Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nft 5/5] tests: add test cases for vmap binop transfer
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 4/5] src: evaluate: add binop transfer support for vmaps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/5] evaluate: handle binop adjustment recursively
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/5] src: netlink_delinearize: don't assume element contains a value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/5] src: segtree: use value expression length
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] netlink_linearize: exthdr op must be u32
- From: Florian Westphal <fw@xxxxxxxxx>
- [nftables] vmap and bit-sized headers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: delete table via table handle
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix odd_ptr_err.cocci warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix odd_ptr_err.cocci warnings
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: delete table via table handle
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [iptables] extensions: add support for 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4] netfilter: nf_defrag: Skip defrag if NOTRACK is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: clusterip: make sure arp hooks are available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] Don't merge adjacent/overlapping ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables] extensions: add support for 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- [PATCH nf-next] netfilter: clusterip: make sure arp hooks are available
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4] netfilter: nf_defrag: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [nft PATCH v2] Don't merge adjacent/overlapping ranges
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next] netfilter: improve flow table Kconfig dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: improve flow table Kconfig dependencies
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH 0/2] parser_bison: delete chains via chain handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] parser_bison: delete chains via chain handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables] extensions: add support for 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next v2] netfilter: add segment routing header 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: core: return EBUSY in case NAT hook is already in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH net-next] netfilter: nf_flow_table: remove duplicated include from nf_flow_table_ipv6.c
- From: "weiyongjun (A)" <weiyongjun1@xxxxxxxxxx>
- Re: [nft PATCH] src/Makefile: Restore per object CFLAGS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: copy and paste bug in nf_tables_getflowtable()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_flow_table: remove duplicated include from nf_flow_table_ipv6.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_queue: remove duplicated include from nf_queue.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: x_tables: unbreak module auto loading
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: core: make local function __nf_unregister_net_hook static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: fix a typo in nf_tables_getflowtable()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: nf_flow_table: remove duplicated include from nf_flow_table_ipv6.c
- From: Wei Yongjun <weiyongjun1@xxxxxxxxxx>
- [PATCH net-next] netfilter: nf_queue: remove duplicated include from nf_queue.c
- From: Wei Yongjun <weiyongjun1@xxxxxxxxxx>
- Re: [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] src/Makefile: Restore per object CFLAGS
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] Don't merge adjacent/overlapping ranges by default
- From: Phil Sutter <phil@xxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter: nf_tables: copy and paste bug in nf_tables_getflowtable()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH net-next] netfilter: core: make local function __nf_unregister_net_hook static
- From: Wei Yongjun <weiyongjun1@xxxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: fix a typo in nf_tables_getflowtable()
- From: Wei Yongjun <weiyongjun1@xxxxxxxxxx>
- Re: libnftables extended API proposal
- From: mark diener <rpzrpzrpz@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: delete chains via chain handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH 2/2] parser_bison: extend nft to delete chain via chain handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH 1/2] src: Print handle attribute in chains
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH 0/2] parser_bison: delete chains via chain handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: nf_tables: get rid of struct nft_af_info abstraction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: nf_tables: add single table list for all families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: nf_tables: remove nhooks field from struct nft_af_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: nf_tables: get rid of pernet families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: nf_tables: no need for struct nft_af_info to enable/disable table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: nf_tables: remove struct nft_af_info parameter in nf_tables_chain_type_lookup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: nf_tables: remove flag field from struct nft_af_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/7] nf_tables: remove struct nft_af_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/52] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] build: Bump version to v0.8.1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: x_tables: unbreak module auto loading
- From: Florian Westphal <fw@xxxxxxxxx>
- compilation warning --with-mini-gmp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nf_defrag: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH 00/52] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 01/52] netfilter: conntrack: remove nlattr_size pointer from l4proto trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/52] netfilter: conntrack: l4 protocol trackers can be const
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/52] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/52] netfilter: conntrack: constify list of builtin trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/52] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/52] netfilter: mark expected switch fall-throughs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/52] netfilter: conntrack: timeouts can be const
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/52] netfilter: nf_conntrack_h323: Remove unwanted comments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/52] netfilter: core: free hooks with call_rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/52] netfilter: core: remove synchronize_net call if nfqueue is used
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/52] netfilter: core: make nf_unregister_net_hooks simple wrapper again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/52] netfilter: reduce size of hook entry point locations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/52] netfilter: ipset: add resched points during set listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/52] netfilter: add defines for arp/decnet max hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/52] netfilter: reduce NF_MAX_HOOKS define
