F_CREATE handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: nf_tables: match on tunnel metadata
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: bridge: Expose nf_tables bridge hook priorities through uapi
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: nft_tproxy: Add missing config check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: cttimeout: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: nf_tables: remove unused variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: nf_tables: flow event notifier must use transaction mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: nf_osf: add nf_osf_find()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: nf_tables: handle meta/lookup with direct call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v4 3/3] tests: shell: add tests for ct timeout objects
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft v4 2/3] tests: py: add ct timeout tests
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft v4 1/3] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v4 3/3] examples: Add test for assigning timeout objects via rule
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v4 2/3] examples: add nft-ct-timeout-{add,del,get}
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v4 1/3] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] doc: Miscellaneous spelling fixes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables] xtables: Match verbose ip{,6}tables output with legacy
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Match verbose ip{,6}tables output with legacy
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Print error when listing non-existent chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Fix for no output on first iptables-nft invocation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] xtables: Do not count rules as chain references
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH v2] xtables: Reserve space for 'opt' column in ip6tables output
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 21/27] xtables-restore: Make COMMIT support configurable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 21/27] xtables-restore: Make COMMIT support configurable
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 25/27] ebtables: Support --init-table command
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 21/27] xtables-restore: Make COMMIT support configurable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v11] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v4] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [iptables PATCH] xtables: Match verbose ip{,6}tables output with legacy
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] doc: Miscellaneous spelling fixes
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] doc: resolve run-together IPv6 address specification headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] doc: Remove UTF8(?) sequences
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] test: py: fix osf testcases warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] doc: resolve run-together IPv6 address specification headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] doc: Remove UTF8(?) sequences
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nftables] test: py: fix osf testcases warning
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nftables v2] doc: add osf expression to man page
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nftables] src: introduce passive OS fingerprint matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nftables] src: introduce passive OS fingerprint matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_tunnel: fix sparse errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 nftables] test: py: add test cases for "osf" matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 nftables] test: py: add test cases for "osf" matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nftables] src: introduce passive OS fingerprint matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] doc: add osf expression to man page
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [nf-next:master 15/20] net/netfilter/nft_tunnel.c:117:25: sparse: incorrect type in assignment (different base types)
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nftables v2] doc: add osf expression to man page
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nftables] doc: add osf expression to man page
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 1/2 nftables] src: introduce passive OS fingerprint matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: doc: correct some typos in asciidoc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: restore too deep jumpstack validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nftables] test: py: add test cases for "osf" matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/2 nftables] src: introduce passive OS fingerprint matching
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nft v3 1/2] src: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter_bridge: uapi: Expose nf_tables bridge hook priorities
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter_bridge: uapi: Expose nf_tables bridge hook priorities
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter_bridge: uapi: Expose nf_tables bridge hook priorities
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: avoid use-after free on rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: conntrack: avoid use-after free on rmmod
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH][v3] netfilter: use kvmalloc_array to allocate memory for hashtable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: kconfig: remove ct zone/label dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: kconfig: remove ct zone/label dependencies
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nft: doc: changes in configure file for PDF creation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH v2] xtables: Reserve space for 'opt' column in ip6tables output
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next] netfilter_bridge: uapi: Expose nf_tables bridge hook priorities
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] xtables: Reserve space for 'opt' column in ip6tables output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] xtables: Print error when listing non-existent chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] xtables: Fix for no output on first iptables-nft invocation
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] xtables: Do not count rules as chain references
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: nf_tables: simplify NLM_F_CREATE handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter_bridge: uapi: Expose nf_tables bridge hook priorities
