Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH nf 1/2] netfilter: nft_set_bitmap: fetch the element key based on the set->klen
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: validate the expr explicitly after init successfully
- From: Liping Zhang <zlpnobody@xxxxxxx>
- ANNOUNCE: New talk accepted on Netfilter Connection Tracking
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nft_set_bitmap: fix memory leak
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 1/2] netfilter: nft_set_bitmap: fetch the element key based on the set->klen
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: set pktinfo->thoff at AH header if found
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: set pktinfo->thoff at AH header if found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: set pktinfo->thoff at AH header if found
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: set pktinfo->thoff at AH header if found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [net] netfilter: nat: sctp: fix ICMP packet to be dropped accidently
- From: Ying Xue <ying.xue@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Mar 03
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH v2 nf] netfilter: don't track fragmented packets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: use skb_to_full_sk in ip_route_me_harder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: nf_conntrack_sip: fix wrong memory initialisation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: nf_tables: don't call nfnetlink_set_err() if nfnetlink_send() fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nft_set_rbtree: incorrect assumption on lower interval lookups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft: ah expression doesn't work for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: nftables queue target aborts rules processing unconditionally
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: nftables queue target aborts rules processing unconditionally
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables queue target aborts rules processing unconditionally
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables queue target aborts rules processing unconditionally
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] src: Use nftnl_buf to export XML/JSON rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables queue target aborts rules processing unconditionally
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH iptables] utils: nfsynproxy: fix build with musl libc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv6: Preserve link scope traffic original oif
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft: ah expression doesn't work for IPv6
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH] ipv6: Preserve link scope traffic original oif
- From: Alin Năstac <alin.nastac@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: fix wrong memory initialisation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv6: Preserve link scope traffic original oif
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv6: Preserve link scope traffic original oif
- From: Alin Năstac <alin.nastac@xxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: nat_masquerade: Check oom when invoke nfct_nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: nat_masquerade: Check oom when invoke nfct_nat
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf 1/1] netfilter: nat_masquerade: Check oom when invoke nfct_nat
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: nft: ah expression doesn't work for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft: ah expression doesn't work for IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: h323,sip: Fix possible dead loop in nat_rtp_rtcp and nf_nat_sdp_media
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- nft: ah expression doesn't work for IPv6
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_tables: don't call nfnetlink_set_err() if nfnetlink_send() fails
- From: Alexander Alemayhu <alexander@xxxxxxxxxxxx>
- [PATCH libnftnl] src: Use nftnl_buf to export XML/JSON rules
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: [PATCH nftables] tests: py: fix some typos in README
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables] tests: py: fix some typos in README
- From: Timothy Redaelli <tredaelli@xxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 New Gold Sponsor
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: h323,sip: Fix possible dead loop in nat_rtp_rtcp and nf_nat_sdp_media
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf-next v3 2/2] netfilter: nft_hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: don't call nfnetlink_set_err() if nfnetlink_send() fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: h323,sip: Fix possible dead loop in nat_rtp_rtcp and nf_nat_sdp_media
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf 1/1] netfilter: h323,sip: Fix possible dead loop in nat_rtp_rtcp and nf_nat_sdp_media
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf 1/1] netfilter: h323,sip: Fix possible dead loop in nat_rtp_rtcp and nf_nat_sdp_media
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH iptables] utils: nfsynproxy: fix build with musl libc
- From: Baruch Siach <baruch@xxxxxxxxxx>
- About Kernel SynProxy Performance
- From: Tugrul Erdogan <h.tugrul.erdogan@xxxxxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Alexander Alemayhu <alexander@xxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_tables: netlink listener hits ESRCH on socket overrun
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: nft_set_rbtree: incorrect assumption on lower interval lookups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Parse ICMPv6 redirects
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: netfilter: conntrack: refine gc worker heuristics, redux
- From: Florian Westphal <fw@xxxxxxxxx>
- netfilter: conntrack: refine gc worker heuristics, redux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/14] netfilter: conntrack: refine gc worker heuristics, redux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Alexander Alemayhu <alexander@xxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: fix wrong memory initialisation
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/14] netfilter: conntrack: refine gc worker heuristics, redux
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH] netfilter: Parse ICMPv6 redirects
- From: Alin Nastac <alin.nastac@xxxxxxxxx>
- [PATCH] ipv6: Preserve link scope traffic original oif
- From: Alin Nastac <alin.nastac@xxxxxxxxx>
- [PATCH] ipv6: Preserve link scope traffic original oif
- From: Alin Nastac <alin.nastac@xxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nft_hash: support of symmetric hash
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft authentication
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft authentication
- From: Fabian Franz <s1410239008@xxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 2/2] netfilter: nft_hash: support of symmetric hash
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: nft authentication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: Use pr_cont where appropriate
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [PATCH V3] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- nft authentication