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/52] netfilter: don't allocate space for decnet hooks unless needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/52] netfilter: xtables: add and use xt_request_find_table_lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/52] netfilter: nf_tables_arp: don't set forward chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/52] netfilter: nf_tables: reject nat hook registration if prio is before conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/52] netfilter: core: only allow one nat hook per hook point
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/52] netfilter: reduce hook array sizes to what is needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/52] netfilter: core: add nf_remove_net_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/52] netfilter: don't allocate space for arp/bridge hooks unless needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/52] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/52] netfilter: core: pass hook number, family and device to nf_find_hook_list()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/52] netfilter: core: pass family as parameter to nf_remove_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/52] netfilter: core: support for NFPROTO_INET hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/52] netfilter: nf_tables_inet: don't use multihook infrastructure anymore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/52] netfilter: nf_tables: add nft_set_is_anonymous() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/52] netfilter: move checksum indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/52] netfilter: nf_tables: remove multihook chains and families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/52] netfilter: move checksum_partial indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 35/52] netfilter: remove saveroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/52] netfilter: nf_tables: remove hooks from family definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 36/52] netfilter: move route indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/52] netfilter: connlimit: split xt_connlimit into front and backend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 41/52] netfilter: remove defensive check on malformed packets from raw sockets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 42/52] netfilter: nf_tables: remove nft_dereference()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 43/52] netfilter: nf_conntrack: add IPS_OFFLOAD status bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 39/52] netfilter: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 40/52] netfilter: meta: secpath support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 47/52] netfilter: flow table support for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 45/52] netfilter: add generic flow table infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 37/52] netfilter: move reroute indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 48/52] netfilter: flow table support for the mixed IPv4/IPv6 family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 51/52] netfilter: ipset: Fix "don't update counters" mode when counters used at the matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 52/52] netfilter: ipset: Missing nfnl_lock()/nfnl_unlock() is added to ip_set_net_exit()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 46/52] netfilter: flow table support for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 50/52] netfilter: ipset: use swap macro instead of _manually_ swapping values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 49/52] netfilter: nf_tables: flow offload expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 44/52] netfilter: nf_tables: add flow table netlink frontend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/52] netfilter: remove route_key_size field in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/52] netfilter: ipset: use nfnl_mutex_is_locked
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH v3] parser_bison: extend nft to delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH 0/3] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: avoid arp/bridge WARN_ON if arp/ebtables not supported
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [net-next v2] netfilter: add segment routing header 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next v2] netfilter: add segment routing header 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: nf_defrag: Skip defrag if NOTRACK is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: nf_nat_snmp_basic: snmp_version() can be static
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 5/5] netfilter: nf_nat_snmp_basic: use asn1 decoder library
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 4/5] netfilter: nf_nat_snmp_basic: use nf_ct_helper_log
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 3/5] netfilter: nf_nat_snmp_basic: replace ctinfo with dir.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 2/5] netfilter: nf_nat_snmp_basic: remove debug parameter
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 1/5] netfilter: nf_nat_snmp_basic: remove useless comment
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V5 0/5] netfilter: nf_nat_snmp_basic: use ASN.1 decoder
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [RFC PATCH nf-next] netfilter: nf_tables: nft_flow_offload_type can be static
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH nf-next] netfilter: avoid arp/bridge WARN_ON if arp/ebtables not supported
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Rebasing nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V5 5/5] netfilter: nf_nat_snmp_basic: use asn1 decoder library
- From: kbuild test robot <lkp@xxxxxxxxx>
- [nf-next:master 54/54] net//netfilter/nf_flow_table.c:196:6: error: void value not ignored as it ought to be
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [net-next v2] netfilter: add segment routing header 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net-next] netfilter: add segment routing header 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH v2] parser_bison: extend nft to delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [net-next] netfilter: add segment routing header 'srh' match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] parser_bison: extend nft to delete table via table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix int overflow in xt_alloc_table_info()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH] parser_bison: extend nft to delete table via table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [ANNOUNCE] ipset 6.35 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: Missing nfnl_lock()/nfnl_unlock() is added to ip_set_net_exit()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipset: Fix "don't update counters" mode when counters used at the matching
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: use swap macro instead of _manually_ swapping values
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/3] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix int overflow in xt_alloc_table_info()
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH] iptables: add support for rmirror target
- From: Colin Zeidler <czeidler@xxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: add encapsulated packet mirroring target
- From: Colin Zeidler <czeidler@xxxxxxxxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 0/3] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nf_tables: fix chain filter in nf_tables_dump_rules()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nf_tables: fix potential NULL-ptr deref in nf_tables_dump_obj_done()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: uapi: correct UNTRACKED conntrack state bit number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- suspicious RCU usage at net/netfilter/ipset/ip_set_core.c:LINE
