Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 05/39] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/39] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/39] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/39] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/39] netfilter: nft_hash: get random bytes if seed is not specified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/39] netfilter: handle NF_REPEAT from nf_conntrack_in()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/39] udp: provide udp{4,6}_lib_lookup for nf_socket_ipv{4,6}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/39] netfilter: remove hook_entries field from nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/39] netfilter: conntrack: fix NF_REPEAT handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/39] netfilter: ipset: Remove extra whitespaces in ip_set.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/39] netfilter: nf_tables: simplify the basic expressions' init routine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/39] netfilter: ipset: Use kmalloc() in comment extension helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/39] netfilter: ipset: Split extensions into separate files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/39] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/39] netfilter: ipset: Add element count to all set types header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/39] netfilter: ipset: Headers file cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/39] netfilter: ipset: Improve skbinfo get/init helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/39] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/39] netfilter: ipset: Add element count to hash headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/39] netfilter: ipset: Make NLEN compile time constant for hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/39] netfilter: ipset: Make sure element data size is a multiple of u32
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/39] netfilter: ipset: Remove redundant mtype_expire() arguments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/39] netfilter: ipset: Fix reported memory size for hash:* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/39] netfilter: ipset: Optimize hash creation routine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/39] netfilter: ipset: Collapse same condition body to a single one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 35/39] netfilter: ipset: hash:ipmac type support added to ipset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 37/39] netfilter: ipset: hash: fix boolreturn.cocci warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 36/39] netfilter: ipset: use setup_timer() and mod_timer().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/39] netfilter: ipset: Make struct htype per ipset family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/39] netfilter: conntrack: remove unused netns_ct member
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 39/39] netfilter: x_tables: simplify IS_ERR_OR_NULL to NULL test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/39] netfilter: ipset: Count non-static extension memory for userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/39] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/39] netfilter: ipset: Mark some helper args as const.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/39] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/39] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/39] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/39] netfilter: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/39] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: x_tables: simplify IS_ERR_OR_NULL to NULL test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove unused netns_ct member
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next, v3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: manual merge of the net-next tree with the netfilter tree
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter: x_tables: simplify IS_ERR_OR_NULL to NULL test
- From: Julia Lawall <Julia.Lawall@xxxxxxx>
- Re: [PATCH nf-next 1/4] netfilter: nf_conntrack_tuple_common.h: fix #include
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: question about xt_find_table_lock
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: question about xt_find_table_lock
- From: Florian Westphal <fw@xxxxxxxxx>
- question about xt_find_table_lock
- From: Julia Lawall <julia.lawall@xxxxxxx>
- Re: [PATCH nf-next 1/4] netfilter: nf_conntrack_tuple_common.h: fix #include
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH nf-next 4/4] netfilter: conntrack: built-in support for UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 3/4] netfilter: conntrack: built-in support for SCTP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: conntrack: built-in support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: nf_conntrack_tuple_common.h: fix #include
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 0/4] netfilter: built-in conntrack support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf] netfilter: fix nf_conntrack_helper documentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: remove unused netns_ct member
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 16/22] netfilter: ipset: Optimize hash creation routine
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/22] netfilter: ipset: Headers file cleanup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/22] netfilter: ipset: Make sure element data size is a multiple of u32
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/22] netfilter: ipset: Improve skbinfo get/init helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/22] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 17/22] netfilter: ipset: Make struct htype per ipset family
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 19/22] netfilter: ipset: Fix reported memory size for hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/22] netfilter: ipset: Count non-static extension memory for userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 18/22] netfilter: ipset: Collapse same condition body to a single one
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/22] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 22/22] netfilter: ipset: hash: fix boolreturn.cocci warnings
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/22] netfilter: ipset: Add element count to all set types header
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/22] netfilter: ipset: Make NLEN compile time constant for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 20/22] netfilter: ipset: hash:ipmac type support added to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 21/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/22] netfilter: ipset: Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/22] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/22] netfilter: ipset: Remove redundant mtype_expire() arguments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/22] netfilter: ipset: Use kmalloc() in comment extension helper
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/22] netfilter: ipset: Split extensions into separate files
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/22] netfilter: ipset: Mark some helper args as const.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/22] ipset patches for nf-next, v3
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/22] netfilter: ipset: Remove extra whitespaces in ip_set.h
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/14] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_mangle: Use getaddrinfo()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: xtables-arp: Use getaddrinfo()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: manual merge of the net-next tree with the netfilter tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/14] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/14] netfilter: nf_tables: fix type mismatch with error return from nft_parse_u32_check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/14] netfilter: nf_conntrack_sip: extend request line validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/14] netfilter: nf_tables: fix *leak* when expr clone fail
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/14] netfilter: nf_tables: fix race when create new element in dynset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/14] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/14] netfilter: nft_dup: do not use sreg_dev if the user doesn't specify it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/14] ipvs: use IPVS_CMD_ATTR_MAX for family.maxattr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/14] netfilter: conntrack: fix CT target for UNSPEC helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/14] netfilter: nf_tables: destroy the set if fail to add transaction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/14] netfilter: connmark: ignore skbs with magic untracked conntrack objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/14] netfilter: conntrack: refine gc worker heuristics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/14] netfilter: nf_tables: fix oops when inserting an element into a verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/14] netfilter: conntrack: avoid excess memory allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/14] netfilter: nft_dynset: fix panic if NFT_SET_HASH is not enabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- linux-next: manual merge of the net-next tree with the netfilter tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH 2/2] [nf-next] netfilter: fix NF_REPEAT handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] [net-next] udp: provide udp{4,6}_lib_lookup for nf_socket_ipv{4,6}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: simplify the basic expressions' init routine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nf_nat_tftp broken in 4.8?