- From: Fabian Franz <s1410239008@xxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft v2] src: hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf-next v2 2/2] netfilter: nft_hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Feb 28
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH v3] libiptc: don't set_changed() when checking rules with module jumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [4.9.10] ip_route_me_harder() reading off-slab
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] libiptc: don't set_changed() when checking rules with module jumps
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] libiptc: don't set_changed() when checking rules with module jumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: remove redundant check on ret being non-zero
- From: Colin King <colin.king@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] nftables: add ct helper set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_hashlimit: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 1/2] xshared: do not lock again and again if "-w" option is not specified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables V2 2/2] xshared: using the blocking file lock request when we wait indefinitely
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnfct 1/2] conntrack: fix missing break
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH lnfct 0/2] fix - src: add support for IPv6 NAT
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH lnfct 2/2] conntrack: revert getobjopt_is_nat condition
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH lnfct 1/2] conntrack: fix missing break
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH nft 3/4] src: support zone set statement with optional direction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] src: add conntrack zone support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] tests: add test entries for conntrack zones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] ct: refactor print function so it can be re-used for ct statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] xtables: Remove unused macro
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nft 4/4] src: store byteorder for set data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] evaluate: set byteorder as lhs expression context in stmt_evaluate_arg()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] netlink: rework NFTNL_SET_USERDATA to accomodate new attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] src: rename set_keytype_alloc() to set_datatype_alloc()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: per flow stats collection using libnetfilter_conntrack
- From: Tarun Khanna <tkhanna@xxxxxxxxxx>
- Re: per flow stats collection using libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- per flow stats collection using libnetfilter_conntrack
- From: Tarun Khanna <tkhanna@xxxxxxxxxx>
- [PATCH iptables] xtables: Remove unused macro
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH iptables] extensions: libxt_hashlimit: Add translation to nft
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft 3/7] netlink: BUG when object type is unknown
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 6/7] src: allow listing all ct helpers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl 1/2] object: don't set NFTNL_OBJ_TYPE unless obj->ops is non-null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/2] object: don't set NFTNL_OBJ_TYPE unless obj->ops is non-null
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl 2/2] object: fix crash when object ops is null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/7] evaluate: refactor CMD_OBJ_QUOTA/COUNTER handling
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 0/2] object: fix crashes with out-of-tree nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 4/7] src: add initial ct helper support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 7/7] src: implement add/create/delete for ct helper objects
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 2/2] object: fix crash when object ops is null
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/7] nftables: add ct helper set support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 2/7] src: ct helper support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 1/7] object: extend set/get api for u8/u16 types
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [4.9.10] ip_route_me_harder() reading off-slab
- From: Daniel J Blueman <daniel@xxxxxxxxx>
- Re: [PATCH 0/6] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Feb 27
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH 2/6] uapi: stop including linux/sysctl.h in uapi/linux/netfilter.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: nft_set_bitmap: incorrect bitmap size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: nf_ct_expect: Change __nf_ct_expect_check() return value.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] uapi: fix linux/netfilter/xt_hashlimit.h userspace compilation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: nft_ct: fix random validation errors for zone set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH V3] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_set_bitmap: incorrect bitmap size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft bug: Deleting map elements with intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nft bug: Deleting map elements with intervals
- From: Felix Kluge <f.kluge@xxxxxxxx>
- [PATCH nft] mnl: continue monitor if errno is ESRCH
- From: Alexander Alemayhu <alexander@xxxxxxxxxxxx>
- [PATCH v3] libiptc: don't set_changed() when checking rules with module jumps
- From: Dan Williams <dcbw@xxxxxxxxxx>
- Re: [PATCH] uapi: fix linux/netfilter/xt_hashlimit.h userspace compilation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] erec: Fix input descriptors for included files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2] netfilter: nf_ct_expect: Change __nf_ct_expect_check() return value.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: add DTYPE_F_CLONE flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: py: fix incorrect bytecode in numgen and hash mappings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink_delinearize: remove integer_type_postprocess()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] libiptc: don't set_changed() when checking rules with module jumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] evaluate: store byteorder for set keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] netlink: store set byteorder in NFTA_SET_USERDATA
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] libiptc: don't set_changed() when checking rules with module jumps
- From: Dan Williams <dcbw@xxxxxxxxxx>
- [PATCH] libiptc: don't set_changed() when checking rules with module jumps
- From: Dan Williams <dcbw@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: net: possible deadlock in skb_queue_tail
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/2] netfilter: nf_ct_expect: Change __nf_ct_expect_check() return value.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- [PATCH nf 1/2] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success.