- From: syzbot <syzbot+36b06f219f2439fe62e1@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [xtables-addons][PATCH 0/2] Compatibility fixes for linux 4.14 and 4.15
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH iptables] extensions: hashlimit: fix incorrect burst in translations
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [xtables-addons][PATCH 2/2] build: support for Linux 4.15
- From: Marcelo Henrique Cerri <marcelo.cerri@xxxxxxxxxxxxx>
- [xtables-addons][PATCH 1/2] build: support for Linux 4.14
- From: Marcelo Henrique Cerri <marcelo.cerri@xxxxxxxxxxxxx>
- [xtables-addons][PATCH 0/2] Compatibility fixes for linux 4.14 and 4.15
- From: Marcelo Henrique Cerri <marcelo.cerri@xxxxxxxxxxxxx>
- Re: general protection fault in nf_tables_dump_obj_done
- From: Florian Westphal <fw@xxxxxxxxx>
- general protection fault in nf_tables_dump_obj_done
- From: syzbot <syzbot+7ee59ac26bbfbd823f1f@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: hashlimit: always print timeout on translations
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: hashlimit: fix incorrect burst in translations
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH iptables] extensions: hashlimit: always print timeout on translations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: hashlimit: fix incorrect burst in translations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v3] netfilter: nf_defrag: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- And another thing
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: hashlimit: fix incorrect burst in translations
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [tip:core/rcu] netlink: Remove smp_read_barrier_depends() from comment
- From: "tip-bot for Paul E. McKenney" <tipbot@xxxxxxxxx>
- [tip:core/rcu] netfilter: Remove now-redundant smp_read_barrier_depends()
- From: "tip-bot for Paul E. McKenney" <tipbot@xxxxxxxxx>
- [tip:core/rcu] netfilter: Eliminate cond_resched_rcu_qs() in favor of cond_resched()
- From: "tip-bot for Paul E. McKenney" <tipbot@xxxxxxxxx>
- [PATCH iptables] extensions: hashlimit: fix incorrect burst in translations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] extensions: libxt_hashlimit: Do not insert default timeout or burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [net-next] netfilter: add segment routing header 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- [ANNOUNCE] libnftnl 1.0.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add nf_queue_entry forward declaration
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: linux-next: build warning after merge of the netfilter-next tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: remove defensive check on malformed packets from raw sockets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add nf_queue_entry forward declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: add nf_queue_entry forward declaration
- From: Arnd Bergmann <arnd@xxxxxxxx>
- linux-next: build warning after merge of the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: remove nft_dereference()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 2/8] netfilter: nf_tables: remove flag field from struct nft_af_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 8/8] netfilter: nf_tables: consolidate filter chain definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 5/8] netfilter: nf_tables: add single table list for all families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 7/8] netfilter: nf_tables: get rid of struct nft_af_info abstraction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 6/8] netfilter: nf_tables: get rid of pernet families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 4/8] netfilter: nf_tables: remove struct nft_af_info parameter in nf_tables_chain_type_lookup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 3/8] netfilter: nf_tables: no need for struct nft_af_info to enable/disable table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 1/8] netfilter: nf_tables: remove nhooks field from struct nft_af_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC 0/8] simplify nf_tables family and filter chain infra
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: remove defensive check on malformed packets from raw sockets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] tests: nft-parsing-test: fix warning - ignoring return value of fgets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] tests: change char * pointer to constant (const char *)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Unable to git clone git repositories
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Unable to git clone git repositories
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Unable to git clone git repositories
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [iptables] extensions: add support for 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- [net-next] netfilter: add segment routing header 'srh' match
- From: Ahmed Abdelsalam <amsalam20@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- [PATCH libnftnl] tests: nft-parsing-test: fix warning - ignoring return value of fgets
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH libnftnl] tests: change char * pointer to constant (const char *)
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: Fix exporting symbols with clang
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] build: libnftnl 1.0.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl,v2] data_reg: calm down compilation warning in nftnl_data_reg_value_json_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] data_reg: calm down compilation warning in nftnl_data_reg_value_json_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 7/7,v5] netfilter: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: lost connection to test machine (3)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH] netfilter: fix int overflow in xt_alloc_table_info()
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH v2] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: lost connection to test machine (3)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: lost connection to test machine (3)
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [PATCH nf-next,v4 7/7] netfilter: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 3/7] netfilter: remove saveroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 6/7] netfilter: remove route_key_size field in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 5/7] netfilter: move reroute indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 4/7] netfilter: move route indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 2/7] netfilter: move checksum_partial indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 1/7] netfilter: move checksum indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v4 0/7] get rid of struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] Can someone please review my latest wiki update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] Can someone please review my latest wiki update
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [nf-next:for-net-next4 37/40] net/netfilter/utils.c:60: undefined reference to `nf_ip_route'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH v2] netfilter: nf_tables: allocate table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: allocate table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: allocate table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix potential NULL-ptr deref in nf_tables_dump_obj_done()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: allocate table handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [bisected] Forwarded packets occasionally has loopback output interface in Netfilter
