Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH] ebtables: abandon KERNEL_INCLUDES and use double quotes
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- Re: [PATCH] build: abandon KERNEL_INCLUDES variable
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_conncount: fix garbage collection confirm race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_log: fix uninit read in nf_log_proc_dostring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_log: don't hold nf_log_mutex during user access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- Re: [PATCH] build: abandon KERNEL_INCLUDES variable
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] build: abandon KERNEL_INCLUDES variable
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] build: abandon KERNEL_INCLUDES variable
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: John Crispin <john@xxxxxxxxxxx>
- [PATCH] build: abandon KERNEL_INCLUDES variable
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] ebtables: Use double quotes in #include statements for local headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH] netfilter: nf_flow_table: add conntrack accounting
- From: John Crispin <john@xxxxxxxxxxx>
- Re: [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf-next v2] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr
- From: Pravin Shelar <pshelar@xxxxxxx>
- Re: [PATCH] ebtables: Use double quotes in #include statements for local headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf v2] netfilter: nf_conncount: fix garbage collection confirm race
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- stable request: don't set F_IFACE on ipv6 fib lookups and followup fix
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] net: preserve sock reference when scrubbing the skb.
- From: Flavio Leitner <fbl@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2] netfilter: utils: move nf_ip_checksum* from ipv4 to utils
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] doc: Fix spelling error in hashlimit section
- From: Major Hayden <major@xxxxxxxx>
- [PATCH net] netfilter: nf_log: don't hold nf_log_mutex during user access
- From: Jann Horn <jannh@xxxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] ebtables: Use double quotes in #include statements for local headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] ebtables: Use double quotes in #include statements for local headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf|nf-next] netfilter: Refactor nf_tproxy_get_sock_v{4,6}
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [libnftnl PATCH 3/3] expr/exthdr: Fix JSON parsing on big endian
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 2/3] expr/data_reg: Fix JSON parsing on big endian
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/3] utils: Fix nftnl_get_value() on big endian
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 0/3] Fixes for JSON parsing on big endian
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: KMSAN: uninit-value in ip_vs_lblc_check_expire
- From: syzbot <syzbot+3e9695f147fb529aa9bc@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nft] tests/py: fix import when run from other directory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests/py: fix import when run from other directory
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [nft PATCH] netlink_delinearize: Refactor meta_may_dependency_kill()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft v2 7/7] tests/py: minor cleaning
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf v2] netfilter: nf_conncount: fix garbage collection confirm race
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: trace: fix policy printing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft 0.8.2 - icmp missing verdict
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_log: fix uninit read in nf_log_proc_dostring
- From: Jann Horn <jannh@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nft] Add tproxy support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft 0.8.2 - icmp missing verdict
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [arptables PATCH] arptables: legacy renaming
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 7/7] tests/py: minor cleaning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] Add tproxy support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] Add test cases for tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next] netfilter: Add native tproxy support for nf_tables
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH libnftnl] Add tproxy support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf_tables] Introduce TPROXY support
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft v2 7/7] tests/py: minor cleaning
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Andrew Collins <bsderandrew@xxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nft v2 3/7] configure.ac: docbook2man invalid syntax error
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 2/7] configure.ac: remove useless braces in messages
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 1/7] configure.ac: better message when a2x is missing
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 6/7] doc: fix make distcheck
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 5/7] python: set license and author in nftables.py
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 4/7] python: installation of binding via make install
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 7/7] tests/py: minor cleaning
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft v2 0/7] python install and build fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH nft 3/8] python: installation of binding via make install
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [RFC PATCH ghak86 V1] audit: eliminate audit_enabled magic number comparison
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH v2] nftables: Fix typos/Grammatical Errors
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] xtables: warn in case old-style (set/getsockopt) tables exist
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nft] Set/print standard chain priorities with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft v2] tests: shell: Add test case for multiple sets
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- Re: [PATCH xtables] xtables: add nf_tables vs. legacy postfix to version strings
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [PATCH nf-next v5] net: netfilter: nf_tables_api: Use id allocation
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- Re: [PATCH v2] nftables: Fix typos/Grammatical Errors
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v2] nftables: Fix typos/Grammatical Errors
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf-next] netfilter: Move nf_tproxy_assign_sock to nf_tproxy.h
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next] netfilter: Configuration fixes for ip/nftables socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft 8/8] doc: fix make distcheck
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 8/8] doc: fix make distcheck
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf-next v4] net: netfilter: nf_tables_api: Use id allocation.
