Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH] netfilter: Wrong icmp6 checksum for ICMPV6_TIME_EXCEED in reverse SNATv6 path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: extensions: don't add nat by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 0/3] netfilter: conntrack: removal prealloc support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] ebtables: remove nf_hook_register usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: decnet: only register hooks in init namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: explicitly forbid ipv6 service/dest creation if ipv6 mod is disabled
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] ipvs: explicitly forbid ipv6 service/dest creation if ipv6 mod is disabled
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_dynset: continue to next expr if _OP_ADD succeeded
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH] ipvs: explicitly forbid ipv6 service/dest creation if ipv6 mod is disabled
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH next] iptables: on revision mismatch, do not call print/save
- From: Willem de Bruijn <willemdebruijn.kernel@xxxxxxxxx>
- Re: [PATCH next] iptables: on revision mismatch, do not call print/save
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft RFC PATCH] rule: introduce new option to print set elements per line
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- RE: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH net] netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [conntrack-tools PATCH 1/4] conntrackd: factorice tx_queue functions
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 4/4] conntrackd: introduce RequestResync option
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 3/4] conntrackd: factorize resync operations
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 2/4] conntrackd: warn users about queue allocation errors
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 4/4] conntrackd: introduce RequestResync option
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 3/4] conntrackd: factorize resync operations
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 2/4] conntrackd: warn users about queue allocation errors
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 1/4] conntrackd: factorice tx_queue functions
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH] conntrackd: request resync at startup
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH] netfilter: Wrong icmp6 checksum for ICMPV6_TIME_EXCEED in reverse SNATv6 path
- From: Dave Johnson <dave-kernel@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] ipvs: explicitly forbid ipv6 service/dest creation if ipv6 mod is disabled
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH iptables] iptables: support insisting that the lock is held
- From: Lorenzo Colitti <lorenzo@xxxxxxxxxx>
- Re: nfqueue buf size for recv()
- From: Oleg <lego12239@xxxxxxxxx>
- [PATCH nf] MAINTAINERS: add Florian Westphal as netfilter maintainer
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: don't attach a nat extension by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: masquerade: attach nat extension if not present
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: pptp: attach nat extension when needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: extensions: don't add nat by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 3/3] netfilter: conntrack: handle initial extension alloc via krealloc
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 2/3] netfilter: conntrack: mark extension structs as const
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 1/3] netfilter: conntrack: remove prealloc support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 0/3] netfilter: conntrack: removal prealloc support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH nf-next 3/3] netfilter: conntrack: handle initial extension alloc via krealloc
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH libmnl] nlmsg: introduce mnl_nlmsg_batch_rest to get the rest length
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- RE: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf-next] ebtables: remove nf_hook_register usage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: decnet: only register hooks in init namespace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nfqueue buf size for recv()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: conntrack: handle initial extension alloc via krealloc
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: conntrack: mark extension structs as const
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: conntrack: remove prealloc support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: conntrack: removal prealloc support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: Make some parameters integer to avoid enum mismatch
- From: Matthias Kaehlcke <mka@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- [PATCH net v3] bridge: ebtables: fix reception of frames DNAT-ed to bridge device/port
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH] netfilter: ctnetlink: Make some parameters integer to avoid enum mismatch
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH] netfilter: ctnetlink: Make some parameters integer to avoid enum mismatch
- From: Matthias Kaehlcke <mka@xxxxxxxxxxxx>
- nfqueue buf size for recv()
- From: Oleg <lego12239@xxxxxxxxx>
- [PATCH nf-next] ipvs: convert to use pernet nf_hook api
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: synproxy: only register hooks when needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: synproxy: only register hooks when needed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_socket: Fix broken IPv6 handling
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 2/2] tests: xlate: check if it is being run as root
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [PATCH iptables 1/2] tests: xlate: remove python 3.5 dependency
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [PATCH iptables v3] iptables-restore/save: exit when given an unknown option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ipvs: fix incorrect conflict resolution
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/6] netfilter: remove support for variably-sized extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Doubt about CTA_EXPECT_* values passed to ctnetlink_parse_tuple()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Mixing tables for NFQUEUE target
- From: Michael Bailey <strictlymike@xxxxxxxxx>
- Wrong icmp6 checksum for ICMPV6_TIME_EXCEED in reverse SNATv6 path
- From: Dave Johnson <dave-kernel@xxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14
- From: gfree.wind@xxxxxxxxxxx
- Re: Doubt about CTA_EXPECT_* values passed to ctnetlink_parse_tuple()
- From: Matthias Kaehlcke <mka@xxxxxxxxxxxx>
- Re: Doubt about CTA_EXPECT_* values passed to ctnetlink_parse_tuple()
- From: Matthias Kaehlcke <mka@xxxxxxxxxxxx>
- Re: [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Joe Stringer <joe@xxxxxxx>
- Re: [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Joe Stringer <joe@xxxxxxx>