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: flow event notifier must use transaction mutex
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_tproxy: Add missing config check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 nf-next] nfnetlink_osf: rename nf_osf header file to nfnetlink_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] fixup: nf_osf: move nf_osf_fingers to non-uapi nf_osf header file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v2 0/2] fix glitch in IPVS /proc handlers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] Expose socket mark via socket expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] Add tproxy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] tests: py: Add test cases for tproxy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] doc: Add tproxy statement to man page
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: url filtering with netfiler
- From: Oleg <lego12239@xxxxxxxxx>
- [PATCH v5 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: url filtering with netfiler
- From: Saber Rezvani <irsaber@xxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_tproxy: Add missing config check
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: url filtering with netfiler
- From: Oleg <lego12239@xxxxxxxxx>
- [PATCH nf 0/2] netfilter: nf_tables: fix register ordering
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables: don't prevent event handler from device cleanup on netns exit
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: fix register ordering
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_tproxy: Add missing config check
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: linux-next: Tree for Aug 2 (netfilter: tproxy)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Aug 2 (netfilter: tproxy)
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: linux-next: Tree for Aug 2 (netfilter: tproxy)
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables: add tunnel support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: match on tunnel metadata
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/2] nf_tables lightweight tunneling support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_nat: return the same reply tuple for matching CTs
- From: Martynas Pumputis <martynas@weave.works>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: linux-next: Tree for Aug 2 (netfilter: tproxy)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [iptables PATCH 13/27] ebtables: Fix match_list insertion
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 17/27] arptables: Fix memleaks in do_commandarp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 18/27] arptables: Fix for trailing spaces in output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/27] Consolidate DEBUGP macros
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 23/27] ebtables: Review match/target lookup
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/27] xtables: Free chains in NFT_COMPAT_CHAIN_ADD jobs
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 05/27] xtables: Fix compilation with NLDEBUG defined
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/27] ebtables: Fix for wrong program name in error messages
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 24/27] xtables: Implement arptables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/27] xtables: Allocate rule cache just once
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/27] xshared: Consolidate argv construction routines
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 20/27] xtables-restore: Improve user-defined chain detection
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 14/27] ebtables: Print non-standard target parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 22/27] ebtables-restore: Use xtables_restore_parse()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 25/27] ebtables: Support --init-table command
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 16/27] arptables: Fix jumps into user-defined chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 19/27] arptables: Print policy only for base chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 27/27] tests: Add ebtables-{save,restore} testcases
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 26/27] tests: Add arptables-{save,restore} testcases
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 21/27] xtables-restore: Make COMMIT support configurable
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/27] xtables: Fix for nft_rule_flush() returning garbage
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/27] xtables: Fix symlinks/names for ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/27] xshared: Consolidate parse_counters()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/27] xtables: Free chains in NFT_COMPAT_CHAIN_USER_DEL jobs
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 15/27] arptables: Fix opcode printing in numeric output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 00/27] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH v2 06/27] xtables: Use correct built-in chain count
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/27] xtables: Fix program name in xtables_error()
- From: Phil Sutter <phil@xxxxxx>
- url filtering with netfiler
- From: Saber Rezvani <irsaber@xxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [PATCH v2 nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v3 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v3 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [iptables PATCH] nft: don't print rule counters unless verbose
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH] nft: don't print rule counters unless verbose
- From: Eric Garver <e@xxxxxxx>
- Re: [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH nft 0/5] doc: Wrap extra long lines to 80 chars
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nft] Expose socket mark via socket expression
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 nft] doc: Add tproxy statement to man page
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/5] doc: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft 5/5] doc: statements.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] doc: nft.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH nft 4/5] doc: stateful-objects.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft 3/5] doc: primary-expression.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft 2/5] doc: payload-expression.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft 1/5] doc: data-types.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH] netfilter: ipset: fix ip_set_list allocation failure