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: Detect address family in inet context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 7/8] tests/py: minor cleaning
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 5/8] python: add build system file to .gitignore
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 4/8] python: set license and author in nftables.py
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 1/8] configure.ac: better message when a2x is missing
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 2/8] configure.ac: remove useless braces in messages
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 3/8] python: installation of binding via make install
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 0/8] python install and build fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 6/8] python: change author info
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft 8/8] doc: fix make distcheck
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH xtables] xtables: add nf_tables vs. legacy postfix to version strings
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] configure.ac: docbook2man invalid syntax error
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH nf] netfilter: helper: Fix possible panic after nf_conntrack_helper_unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: ipv6: nf_defrag: reduce struct net memory waste
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_queue: augment nfqa_cfg_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables v2] xtables: add xtables-monitor
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Makefile: Introduce Make_global.am
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf] netfilter: nf_conncount: fix garbage collection confirm race
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [PATCH nft] evaluate: Detect address family in inet context
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [RFC nf-next 0/7] netfilter: nf_conncount: optimize nf_conncount performance
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 1/7] netfilter: nf_conncount: Early exit for garbage collection
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 2/7] netfilter: nf_conncount: Switch to plain list
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 6/7] netfilter: nf_conncount: Add list lock and use RCU for init tree search
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 5/7] netfilter: nf_conncount: Split insert and traversal
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 7/7] netfilter: nf_conncount: Add garbage collection worker
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [nft PATCH 1/3] scanner: Do not convert tabs into spaces
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/3] libnftables: Fix exit_cookie()
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/3] libnftables: A few fixes and cleanups
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 0/3] libnftables: A few fixes and cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix exit_cookie()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_conncount: fix garbage collection confirm race
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] Makefile: Introduce Make_global.am
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/3] doc: libnftables-json: Review asciidoc syntax
- From: Phil Sutter <phil@xxxxxx>
- [RFC nf-next 4/7] netfilter: nf_conncount: Move locking into count_tree()
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [RFC nf-next 3/7] netfilter: nf_conncount: Early exit in nf_conncount_lookup() and cleanup
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [nft PATCH v2] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Phil Sutter <phil@xxxxxx>
- [PATCH xtables 3/3] xtables: add xtables-monitor
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables 2/3] xtables: translate nft meta trace set 1 to -j TRACE
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables 1/3] include: update kernel netfilter header files
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- [nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] doc: Fix typo in Makefile.am
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] doc: Fix typo in Makefile.am
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] netfilter: flowtables: use fixed renew timeout on teardown
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Tom Herbert <tom@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Edward Cree <ecree@xxxxxxxxxxxxxx>
- Re: [nft PATCH] doc: Add libnftables man page
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- Re: [PATCH] nftables: Fix typos/Grammatical Errors
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] nftables: Fix typos/Grammatical Errors
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] extensions: ebt_string: take action if snprintf discards data
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Tom Herbert <tom@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Florian Fainelli <f.fainelli@xxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- [PATCH net-next,RFC 07/13] netfilter: add ESP support for early ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 10/13] netfilter: nf_flow_table: add flowtable for early ingress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 05/13] netfilter: add early ingress hook for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 06/13] netfilter: add early ingress support for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 11/13] netfilter: nft_flow_offload: enable offload after second packet is seen
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 08/13] netfilter: nft_chain_filter: add support for early ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 12/13] netfilter: nft_flow_offload: remove secpath check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 09/13] netfilter: nf_flow_table: add hooknum to flowtable type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 03/13] net: Add a GSO feature bit for the netfilter forward fastpath.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 13/13] netfilter: nft_flow_offload: make sure route is not stale
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 02/13] net: Change priority of ipv4 and ipv6 packet offloads.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 04/13] net: Use one bit of NAPI_GRO_CB for the netfilter fastpath.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 01/13] net: Add a helper to get the packet offload callbacks by priority.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next,RFC 00/13] New fast forwarding path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] doc: Add libnftables man page
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 7/7] netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH WIP nftables] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH WIP nftables] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH WIP nftables] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [RFC nf-next 0/5] netfilter: add ebpf translation infrastructure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: conntrack: remove invert_tuple indirection from l3 protocol trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: conntrack: remove pkt_to_tuple indirection from l3 protocol trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: conntrack: remove ctnetlink callbacks from l3 protocol trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/7] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: utils: move nf_ip_checksum* from ipv4 to utils