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH V4 5/5] netfilter: nf_nat_snmp_basic: use asn1 decoder library
- From: kbuild test robot <lkp@xxxxxxxxx>
- [RFC PATCH] netfilter: nf_nat_snmp_basic: snmp_version() can be static
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH V4 5/5] netfilter: nf_nat_snmp_basic: use asn1 decoder library
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V4 4/5] netfilter: nf_nat_snmp_basic: use nf_ct_helper_log
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V4 3/5] netfilter: nf_nat_snmp_basic: replace ctinfo with dir.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V4 2/5] netfilter: nf_nat_snmp_basic: remove debug parameter
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V4 1/5] netfilter: nf_nat_snmp_basic: remove useless comment
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH V4 0/5] netfilter: nf_nat_snmp_basic: use ASN.1 decoder
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix potential NULL-ptr deref in nf_tables_dump_obj_done()
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH] src: print 'handle' attribute in tables
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] src: print 'handle' attribute in tables
- From: Adel Belhouane <bugs.a.b@xxxxxxx>
- [PATCH] src: print 'handle' attribute in tables
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH] src: parse new handle attribute for tables
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: allocate table handle
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC nf-next,v3 7/7] netfilter: nf_flow_table: add hardware offload support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 3/7] netfilter: flow table support for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/7] netfilter: add generic flow table infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 6/7] netfilter: nf_tables: flow offload expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 5/7] netfilter: flow table support for the mixed IPv4/IPv6 family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/7] netfilter: flow table support for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/7] netfilter: nf_tables: add flow table netlink frontend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 0/7] Flow offload infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: do not print limit keyword inside object definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: do not print limit keyword inside object definition
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter : add NAT support for shifted portmap ranges
- From: Thierry Du Tre <thierry@xxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: uapi: correct UNTRACKED conntrack state bit number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ebtables: Add filter for matching on a string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ebtables: Add filter for matching on a string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: Add macro _DEFAULT_SOURCE.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] iptables: Remove const qualifier from struct option.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] extensions: Add macro _DEFAULT_SOURCE.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH iptables] iptables: Remove const qualifier from struct option.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH] ebtables: Add filter for matching on a string
- From: Bernie Harris <bernie.harris@xxxxxxxxxxxxxxxxxxx>
- [ebtables PATCH] Add filter for matching on a string
- From: Bernie Harris <bernie.harris@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] ebtables: Add filter for matching on a string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nf-next] netfilter: core: __nf_unregister_net_hook() can be static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 7/7] netfilter: core: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 6/7] netfilter: remove route_key_size field in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 4/7] netfilter: move route indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 5/7] netfilter: move reroute indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 3/7] netfilter: remove saveroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 2/7] netfilter: move checksum_partial indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 1/7] netfilter: move checksum indirection to struct nf_ipv6_ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v3 0/7] get rid of struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter : add NAT support for shifted portmap ranges
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: libipt_DNAT: support shifted portmap ranges
- From: Thierry Du Tre <thierry@xxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] netfilter : add NAT support for shifted portmap ranges
- From: Thierry Du Tre <thierry@xxxxxxxxxxxx>
- [PATCH nf] netfilter: uapi: correct UNTRACKED conntrack state bit number
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next:for-net-next3 38/40] net/netfilter/utils.c:56: undefined reference to `nf_ip6_reroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 38/40] (.text.nf_reroute+0x58): undefined reference to `nf_ip6_reroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 36/40] net/netfilter/utils.c:54: undefined reference to `nf_ip6_saveroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 36/40] (.text.nf_saveroute+0x58): undefined reference to `nf_ip6_saveroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 35/40] utils.c:undefined reference to `nf_ip6_checksum_partial'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 35/40] net/netfilter/utils.c:37: undefined reference to `nf_ip6_checksum_partial'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 37/40] net/netfilter/xt_addrtype.c:55: undefined reference to `nf_ip6_route'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next2 38/40] net/netfilter/utils.c:53: undefined reference to `nf_ip_reroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 34/40] utils.c:undefined reference to `nf_ip6_checksum'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 34/40] net/netfilter/utils.c:17: undefined reference to `nf_ip6_checksum'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH nf-next v2] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [nf-next:for-net-next2 36/40] net/netfilter/utils.c:51: undefined reference to `nf_ip_saveroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next2 35/40] net/netfilter/utils.c:33: undefined reference to `nf_ip_checksum_partial'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next2 34/40] net/netfilter/utils.c:14: undefined reference to `nf_ip_checksum'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH] netfilter: connlimit: fix ptr_ret.cocci warnings
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 32/40] net/netfilter/nf_conncount.c:74:9-10: WARNING: return of 0/1 in function 'already_closed' with return type bool
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH] netfilter: connlimit: fix boolreturn.cocci warnings
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [RFC PATCH nf-next] netfilter: core: __nf_unregister_net_hook() can be static
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next3 28/40] net/netfilter/core.c:403:6: sparse: symbol '__nf_unregister_net_hook' was not declared. Should it be static?