- From: Andrey Ryabinin <aryabinin@xxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Phil Sutter <phil@xxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Christopher Lameter <cl@xxxxxxxxx>
- Re: [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Phil Sutter <phil@xxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Misuse of constructors
- From: Matthew Wilcox <willy@xxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Christopher Lameter <cl@xxxxxxxxx>
- Re: [PATCH nft] doc: nft.txt: Wrap extra long lines to 80 chars
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: nft.txt: Wrap extra long lines to 80 chars
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: don't prevent event handler from device cleanup on netns exit
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Andrey Ryabinin <aryabinin@xxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- [PATCH] netfilter: nf_tables: remove redundant variables 'create' and 'ext'
- From: YueHaibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Rob Herring <robh@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 00/10] audit: implement container identifier
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 03/10] audit: log container info of syscalls
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 02/10] audit: add container id
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 01/10] audit: collect audit task parameters
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 04/10] audit: add containerid support for ptrace and signals
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 05/10] audit: add support for non-syscall auxiliary records
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 06/10] audit: add containerid support for tty_audit
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 08/10] audit: add support for containerid to network namespaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 07/10] audit: add containerid filtering
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 10/10] debug audit: read container ID of a process
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH ghak90 (was ghak32) V4 09/10] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/2 nf-next] nfnetlink_osf: rename nf_osf header file to nfnetlink_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH nf-next 1/2] fixup: nf_osf: move nf_osf_fingers to non-uapi nf_osf header file
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Christopher Lameter <cl@xxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Florian Westphal <fw@xxxxxxxxx>
- SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation)
- From: Andrey Ryabinin <aryabinin@xxxxxxxxxxxxx>
- Re: [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH net v2 0/2] fix glitch in IPVS /proc handlers
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH net v2 1/2] jiffies: add utility function to calculate delta in ms
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net v2 2/2] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net v2 1/2] jiffies: add utility function to calculate delta in ms
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH net v2 0/2] fix glitch in IPVS /proc handlers
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH] nft: doc: changes in configure file for PDF creation
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: flow event notifier must use transaction mutex
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH nf-next] netfilter: kconfig: make ct zone/labels selectable without xtables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH] nft: doc: correct some typos in asciidoc
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf] netfilter: fix memory leaks on netlink_dump_start error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v3 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [netfilter-core] [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [netfilter-core] [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] Expose socket mark via socket expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 libnftnl] Add tproxy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v3] expr: add osf support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next v3] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v3] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v3] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: use PTR_ERR_OR_ZERO()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v5 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH PATCH net-next 15/18] sunrpc: whitespace fixes
- From: Anna Schumaker <Anna.Schumaker@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Andy Lutomirski <luto@xxxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Nathan Harold <nharold@xxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v4 nft] Set/print standard chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- KMSAN: uninit-value in iptable_mangle_hook (3)
- From: syzbot <syzbot+60f2e2b690c5cf94e35d@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 06/23] xtables: Fix ebtables-restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [iptables PATCH 03/23] xtables: Use correct built-in chain count
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/23] xtables: Implement arptables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/23] xtables: Use correct built-in chain count
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 20/23] arptables: Fix opcode printing in numeric output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 18/23] arptables: Fix jumps into user-defined chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/23] xtables: Fix debug output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/23] xtables: Fix memleak when adding builtin chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 07/23] ebtables: Fix memleak in do_commandeb()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 22/23] tests: Add arptables-{save,restore} testcase
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 15/23] arptables: Fix printing non-standard target parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 23/23] tests: Add ebtables-{save,restore} testcase
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 01/23] xtables: Fix symlinks/names for ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/23] arptables: Print policy only for base chains
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 19/23] arptables: Fix for trailing spaces in output
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/23] ebtables: Print non-standard target parameters
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 05/23] ebtables: Fix match_list insertion
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 17/23] arptables: Fix memleaks in target handling
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 06/23] xtables: Fix ebtables-restore