- From: Jarno Rajahalme <jarno@xxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH] uapi: fix linux/netfilter/xt_hashlimit.h userspace compilation error
- From: "Dmitry V. Levin" <ldv@xxxxxxxxxxxx>
- Re: [PATCH libnftnl] exthdr: remove unused variable uval8
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl] exthdr: remove unused variable uval8
- From: Alexander Alemayhu <alexander@xxxxxxxxxxxx>
- Re: [PATCH] uapi: stop including linux/sysctl.h in uapi/linux/netfilter.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_ct: fix random validation errors for zone set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH 0/8] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT (fwd)
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_hash: support of symmetric hash
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: netfilter: nft_ct: add zone id set support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter: nft_ct: add zone id set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter: nft_ct: add zone id set support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_hash: rename nft_hash to nft_jhash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH 1/8] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: ipset: Null pointer exception in ipset list:set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: nfnetlink: remove static declaration from err_list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: ctnetlink: Fix regression in CTA_STATUS processing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] Fix bug: sometimes valid entries in hash:* types of sets were evicted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nfnetlink_queue: fix NFQA_VLAN_MAX definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: ctnetlink: Fix regression in CTA_HELP processing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] expr: hash: support of symmetric hash
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: nft_hash: symhash type support
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: netfilter: nft_ct: add zone id set support
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT (fwd)
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: [PATCH V2] audit: normalize NETFILTER_PKT
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] uapi: stop including linux/sysctl.h in uapi/linux/netfilter.h
- From: "Dmitry V. Levin" <ldv@xxxxxxxxxxxx>
- [PATCH V2] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nft] src: revisit tcp options support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: revisit tcp options support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: revisit tcp options support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/2] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success,
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 CFP extended
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] erec: Fix input descriptors for included files
- From: Anatole Denis <anatole@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: net: possible deadlock in skb_queue_tail
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [nf-next PATCH] nftables: exthdr: Allow checking TCP option presence, too
- From: Phil Sutter <phil@xxxxxx>
- net: possible deadlock in skb_queue_tail
- From: Andrey Konovalov <andreyknvl@xxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Feb 20
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH] nfnetlink_log: fix the typo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink: remove static declaration from err_list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nfnetlink_queue: fix NFQA_VLAN_MAX definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 4/9] src: ct: add zone support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.31 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/2] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/2] Fix bug: sometimes valid entries in hash:* types of sets were evicted
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: Null pointer exception in ipset list:set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nfnetlink: remove static declaration from err_list
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [4.9.10] ip_route_me_harder() reading off-slab
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: Parameter 'size' in type list:set is ignored
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Null pointer exception in ipset list:set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nft] doc: Document maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next] netfilter: ct: add helper assignment support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC nf-next] netfilter: ct: add helper assignment support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] exthdr: Add missing exthdr flags cases
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: conntrack_ftp and DNAT
- From: Klaus Ethgen <Klaus+lkml@xxxxxxxxx>
- [libnftnl PATCH] exthdr: Add missing exthdr flags cases
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] netfilter: nfnetlink_queue: fix NFQA_VLAN_MAX definition
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nfnetlink_queue: fix NFQA_VLAN_MAX definition
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: conntrack_ftp and DNAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: conntrack_ftp and DNAT
- From: Klaus Ethgen <Klaus+lkml@xxxxxxxxx>
- [PATCH] nfnetlink_log: fix the typo
- From: 段炯 <jduan@xxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: conntrack_ftp and DNAT
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: ipset: Null pointer exception in ipset list:set
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [RFC nf-next] netfilter: ct: add helper assignment support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Parameter 'size' in type list:set is ignored
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [Question] Is there some documentation for nftables development
- From: Fabian Franz <s1410239008@xxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [Question] Is there some documentation for nftables development
- From: Anatole Denis <natolumin@xxxxxxxxx>
- Re: [Question] Is there some documentation for nftables development
- From: Fabian Franz <s1410239008@xxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [RFC nf-next] netfilter: ct: add helper assignment support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC nf-next] netfilter: ct: add helper assignment support
- From: Florian Westphal <fw@xxxxxxxxx>
- [Question] Is there some documentation for nftables development