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next2 38/40] net/ipv6/netfilter.c:96:5: error: redefinition of 'nf_ip6_reroute'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next2 35/40] net/ipv6/netfilter.c:166:9: error: redefinition of 'nf_ip6_checksum_partial'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Unable to compile linux-kernel pulled from nf-next tree
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: libxt_hashlimit: Do not print default timeout and burst
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix chain filter in nf_tables_dump_rules()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix chain filter in nf_tables_dump_rules()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: nf_tables: fix chain filter in nf_tables_dump_rules()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:for-net-next 36/40] net/netfilter/utils.c:56:24: error: passing argument 1 of 'nf_ip6_reroute' from incompatible pointer type
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next 35/40] net/ipv6/netfilter.c:111:5: error: redefinition of 'nf_ip6_route'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH nf-next,v2 7/7] netfilter: core: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 6/7] netfilter: remove route_key_size field in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 5/7] netfilter: remove reroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/7] netfilter: remove route indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/7] netfilter: remove saveroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/7] netfilter: remove checksum_partial indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/7] netfilter: remove checksum indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:for-net-next 33/40] net//ipv6/netfilter.c:166:9: error: conflicting types for 'nf_ip6_checksum_partial'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next 33/40] include/linux/netfilter_ipv6.h:36:8: error: unknown type name 'inline__sum16'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next 36/40] net//netfilter/utils.c:60:9: warning: 'ret' may be used uninitialized in this function
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next 34/40] include/linux/netfilter_ipv6.h:30:57: warning: 'struct nf_queue_entry' declared inside parameter list will not be visible outside of this definition or declaration
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: libnftables extended API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:for-net-next 32/40] net//ipv6/netfilter.c:133:9: error: redefinition of 'nf_ip6_checksum'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:for-net-next 34/40] include/linux/netfilter_ipv4.h:15:56: warning: 'struct nf_queue_entry' declared inside parameter list will not be visible outside of this definition or declaration
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH][netfilter-next] netfilter: conntrack: make struct nf_conntrack_l4proto_gre4 static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5 nf-next] netfilter: connlimit: split xt_connlimit into front and backend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] Can someone please review my latest wiki update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal
- From: Phil Sutter <phil@xxxxxx>
- [RFC] Can someone please review my latest wiki update
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH 6/6] src/trace: Check return value of mnl_attr_parse_nested()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 5/6] src/set_elem: Don't return garbage in nftnl_set_elems_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 4/6] src/ruleset: Avoid reading garbage in nftnl_ruleset_cb()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 3/6] src/object: Avoid returning garbage in nftnl_obj_do_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/6] src/gen: Remove a pointless call to mnl_nlmsg_get_payload()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/6] nftnl_data_reg_snprintf: Add a missing break
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH 3/6] src/object: Avoid returning garbage in nftnl_obj_do_parse()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 5/6] src/set_elem: Don't return garbage in nftnl_set_elems_parse()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 6/6] src/trace: Check return value of mnl_attr_parse_nested()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 4/6] src/ruleset: Avoid reading garbage in nftnl_ruleset_cb()
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 1/6] nftnl_data_reg_snprintf: Add a missing break
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 0/6] Another round of Covscan indicated fixes
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH 2/6] src/gen: Remove a pointless call to mnl_nlmsg_get_payload()
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Debabrata Banerjee <dbanerje@xxxxxxxxxx>
- Re: [PATCH 00/12] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: conntrack: clamp timeouts to INT_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: ipt_CLUSTERIP: fix clusterip_net_exit build regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: xt_osf: Add missing permission checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: xt_bpf: add overflow checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: ip6t_MASQUERADE: add dependency on conntrack module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: exthdr: add missign attributes to policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: nf_ct_h323: Extend nf_h323_error_boundary to work on bits as well
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: nfnetlink_cthelper: Add missing permission checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: remove redundant assignment to e
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: exit_net cleanup check added
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: nf_ct_h323: Convert CHECK_BOUND macro to function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 27/45] net: remove duplicate includes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: meta: nft_meta_get_validate() can be static
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] nftables: reject nat hook registration if prio is before conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH] netfilter: meta: nft_meta_get_validate() can be static
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: meta: secpath support
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] Fix protocol context update on big-endian systems
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH] Fix handling of verdicts after NF_QUEUE
- From: "Banerjee, Debabrata" <dbanerje@xxxxxxxxxx>
- Re: [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] Fix handling of verdicts after NF_QUEUE
- From: Debabrata Banerjee <dbanerje@xxxxxxxxxx>
- Re: [PATCH 27/45] net: remove duplicate includes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5 nf-next] netfilter: connlimit: split xt_connlimit into front and backend
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [PATCH 27/45] net: remove duplicate includes
- From: Pravin Shedge <pravin.shedge4linux@xxxxxxxxx>
- Re: [PATCH nft] netlink_linearize: exthdr op must be u32
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netlink_linearize: exthdr op must be u32
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: exthdr: add missign attributes to policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink_linearize: exthdr op must be u32
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH][netfilter-next] netfilter: conntrack: make struct nf_conntrack_l4proto_gre4 static
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: exthdr: add missign attributes to policy
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH 27/45] net: remove duplicate includes
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH][netfilter-next] netfilter: conntrack: make struct nf_conntrack_l4proto_gre4 static