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/7] netfilter: preparation work to remove l3 trackers
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] libnftables: Fix exit_cookie()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net] netfilter: ipv6: nf_defrag: reduce struct net memory waste
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH nf-next v4] net: netfilter: nf_tables_api: Use id allocation.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH net] netfilter: nf_queue: augment nfqa_cfg_policy
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH 1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_tables: fix module unload race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_conncount: Fix garbage collection with zones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: ctnetlink: avoid null pointer dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: xt_connmark: fix list corruption on rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: nft_socket: fix module autoload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_tables: close race between netns exit and rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: helper: Fix possible panic after nf_conntrack_helper_unregister
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH] src: Fix another build warning / error
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC nf-next 0/5] netfilter: add ebpf translation infrastructure
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [RFC PATCH ghak86 V1] audit: eliminate audit_enabled magic number comparison
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [RFC PATCH ghak86 V1] audit: eliminate audit_enabled magic number comparison
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH] src: Fix another build warning / error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: Fix nf_conncount garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: Fix nf_conncount garbage collection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: Fix nf_conncount garbage collection
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- Re: [PATCH v2] iptables: tests: shell: add shell test-suite
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nf_tables: close race between netns exit and rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nf_tables: fix module unload race
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: avoid null pointer dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_connmark: fix list corruption on rmmod
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: xt_connmark: fix list corruption on rmmod
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC nf-next 0/5] netfilter: add ebpf translation infrastructure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] src: Fix another build warning / error
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] src: Fix another build warning / error
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] ebtables: Fix build errors and warnings
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH libnftnl v2 3/3] examples: Add test for assigning timeout objects via rule
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v2 2/3] examples: add nft-ct-timeout-{add,del,get}
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v2 1/3] src: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl v2 0/3] Add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH 00/15] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [RFC nf-next 0/5] netfilter: add ebpf translation infrastructure
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: avoid null pointer dereference
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_reject_bridge: remove unnecessary ttl set
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH nft] rule: do not print default burst for objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: do not print default burst for objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add dynamic flag and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain()
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables: close race between netns exit and rmmod
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/2] netfilter: nf_tables: fix module unload race
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH 0/7] JSON: Some fixes and documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/15] netfilter: ipset: List timing out entries with "timeout 1" instead of zero
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/15] ipvs: fix check on xmit to non-local addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/15] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/15] netfilter: ebtables: fix compat entry padding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/15] netfilter: xt_set: Check hook mask correctly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/15] netfilter: nft_reject_bridge: fix skb allocation size in nft_reject_br_send_v6_unreach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/15] netfilter: nft_set_rbtree: fix parameter of __nft_rbtree_lookup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/15] netfilter: ebtables: reject non-bridge targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/15] netfilter: x_tables: initialise match/target check parameter struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/15] netfilter: remove include/net/netfilter/nft_dup.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/15] netfilter: ipset: Limit max timeout value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/15] ipvs: register conntrack hooks for ftp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/15] netfilter: nf_conntrack: Increase __IPS_MAX_BIT with new bit IPS_OFFLOAD_BIT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/15] netfilter: ipset: forbid family for hash:mac sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/15] netfilter: nf_tables: check msg_type before nft_trans_set(trans)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/15] netfilter: xt_CT: Reject the non-null terminated string from user space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: BUG: unable to handle kernel paging request in ebt_do_table
- From: Florian Westphal <fw@xxxxxxxxx>
- BUG: unable to handle kernel paging request in ebt_do_table
- From: syzbot <syzbot+93f34882275ae7caf9db@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Tproxy matching syntax
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] iptables: tests: shell: add shell test-suite
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [ANNOUNCE] nftables 0.9.0 release
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.1 release
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH 3/7] JSON: Don't print burst if equal to 5
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 5/7] JSON: Add support for connlimit statement
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/7] JSON: Call verdict maps 'vmap' in JSON as well
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/7] JSON: Some fixes and documentation
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 6/7] JSON: Support latest enhancements of fwd statement
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 7/7] doc: Add JSON schema documentation
