Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH bpf-next v2 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next v2 1/4] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next v2 0/4] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH bpf-next 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo.bianconi@xxxxxxxxxx>
- Re: [PATCH net-next] netfilter: nft_fib: allow from forward/input without iif selector
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH net-next] netfilter: nft_fib: allow from forward/input without iif selector
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- [iptables PATCH] extensions: libxt_sctp: Add an extra assert()
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 0/7] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 5/7] netfilter: nf_tables: Correctly handle NETDEV_RENAME events
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 7/7] selftests: netfilter: Torture nftables netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 2/7] netfilter: nf_tables: Relax hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 3/7] netfilter: nf_tables: Report active interfaces to user space
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 4/7] netfilter: nf_tables: Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 1/7] netfilter: nf_tables: Store user-defined hook ifname
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 6/7] netfilter: nf_tables: Add notications for hook changes
- From: Phil Sutter <phil@xxxxxx>
- tcpwrite question
- From: Byron Mugabi <byronmugabi@xxxxxxxxxx>
- tcpwrite question
- From: Byron Mugabi <byronmugabi@xxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft 1/3] evaluate: bogus protocol conflicts in vlan with implicit dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/3] vlan support updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] tests: shell: add vlan mangling test case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] tests: shell: add vlan double tagging match simple test case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Kumar Kartikeya Dwivedi <memxor@xxxxxxxxx>
- [PATCH bpf-next 4/4] selftests/bpf: Add selftest for bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next 1/4] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH bpf-next 0/4] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [nf-next PATCH 0/5] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH net] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 0/5] Dynamic hook interface binding
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [nf-next PATCH 0/5] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next] selftests: netfilter: fix packetdrill conntrack testcase
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net-next] selftests: netfilter: fix packetdrill conntrack testcase
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_queue: fix rcu splat on program exit
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_queue: fix rcu splat on program exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink_queue: fix rcu splat on program exit
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH v3 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: nft_flowtable.sh: bump socat timeout to 1m
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v2 2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 01/17] netfilter: nf_tables: skip transaction if update object is not implemented
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nf-next 11/11] netfilter: nf_tables: do not store nft_ctx in transaction objects
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 10/11] netfilter: nf_tables: pass nft_table to destroy function
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 09/11] netfilter: nf_tables: reduce trans->ctx.chain references
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 08/11] netfilter: nf_tables: store chain pointer in rule transaction
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 07/11] netfilter: nf_tables: avoid usage of embedded nft_ctx
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 05/11] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 06/11] netfilter: nf_tables: pass more specific nft_trans_chain where possible
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 03/11] netfilter: nf_tables: compact chain+ft transaction objects
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 04/11] netfilter: nf_tables: reduce trans->ctx.table references
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 01/11] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 00/11] netfilter: nf_tables: reduce transaction log memory usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2] selftests/landlock: Create 'listen_zero', 'deny_listen_zero' tests
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: tproxy: bail out if IP has been disabled on the device
- From: Florian Westphal <fw@xxxxxxxxx>
- [syzbot] [netfilter?] general protection fault in nf_tproxy_laddr4
- From: syzbot <syzbot+b94a6818504ea90d7661@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- [PATCH v2 2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH v2 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH v2 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH net-next 16/17] selftests: netfilter: add packetdrill based conntrack tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/17] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/17] netfilter: nft_set_pipapo: remove dirty flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/17] netfilter: nf_tables: allow clone callbacks to sleep
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/17] netfilter: nft_set_pipapo: prepare pipapo_get helper for on-demand clone
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/17] netfilter: use NF_DROP instead of -NF_DROP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/17] netfilter: nft_set_pipapo: prepare walk function for on-demand clone
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/17] netfilter: nft_set_pipapo: merge deactivate helper into caller
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/17] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/17] netfilter: nft_set_pipapo: make pipapo_clone helper return NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/17] netfilter: conntrack: remove flowtable early-drop test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/17] netfilter: nft_set_pipapo: move prove_locking helper around
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/17] netfilter: conntrack: documentation: remove reference to non-existent sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/17] netfilter: conntrack: dccp: try not to drop skb in conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/17] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/17] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/17] netfilter: nf_tables: remove NETDEV_CHANGENAME from netdev chain event handler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/17] netfilter: nf_tables: skip transaction if update object is not implemented