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal (Was: Re: [nft PATCH] libnftables: Fix for multiple context instances)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/7] netfilter: remove checksum indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 7/7] netfilter: core: remove struct nf_afinfo and its helper functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 6/7] netfilter: remove route_key_size field in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/7] netfilter: remove reroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/7] netfilter: remove route indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/7] netfilter: remove saveroute indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/7] netfilter: remove checksum_partial indirection in struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/7] get rid of struct nf_afinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 6/7] netfilter: nf_tables: remove multihook chains and families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 7/7] netfilter: nf_tables: remove hooks from family definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/7] netfilter: core: support for NFPROTO_INET hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 5/7] netfilter: nf_tables_inet: don't use multihook infrastructure anymore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/7] netfilter: core: pass family as parameter to nf_remove_net_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/7] netfilter: core: add nf_remove_net_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/7] netfilter: core: pass hook number, family and device to nf_find_hook_list()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 0/7] handle NFPROTO_INET from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add nft_set_is_anonymous() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nf_tables_arp: don't set forward chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 27/45] net: remove duplicate includes
- From: Pravin Shedge <pravin.shedge4linux@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH v5 nf-next] netfilter: connlimit: split xt_connlimit into front and backend
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] tests/py: trivial: Fix error message
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] tests/py: trivial: Fix error message
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] Fix protocol context update on big-endian systems
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: xtables: add and use xt_request_find_table_lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: connlimit: split xt_connlimit into front and backend
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- Re: [PATCH nf-next 2/3] netfilter: core: only allow one nat hook per hook point
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/3] netfilter: core: only allow one nat hook per hook point
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] nftables: reject nat hook registration if prio is before conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 6/6] netfilter: nft_flow_offload: add ndo hooks for hardware offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 4/6] netfilter: flow table support for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 1/6] netfilter: nf_conntrack: add IPS_OFFLOAD status bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/3] nftables: reject nat hook registration if prio is before conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: core: only allow one nat hook per hook point
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: xtables: add and use xt_request_find_table_lock
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: disable parallel use of xtables and nftables nat
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next] netfilter: connlimit: split xt_connlimit into front and backend
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 6/6] netfilter: nft_flow_offload: add ndo hooks for hardware offload
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 4/6] netfilter: flow table support for IPv4
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next RFC,v2 1/6] netfilter: nf_conntrack: add IPS_OFFLOAD status bit
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: connlimit: split xt_connlimit into front/backend
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: connlimit: split xt_connlimit into front/backend
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- Re: [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH] netfilter: fix clusterip_net_exit build regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix clusterip_net_exit build regression
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- [PATCH v3 nf-next 5/5] netfilter: reduce NF_MAX_HOOKS define
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 4/5] netfilter: don't allocate space for arp/bridge hooks unless needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 3/5] netfilter: don't allocate space for decnet hooks unless needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 2/5] netfilter: reduce hook array sizes to what is needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 1/5] netfilter: add defines for arp/decnet max hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 0/5] netfilter: reduce hook array sizes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: fix clusterip_net_exit build regression
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: reduce hook array sizes to what is needed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: reduce hook array sizes to what is needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: don't allocate space for arp/bridge hooks unless needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: don't allocate space for decnet hooks unless needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: reduce hook array sizes to what is needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: reduce hook array sizes to what is needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next RFC,v2 1/6] netfilter: nf_conntrack: add IPS_OFFLOAD status bit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 6/6] netfilter: nft_flow_offload: add ndo hooks for hardware offload
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 4/6] netfilter: flow table support for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 3/6] netfilter: add generic flow table infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 5/6] netfilter: nf_tables: flow offload expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 2/6] netfilter: nf_tables: add flow table netlink frontend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next RFC,v2 0/6] Flow offload infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnftables extended API proposal (Was: Re: [nft PATCH] libnftables: Fix for multiple context instances)
- From: Phil Sutter <phil@xxxxxx>
- Re: linux-next: manual merge of the vfs tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- linux-next: manual merge of the netfilter-next tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: linux-next: manual merge of the vfs tree with the netfilter tree
- From: Jann Horn <jannh@xxxxxxxxxx>
- Re: [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- linux-next: manual merge of the vfs tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: libnftables extended API proposal (Was: Re: [nft PATCH] libnftables: Fix for multiple context instances)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 27/45] net: remove duplicate includes
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: reduce hook array sizes to what is needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next:master 14/14] net/bridge/br_netfilter_hooks.c:994:30: error: 'struct netns_nf' has no member named 'hooks_bridge'; did you mean 'hooks_ipv4'?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:master 14/14] net/bridge/br_netfilter_hooks.c:994:30: error: 'struct netns_nf' has no member named 'hooks_bridge'; did you mean 'hooks_ipv4'?