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/7] tests/py: Fix JSON for flowtable tests
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/7] JSON: Add support for socket expression
- From: Phil Sutter <phil@xxxxxx>
- Tproxy matching syntax
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] iptables: tests: shell: add shell test-suite
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables: tests: shell: add shell test-suite
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove include/net/netfilter/nft_dup.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: initialise match/target check parameter struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_socket: fix module autoload
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: KMSAN: uninit-value in ebt_stp_mt_check (2)
- From: syzbot <syzbot+da4494182233c23a5fcf@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] iptables: tests: shell: add shell test-suite
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] netfilter: remove include/net/netfilter/nft_dup.h
- From: Corentin Labbe <clabbe@xxxxxxxxxxxx>
- [PATCH nf] netfilter: x_tables: initialise match/target check parameter struct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KMSAN: uninit-value in ebt_stp_mt_check (2)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- KMSAN: uninit-value in ebt_stp_mt_check (2)
- From: syzbot <syzbot+da4494182233c23a5fcf@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_socket: fix module autoload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expr: add map lookups for numgen statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: do not reset generation ID on ruleset flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] Set/print base chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: Increase __IPS_MAX_BIT with new bit IPS_OFFLOAD_BIT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] Set/print base chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_conntrack: Increase __IPS_MAX_BIT with new bit IPS_OFFLOAD_BIT
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH v2 nft] Set/print base chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nft] Set/print base chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nft] test: py: Add test cases for socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] include: update linux/netfilter_ipv4.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft] Introduce socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_rbtree: fix parameter of __nft_rbtree_lookup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] expr: extend fwd statement to support address and family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_set_rbtree: fix parameter of __nft_rbtree_lookup()
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH libnftnl] expr: extend fwd to support address and protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables src: Use double quotes in #includes for local headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nft] src: connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnfnl] expr: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter: nf_flow_table: attach dst to skbs
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: netfilter: nf_flow_table: attach dst to skbs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf] netfilter: ebtables: reject non-bridge targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] nat: Eliminate misuse of AF_*
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Explicitly deny concatenated types in interval sets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] build: update ebtables.h from kernel and drop local unused copy
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/4] netfilter: ipset: List timing out entries with "timeout 1" instead of zero
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/4] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: ipset: forbid family for hash:mac sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: ipset: Limit max timeout value
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: xt_set: Check hook mask correctly
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] build: update ebtables.h from kernel and drop local unused copy
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] build: update ebtables.h from kernel and drop local unused copy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: update ebtables.h from kernel and drop local unused copy
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [nft PATCH] Explicitly deny concatenated types in interval sets
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] iptables src: Use double quotes in #includes for local headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH v2 nf] netfilter: ebtables: reject non-bridge targets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: ebtables: reject non-bridge targets
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] nat: Eliminate misuse of AF_*
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [nft PATCH] nft.8: Fix reject statement documentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] nft.8: Fix reject statement documentation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_ip: attach dst to skbs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables src: Use double quotes in #includes for local headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- WARNING in ebt_do_table
- From: syzbot <syzbot+2b43f681169a2a0d306a@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_ip: attach dst to skbs
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- [RFC PATCH ghak86 V1] audit: eliminate audit_enabled magic number comparison
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH] iptables src: Use double quotes in #includes for local headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 0/4] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] iptables src: Use double quotes in #includes for local headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH] libnftnl src: Use double quotes in #includes for non-system headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v2] libmnl src: Use double quotes in #includes for non-system headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/4] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- net-next is CLOSED
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: nftables: added support for per-file variable scopes and global variables
- From: David Fabian <david.fabian@xxxxxxxxx>
- [PATCH v2 1/4] Added implicit variable scope to each include command to support local variables
- From: David Fabian <david.fabian@xxxxxxxxx>
- [PATCH v2 2/4] Added support for global variable definitions.
- From: David Fabian <david.fabian@xxxxxxxxx>
- [PATCH v2 4/4] Added tests for nested file-based scopes
- From: David Fabian <david.fabian@xxxxxxxxx>
- [PATCH v2 0/4] Added support for per-file variable scopes and global variables
- From: David Fabian <david.fabian@xxxxxxxxx>
- [PATCH v2 3/4] Refactoring of indesc hierarchy.
- From: David Fabian <david.fabian@xxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: nft: add support for native socket matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nftables] configure.ac: fix a typo in docbook2x error message.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] configure.ac: fix a typo in docbook2x error message.