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net-next] selftests: netfilter: nft_flowtable.sh: bump socat timeout to 1m
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC bpf-next v1 4/4] selftests/bpf: Add selftest for bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [RFC bpf-next v1 3/4] samples/bpf: Add bpf sample to offload flowtable traffic to xdp
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [RFC bpf-next v1 2/4] netfilter: add bpf_xdp_flow_offload_lookup kfunc
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [RFC bpf-next v1 1/4] netfilter: nf_tables: add flowtable map for xdp offload
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [RFC bpf-next v1 0/4] netfilter: Add the capability to offload flowtable in XDP layer
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2 7/8] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables with thousands of chains is unreasonably slow
- From: Neels Hofmeyr <nhofmeyr@xxxxxxxxxxx>
- Re: [PATCH nf-next v2 7/8] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH 0/5] Dynamic hook interface binding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v4 35/66] selftests/net: Drop define _GNU_SOURCE
- From: Edward Liaw <edliaw@xxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_payload: skbuff vlan metadata mangle support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_payload: restore vlan q-in-q match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/2] nf_tables: vlan matching & mangling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 37/68] selftests/net: Drop define _GNU_SOURCE
- From: Edward Liaw <edliaw@xxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: nftables with thousands of chains is unreasonably slow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: nftables with thousands of chains is unreasonably slow
- From: Neels Hofmeyr <nhofmeyr@xxxxxxxxxxx>
- Re: Could not process rule: Cannot allocate memory
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: allow clone callbacks to sleep
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v4 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Could not process rule: Cannot allocate memory
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- [PATCH bpf-next v3 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Brad Cowie <brad@xxxxxxxxx>
- [PATCH bpf-next v3 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Brad Cowie <brad@xxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: conntrack_tcp_unreplied.sh: wait for initial connection attempt
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: nftables with thousands of chains is unreasonably slow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] selftests: netfilter: add packetdrill based conntrack tests
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- [PATCH nf-next] selftests: netfilter: add packetdrill based conntrack tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v6 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH libnetfilter_queue] Stop a memory leak in nfq_close
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH v4 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next v3 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Aleksandr Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH v4 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH v4 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- nftables with thousands of chains is unreasonably slow
- From: Neels Hofmeyr <nhofmeyr@xxxxxxxxxxx>
- [PATCH net-next] selftests: netfilter: conntrack_tcp_unreplied.sh: wait for initial connection attempt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [netfilter-nf:under-review 14/18] net/netfilter/nft_set_pipapo.c:2122: warning: expecting prototype for __nft_pipapo_walk(). Prototype was for nft_pipapo_do_walk() instead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nft_queue: compute SCTP checksum
- From: kernel test robot <lkp@xxxxxxxxx>
- [nf-next PATCH 5/5] netfilter: nf_tables: Correctly handle NETDEV_RENAME events
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 4/5] netfilter: nf_tables: Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 3/5] netfilter: nf_tables: Report active interfaces to user space
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 0/5] Dynamic hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 1/5] netfilter: nf_tables: Store user-defined hook ifname
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 2/5] netfilter: nf_tables: Relax hook interface binding
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH net-next v6 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Re: [PATCH v2] sysctl: treewide: constify ctl_table_header::ctl_table_arg
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [PATCH net-next v3 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [PATCH net-next v6 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next v6 0/8] sysctl: Remove sentinel elements from networking
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH net-next v6 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH net-next 2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH net-next 0/2] netfilter: nfqueue: incorrect sctp checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH net-next 1/2] netfilter: nft_queue: compute SCTP checksum
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- Re: [netfilter-nf:under-review 14/18] net/netfilter/nft_set_pipapo.c:2122: warning: expecting prototype for __nft_pipapo_walk(). Prototype was for nft_pipapo_do_walk() instead
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [netfilter-nf:under-review 14/18] net/netfilter/nft_set_pipapo.c:2122: warning: expecting prototype for __nft_pipapo_walk(). Prototype was for nft_pipapo_do_walk() instead
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next v6 3/8] net: rds: Remove the now superfluous sentinel elements from ctl_table array
- From: Allison Henderson <allison.henderson@xxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH] conntrack: bsf: Do not return -1 on failure
- From: Phil Sutter <phil@xxxxxx>
- [syzbot] [netfilter?] WARNING: suspicious RCU usage in br_mst_set_state
- From: syzbot <syzbot+fa04eb8a56fd923fc5d8@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] conntrackd: Fix signal handler race-condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v2 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH net-next v6 0/8] sysctl: Remove sentinel elements from networking