- From: Fabian Franz <s1410239008@xxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl 3/3] rule: add NFTA_RULE_ID attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/3] common: return nlmsghdr in nftnl_batch_{begin,end}()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/3] common: get rid of nftnl_batch_build_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Parameter 'size' in type list:set is ignored
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Parameter 'size' in type list:set is ignored
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: ANNOUNCE: Netdev 2.1 update Feb 14
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Feb 14
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_ct: fix random validation errors for zone set support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [bug report] netfilter: nft_ct: add zone id set support
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [PATCH nft] doc: Document maps
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH ulogd2 2/2] rotate all default output files
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- [PATCH ulogd2 1/2] ulogd.conf: harmonize log file options with module default values
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: nft_exthdr: Add support for existence check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: nf_tables: use struct nft_set_iter in set element flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: nf_tables: rename deactivate_one() to flush()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: nf_tables: add flush field to struct nft_set_iter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: nft_ct: add zone id get support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: nf_tables: add bitmap set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: nf_tables: add space notation to sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: nft_ct: prepare for key-dependent error unwind
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: nft_ct: add zone id set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: nfnetlink: get rid of u_intX_t types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: nf_tables: rename struct nft_set_estimate class field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: nfnetlink: add nfnetlink_rcv_skb_batch()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: nf_tables: add NFTA_RULE_ID attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: update MAINTAINERS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: nf_ct_expect: nf_ct_expect_insert() returns void
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: nf_tables: add check_genid to the nfnetlink subsystem
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: nf_ct_sip: Use mod_timer_pending()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: nf_tables: honor NFT_SET_OBJECT in set backend selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: nfnetlink: allow to check for generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: nft_exthdr: add TCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: nf_tables: pass netns to set->ops->remove()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables bug: Only the first two elements of a map are used for NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] adjust ulogd.logrotate to match ulogd.conf
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH ulogd2] adjust ulogd.logrotate to match ulogd.conf
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH ulogd2] adjust ulogd.logrotate to match ulogd.conf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2 conntrack-tools] conntrackd: cthelper: ssdp: Track UPnP eventing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] statement: Avoid rounding bytes in get_rate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] doc: Document sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nft] doc: Document stateful objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] src: consolidate XML/JSON exportation for rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] src: consolidate XML/JSON exportation for rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: expect: Make return value of nf_ct_expect_insert is void
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] netfilter: sip: Use mod_timer_pending instead of current multiple statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] statement: Avoid rounding bytes in get_rate()
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- conntrack_ftp and DNAT
- From: Klaus Ethgen <Klaus+lkml@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: honor NFT_SET_OBJECT in set backend selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nft] doc: Document sets
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nf-next] netfilter: update MAINTAINERS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables: add check_genid to the nfnetlink subsystem
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/5] nf_tables: rule deletion by description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nfnetlink: get rid of u_intX_t types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nfnetlink: add nfnetlink_rcv_skb_batch()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: add NFTA_RULE_ID attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nfnetlink: allow to check for generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Concurrent iptables-restore calls clobberring each other
- From: Shaun Crampton <shaun@xxxxxxxxxx>
- [PATCH v2 nft] doc: Document stateful objects
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: expect: Make return value of nf_ct_expect_insert is void
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH] src: consolidate XML/JSON exportation for rule
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/1] netfilter: sip: Use mod_timer_pending instead of current multiple statements
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- [PATCH nf] netfilter: nat: remove incorrect debug assert
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: net/ipv4: warning in nf_nat_ipv4_fn
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: Document stateful objects
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- nftables bug: Only the first two elements of a map are used for NAT
- From: Simon Hanisch <hanisch@xxxxxxxxxxxxxxxxx>
- net/ipv4: warning in nf_nat_ipv4_fn
- From: Andrey Konovalov <andreyknvl@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [PATCH] src: consolidate XML/JSON exportation for rule
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- ANNOUNCE: Netdev 2.1 seeking netdev conferences reporter(s)
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nftables 0/7] TCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/9] netfilter: nft_ct: prepare for key-dependent error unwind