- From: Fernando Fernandez Mancera <ffmancera@xxxxxxxxxx>
- [PATCH 3/4] netfilter: ipset: Limit max timeout value
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/4] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: xt_set: Check hook mask correctly
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: ipset: forbid family for hash:mac sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: ipset: List timing out entries with "timeout 1" instead of zero
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] libmnl src: Use double quotes in #includes for non-system headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] nftables src: Use double quotes in #includes for non-system headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v2] libmnl src: Use double quotes in #includes for non-system headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v1] libmnl src: Use double quotes in #includes for non-system headers
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- issues with shaping cake to 60 gbits or in unlimited mode at 100gbps
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: forbid family for hash:mac sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] ebtables: fix compat entry padding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ebtables: fix compat entry padding
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] ipvs: fix check on xmit to non-local addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_reject_bridge: fix skb allocation size in nft_reject_br_send_v6_unreach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH] netfilter: ipset: forbid family for hash:mac sets
- From: Florent Fourcot <florent.fourcot@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: add NFT_LOGLEVEL_* enumeration and use it
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [RFC PATCH nft] parser: Set base chain prios with textual names
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] include: update linux/netfilter_ipv4.h
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: Is there something wrong with this patch?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] src: Use double quotes in include statements for non-system headers
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net] ipvs: fix check on xmit to non-local addresses
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: Is there something wrong with this patch?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix null-ptr-deref in nf_nat_decode_session
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nft] test: py: Add test cases for socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] src: Use double quotes in include statements for non-system headers
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Is there something wrong with this patch?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix null-ptr-deref in nf_nat_decode_session
- From: Prashant Bhole <bhole_prashant_q7@xxxxxxxxxxxxx>
- Re: [PATCH 0/9,v2] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add NFT_LOGLEVEL_* enumeration and use it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] log: Add support for audit logging
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/7] Review wildcard expression parsing and some more
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9,v2] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_conncount: expose connection list interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: Libify xt_TPROXY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nf_tables: pass context to object destroy indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: Decrease code duplication regarding transparent socket option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: garbage collection for stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nf_tables: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: add destroy_clone expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_tables: handle chain name lookups via rhltable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: nf_tables: pass ctx to nf_tables_expr_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: Decrease code duplication regarding transparent socket option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: handle chain name lookups via rhltable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Libify xt_TPROXY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: handle chain name lookups via rhltable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,v4 6/6] netfilter: nf_tables: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 3/6] netfilter: nf_tables: pass ctx to nf_tables_expr_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 4/6] netfilter: nf_tables: garbage collection for stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 5/6] netfilter: nf_tables: add destroy_clone expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 2/6] netfilter: nf_conncount: expose connection list interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 1/6] netfilter: nf_tables: pass context to object destroy indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 5/6] netfilter: nf_tables: add destroy_clone expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/6] netfilter: nf_tables: garbage collection of stale expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/6] netfilter: nf_conncount: expose connection list interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/6] netfilter: nf_tables: pass context to object destroy indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 3/6] netfilter: nf_tables: pass ctx to nf_tables_expr_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 6/6] netfilter: nf_tables: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 0/6] connlimit support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] ipvs: fix check on xmit to non-local addresses
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 00/20] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Libify xt_TPROXY
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Libify xt_TPROXY
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH 05/20] netfilter: nf_tables: remove synchronize_rcu in commit phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/20] netfilter: nft_compat: use call_rcu for nfnl_compat_get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/20] netfilter: add includes to nf_socket.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/20] netfilter: nat: merge ipv4/ipv6 masquerade code into main nat module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/20] netfilter: nat: make symbol nat_hook static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/20] netfilter: nf_tables: use call_rcu in netlink dumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/20] netfilter: nat: merge nf_nat_redirect into nf_nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/20] netfilter: nf_tables: Add audit support to log statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/20] netfilter: nf_tables: fix chain dependency validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/20] netfilter: fix ptr_ret.cocci warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/20] ipvs: add full ipv6 support to nfct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/20] ipvs: add ipv6 support to ftp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/20] netfilter: nfnetlink: Remove VLA usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/20] netfilter: nf_flow_table: attach dst to skbs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/20] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/20] netfilter: nf_tables: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/20] netfilter: nf_tables: fail batch if fatal signal is pending
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/20] netfilter: nf_tables: remove unused variables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/20] netfilter: nf_tables: fix endian mismatch in return type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/20] netfilter: nfnetlink: allow commit to fail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/20] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: register conntrack hooks for ftp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] ipvs: register conntrack hooks for ftp
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: nft: add support for native socket matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Libify xt_TPROXY
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: Libify xt_TPROXY