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next v6 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- [PATCH net-next v6 3/8] net: rds: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 7/8] appletalk: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 6/8] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 4/8] net: sunrpc: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 5/8] net: Remove ctl_table sentinel elements from several networking subsystems
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 2/8] net: ipv{6,4}: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 0/8] sysctl: Remove sentinel elements from networking
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH net-next v6 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- Re: [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH bpf-next v2 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Brad Cowie <brad@xxxxxxxxx>
- Re: [PATCH bpf-next v2 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Brad Cowie <brad@xxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Evgen Bendyak <jman.box@xxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: avoid test timeouts on debug kernels
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Evgen Bendyak <jman.box@xxxxxxxxx>
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2] selftests/landlock: Create 'listen_zero', 'deny_listen_zero' tests
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [PATCH v5 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Phil Sutter <phil@xxxxxx>
- [libnetfilter_log] fix bug in race condition of calling nflog_open from different threads at same time
- From: Evgen Bendyak <jman.box@xxxxxxxxx>
- [PATCH nft v3 0/2] Support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 2/2] evaluate: add support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v3 1/2] evaluate: handle invalid mapping expressions in stateful object statements gracefully.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH v5 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- Re: [PATCH v5 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH net-next] selftests: netfilter: avoid test timeouts on debug kernels
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v5 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v5 6/8] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v3 11/11] sysctl: treewide: constify the ctl_table argument of handlers
- From: Heiko Carstens <hca@xxxxxxxxxxxxx>
- Re: [PATCH v5 5/8] net: Remove ctl_table sentinel elements from several networking subsystems
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v5 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- Re: [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH libnetfilter_queue] Update .gitignore
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH v5 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Re: [PATCH v5 5/8] net: Remove ctl_table sentinel elements from several networking subsystems
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- [libnetfilter_conntrack PATCH] conntrack: bsf: Do not return -1 on failure
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v5 4/8] net: sunrpc: Remove the now superfluous sentinel elements from ctl_table array
- From: Chuck Lever <chuck.lever@xxxxxxxxxx>
- Re: [PATCH v5 4/8] net: sunrpc: Remove the now superfluous sentinel elements from ctl_table array
- From: Jeffrey Layton <jlayton@xxxxxxxxxx>
- Re: [PATCH v5 6/8] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v5 5/8] net: Remove ctl_table sentinel elements from several networking subsystems
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 6/8] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 7/8] appletalk: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 4/8] net: sunrpc: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 3/8] net: rds: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 0/8] sysctl: Remove sentinel elements from networking
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v5 2/8] net: ipv{6,4}: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- Re: [PATCH net] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH nf-next v2 4/8] netfilter: nft_set_pipapo: prepare walk function for on-demand clone
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH bpf-next v2 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH bpf-next v2 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v3] ipvs: Fix checksumming on GSO of SCTP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v3] ipvs: Fix checksumming on GSO of SCTP packets
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v3] ipvs: Fix checksumming on GSO of SCTP packets
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v3] ipvs: Fix checksumming on GSO of SCTP packets
- From: Ismael Luceno <iluceno@xxxxxxx>
- Re: [PATCH v2 net-next] tools: testing: selftests: prefer TEST_PROGS for conntrack_dump_flush
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net 1/2] ipvs: Fix checksumming on GSO of SCTP packets
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- From: pda Pfeil Daniel <pda@xxxxxxxx>
- [PATCH nf-next v2 8/8] netfilter: nft_set_pipapo: remove dirty flag
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 7/8] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 6/8] netfilter: nft_set_pipapo: prepare pipapo_get helper for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 5/8] netfilter: nft_set_pipapo: merge deactivate helper into caller
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 4/8] netfilter: nft_set_pipapo: prepare walk function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/8] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/8] netfilter: nft_set_pipapo: move prove_locking helper around
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 2/8] netfilter: nft_set_pipapo: make pipapo_clone helper return NULL
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/8] nft_set_pipapo: remove cannot-fail allocations on commit and abort
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 4/8] net: sunrpc: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 8/8] ax.25: x.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 6/8] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 5/8] net: Remove ctl_table sentinel elements from several networking subsystems
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 7/8] appletalk: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 3/8] net: rds: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 0/8] sysctl: Remove sentinel elements from networking
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 2/8] net: ipv{6,4}: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v4 1/8] net: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- Re: [iptables][PATCHv2] configure: Add option to enable/disable libnfnetlink
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [nft PATCH 1/2] doc: nft.8: Fix markup in ct expectation synopsis