- Re: [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- [PATCH] netfilter: xt_socket: Fix broken IPv6 handling
- From: Peter Tirsek <peter@xxxxxxxxxx>
- [PATCH nf-next] netfilter: ipvs: fix incorrect conflict resolution
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] nefilter: eache: reduce struct size from 32 to 24 byte
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Doubt about CTA_EXPECT_* values passed to ctnetlink_parse_tuple()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Doubt about CTA_EXPECT_* values passed to ctnetlink_parse_tuple()
- From: Matthias Kaehlcke <mka@xxxxxxxxxxxx>
- Re: [PATCH v2] bridge: ebtables: fix reception of frames DNAT-ed to bridge device
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: allow early drop of assured conntracks
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf 4/4] netfilter: ctnetlink: acquire ct->lock before operating nf_ct_seqadj
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 3/4] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 1/4] netfilter: ctnetlink: drop the incorrect cthelper module request
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 2/4] netfilter: ctnetlink: fix deadlock due to acquire _expect_lock twice
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 0/4] netfilter: ctnetlink: fix some bugs related to ct update
- From: Liping Zhang <zlpnobody@xxxxxxx>
- RE: [PATCH nf v5 2/3] netfilter: nat_helper: Make sure every proto nat module uses its nat_helper
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf-next] ipvs: remove unused function ip_vs_set_state_timeout
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: allow early drop of assured conntracks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 6/6] netfilter: conntrack: use u8 for extension sizes again
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 5/6] netfilter: remove last traces of variable-sized extensions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/6] netfilter: helpers: remove data_len usage for inkernel helpers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/6] netfilter: helper: add build-time asserts for helper data size
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/6] netfilter: nfnetlink_cthelper: reject too large userspace allocation requests
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/6] netfilter: conntrack: move helper struct to nf_conntrack_helper.h
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/6] netfilter: remove support for variably-sized extensions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_set_bitmap: free dummy elements when destroy the set
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf V3] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH v2 nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables v3] iptables-restore/save: exit when given an unknown option
- From: Vincent Bernat <vincent@xxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: kill the fake untracked conntrack objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: kill the fake untracked conntrack objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: kill the fake untracked conntrack objects
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nft V2] hash: generate a random seed if seed option is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: ecache: Refine the nf_ct_deliver_cached_events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft V2] hash: generate a random seed if seed option is empty
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: kill the fake untracked conntrack objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: nf_nat: Fix return NF_DROP in nfnetlink_parse_nat_setup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT 0/3] Second Round of IPVS Updates for v4.12
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables v2] iptables-restore/save: exit when given an unknown option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] ipset: remove unused function __ip_set_get_netlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] ct: add conntrack event mask support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 2/3] src: ct eventmask support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- From: Florian Westphal <fw@xxxxxxxxx>
- netfilter: nftables: ctnetlink event type set support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf v3] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- [PATCH nf-next 2/2] netfilter: remove nf_ct_is_untracked
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: kill the fake untracked conntrack objects
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf v2] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- Re: [PATCH 0/9] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] ipset: remove unused function __ip_set_get_netlink
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH iptables v2] iptables-restore/save: exit when given an unknown option
- From: Vincent Bernat <vincent@xxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf v2] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf V2] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH nf v2] netfilter: cttimeout: Fix one possible use-after-free issue
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf v3] netfilter: xt_CT: fix refcnt leak on error path
- From: gfree.wind@xxxxxxxxxxx
- Re: [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Khem Raj <raj.khem@xxxxxxxxx>
- Re: [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: cttimeout: Fix one possible use-after-free issue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Khem Raj <raj.khem@xxxxxxxxx>
- [PATCH nf v2] netfilter: cttimeout: Fix one possible use-after-free issue
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH nf v5 2/3] netfilter: nat_helper: Make sure every proto nat module uses its nat_helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf] netfilter: xt_CT: fix cthelper module's refcnt leak
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf v5 2/3] netfilter: nat_helper: Make sure every proto nat module uses its nat_helper
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH 2/9] netfilter: ctnetlink: using bit to represent the ct event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/9] netfilter: make it safer during the inet6_dev->addr_list traversal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: nf_ct_expect: use proper RCU list traversal/update APIs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: helper: Add the rcu lock when call __nf_conntrack_helper_find
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: ctnetlink: make it safer when checking the ct helper name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] netfilter: nft_hash: do not dump the auto generated seed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: ctnetlink: skip dumping expect when nfct_help(ct) is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: ipt_CLUSTERIP: Fix wrong conntrack netns refcnt usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] ipvs: remove unused function ip_vs_set_state_timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v5 2/3] netfilter: nat_helper: Make sure every proto nat module uses its nat_helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT 0/3] Second Round of IPVS Updates for v4.12