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 16/23] arptables: Fix memleak in do_commandarp()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/23] ebtables: Support --init-table command
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft v3 2/2] tests: py: add ct timeout tests
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft v3 1/2] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables-restore: free the table lock when skipping a table
- From: Joel Goguen <contact+netfilter@xxxxxxxxxx>
- Re: [PATCH] iptables-restore: free the table lock when skipping a table
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nft: doc: Convert man page source to asciidoc
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH 00/18] xfrm: Add compat layer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Vlastimil Babka <vbabka@xxxxxxx>
- [PATCH 07/18] netlink: Pass groups pointer to .bind()
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- [PATCH 00/18] xfrm: Add compat layer
- From: Dmitry Safonov <dima@xxxxxxxxxx>
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: ip6t_rpfilter: set F_IFACE for linklocal addresses
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: linux-next: Tree for Jul 25 (netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_set: fix allocation size overflow in privsize callback.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: 4.14.54 regression: rpfilter and DHCPv6
- From: Eric Garver <e@xxxxxxx>
- 4.14.54 regression: rpfilter and DHCPv6
- From: Roman Mamedov <rm@xxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH PATCH net-next 08/18] sctp: whitespace fixes
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- Re: [PATCH PATCH net-next 07/18] ceph: fix whitespace
- From: Ilya Dryomov <idryomov@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: avoid use-after free on rmmod
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- [PATCH] nft: doc: Convert man page source to asciidoc
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH][v3] netfilter: use kvmalloc_array to allocate memory for hashtable
- From: Li RongQing <lirongqing@xxxxxxxxx>
- Re: Re: [PATCH v2] ipvs: fix race between ip_vs_conn_new() andip_vs_del_dest()
- From: <tan.hu@xxxxxxxxxx>
- [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- 答复: [PATCH][v2] netfilter: use kvzalloc to allocate memory for hashtable
- From: "Li,Rongqing" <lirongqing@xxxxxxxxx>
- Re: [PATCH v2] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH][v2] netfilter: use kvzalloc to allocate memory for hashtable
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re:(3) $ 100, any 20 countries of your choice / $100 любые 20 стран на Ваш выбор...
- From: "Business groups (cuexcech)" <dsnhzboeuh@xxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Michael Ellerman <mpe@xxxxxxxxxxxxxx>
- Re: Re: [PATCH] ipvs: fix race between ip_vs_conn_new() andip_vs_del_dest()
- From: <tan.hu@xxxxxxxxxx>
- [PATCH v2] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH libnftnl v3] expr: add osf support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/3 nf-next v3] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/3 nf-next v3] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/3 nf-next v3] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH PATCH net-next 00/18] net whitespace cleanups
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Jonathan Cameron <jic23@xxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Andrew Morton <akpm@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH PATCH net-next 00/18] net whitespace cleanups
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 01/18] sched: fix trailing whitespace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 02/18] wimax: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 04/18] llc: fix whitespace issues
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 03/18] rds: remove trailing whitespace and blank lines
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 06/18] xfrm: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 07/18] ceph: fix whitespace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 08/18] sctp: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 09/18] ila: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 10/18] 9p: fix whitespace issues
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 13/18] x25: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 14/18] decnet: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 16/18] bpfilter: remove trailing newline
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 17/18] l2tp: remove trailing newline
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 18/18] net: remove blank lines at end of file
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 15/18] sunrpc: whitespace fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 12/18] ax25: remove blank line at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 11/18] atm: remove blank lines at EOF
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH PATCH net-next 05/18] mpls: remove trailing whitepace
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_tables: free flow table struct too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: don't allow to rename to already-pending name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_tables: move dumper state allocation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_tables: use dev->name directly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: fix memory leaks on chain rename
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nft_set_rbtree: fix panic when destroying set by GC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: nf_tables: fix jumpstack depth validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH xtables] xtables: avoid bogus 'is incompatible' warning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: David Ahern <dsahern@xxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: netfilter xt_alloc_table_info regression
- From: Michal Hocko <mhocko@xxxxxxxxxx>
- [PATCH] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest()
- From: Tan Hu <tan.hu@xxxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- netfilter xt_alloc_table_info regression
- From: Georgi Nikolov <gnikolov@xxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: export indexes via netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: linux-next: Tree for Jul 23 (netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nf-next v2] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_conntrack: bsf.c: fix verdict
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: shaochun chen <cscnull@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak of dump
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netlink: fix memory leak of dump
- From: Shaochun Chen <cscnull@xxxxxxxxx>