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests: shell: Fix for maps/typeof_maps_add_delete with ASAN
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] json: Fix for memleak in __binop_expr_json
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: mark racy access on ext->gen_id
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: mark racy access on ext->gen_id
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH] netfilter: mark racy access on ext->gen_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/2] netfilter: nf_tables: honor table dormant flag from netdev release event path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/2] ipvs: Fix checksumming on GSO of SCTP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/2] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Alexander Kanavin <alex@xxxxxxxxxxxxx>
- [iptables][PATCHv2] configure: Add option to enable/disable libnfnetlink
- From: Alexander Kanavin <alex@xxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next] selftests: netfilter: nft_zones_many.sh: set ct sysctl after ruleset load
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next] selftests: netfilter: fix conntrack_dump_flush retval on unsupported kernel
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v2] ipvs: Fix checksumming on GSO of SCTP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: mark racy access on ext->gen_id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] json: Fix for memleak in __binop_expr_json
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 1/2] doc: nft.8: Fix markup in ct expectation synopsis
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/2] doc: nft.8: Highlight "hook" in flowtable description
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] tests: shell: Fix for maps/typeof_maps_add_delete with ASAN
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] json: Fix for memleak in __binop_expr_json
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 0/7] A bunch of JSON printer/parser fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: honor table dormant flag from netdev release event path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/7] A bunch of JSON printer/parser fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/7] A bunch of JSON printer/parser fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Alexander Kanavin <alex@xxxxxxxxxxxxx>
- Re: [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Phil Sutter <phil@xxxxxx>
- [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Alexander Kanavin <alex@xxxxxxxxxxxxx>
- [iptables][PATCH] configure: Add option to enable/disable libnfnetlink
- From: Alexander Kanavin <alex@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 net-next] tools: testing: selftests: prefer TEST_PROGS for conntrack_dump_flush
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] tools: testing: selftests: switch conntrack_dump_flush to TEST_PROGS
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH bpf-next v2 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers
- From: Brad Cowie <brad@xxxxxxxxx>
- [PATCH bpf-next v2 2/2] selftests/bpf: Update tests for new ct zone opts for nf_conntrack kfuncs
- From: Brad Cowie <brad@xxxxxxxxx>
- Re: [PATCH net-next] tools: testing: selftests: switch conntrack_dump_flush to TEST_PROGS
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Luis Chamberlain <mcgrof@xxxxxxxxxx>
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test
- From: Vlad Buslov <vladbu@xxxxxxxxxx>
- Re: [PATCH] netfilter: mark racy access on ext->gen_id
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: mark racy access on ext->gen_id
- From: linke li <lilinke99@xxxxxx>
- [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 7/7] selftests: netfilter: conntrack_vrf.sh: prefer socat, not iperf3
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 6/7] selftests: netfilter: skip tests on early errors
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 5/7] selftests: netfilter: nft_flowtable.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 3/7] selftests: netfilter: nft_concat_range.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 2/7] selftests: netfilter: nft_concat_range.sh: drop netcat support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 4/7] selftests: netfilter: nft_flowtable.sh: re-run with random mtu sizes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 1/7] selftests: netfilter: nft_concat_range.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 0/7] selftest: netfilter: additional cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 01/11] stackleak: don't modify ctl_table argument
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 03/11] hugetlb: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 04/11] utsname: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 02/11] cgroup: bpf: constify ctl_table arguments and fields
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 11/11] sysctl: treewide: constify the ctl_table argument of handlers
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 09/11] ipvs: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 10/11] sysctl: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 08/11] ipv6/ndisc: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 07/11] ipv6/addrconf: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 06/11] ipv4/sysctl: constify ctl_table arguments of utility functions
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH v3 05/11] neighbour: constify ctl_table arguments of utility function
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- Launchpad: Validate your team's contact email address
- From: Launchpad Email Validator <noreply@xxxxxxxxxxxxx>
- Re: [PATCH net-next v4 0/4] netlink: Add nftables spec w/ multi messages
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net-next] tools: testing: selftests: switch conntrack_dump_flush to TEST_PROGS
- From: Florian Westphal <fw@xxxxxxxxx>
- Looking for (unit-) tests for libmnl
- From: "Schroeder, Stefan" <stefan.ss.schroeder@xxxxxxxxxxx>
- [PATCH net-next] selftests: netfilter: fix conntrack_dump_flush retval on unsupported kernel
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] selftests: netfilter: nft_zones_many.sh: set ct sysctl after ruleset load
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Add list flush to cancel_gc
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH v2] ipvs: Fix checksumming on GSO of SCTP packets
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next v3 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Aleksandr Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- Re: (re-send): Convert libnetfilter_queue to not need libnfnetlink]
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [Thread split] nftables rule optimization - dropping invalid in ingress?