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT 0/3] Second Round of IPVS Updates for v4.12
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nfnl_cthelper: reject del request if helper obj is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nfnl_cthelper: reject del request if helper obj is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nfnl_cthelper: reject del request if helper obj is in use
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_queue][PATCH 1/2] Correct typo in the location of internal.h in #include
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] ipset: remove unused function __ip_set_get_netlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] nf_conntrack: remove double assignment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] nf_tables: remove double return statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: ctnetlink: make it safer when updating ct->status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nfnl_cthelper: reject del request if helper obj is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v2] net/openvswitch: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- Re: [PATCH nft] hash: generate a random seed if seed option is empty
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_CT: fix cthelper module's refcnt leak
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH 2/2 v2] iptables-restore.8: document -w/-W options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 v2] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] datapath: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- Re: [GIT 0/3] Second Round of IPVS Updates for v4.12
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] datapath: Delete conntrack entry clashing with an expectation.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: cttimeout: Refine cttimeout_del_timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: cttimeout: Fix one possible use-after-free issue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: cttimeout: Fix one possible use-after-free issue
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_CT: fix cthelper module's refcnt leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] nlmsg: introduce mnl_nlmsg_batch_rest to get the rest length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2 1/1] netfilter: xt_CT: Fix one possible memleak of timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: make nf_conntrack_max as an unsigned int knob
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: cttimeout: Fix one possible use-after-free issue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: CLUSTERIP: Fix one wrong refcnt usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables v1] iptables-restore/save: exit when given an unknown option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] hash: generate a random seed if seed option is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] hash: generate a random seed if seed option is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nat: remove rcu_read_lock in __nf_nat_decode_session.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf V2] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: ecache: Refine the nf_ct_deliver_cached_events
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Laura García Liébana <laura.garcia@xxxxxxxxxxx>
- Re: [PATCH nf-next] ip_vs_sync: change comparison on sync_refresh_period
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] ip_vs_sync: change comparison on sync_refresh_period
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next] nf_conntrack: remove double assignment
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next] nf_tables: remove double return statement
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: make it safer when updating ct->status
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH ulogd2 1/2] ulogd.conf: harmonize log file options with module default values
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- [PATCH nf 1/1] netfilter: nf_nat: Fix return NF_DROP in nfnetlink_parse_nat_setup
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf-next v2 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH nf-next] ipvs: remove unused function ip_vs_set_state_timeout
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: 高峰 <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: 高峰 <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [libnetfilter-acct][PATCH] Declare the define visibility attribute together
- From: Khem Raj <raj.khem@xxxxxxxxx>
- [libnftnl][PATCH] Declare the define visivility attribute together
- From: Khem Raj <raj.khem@xxxxxxxxx>
- [libnetfilter_queue][PATCH 2/2] Declare the define visivility attribute together
- From: Khem Raj <raj.khem@xxxxxxxxx>
- [libnetfilter_queue][PATCH 1/2] Correct typo in the location of internal.h in #include
- From: Khem Raj <raj.khem@xxxxxxxxx>
- [PATCH nf-next] ipset: remove unused function __ip_set_get_netlink
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next] ipvs: remove unused function ip_vs_set_state_timeout
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH 2/2 v2] iptables-restore.8: document -w/-W options
- From: Dan Williams <dcbw@xxxxxxxxxx>
- [PATCH 1/2 v2] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Dan Williams <dcbw@xxxxxxxxxx>
- [PATCH 2/3] netfilter: ipvs: Replace kzalloc with kcalloc.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/3] ipvs: remove unused variable
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipvs: don't check for presence of nat extension
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT 0/3] Second Round of IPVS Updates for v4.12
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] netfilter: nat: remove rcu_read_lock in __nf_nat_decode_session.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: ipvs: Replace explicit NULL comparison
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/1] netfilter: seqadj: Fix possible non-linear data access for TCP header
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: James Cowgill <James.Cowgill@xxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nf 2/2] netfilter: nfnl_cthelper: reject del request if helper obj is in use
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 0/2] netfilter: reject cthelper del request if it is in use
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 1/2] netfilter: introduce nf_conntrack_helper_put helper function
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Dan Williams <dcbw@xxxxxxxxxx>
- Re: [PATCH] net: netfilter: ipvs: Replace explicit NULL comparison
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] libnfnetlink: Add API support for passing bound file descriptor