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/9] netfilter: nft_ct: add zone id get support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/9] netfilter: nft_ct: add zone id set support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/1] net: netfilter: nft_exthdr: add TCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix description of skb_find_text() according to removed functionality
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix description of skb_find_text() according to removed functionality
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] net: fix description of skb_find_text() according to removed functionality
- From: Igor Pylypiv <igor.pylypiv@xxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Paul Moore <pmoore@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <pmoore@xxxxxxxxxx>
- Re: [PATCH] net: fix description of skb_find_text() according to removed functionality
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] net: fix description of skb_find_text() according to removed functionality
- From: Igor Pylypiv <igor.pylypiv@xxxxxxxxx>
- Re: [PATCH nf-next v2,1/2] netfilter: nft_exthdr: Add support for existence check
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v2,2/2] netfilter: nft_exthdr: add TCP option matching
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nf-next v2,1/2] netfilter: nft_exthdr: Add support for existence check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2,2/2] netfilter: nft_exthdr: add TCP option matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Revert "net: Remove state argument from skb_find_text()"
- From: David Miller <davem@xxxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 Location and Hotel
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH] Revert "net: Remove state argument from skb_find_text()"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 5/9] src: add host byte order integer type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 5/9] src: add host byte order integer type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/3] Boolean comparison and exthdr existence match support
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nftables 1/7] include: linux: netfilter: nf_tables: copy file from nf-next
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 7/7] tests: py: Add basic tests for ip, ip6 and inet
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nf-next 1/1] src: add TCP option matching requirements
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nf-next 0/1] TCP option matching
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 5/7] payload: insert implicit meta tcp dependency when matching tcp options
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 2/7] exthdr: prepare for tcp support
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 0/7] TCP option matching
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 3/7] exthdr: prepare exthdr_gen_dependency for tcp support
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nf-next 0/1] TCP option matching
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nf-next 1/1] net: netfilter: nft_exthdr: add TCP option matching
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 6/7] payload: automatically kill dependencies for exthdr and tcpopt
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH nftables 4/7] src: add TCP option matching
- From: Manuel Messner <mm@xxxxxxxxxx>
- [PATCH v2] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Alban Browaeys <alban.browaeys@xxxxxxxxx>
- Re: [PATCH nftables 5/9] src: add host byte order integer type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] datatype: Replace getaddrinfo() by internal lookup table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nftables 5/9] src: add host byte order integer type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Chain priorities for NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 5/9] src: add host byte order integer type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/3] Boolean comparison and exthdr existence match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: Replace getaddrinfo() by internal lookup table
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Alban Browaeys <alban.browaeys@xxxxxxxxx>
- Re: [nft PATCH 0/3] Boolean comparison and exthdr existence match support
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next PATCH] netfilter: nf_tables: exthdr: Add support for existence check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update Feb 06
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH iptables V2 2/2] xshared: using the blocking file lock request when we wait indefinitely
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH V2 2/2] netfilter: ctnetlink: Fix regression in CTA_HELP processing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2 1/2] netfilter: ctnetlink: Fix regression in CTA_STATUS processing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH 24/27] netfilter: guarantee 8 byte minalign for template addresses
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH nft] configure: Require newer version of libxtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] statement: Print NAT IPv4 address in nat_stmt_print()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] statement: fix print of ip dnat address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 2/2] src: Always print range expressions numerically
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/2] main: Validate the number of numeric options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 2/7] netfilter: nf_tables: use struct nft_set_iter in set element flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 5/7] netfilter: nf_tables: rename struct nft_set_estimate class field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 4/7] netfilter: nf_tables: add flush field to struct nft_set_iter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 7/7] netfilter: nf_tables: add bitmap set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 6/7] netfilter: nf_tables: add space notation to sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 3/7] netfilter: nf_tables: rename deactivate_one() to flush()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 1/7] netfilter: nf_tables: pass netns to set->ops->remove()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables 1/2] xshared: do not lock again and again if "-w" option is not specified
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 2/2] xshared: using the blocking file lock request when we wait indefinitely
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH] Revert "net: Remove state argument from skb_find_text()"
- From: Igor Pylypiv <igor.pylypiv@xxxxxxxxx>
- [PATCH] netfilter: xt_hashlimit: Fix integer divide round to zero.