- Re: [PATCH] ipvs: Fix checksumming on GSO of SCTP packets
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: Fix checksumming on GSO of SCTP packets
- From: Ismael Luceno <iluceno@xxxxxxx>
- [PATCH v2] ipvs: Fix checksumming on GSO of SCTP packets
- From: Ismael Luceno <iluceno@xxxxxxx>
- Re: [PATCH net-next v3 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next v3 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: Fix checksumming on GSO of SCTP packets
- From: Julian Anastasov <ja@xxxxxx>
- Re: [Thread split] nftables rule optimization - dropping invalid in ingress?
- Re: [PATCH net-next v2 00/12] testing: make netfilter selftests functional in vng environment
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [nft PATCH v3] Add support for table's persist flag
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nf] netfilter: conntrack: documentation: remove reference to non-existent sysctl
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH v2] sysctl: treewide: constify ctl_table_header::ctl_table_arg
- From: Kees Cook <keescook@xxxxxxxxxxxx>
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v2 12/12] selftests: netfilter: update makefiles and kernel config
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 11/12] selftests: netfilter: nft_audit.sh: add more skip checks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 10/12] selftests: netfilter: nft_meta.sh: small shellcheck cleanup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 09/12] selftests: netfilter: nft_fib.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 08/12] selftests: netfilter: conntrack_ipip_mtu.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 07/12] selftests: netfilter: nft_nat_zones.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 06/12] selftests: netfilter: xt_string.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 05/12] selftests: netfilter: xt_string.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 04/12] selftests: netfilter: nft_zones_many.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 03/12] selftests: netfilter: nft_synproxy.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 01/12] selftests: netfilter: nft_queue.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 02/12] selftests: netfilter: nft_queue.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 00/12] testing: make netfilter selftests functional in vng environment
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Aleksandr Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH net-next v3 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH net-next v3 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH] ipvs: Fix checksumming on GSO of SCTP packets
- From: Ismael Luceno <iluceno@xxxxxxx>
- Re: [PATCH net-next v2 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net 1/3] netfilter: nf_tables: missing iterator type in lookup walk
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH net-next v2 2/2] ipvs: allow some sysctls in non-init user namespaces
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH net-next v2 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipvs: allow some sysctls in non-init user namespaces
- From: Aleksandr Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- [PATCH net-next v4 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v4 3/4] tools/net/ynl: Add multi message support to ynl
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v4 2/4] tools/net/ynl: Fix extack decoding for directional ops
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v4 1/4] doc/netlink/specs: Add draft nftables spec
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v4 0/4] netlink: Add nftables spec w/ multi messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH v2] sysctl: treewide: constify ctl_table_header::ctl_table_arg
- From: Thomas Weißschuh <linux@xxxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_tables: restore set elements when delete set fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nf_tables: fix memleak in map from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nf_tables: missing iterator type in lookup walk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 3/3] netfilter: nf_tables: fix memleak in map from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/3] netfilter: nf_tables: restore set elements when delete set fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/3] netfilter: nf_tables: missing iterator type in lookup walk
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: Add list flush to cancel_gc
- From: Alexander Maltsev <keltar.gw@xxxxxxxxx>
- Re: [PATCH net-next v3 3/4] tools/net/ynl: Handle acks that use req_value
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next] ipvs: allow some sysctls in non-init user namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next v3 3/4] tools/net/ynl: Handle acks that use req_value
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: [PATCH net-next v2 3/3] tools/net/ynl: Add multi message support to ynl
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH net-next] selftests: fix netfilter path in Makefile
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next v3 3/4] tools/net/ynl: Handle acks that use req_value
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH net-next v3 4/4] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v3 3/4] tools/net/ynl: Handle acks that use req_value
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v3 2/4] tools/net/ynl: Add multi message support to ynl
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v3 1/4] doc/netlink/specs: Add draft nftables spec
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v3 0/4] netlink: Add nftables spec w/ multi messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: [PATCH v3 1/4] networking: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH net-next] ipvs: allow some sysctls in non-init user namespaces
- From: Alexander Mikhalitsyn <aleksandr.mikhalitsyn@xxxxxxxxxxxxx>
- Re: [PATCH net-next 01/12] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 1/4] networking: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH net-next 01/12] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra