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: udplite: Remove duplicated udplite4/6 declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_expect: use proper RCU list traversal/update APIs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: skip dumping expect when nfct_help(ct) is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: make it safer during the inet6_dev->addr_list traversal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: ctnetlink: make it safer when checking the ct helper name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3 1/1] netfilter: helper: Add the rcu lock when call __nf_conntrack_helper_find
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: ipv6: Remove unneccessary comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] net: netfilter: Replace explicit NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: netfilter: ipvs: Replace explicit NULL comparison
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: ipv6: Remove unneccessary comments
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_conntrack: make nf_conntrack_max as an unsigned int knob
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: xt_CT: fix cthelper module's refcnt leak
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Laura García Liébana <laura.garcia@xxxxxxxxxxx>
- Re: [RFC v2] extensions: libxt_TOS: Add translation to nft
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [RFC v2] extensions: libxt_TOS: Add translation to nft
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [PATCH 2/2] iptables: iptables: Constify option struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: ipv6: Removed unnecessary parenthesis
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] net: netfilter:Remove exceptional & on function name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] net: ipv6: netfilter: Format block comments.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] iptables: iptables: Add blank line after declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] iptables: libiptc: Use list_{next/prev}_entry instead of list_entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] tests: add regression tests for xtables-translate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] iptables: libiptc: Use list_{next/prev}_entry instead of list_entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Use list_{next/prev}_entry instead of list_entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Use seq_puts()/seq_putc() where possible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net: Remove unnecessary cast on void pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH iptables] extensions: libxt_hashlimit: fix 64-bit printf formats
- From: James Cowgill <James.Cowgill@xxxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: cttimeout: Refine cttimeout_del_timeout
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH iptables] tests: add regression tests for xtables-translate
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [PATCH] net: ipv4: netfilter: Remove unused function nf_nat_need_gre()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] tests: add regression tests for xtables-translate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] exthdr: avoid crash with older kernels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: fix build warning on i686
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] net: netfilter: Remove typedef from "typedef struct bitstr_t".
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: nft removes required payload protocol expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC v2] extensions: libxt_TOS: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: ctlink: Return error directly when create expect without help
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC v2] extensions: libxt_TOS: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: nat: Correct the return value check for nat mangled packet
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf-next 1/1] netfilter: ctlink: Return error directly when create expect without help
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: nat: Correct the return value check for nat mangled packet
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [Outreachy kernel] [PATCH v3] net: netfilter: Add nfnl_msg_type() helper function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nat: avoid use of nf_conn_nat extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: ctlink: Return error directly when create expect without help
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nat: remove rcu_read_lock in __nf_nat_decode_session.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Remove multiple assignment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: nat: Correct the return value check for nat mangled packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: nat: Correct the return value check for nat mangled packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: nft removes required payload protocol expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] tests: nft removes required payload protocol expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: expect: Add one common func nf_ct_remove_expect to simplify codes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2 1/1] netfilter: expect: Make sure the max_expected limit is effective
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] net: netfilter: Remove typedef from "typedef struct field_t"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] iptables: Remove unnecessary braces.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] iptables: Remove explicit static variables initalization.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf 1/1] netfilter: xt_CT: Fix one possible memleak of timeout
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf v2 1/1] netfilter: xt_CT: Fix one possible memleak of timeout
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf-next 1/1] netfilter: cttimeout: Return -EOPNOTSUPP if l4proto doesn't support
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf 1/1] netfilter: cttimeout: Fix one possible use-after-free issue
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf 1/1] netfilter: xt_CT: Fix one possible memleak of timeout
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf 1/1] netfilter: CLUSTERIP: Fix one wrong refcnt usage
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: Remove useless variable timeouts in init_conntrack
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf-next 1/1] netfilter: udplite4: Remove duplicated udplite4 declaration
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf-next v2 1/1] netfilter: udplite: Remove duplicated udplite4/6 declaration
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf-next 1/1] netfilter: udplite4: Remove duplicated udplite4 declaration
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nft] exthdr: avoid crash with older kernels
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: fix build warning on i686
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: netfilter: Use seq_puts()/seq_putc() where possible
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparison with ! operator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilters: Remove unnecessary parenthesis