- From: Alban Browaeys <alban.browaeys@xxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: Concurrent iptables-restore calls clobberring each other
- From: Shaun Crampton <shaun@xxxxxxxxxx>
- Re: Concurrent iptables-restore calls clobberring each other
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH 00/27] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Concurrent iptables-restore calls clobberring each other
- From: Shaun Crampton <shaun@xxxxxxxxxx>
- [PATCH nft] statement: Print NAT IPv4 address in nat_stmt_print()
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nftables] statement: fix print of ip dnat address
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables 9/9] tests: add test entries for conntrack zones
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables 8/9] src: support zone set statement with optional direction
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables 7/9] ct: refactor print function so it can be re-used for ct statement
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables 6/9] src: add conntrack zone support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables 5/9] src: add host byte order integer type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl 4/9] src: ct: add zone support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/9] netfilter: nft_ct: add zone id set support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/9] netfilter: nft_ct: prepare for key-dependent error unwind
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/9] netfilter: nft_ct: add zone id get support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next 0/9] nftables: add zone support to ct statement
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 05/27] netfilter: select LIBCRC32C together with SCTP conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/27] netfilter: nf_tables: add missing descriptions in nft_ct_keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/27] netfilter: nft_ct: add average bytes per packet support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/27] netfilter: nat: merge udp and udplite helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/27] iptables: use match, target and data copy_to_user helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/27] xtables: add xt_match, xt_target and data copy_to_user functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/27] netfilter: xt_connlimit: use rb_entry()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/27] netfilter: conntrack: validate SCTP crc32c in PREROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/27] ip6tables: use match, target and data copy_to_user helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/27] xtables: use match, target and data copy_to_user helpers in compat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/27] ebtables: use match, target and data copy_to_user helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/27] netfilter: nft_meta: deal with PACKET_LOOPBACK in netdev family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/27] xtables: extend matches and targets with .usersize
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/27] netfilter: nf_tables: Eliminate duplicated code in nf_tables_table_enable()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/27] netfilter: reduce direct skb->nfct usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/27] netfilter: merge ctinfo into nfct pointer storage area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/27] netfilter: add and use nf_ct_set helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/27] netfilter: allow logging from non-init namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/27] ipvs: free ip_vs_dest structs when refcnt=0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/27] netfilter: reset netfilter state when duplicating packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/27] netfilter: conntrack: no need to pass ctinfo to error handler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/27] skbuff: add and use skb_nfct helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/27] netfilter: nf_tables: eliminate useless condition checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/27] netfilter: pkttype: unnecessary to check ipv6 multicast address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/27] netfilter: guarantee 8 byte minalign for template addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/27] arptables: use match, target and data copy_to_user helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/27] netfilter: merge udp and udplite conntrack helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/27] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ulogd2] adjust ulogd.logrotate to match ulogd.conf
- From: Kaarle Ritvanen <kaarle.ritvanen@xxxxxxxxxxxxx>
- linux-next: manual merge of the rcu tree with the netfilter-next tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: [PATCH nf-next v4 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: allow logging from non-init namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 0/7] netfilter: skbuff: merge nfctinfo bits and nfct pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2 2/2] src: Always print range expressions numerically
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v2 1/2] main: Validate the number of numeric options
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft] configure: Require newer version of libxtables
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [PATCH v3] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- Re: [PATCH nft] src: Always print range expressions numerically
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: update pf.os
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrackd: cthelper: Don't leak nat_tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 conntrack-tools] conntrackd: cthelper: Free pktb after use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 conntrack-tools] conntrackd: config: Free strdup()ed tokens