- From: Matthieu Baerts <matttbe@xxxxxxxxxx>
- Re: [PATCH v3 1/4] networking: Remove the now superfluous sentinel elements from ctl_table array
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH net-next] selftests: fix netfilter path in Makefile
- From: Yujie Liu <yujie.liu@xxxxxxxxx>
- Re: [PATCH v3 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [PATCH v3 1/4] networking: Remove the now superfluous sentinel elements from ctl_table array
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: keltargw <keltar.gw@xxxxxxxxx>
- Re: [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/12] selftests: netfilter: move to lib.sh infra
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 11/12] selftests: netfilter: nft_audit.sh: skip if auditd is running
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 10/12] selftests: netfilter: nft_fib.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 09/12] selftests: netfilter: conntrack_ipip_mtu.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 08/12] selftests: netfilter: nft_queue.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 07/12] selftests: netfilter: nft_nat_zones.sh: shellcheck cleanups
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 03/12] selftests: netfilter: nft_queue.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 04/12] selftests: netfilter: nft_synproxy.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 02/12] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 06/12] selftests: netfilter: xt_string.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 01/12] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 05/12] selftests: netfilter: nft_zones_many.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 00/12] selftests: netfilter: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: keltargw <keltar.gw@xxxxxxxxx>
- [PATCH net-next] netfilter: nft_chain_filter: remove redundant code in nf_tables_netdev_event
- From: Zhengchao Shao <shaozhengchao@xxxxxxxxxx>
- Re: Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Incorrect dependency handling with delayed ipset destroy ipset 7.21
- From: keltargw <keltar.gw@xxxxxxxxx>
- [nft PATCH] limit: Support arbitrary unit values
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH] expr: limit: Prepare for odd time units
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: (re-send): Convert libnetfilter_queue to not need libnfnetlink]
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: Mickaël Salaün <mic@xxxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- [PATCH v3 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v3 3/4] appletalk: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v3 2/4] netfilter: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v3 1/4] networking: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- [PATCH v3 0/4] sysctl: Remove sentinel elements from networking
- From: Joel Granados via B4 Relay <devnull+j.granados.samsung.com@xxxxxxxxxx>
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Avoid escape chars when printing to non-terminals
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 0/5] json: Accept more than two operands in binary expressions
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net 1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [nft PATCH v3] Add support for table's persist flag
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 1/2] doc: nft.8: Two minor synopsis fixups
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: (re-send): Convert libnetfilter_queue to not need libnfnetlink
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- [PATCH net-next 15/15] selftests: netfilter: nft_nat.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 14/15] selftests: netfilter: nft_flowtable.sh: move test to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 13/15] selftests: netfilter: nft_fib.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 12/15] selftests: netfilter: nft_conntrack_helper.sh: test to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 11/15] selftests: netfilter: nf_nat_edemux.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 10/15] selftests: netfilter: ipvs.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 09/15] selftests: netfilter: place checktool helper in lib.sh
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 08/15] selftests: netfilter: conntrack_ipip_mtu.sh" move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 07/15] selftests: netfilter: conntrack_vrf.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 06/15] selftests: netfilter: conntrack_sctp_collision.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 05/15] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 04/15] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 03/15] selftests: netfilter: br_netfilter.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 01/15] selftests: netfilter: move to net subdir
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 00/15] selftests: move netfilter tests to net
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 02/15] selftests: netfilter: bridge_brouter.sh: move to lib.sh infra
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2 3/3] tools/net/ynl: Add multi message support to ynl
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 0/7] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 0/7] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH net 7/7] netfilter: flowtable: incorrect pppoe tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/7] netfilter: flowtable: validate pppoe header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/7] netfilter: nft_set_pipapo: do not free live element
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/7] netfilter: br_netfilter: skip conntrack input hook for promisc packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/7] netfilter: nft_set_pipapo: walk over current view on netlink dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/7] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [iptables PATCH] libxtables: Attenuate effects of functions' internal static buffers