- Re: iptables-save - suggest patch to add functionality
- From: Alban Vidal <alban.vidal@xxxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netlink: fix memory leak
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [PATCH] netlink: fix memory leak
- From: Shaochun Chen <cscnull@xxxxxxxxx>
- Re: typo found in socket.h at nftables repository
- From: Florian Westphal <fw@xxxxxxxxx>
- typo found in socket.h at nftables repository
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [RFC PATCH ghak90 (was ghak32) V3 08/10] audit: NETFILTER_PKT: record each container ID associated with a netNS
- From: Laura Garcia <nevola@xxxxxxxxx>
- [PATCH] libnetfilter_conntrack: bsf.c: fix verdict
- From: Florian Lehner <nfct@xxxxxxxxxxx>
- Re: [PATCH 00/38] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] ipvs: don't show negative times in ip_vs_conn
- From: Matteo Croce <mcroce@xxxxxxxxxx>
- [PATCH libnftnl v2] expr: add osf support
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/3 nf-next v2] netfilter: nft_osf: implement Passive OS fingerprint module in nft_osf
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 2/3 nf-next v2] netfilter: nfnetlink_osf: extract nfnetlink_subsystem code from xt_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 0/4] netfilter: nf_tables: fix resource leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Felix Fietkau <nbd@xxxxxxxx>
- [PATCH 05/38] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/38] netfilter: conntrack: avoid l4proto pkt_to_tuple calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/38] netfilter: nf_conncount: Move locking into count_tree()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/38] netfilter: nf_conncount: Split insert and traversal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/38] netfilter: nf_conncount: Switch to plain list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/38] netfilter: nf_conncount: Add list lock and gc worker, and RCU for init tree search
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/38] netfilter: nf_tables: take module reference when starting a batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/38] netfilter: nf_tables: use dedicated mutex to guard transactions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/38] netfilter: nf_osf: add missing definitions to header file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 37/38] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/38] netfilter: nf_osf: add struct nf_osf_hdr_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 36/38] netfilter: nft_socket: Expose socket mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 35/38] netfilter: nft_socket: Break evaluation if no socket found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/38] netfilter: conntrack: remove l3proto abstraction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/38] netfilter: nf_tables: avoid global info storage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/38] netfilter: nf_tables: add and use helper for module autoload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/38] netfilter: nf_osf: add nf_osf_match_one()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/38] netfilter: nf_tables: make valid_genid callback mandatory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/38] ipvs: drop conn templates under attack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/38] netfilter: Remove useless param helper of nf_ct_helper_ext_add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/38] ipvs: provide just conn to ip_vs_state_name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/38] ipvs: add assured state for conn templates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/38] netfilter: nf_conntrack: resolve clash for matching conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/38] netfilter: conntrack: remove get_timeout() indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/38] netfilter: nf_conncount: Early exit in nf_conncount_lookup() and cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/38] netfilter: Kconfig: Change select IPv6 dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/38] netfilter: nf_conncount: Early exit for garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/38] netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/38] netfilter: conntrack: remove invert_tuple indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/38] netfilter: conntrack: avoid calls to l4proto invert_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/38] netfilter: conntrack: remove ctnetlink callbacks from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/38] netfilter: conntrack: remove pkt_to_tuple indirection from l3 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/38] netfilter: Kconfig: Make NETFILTER_XT_MATCH_SOCKET select NF_SOCKET_IPV4/6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/38] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/38] netfilter: utils: move nf_ip_checksum* from ipv4 to utils
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/38] netfilter: nft_tproxy: Move nf_tproxy_assign_sock() to nf_tproxy.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/38] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/38] netfilter: nft_reject_bridge: remove unnecessary ttl set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 nft] tests: py: Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v3 nft] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v2 libnftnl] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH v4 nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH xtables] nft: decode meta l4proto
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore}
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH V2 nf 3/3] netfilter: nf_tables: add default set size
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [iptables PATCH 06/17] xtables: Use new callbacks in nft_rule_print_save()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore}
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 09/17] xtables: Merge nft_ipv{4,6}_parse_target()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 02/17] iptables: Replace memset by c99-style initializers
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 10/17] xtables: Eliminate nft_ipv{4,6}_rule_find()
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 04/17] xtables: Simplify struct nft_xt_ctx
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 12/17] xtables: Rename {print,save}_rule functions
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 03/17] xtables: Merge {ip,arp}tables_command_state structs
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 08/17] xtables: Get rid of nft_ipv{4,6}_print_header()
- From: Phil Sutter <phil@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]