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:master 14/14] net/netfilter/nf_queue.c:208:34: error: 'const struct netns_nf' has no member named 'hooks_bridge'; did you mean 'hooks_ipv4'?
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH 27/45] net: remove duplicate includes
- From: Pravin Shedge <pravin.shedge4linux@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: meta: secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next] netfilter: connlimit: split xt_connlimit into front/backend
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] src: Add option -D to define variable from command line
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH V3 0/5] netfilter: nf_nat_snmp_basic: use ASN.1 decoder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] net: netfilter: nf_conntrack_h323: Remove unwanted comments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: reduce size of hook entry points
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: reduce netns create/delete cost
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipset nf-next] netfilter: ipset: add resched points during set listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipset nf-next] netfilter: ipset: use nfnl_mutex_is_locked
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V3 0/5] netfilter: nf_nat_snmp_basic: use ASN.1 decoder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_osf: Add missing permission checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: connlimit: split xt_connlimit into front/backend
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: connlimit: split xt_connlimit into front/backend
- From: Yi-Hung Wei <yihung.wei@xxxxxxxxx>
- [PATCH] netfilter: xt_osf: Add missing permission checks
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [RFC PATCH nft V6 1/2] src: Add import command for low level json
- From: Shyam Saini <mayhs11saini@xxxxxxxxx>
- [PATCH nft V5 2/2] tests: shell: Add tests for low level json import
- From: Shyam Saini <mayhs11saini@xxxxxxxxx>
- libnftables extended API proposal (Was: Re: [nft PATCH] libnftables: Fix for multiple context instances)
- From: Phil Sutter <phil@xxxxxx>
- [PATCH] net: netfilter: fix coding style
- From: Lin Zhang <xiaolou4617@xxxxxxxxx>
- Re: [PATCH] src: Add option '-D' to define variables from command-line
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: connlimit: split xt_connlimit into front/backend
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH] src: Add option '-D' to define variables from command-line
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH] netfilter: add overflow checks in xt_bpf.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_cthelper: Add missing permission checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: masquerade: add randomize-full support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] iptables: patch to correct linker flag sequence
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Bridge] [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] Make libnftables a local static library
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Bridge] [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH] doc: nft.8 aim for consistent synopses throughout
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: masquerade: add randomize-full support
- From: Max Laverse <max@xxxxxxxxxxx>
- [PATCH] netfilter: nfnetlink_cthelper: Add missing permission checks
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: reduce hook array sizes to what is needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: reduce size of hook entry point locations
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: reduce size of hook entry points
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] doc: nft.8 aim for consistent synopses throughout
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH nf-next v2] netfilter: connlimit: split xt_connlimit into front/backend
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH tip/core/rcu 19/21] netlink: Remove smp_read_barrier_depends() from comment
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- [PATCH tip/core/rcu 14/21] netfilter: Remove now-redundant smp_read_barrier_depends()
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH ipset nf-next] netfilter: ipset: add resched points during set listing
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH tip/core/rcu 03/10] netfilter: Eliminate cond_resched_rcu_qs() in favor of cond_resched()
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH ipset nf-next] netfilter: ipset: use nfnl_mutex_is_locked
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: meta: secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: meta: secpath support
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: meta: secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] meta: add secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl] meta: secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: meta: secpath support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH next] nftables: add inbound ipsec matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: connlimit: split xt_connlimit into front/backend
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: add overflow checks in xt_bpf.c
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [PATCH] netfilter: add overflow checks in xt_bpf.c
- From: Jann Horn <jannh@xxxxxxxxxx>
- Re: [PATCH] netfilter: add overflow checks in xt_bpf.c
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- [PATCH] netfilter: add overflow checks in xt_bpf.c
- From: Jann Horn <jannh@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: core: free hooks with call_rcu
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: core: remove synchronize_net call if nfqueue is used
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: core: make nf_unregister_net_hooks simple wrapper again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: reduce netns create/delete cost
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ipset nf-next] netfilter: ipset: add resched points during set listing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ipset nf-next] netfilter: ipset: use nfnl_mutex_is_locked
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH v2] Make libnftables a local static library
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Make libnftables a local static library
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] Make libnftables a local static library
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [nft PATCH] Make libnftables a local static library
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf-next] net: netfilter: nf_conntrack_h323: Remove unwanted comments.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_tcpmss: Add test case for invalid ranges.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: xtables-eb: Remove const qualifier from struct option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] extensions: libxt_tcpmss: Add test case for invalid ranges.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH] iptables: xtables-eb: Remove const qualifier from struct option