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Replace explicit NULL comparison with ! operator
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] libnetfilter_conntrack: Add API support for passing bound file descriptor
- From: Skylar Chang <chiaweic@xxxxxxxxxxxxxx>
- [PATCH] libnfnetlink: Add API support for passing bound file descriptor
- From: Skylar Chang <chiaweic@xxxxxxxxxxxxxx>
- [PATCH] iptables-restore/ip6tables-restore: add --version/-V argument
- From: Dan Williams <dcbw@xxxxxxxxxx>
- [PATCH iptables v1] iptables-restore/save: exit when given an unknown option
- From: Vincent Bernat <vincent@xxxxxxxxx>
- [PATCH net] netfilter: xt_TCPMSS: add more sanity tests on tcph->doff
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf] netfilter: nft_hash: do not dump the auto generated seed
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft] hash: generate a random seed if seed option is empty
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [PATCH libmnl] nlmsg: introduce mnl_nlmsg_batch_rest to get the rest length
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [PATCH 1/2] iptables: extensions: unnecessary cast on void pointer
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/2] iptables: iptables: unnecessary cast on void pointer
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf] netfilter: nf_ct_expect: use proper RCU list traversal/update APIs
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: ctnetlink: skip dumping expect when nfct_help(ct) is NULL
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: make it safer during the inet6_dev->addr_list traversal
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH] iptables: iptables: Remove exceptional & on function name
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 4/4] net: ipv6: Remove exceptional & on function name
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 3/4] net: ipv4: Remove exceptional & on function name
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/4] net: bridge: Remove exceptional & on function name
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/4] net: netfilter:Remove exceptional & on function name
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- KASAN, xt_TCPMSS finally found nasty use-after-free bug? 4.10.8
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [PATCH 2/2] iptables: iptables: Constify option struct
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/2] extensions: libarpt_mangle.c : Constify option struct
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/2] ipv6: netfilter: Simplify NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/2] ipv4: netfilter: Simplify NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] net: Remove unnecessary cast on void pointer
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH 0/2] Simplify NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/2] ipv4: netfilter: Simplify NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/2] ipv6: netfilter: Simplify NULL comparisons
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: remove unnecessary nf_conntrack_expect_lock protection
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH] net: ipv4: netfilter: Remove unused function nf_nat_need_gre()
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: Comparison to NULL could be written
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH nf] netfilter: ctnetlink: make it safer when checking the ct helper name
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: ctnetlink: using bit to represent the ct event
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH] ipv4: netfilter: Comparison to NULL could be written
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/2] staging: iio: meter: Replace mlock with driver private buf_lock
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/2] iio: adc: replace comma with a semicolon
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 0/2] Add/Remove spaces
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 4/4] iptables: iptables: switch and case should be at the same indent
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: probably serious conntrack/netfilter panic, 4.8.14, timers and intel turbo
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [PATCH 3/4] iptables: iptables: Indent the code.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/4] iptables: iptables: Remove assignment in if condition
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/4] iptables: iptables: Add blank line after declaration
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 0/4] Multiple checkpatch issues.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH iptables] tests: add regression tests for xtables-translate
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [PATCH nf v5 2/3] netfilter: nat_helper: Make sure every proto nat module uses its nat_helper
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v5 1/3] netfilter: helper: Rename struct nf_ct_helper_expectfn to nf_ct_nat_helper
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v5 3/3] netfilter: nat_helper: Remove the expectations when its module is unloaded
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v5 0/3] Refine the robust of helper expectfn
- From: gfree.wind@xxxxxxxxxxx
- [PATCH] iptables: extensions: Add/Remove the braces where necessary
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: Writing metadata to a packet
- From: Patrick Schaaf <bof@xxxxxx>
- Writing metadata to a packet
- From: Vikas <vikas.c.kumar@xxxxxxxxxx>
- [PATCH] iptables: extensions: Remove spaces.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] iptables: extensions: Place trailing */ on a separate line.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] net: netfilter: remove unused variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] iptables: extensions: Remove assignments in if condition.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] net: netfilter: remove unused variable
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ipvs: don't check for presence of nat extension
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] iptables: extensions: Remove typedef in struct.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: Remove assignment in if condition.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: extensions: Remove unnecessary parenthesis.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] iptables: extensions: Add/Remove unnecessary spaces.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH] iptables: extensions: Add blank line after declarations.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] iptables: extensions: Remove assignment in if condition.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] iptables: extensions: Add space around operators
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH 0/8] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/2] iptables: Remove unnecessary braces.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH 1/2] iptables: Remove explicit static variables initalization.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH 0/2] iptables: Fix multiple checkpatch issues.