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] xshared: Fix parsing of empty string arg in '-c' option
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH 1/2] xlate: Improve redundant l4proto match avoidance
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 2/3] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- Re: [libnftnl PATCH 00/17] obj: Introduce attribute policies
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/2] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 5/6] netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: complete validation of user input
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions
- From: Brad Cowie <brad@xxxxxxxxx>
- [PATCH nf,v2] netfilter: flowtable: incorrect pppoe tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: flowtable: incorrect pppoe tuple in reply direction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v3] netfilter: flowtable: validate pppoe header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2 2/3] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next v2 3/3] tools/net/ynl: Add multi message support to ynl
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v2 2/3] netfilter: nfnetlink: Handle ACK flags for batch messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v2 1/3] doc/netlink/specs: Add draft nftables spec
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH net-next v2 0/3] netlink: Add nftables spec w/ multi messages
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH v2 nf] netfilter: nft_set_pipapo: do not free live element
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_set_pipapo: do not free live element
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH -stable 6.1.x 0/3] Netfilter fixes for -stable
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_set_pipapo: walk over current view on netlink dump
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_set_pipapo: do not free live element
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH v2] expr: make map lookup expression as an argument in vmap statement
- From: Son Dinh <dinhtrason@xxxxxxxxx>
- Re: [PATCH net] netfilter: complete validation of user input
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] libxtables: Attenuate effects of functions' internal static buffers
- From: Vitaly Chikunov <vt@xxxxxxxxxxxx>
- [PATCH nf,v2] netfilter: flowtable: validate PPPoe header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] libxtables: Attenuate effects of functions' internal static buffers
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH net] netfilter: complete validation of user input
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH nf] netfilter: flowtable: validate PPPoe header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] xshared: Fix parsing of empty string arg in '-c' option
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v3] dynset: avoid errouneous assert with ipv6 concat data
- From: Son Dinh <dinhtrason@xxxxxxxxx>
- [nft PATCH v2] dynset: avoid errouneous assert with ipv6 concat data
- From: Son Dinh <dinhtrason@xxxxxxxxx>
- Re: [PATCH -stable,5.10.x 0/3] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 5/5] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 4/5] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 3/5] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 2/5] netfilter: nf_tables: flush pending destroy work before exit_net release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 1/5] netfilter: nf_tables: reject new basechain after table flag update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4.x 0/5] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nf_tables: flush pending destroy work before exit_net release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: nf_tables: reject new basechain after table flag update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.10.x 0/3] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.15.x 3/3] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.15.x 1/3] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.15.x 2/3] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.15.x 0/3] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable 6.1.x 3/3] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable 6.1.x 2/3] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable 6.1.x 1/3] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable 6.1.x 0/3] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] tests: shell: check for reset tcp options support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] tests: shell: chains/{netdev_netns_gone,netdev_chain_dev_gone} require inet/ingress support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] tests: shell: payload matching requires egress support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] tests: shell: maps/{vmap_unary,named_limits} require pipapo set backend
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] add missing requirements in tests/shell
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [PATCH nf-next 8/9] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [RFC PATCH v1 00/10] Socket type control for Landlock
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: "Günther Noack" <gnoack@xxxxxxxxxx>
- [PATCH 1/2] landlock: Add hook on socket_listen()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH 2/2] selftests/landlock: Create 'listen_zero', 'deny_listen_zero' tests
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [PATCH 0/2] Forbid illegitimate binding via listen(2)
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 09/10] selftests/landlock: Create 'ruleset_with_unknown_access' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 10/10] samples/landlock: Support socket protocol restrictions
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 07/10] selftests/landlock: Create 'inval' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 08/10] selftests/landlock: Create 'ruleset_overlap' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 05/10] selftests/landlock: Create 'rule_with_unknown_access' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 06/10] selftests/landlock: Create 'rule_with_unhandled_access' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 04/10] selftests/landlock: Create 'socket_access_rights' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 02/10] landlock: Add hook on socket_create()