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH net-next v18 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next v18 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [nft PATCH 0/7] Review wildcard expression parsing and some more
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 4/7] JSON: Fix add rule with index
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/7] parser_bison: Merge wildcard_rhs_expr and wildcard_stmt_expr
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 7/7] tests/py: ip6/flowtable.t: Add missing JSON expected output
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 5/7] JSON: Fix replace command parser
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/7] JSON: Simplify verdict statement parsing
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/7] JSON: Simplify wildcard expression
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 6/7] JSON: Review large number parsing/printing
- From: Phil Sutter <phil@xxxxxx>
- [RFC nf-next 2/5] netfilter: nf_tables: add ebpf expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 3/5] netfilter: nf_tables: add rule ebpf jit infrastructure
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 4/5] netfilter: nf_tables_jit: add dumping of original rule
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 5/5] netfilter: nf_tables_jit: add userspace nft to ebpf translator
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 0/5] netfilter: add ebpf translation infrastructure
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC nf-next 1/5] bpf: add bpf_prog_get_type_dev_file
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] log: Add support for audit logging
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 nf-next] netfilter: Decrease code duplication regarding transparent socket option
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCHv2 net-next 0/2] Add IPv6 support to IPVS FTP-NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next 0/2] Add IPv6 support to IPVS FTP-NAT
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_reject_bridge: fix skb allocation size in nft_reject_br_send_v6_unreach
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: x_tables: Decrease code duplication in tproxy target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] Add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: check msg_type before nft_trans_set(trans)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: xt_CT: Reject the non-null terminated string from user space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nft_ct: add ct timeout support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: x_tables: Decrease code duplication in tproxy target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nfnetlink: Remove VLA usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_flow_table_ip: attach dst to skbs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_numgen: fix ptr_ret.cocci warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net: nftables: Add audit support to log statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulogd: json: send messages to a remote host / unix socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2 00/14] JSON: Some minor schema changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: x_tables: Decrease code duplication in tproxy target
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- Handling of EPROTONOSUPPORT in ebtables breaking Ubuntu 18.04 apt-get upgrade
- From: Hayden Barnes <hayden@xxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: check msg_type before nft_trans_set(trans)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_conncount: expose connection list interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: pass context to object destroy indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 nft] Introduce socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: check msg_type before nft_trans_set(trans)
- From: Alexey Kodanev <alexey.kodanev@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: add connlimit support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: pass context to object destroy indirection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_conncount: expose connection list interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next v18 5/8] sch_cake: Add NAT awareness to packet classifier
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v18 4/8] netfilter: Add nf_ct_get_tuple_skb global lookup function
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v18 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- Re: [PATCH nf-next] netfilter: x_tables: Decrease code duplication in tproxy target
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: x_tables: Decrease code duplication in tproxy target
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: properly initialize xt_table_info structure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulogd: json: send messages to a remote host / unix socket
- From: Andreas Jaggi <andreas.jaggi@xxxxxxxxxxxx>
- [PATCH v2] netfilter: nfnetlink: Remove VLA usage
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: Remove VLA usage
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nf_flow_table_ip: attach dst to skbs
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: Missing skb->dst with flow offloading
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: Missing skb->dst with flow offloading
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v5] netfilter: nf_tables: fix chain dependency validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Missing skb->dst with flow offloading
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: Missing skb->dst with flow offloading
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nft] Introduce socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] netlink: Print value sizes on Relational expression size mismatch
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nft] test: py: Add test cases for socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [bug report] netfilter: add struct nf_nat_hook and use it
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH] ebtables: fix compat entry padding
- From: Alin Nastac <alin.nastac@xxxxxxxxx>
- [PATCH v3 nf-next] netfilter: nft: add support for native socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: nft: nft_socket_type can be static
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- [PATCH nf-next,v4] netfilter: nf_tables: fix chain dependency validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: nft: nft_socket_type can be static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3] netfilter: nf_tables: fix chain dependency validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: nft: add support for native socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: nft: nft_socket_type can be static
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: Remove VLA usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: nft: nft_socket_type can be static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] fixup! netfilter: nft: add support for native socket matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] net: nftables: Add audit support to log statement
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] Introduce socket matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v16 4/8] netfilter: Add nf_ct_get_tuple_skb callback
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: Remove VLA usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ipset] tests/check_klog.sh: Try dmesg too, don't let shell terminate script
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: xt_CT: Reject the non-null terminated string from user space
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] fixup! netfilter: nft: add support for native socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nft] Introduce socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH net-next v16 4/8] netfilter: Add nf_ct_get_tuple_skb callback
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf v2] netfilter: xt_CT: Reject the non-null terminated string from user space
- From: gfree.wind@xxxxxxxxxxx
- [PATCH] netfilter: nfnetlink: Remove VLA usage
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Missing skb->dst with flow offloading
- From: "Jason A. Donenfeld" <Jason@xxxxxxxxx>
- Re: using specific ip address to restrict traffic flow on mips linux target is not permited ?