- From: Varsha Rao <rvarsha016@xxxxxxxxx>
- [PATCH v2] net: netfilter: remove unused variable
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] net: netfilter: remove unused variable
- From: Julia Lawall <julia.lawall@xxxxxxx>
- [PATCH] net: netfilter: remove unused variable
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf V2] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxx>
- RE: [PATCH nf v4 2/2] netfilter: helper: Fix possible panic caused by invoking expectfn unloaded
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH 8/8] netfilter: nfnetlink_queue: fix secctx memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nf_nat_snmp: Fix panic when snmp_trap_helper fails to register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nfnl_cthelper: Fix memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nfnl_cthelper: fix runtime expectation policy updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: nfnl_cthelper: fix incorrect helper->expect_class_max
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v3 1/1] netfilter: helper: Add the rcu lock when call __nf_conntrack_helper_find
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH nf] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_queue: fix secctx memory leak
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH] net: ipv6: Removed unnecessary parenthesis
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: netfilter: Replace explicit NULL comparison with ! operator
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] net: netfilterL: Fix line over 80 characters.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH nf v4 2/2] netfilter: helper: Fix possible panic caused by invoking expectfn unloaded
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: SIMRAN SINGHAL <singhalsimran0@xxxxxxxxx>
- [PATCH] net: ipv6: Removed unnecessary parenthesis
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: SIMRAN SINGHAL <singhalsimran0@xxxxxxxxx>
- [PATCH] net: ipv6: netfilter: Format block comments.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] net: netfilter: replace explicit NULL comparison with ! operator
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: bridge: netfilter: Comparison to NULL could be written
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] iptables: libiptc: Use list_{next/prev}_entry instead of list_entry
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [PATCH] net: ipv6: netfilter: replace explicit NULL comparison with ! operator
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: netfilter: Use list_{next/prev}_entry instead of list_entry
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- ANNOUNCE: netdev 2.1 conference Schedule out!
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH] net: netfilter: Use seq_puts()/seq_putc() where possible
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH v2] net: Remove unnecessary cast on void pointer
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [RFC v2] extensions: libxt_TOS: Add translation to nft
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] net: netfilter: Remove typedef from "typedef struct bitstr_t".
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [RFC] extensions: libxt_TOS: Add translation to nft
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH v3] net: netfilter: Add nfnl_msg_type() helper function
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH v2] net: netfilter: add nfnl_msg_type() helper function
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: SIMRAN SINGHAL <singhalsimran0@xxxxxxxxx>
- Re: [RFC] extensions: libxt_TOS: Add translation to nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC] extensions: libxt_TOS: Add translation to nft
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [Outreachy kernel] [PATCH] net: Remove unnecessary cast on void pointer
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: [Outreachy kernel] [PATCH] net: netfilter: Remove complexity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink_queue: fix secctx memory leak
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH v3] ebtables: extensions: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- RE: [PATCH] netfilter: ipset: Use max macro instead of ternary operator
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Use max macro instead of ternary operator
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] net: Remove unnecessary cast on void pointer
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH] netfilter: ipset: Use max macro instead of ternary operator
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [PATCH] net: netfilters: Remove unnecessary parenthesis
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH v2] netfilter: Clean up tests if NULL returned on failure
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [PATCH] net: netfilter: Remove complexity
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH] net: Remove unnecessary cast on void pointer
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [PATCH v2] ebtables: extensions: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [PATCH 0/3] ebtables: Constify option struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] ebtables: extensions: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 2/3] ebtables: extensions: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 1/3] ebtables: extensions: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 0/3] ebtables: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH v3] netfilter: Compress return logic
- From: simran singhal <singhalsimran0@xxxxxxxxx>
- [PATCH nf-next] netfilter: ipvs: don't check for presence of nat extension
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nat: avoid use of nf_conn_nat extension
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: ctlink: Return error directly when create expect without help
- From: gfree.wind@xxxxxxxxxxx
- [PATCH v2] net: netfilter: Remove multiple assignment.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- Re: [Outreachy kernel] Re: [PATCH] iptables: Constify option struct
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: [PATCH 3/5] ipset: hash:ipport: netmask support
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/5] ipset: netmask: expand to support cidr and full mask
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 4/4] netfilter: ipset: hash:ipport: add netmask support
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [Outreachy kernel] Re: [PATCH] iptables: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [PATCH 3/4] netfilter: ipset: hash:ip: add support for new netmask types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [Outreachy kernel] Re: [PATCH] iptables: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] iptables: Constify option struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- Re: [Outreachy kernel] [PATCH 0/4] Constify option structures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] extensions: libebt_nflog: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 3/4] extensions: libebt_mark: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 2/4] extenstions: libebt_mark_m: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 0/4] Constify option structures
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH 1/4] extensions: libebt_limit: Constify option struct
- From: Gargi Sharma <gs051095@xxxxxxxxx>
- [PATCH v2 ulogd2 1/2] harmonize log file defaults with ulogd.conf
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- [PATCH v2 ulogd2 2/2] rotate all default output files
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- [PATCH] netfilter: nat: remove rcu_read_lock in __nf_nat_decode_session.