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH nft] tests: shell: Modify ipv6_maps_ipv4_0 file permission.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH 1/1] iptables: patch to correct linker flag sequence
- From: Jay Shah <jay.shah1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 2/3] netfilter: ctnetlink: use 64-bit conntrack ID
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tests/py: add test for empty string match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 3/3] netfilter: ctnetlink: randomize 32-bit ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 2/3] netfilter: ctnetlink: use 64-bit conntrack ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 3/3] netfilter: ctnetlink: randomize 32-bit ID
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 2/3] netfilter: ctnetlink: use 64-bit conntrack ID
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] tests/py: add test for empty string match
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 3/3] netfilter: ctnetlink: randomize 32-bit ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 2/3] netfilter: ctnetlink: use 64-bit conntrack ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: conntrack: clamp timeouts to INT_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: conntrack: clamp timeouts to INT_MAX
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: conntrack: clamp timeouts to INT_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] evaluate: print error for null string befort assert statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] evaluate: print error for null string befort assert statement
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] evaluate: print error for null string befort assert statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- inquiry for behavior of xt_RATEEST.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: Fix MARK target help
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: extensions: Fix MARK target help
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- Re: [PATCH] doc: nft.8 Syslog level is introduced by "level" not "syslog-level"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] doc: nft.8 Syslog level is introduced by "level" not "syslog-level"
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: Add test for IPv4 Mapped IPv6 address.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH nft 2/2] parser_bison: no need for 'name' token for meters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: deprecate "flow table" syntax, replace it by "meter"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- static libnftables by now?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] parser_bison: dismiss anonymous meters
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] parser_bison: dismiss anonymous meters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] parser_bison: no need for 'name' token for meters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: deprecate "flow table" syntax, replace it by "meter"
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [PATCH] doc: nft.8 document use of -f option to start nft scripts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] doc: nft.8 document use of -f option to start nft scripts
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] doc: nft.8 document use of -f option to start nft scripts
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] evaluate: print error for null string befort assert statement
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] evaluate: print error for null string befort assert statement
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- [PATCH nft] src: deprecate "flow table" syntax, replace it by "meter"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft crashes on empty interface name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft crashes on empty interface name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft crashes on empty interface name
- From: Florian Westphal <fw@xxxxxxxxx>
- nft crashes on empty interface name
- From: Harsha Sharma <harshasharmaiitr@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: Add test for IPv4 Mapped IPv6 address.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- Re: [PATCH nft 2/2] gmputil: turn mpz_printf into mpz_vfprintf to restore --with-mini-gmp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] gmputil: turn mpz_printf into mpz_vfprintf to restore --with-mini-gmp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] utils: fix one compilation error with --with-mini-gmp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_tables: remove hooks from family definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nf_tables_arp: don't set forward chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: remove multihook chains and families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: pass hook number and family as parameter to nf_find_hook_list()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: handle NFPROTO_INET family hook registration from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables_inet: don't use multihook infrastructure anymore
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: add nf_remove_net_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/5] promote NFPROTO_INET as real family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/4] netfilter: add BUILD_BUG_ON asserts for hook array sizes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/4] netfilter: add BUILD_BUG_ON asserts for hook array sizes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/4] netfilter: add BUILD_BUG_ON asserts for hook array sizes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Ensure output_fp is never NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Prevent lockout in nft-f/0008split_tables_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks
- From: Giuseppe Scrivano <gscrivan@xxxxxxxxxx>
- [nft PATCH] tests: shell: Prevent lockout in nft-f/0008split_tables_0
- From: Phil Sutter <phil@xxxxxx>
- Re: nftables: lockout with 0008split_tables_0 test
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: nftables: lockout with 0008split_tables_0 test
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: nftables: lockout with 0008split_tables_0 test
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables: lockout with 0008split_tables_0 test
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] libnftables: Ensure output_fp is never NULL
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] tests: shell: Add test for IPv4 Mapped IPv6 address.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH RFC] libnftables: Make output_fp default to /dev/null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH RFC] libnftables: Make output_fp default to /dev/null
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] libnftables: Fix for multiple context instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH RFC] libnftables: Make output_fp default to /dev/null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH RFC] libnftables: Make output_fp default to /dev/null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]