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH] net: nftables: Add audit support to log statement
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] tests: shell: add crash reproducer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ebtables: fix limit and mark modules incompatibilities between 32-bit user space and 64-bit kernel space
- From: Alin Năstac <alin.nastac@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix jump evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: fix jump evaluation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/8] netfilter: nf_tables: nf_tables_gettable: use call_rcu
- From: Florian Westphal <fw@xxxxxxxxx>
- using specific ip address to restrict traffic flow on mips linux target is not permited ?
- From: "Rosysong" <rosysong@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_CT: Force user-space strings as null terminated
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_CT: Force user-space strings as null terminated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft: add support for native socket matching
- From: Máté Eckl <ecklm94@xxxxxxxxx>
- Re: [PATCH nf-next 2/8] netfilter: nf_tables: nf_tables_gettable: use call_rcu
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf] netfilter: xt_CT: Force user-space strings as null terminated
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH 0/9] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft: add support for native socket matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- [RFC PATCH] netfilter: nft: nft_socket_type can be static
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft: add support for native socket matching
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 4/9] netfilter: nft_limit: fix packet ratelimiting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: provide correct argument to nla_strlcpy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_tables: disable preemption in nft_update_chain_stats()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nf_tables: increase nft_counters_enabled in nft_chain_stats_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] ipvs: fix buffer overflow with sync daemon and service
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: ebtables: handle string from userspace with care
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: nft_meta: fix wrong value dereference in nft_meta_set_eval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- BUG: unable to handle kernel (3)
- From: syzbot <syzbot+adfeaaee641dd4fdac43@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnftnl] Updated nf_tables.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] Updated nf_tables.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: remove unused variables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fail batch if fatal signal is pending
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix endian mismatch in return type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/8] netfilter: nf_tables: nf_tables_getgen: use call_rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/8] netfilter: nf_tables: nf_tables_getgen: use call_rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_compat: use call_rcu for nfnl_compat_get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nat: make symbol nat_hook static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nf_tables: remove synchronize_rcu in commit phase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v17 4/8] netfilter: Add nf_ct_get_tuple_skb global lookup function
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v17 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH net-next v17 5/8] sch_cake: Add NAT awareness to packet classifier
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- Re: [PATCH v2 nf-next 2/2] netfilter: nat: merge nf_nat_redirect into nf_nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 1/2] netfilter: nat: merge ipv4/ipv6 masquerade code into main nat module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: added includes to nf_socket.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v16 5/8] sch_cake: Add NAT awareness to packet classifier
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: increse nft_counters_enabled in nft_chain_stats_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-compat: homogenize error message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v3] netfilter: nft_ct: add ct timeout support
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH net-next v16 4/8] netfilter: Add nf_ct_get_tuple_skb callback
- From: Toke Høiland-Jørgensen <toke@xxxxxxx>
- [PATCH v2,xtables 4/4] xtables: initialize basechains for rule flush command too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2,xtables 3/4] xtables: rework rule cache logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2,xtables 2/4] xtables: add chain cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2,xtables 1/4] xtables: initialize basechains only once on ruleset restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables 1/4] xtables: always initialize basechains on ruleset restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables] xtables-compat: ignore '+' interface name
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH xtables] xtables-compat: append all errors into single line
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ebtables: fix limit and mark modules incompatibilities between 32-bit user space and 64-bit kernel space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v16 5/8] sch_cake: Add NAT awareness to packet classifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v16 4/8] netfilter: Add nf_ct_get_tuple_skb callback
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables 4/4] xtables: initialize basechains for rule flush command too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables 3/4] xtables: rework rule cache logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables 2/4] xtables: add chain cache
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables 1/4] xtables: always initialize basechains on ruleset restore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]