- From: Taehee Yoo <ap420073@xxxxxxxxx>
- [PATCH nf-next v2 1/1] netfilter: nat: Correct the return value check for nat mangled packet
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH] net: netfilter: Remove multiple assignment.
- From: David Laight <David.Laight@xxxxxxxxxx>
- RE: [PATCH nf v4 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf v4 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: kbuild test robot <lkp@xxxxxxxxx>
- RE: [PATCH nf-next 1/1] netfilter: Use bool type instead of int as the return value of nf_conntrack_tuple_taken and nf_nat_used_tuple
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- RE: [PATCH nf-next 1/4] netfilter: amanda: Correct the return value comparison of the func nf_nat_mangle_udp_packet
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH 0/2] netfilter: Remove unnecessary cast on void pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: Use bool type instead of int as the return value of nf_conntrack_tuple_taken and nf_nat_used_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Outreachy kernel] Re: [PATCH] net: netfilter: Remove multiple assignment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/4] netfilter: amanda: Correct the return value comparison of the func nf_nat_mangle_udp_packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilter: Remove multiple assignment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: netfilters: Remove extra parenthesis
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V3] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v5 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: expect: Add one common func nf_ct_remove_expect to simplify codes
- From: gfree.wind@xxxxxxxxxxx
- Re: [PATCH 1/2] net: netfilter: Remove typedef from "typedef struct field_t"
- From: kbuild test robot <lkp@xxxxxxxxx>
- [Netdev ANNOUNCE]: New sponsors and workshop workshop accepted
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH] net: netfilters: Remove extra parenthesis
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH] net: netfilter: Remove multiple assignment.
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- __nf_conntrack_find_get - NMI watchdog, 4.10.5
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- [PATCH 0/2] net: netfilters: Remove typedef
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 2/2] net: netfilter: Remove typedef from "typedef struct bitstr_t"
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH 1/2] net: netfilter: Remove typedef from "typedef struct field_t"
- From: Arushi Singhal <arushisinghal19971997@xxxxxxxxx>
- [PATCH nf v5 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf v4 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_ct_ext: fix possible panic after nf_ct_extend_unregister
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf v4 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf V3] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf v4 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf v3 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH nf V2] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [ANNOUNCE]: New Gold sponsor VMware
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH nft] src: hash: fix seed attribute not listed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: hash: fix seed attribute not listed
- From: Laura Garcia Liebana <laura.garcia@xxxxxxxxxxx>
- [PATCH nft] src: hash: fix seed attribute not listed
- From: Laura Garcia Liebana <laura.garcia@xxxxxxxxxxx>
- Re: [PATCH nf v3 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] tests: Add test for flush command selectiveness on sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] src: Make flush command selective of the set structure type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Netdev ANNOUNCE]: New talk accepted debug pipe
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH nft 2/2] tests: Add test for flush command selectiveness on sets
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft 1/2] src: Make flush command selective of the set structure type
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nf v2 1/1] netfilter: expect: Make sure the max_expected limit is effective
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH nf 1/1] netfilter: expect: Make sure the max_expected limit is effective
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH nf v3 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH libnetfilter_cthelper] src: fix incorrect building and parsing of the NFCTH_POLICY_SETX attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf v3 1/1] netfilter: snmp: Fix one possible panic when snmp_trap_helper fail to register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: invoke synchronize_rcu after set the _hook_ to NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: expect: Make sure the max_expected limit is effective
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH nf 1/1] netfilter: expect: Make sure the max_expected limit is effective
- From: gfree.wind@xxxxxxxxxxx
- [ANNOUNCE] Linux Security Summit 2017 - CFP
- From: James Morris <jmorris@xxxxxxxxx>
- [ANNOUNCE]: New sponsor and accepted talk
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH V4 2/2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH V4 1/2] netfilter: xt_AUDIT: use consistent ipv4 network offset
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf V2] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft] tests: nft removes required payload protocol expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Florian Westphal <fw@xxxxxxxxx>
- [Netdev] ANNOUNCE: New silver sponsor!