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 01/10] landlock: Support socket access-control
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- [RFC PATCH v1 00/10] Socket type control for Landlock
- From: Ivanov Mikhail <ivanov.mikhail1@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown
- From: Sven Auhagen <sven.auhagen@xxxxxxxxxxxx>
- Re: [nft PATCH] expr: make map lookup expression as an argument in vmap statement
- From: Son Tra Dinh <dinhtrason@xxxxxxxxx>
- Re: [nft PATCH] dynset: avoid errouneous assert with ipv6 concat data
- From: Son Tra Dinh <dinhtrason@xxxxxxxxx>
- Re: [nft PATCH] dynset: avoid errouneous assert with ipv6 concat data
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] expr: make map lookup expression as an argument in vmap statement
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] dynset: avoid errouneous assert with ipv6 concat data
- From: Son Dinh <dinhtrason@xxxxxxxxx>
- [PATCH nft 2/2] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
- From: Ziyang Xuan <william.xuanziyang@xxxxxxxxxx>
- [PATCH nft 1/2] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()
- From: Ziyang Xuan <william.xuanziyang@xxxxxxxxxx>
- [PATCH nft 0/2] netfilter: nf_tables: Use rcu lock to enhance protection of the lists
- From: Ziyang Xuan <william.xuanziyang@xxxxxxxxxx>
- [nft PATCH] expr: make map lookup expression as an argument in vmap statement
- From: Son Dinh <dinhtrason@xxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [PATCH nft v2 0/2] Support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [PATCH v2 4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array
- From: Joel Granados <j.granados@xxxxxxxxxxx>
- Re: [syzbot] [netfilter?] KMSAN: uninit-value in nf_flow_offload_ip_hook
- From: syzbot <syzbot+b6f07e1c07ef40199081@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 1/6] netfilter: nf_tables: release batch on table validation from abort path
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] netfilter: validate user input for expected length
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] netfilter: validate user input for expected length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] KMSAN: uninit-value in nf_flow_offload_ip_hook
- From: syzbot <syzbot+b6f07e1c07ef40199081@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH net] netfilter: validate user input for expected length
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: [PATCH nft v2 0/2] Support for variables in map expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/6] netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/6] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/6] netfilter: nf_tables: flush pending destroy work before exit_net release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/6] netfilter: nf_tables: reject new basechain after table flag update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/6] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/6] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] conntrackd: Fix signal handler race-condition
- From: bre Breitenberger Markus <bre@xxxxxxxx>
- static analysis results
- From: Ivan Stepchenko <sid@xxxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: discard table flag update with pending basechain deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2 1/2] evaluate: handle invalid mapping expressions in stateful object statements gracefully.
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 2/2] evaluate: add support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2 0/2] Support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nf,v2 3/4] netfilter: nf_tables: flush pending destroy work before exit_net release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 4/4] netfilter: nf_tables: reject new basechain after table flag update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 2/4] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/4] netfilter: nf_tables: release batch on table validation from abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: packetpath: add check for drop policy
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/9] netfilter: nft_set_pipapo: move prove_locking helper around
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 6/9] netfilter: nft_set_pipapo: merge deactivate helper into caller
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 9/9] netfilter: nft_set_pipapo: remove dirty flag
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 8/9] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 7/9] netfilter: nft_set_pipapo: prepare pipapo_get helper for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/9] netfilter: nft_set_pipapo: prepare walk function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/9] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 5/9] netfilter: nf_tables: pass new nft_iter_type hint to walker
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/9] netfilter: nft_set_pipapo: make pipapo_clone helper return NULL
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/9] nft_set_pipapo: remove cannot-fail allocations on commit and abort
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: "Ziyang Xuan (William)" <william.xuanziyang@xxxxxxxxxx>
- Re: [PATCH nft v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables] evaluate: add support for variables in map expressions
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH nft v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: Ziyang Xuan <william.xuanziyang@xxxxxxxxxx>
- Re: [PATCH nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: "Ziyang Xuan (William)" <william.xuanziyang@xxxxxxxxxx>
- Re: [PATCH nftables] evaluate: add support for variables in map expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get()
- From: "Ziyang Xuan (William)" <william.xuanziyang@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]