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- ANNOUNCE: Netdev 2.1 update
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH nf-next v2] netfilter: allow logging from non-init namespaces
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- new patch state in patchwork...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [PATCH nft] src: Always print range expressions numerically
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: 4.9 conntrack performance issues
- From: Guillaume Nault <g.nault@xxxxxxxxxxxx>
- Re: 4.9 conntrack performance issues
- From: Denys Fedoryshchenko <nuclearcat@xxxxxxxxxxxxxx>
- Re: 4.9 conntrack performance issues
- From: Guillaume Nault <g.nault@xxxxxxxxxxxx>
- [PATCH] iptables: update pf.os
- From: Xose Vazquez Perez <xose.vazquez@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: net: suspicious RCU usage in nf_hook
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- net: suspicious RCU usage in nf_hook
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- [ANNOUNCE] iptables 1.6.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 conntrack-tools] conntrackd: config: Free strdup()ed tokens
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH 1/2 conntrack-tools] conntrackd: cthelper: Free pktb after use
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- Re: [PATCH v2 net] net: free ip_vs_dest structs when refcnt=0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 09/14] netfilter: conntrack: refine gc worker heuristics, redux
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net] tcp: don't annotate mark on control socket from tcp_v6_send_response()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC PATCH] audit: normalize NETFILTER_PKT
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- Re: [PATCH nft v3 1/6] src: Allow reset single stateful object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] payload: explicit network ctx assignation for icmp/icmp6 in special families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net] net: free ip_vs_dest structs when refcnt=0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net] net: free ip_vs_dest structs when refcnt=0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH conntrack-tools] conntrackd: cthelper: Don't leak nat_tuple
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH V2 1/2] netfilter: ctnetlink: Fix regression in CTA_STATUS processing
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH V2 2/2] netfilter: ctnetlink: Fix regression in CTA_HELP processing
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH net] tcp: don't annotate mark on control socket from tcp_v6_send_response()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net] net: free ip_vs_dest structs when refcnt=0
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 02/14] tcp: fix mark propagation with fwmark_reflect enabled
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 02/14] tcp: fix mark propagation with fwmark_reflect enabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/14] tcp: fix mark propagation with fwmark_reflect enabled
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nft v3 6/6] tests: py: Add tests for stateful objects
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v3 4/6] src: Allow list stateful objects in a table
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v3 5/6] tests: py: Add suport for stateful objects in python tests
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v3 3/6] evaluate: Evaluate table name before reset stateful objects in a table
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v3 2/6] src: Allow list single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v3 1/6] src: Allow reset single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH 01/14] netfilter: use fwmark_reflect in nf_send_reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/14] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/14] tcp: fix mark propagation with fwmark_reflect enabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/14] netfilter: nf_tables: fix set->nelems counting with no NLM_F_EXCL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/14] netfilter: conntrack: remove GC_MAX_EVICTS break
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/14] netfilter: rpfilter: fix incorrect loopback packet judgment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/14] netfilter: nf_tables: fix spelling mistakes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/14] netfilter: Fix typo in NF_CONNTRACK Kconfig option description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/14] netfilter: nf_tables: validate the name size when possible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/14] netfilter: nft_log: restrict the log prefix length to 127
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/14] netfilter: nf_tables: deconstify walk callback function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/14] netfilter: nf_tables: bump set->ndeact on set flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/14] netfilter: nf_tables: fix possible oops when dumping stateful objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/14] netfilter: conntrack: refine gc worker heuristics, redux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/14] netfilter: ipt_CLUSTERIP: fix build error without procfs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: Roy Keene <lkml@xxxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables: fix the wrong appending of jump verdict after the comment.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ip_rcv_finish() NULL pointer kernel panic
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 net] net: free ip_vs_dest structs when refcnt=0
- From: David Windsor <dwindsor@xxxxxxxxx>
- Re: [PATCH] iptables: fix the wrong appending of jump verdict after the comment.
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH] iptables: fix the wrong appending of jump verdict after the comment.
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH] iptables: fix the wrong appending of jump verdict after the comment.