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulogd: add +1 char for null char
- From: Alexandru Ardelean <ardeleanalex@xxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter: Clean up tests if NULL returned on failure
- From: SIMRAN SINGHAL <singhalsimran0@xxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/5] netfilter: Clean up tests if NULL returned on failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] extensions: libxt_statistic: Complete nft translator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_cthelper] examples: kill the "invalid argument" error in nftc-helper-add
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH libnetfilter_cthelper] examples: kill the "invalid argument" error in nftc-helper-add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V4 1/2] netfilter: xt_AUDIT: use consistent ipv4 network offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add nft_is_base_chain() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/3] sets: Fix for missing space after last element
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2,v3] netfilter: nfnetlink_cthelper: fix runtime expectation policy updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/3] tests: shell: netns/0003many_0: Fix cleanup after error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/3] tests: Add test cases for nested anonymous sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V4 1/2] netfilter: xt_AUDIT: use consistent ipv4 network offset
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V4 1/2] netfilter: xt_AUDIT: use consistent ipv4 network offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/3] tests: shell: netns/0003many_0: Fix cleanup after error
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH] ulogd: add +1 char for null char
- From: Alexandru Ardelean <ardeleanalex@xxxxxxxxx>
- [PATCH V4 2/2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH V4 1/2] netfilter: xt_AUDIT: use consistent ipv4 network offset
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nf 1/2,v3] netfilter: nfnetlink_cthelper: fix runtime expectation policy updates
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf v2 1/1] netfilter: helper: Add the rcu lock when call __nf_conntrack_helper_find
- From: gfree.wind@xxxxxxxxxxx
- RE: [PATCH RESENT nf 1/1] netfilter: ctlink: Fix one possible use-after-free in ctnetlink_create_expect
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- Re: [PATCH 2/2 nf] netfilter: cthelper: Fix memory leak
- From: jeffy <jeffy.chen@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 1/1] netfilter: helper: Remove useless rcu lock when get expectfn
- From: gfree.wind@xxxxxxxxxxx
- [PATCH 1/2] netfilter: ipset: warn users of list:set that parameter 'size' is ignored
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH] netfilter: ipset: print out warnings generated by commands
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: warn users of list:set that parameter 'size' is ignored
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- RE: [PATCH RESENT nf 1/1] netfilter: ctlink: Fix one possible use-after-free in ctnetlink_create_expect
- From: "Gao Feng" <gfree.wind@xxxxxxxxxxx>
- [PATCH RESENT nf 1/1] netfilter: ctlink: Fix one possible use-after-free in ctnetlink_create_expect
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v4 0/2] Fix invoking expectfn unloaded
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v4 1/2] netfilter: helper: Rename struct nf_ct_helper_expectfn to nf_ct_nat_helper
- From: gfree.wind@xxxxxxxxxxx
- [PATCH nf v4 2/2] netfilter: helper: Fix possible panic caused by invoking expectfn unloaded
- From: gfree.wind@xxxxxxxxxxx
- [nft PATCH 1/3] tests: Add test cases for nested anonymous sets
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/3] sets: Fix for missing space after last element
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/3] tests: shell: netns/0003many_0: Fix cleanup after error
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 5/5] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2] bridge: ebtables: fix reception of frames DNAT-ed to bridge device
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH v2] bridge: ebtables: fix reception of frames DNAT-ed to bridge device
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH 00/22] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] ulogd: use strncpy instead of memcpy
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] ulogd: add +1 char for null char
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nft] src: allow update of net base w. meta l4proto icmpv6
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 3/5] ipset: hash:ipport: netmask support
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 2/5] ipset: hash:ip: add support for new netmask types
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 5/5] hash:ip,port: add netmask support to man page
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 0/5] ipset: Extend netmask support for userspace
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 4/5] hash:ip: add new netmask support to man page
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 1/5] ipset: netmask: expand to support cidr and full mask
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 0/4] netfilter: ipset: Extend netmask support for kernel
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 3/4] netfilter: ipset: hash:ip: add support for new netmask types
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 1/4] net: netfilter: add nf_inet_addr_mask_inplace helper fn
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 4/4] netfilter: ipset: hash:ipport: add netmask support
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 2/4] netfilter: ipset: generalize netmask to support cidr and mask values
- From: Josh Hunt <johunt@xxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: ipvs: Compress return logic
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Netdev ANNOUNCE]: Two new talks on network emulators and zero copy sendmsg
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf 1/2,v3] netfilter: nfnetlink_cthelper: fix runtime expectation policy updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 3/5] netfilter: drop const qualifier from struct nf_conntrack_expect_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 3/5] netfilter: drop const qualifier from struct nf_conntrack_expect_policy
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf 2/5] netfilter: nfnl_cthelper: fix incorrect helper->expect_class_max
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 5/5] netfilter: nfnl_cthelper: fix a race when walk the nf_ct_helper_hash table
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- RE: [PATCH net-next 1/1] netfilter: helper: Remove the rcu lock in nf_ct_helper_expectfn_find_by_name and nf_ct_helper_expectfn_find_by_symbol.
- From: 高峰 <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: Interrest in a ASA-like packet tracer?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]