- From: Shyam Saini <mayhs11saini@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/2] src: Allow reset single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [nft PATCH v2] payload: explicit network ctx assignation for icmp/icmp6 in special families
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [RFC/PATCH 0/3] Fix ctnetlink regressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_log: restrict the log prefix length to 127
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: EPOLLERR on memory mapped netlink socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_log: restrict the log prefix length to 127
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 1/2] src: Allow reset single stateful object
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 3/3] netfilter: nf_tables: bump set->ndeact on set flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 1/3] netfilter: nf_tables: fix set->nelems counting with no NLM_F_EXCL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf,v2 2/3] netfilter: nf_tables: deconstify walk callback function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: validate set size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: check for EINTR error from cache_init_objects() for stateful objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: Add test for flush bug on sets with size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2 2/2] src: Allow list single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft v2 1/2] src: Allow reset single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH v2] netfilter: nf_ct_helper: warn when not applying default helper assignment
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- [PATCH] netfilter: nf_ct_helper: warn when not applying default helper assignment (was Re: [RFC PATCH 0/2] restore original default of nf_conntrack_helper sysctl)
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- Re: EPOLLERR on memory mapped netlink socket
- From: Patrick PIGNOL <patrick.pignol@xxxxxxxxx>
- Re: [RFC PATCH 0/2] restore original default of nf_conntrack_helper sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/2] restore original default of nf_conntrack_helper sysctl
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [RFC PATCH 0/2] restore original default of nf_conntrack_helper sysctl
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- [PATCH 2/2] Revert "netfilter: fix nf_conntrack_helper documentation"
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- [PATCH 1/2] Revert "netfilter: nf_ct_helper: disable automatic helper assignment"
- From: Jiri Kosina <jikos@xxxxxxxxxx>
- Re: [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: shell: Add test for flush bug on sets with size
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft 2/2] src: Allow list single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- [PATCH nft 1/2] src: Allow reset single stateful object
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: EPOLLERR on memory mapped netlink socket
- From: prashantkumar dhotre <prashantkumardhotre@xxxxxxxxx>
- [PATCH v4 nf-next 7/7] netfilter: merge ctinfo into nfct pointer storage area
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 6/7] netfilter: guarantee 8 byte minalign for template addresses
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 4/7] skbuff: add and use skb_nfct helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 3/7] netfilter: reduce direct skb->nfct usage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 2/7] netfilter: reset netfilter state when duplicating packet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4 nf-next 1/7] netfilter: conntrack: no need to pass ctinfo to error handler
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4 0/7] netfilter: skbuff: merge nfctinfo bits and nfct pointer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: Add test for set element leak bug
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: check for EINTR error from cache_init_objects() for stateful objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: Honor obligatory stateless printing of flow tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf V2] netfilter: nf_tables: validate the name size when possible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/3] Boolean comparison and exthdr existence match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 nf-next 7/7] netfilter: merge ctinfo into nfct pointer storage area
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 6/7] netfilter: guarantee 8 byte minalign for template addresses
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 5/7] netfilter: add and use nf_ct_set helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 4/7] skbuff: add and use skb_nfct helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 3/7] netfilter: reduce direct skb->nfct usage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 2/7] netfilter: reset netfilter state when duplicating packet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 1/7] netfilter: conntrack: no need to pass ctinfo to error handler
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 0/7] netfilter: skbuff: merge nfctinfo bits and nfct pointer
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- EPOLLERR on memory mapped netlink socket
- From: prashantkumar dhotre <prashantkumardhotre@xxxxxxxxx>
- Re: [nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH nf] netfilter: nft_log: restrict the log prefix length to 127
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Patrick PIGNOL <patrick.pignol@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Patrick PIGNOL <patrick.pignol@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Patrick PIGNOL <patrick.pignol@xxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Paul Moore <paul@xxxxxxxxxxxxxx>
- Re: AUDIT_NETFILTER_PKT message format
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf-next v4 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH nf-next v2 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [PATCH 2/2 nf] netfilter: nf_tables: bump set->ndeact on set flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf] netfilter: nf_tables: deconstify walk callback function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf V2] netfilter: nf_tables: validate the name size when possible
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ctnetlink: make more information available in DESTROY events
- From: Victor Julien <lists@xxxxxxxxxxxx>
- Re: [PATCH nf-next v2 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [PATCH nf-next v3 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH nft] netlink: don't bail out on dump errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: shell: Add test for set element leak bug
- From: Elise Lennion <elise.lennion@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Patrick PIGNOL <patrick.pignol@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics, redux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]