- From: Florian Fainelli <f.fainelli@xxxxxxxxx>
- Re: nf_nat_tftp broken in 4.8?
- From: Florian Westphal <fw@xxxxxxxxx>
- nf_nat_tftp broken in 4.8?
- From: Florian Fainelli <f.fainelli@xxxxxxxxx>
- Re: linux-next: Tree for Nov 9 (netdev, netfilter v6)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH] netfilter: Update nf_send_reset6 to consider L3 domain
- From: David Ahern <dsa@xxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: Update ip_route_me_harder to consider L3 domain
- From: David Ahern <dsa@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: add test case for inserting element into verdict map
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [nft PATCH] tests: shell: add testcases for comments in set elements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nft] segtree: keep element comments in set intervals
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH 1/3] log: introduce a mechanism to know if log was initialized
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft 2/4] src: add offset attribute for hash expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nft 1/4] src: make hash seed attribute optional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/3] tests: shell: delete useless stderr output in testcase
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] segtree: keep element comments in set intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter: Fix use uninitialized warn in nft_range_eval()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix CT target for UNSPEC helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix oops when inserting an element into a verdict map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v4] netfilter: conntrack: refine gc worker heuristics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: connmark: ignore skbs with magic untracked conntrack objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Patch net] ipvs: use IPVS_CMD_ATTR_MAX for family.maxattr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: "random" syn packets dropped
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- sip helper doesn't match on calls to myself
- From: Juergen Schmidt <abcdmail@xxxxxxxxxx>
- Re: linux-next: Tree for Nov 8 (netdev, netfilter)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: add test case for inserting element into verdict map
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: "random" syn packets dropped
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] [nf-next] netfilter: fix NF_REPEAT handling
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 1/2] [net-next] udp: provide udp{4,6}_lib_lookup for nf_socket_ipv{4,6}
- From: Arnd Bergmann <arnd@xxxxxxxx>
- "random" syn packets dropped
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH nf-next v3] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: nfqueue: Get pid of socket owner
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nfqueue: Get pid of socket owner
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net/netfilter: Fix use uninitialized warn in nft_range_eval()
- From: Shuah Khan <shuahkh@xxxxxxxxxxxxxxx>
- nfqueue: Get pid of socket owner
- From: David Buchmann <david@xxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix oops when inserting an element into a verdict map
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH] extensions: libxt_mangle: Use getaddrinfo()
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH] iptables: xtables-arp: Use getaddrinfo()
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix oops when inserting an element into a verdict map
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: simplify the basic expressions' init routine
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix oops when inserting an element into a verdict map
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [nf-next:master 9/12] undefined reference to `udp6_lib_lookup'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [nf-next:master 9/12] ERROR: "udp4_lib_lookup" [net/ipv4/netfilter/nf_socket_ipv4.ko] undefined!
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH nf v4] netfilter: conntrack: refine gc worker heuristics
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf v4] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf v3] netfilter: conntrack: refine gc worker heuristics
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH v3 nft 2/4] src: add offset attribute for hash expression
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH v3 nft 1/4] src: make hash seed attribute optional
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [Patch net] ipvs: use IPVS_CMD_ATTR_MAX for family.maxattr
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [conntrack-tools PATCH 3/3] conntrackd: replace fprintf calls with dlog()
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 2/3] conntrackd: replace error reporting in the config parser with dlog()
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [conntrack-tools PATCH 1/3] log: introduce a mechanism to know if log was initialized
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf v3] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- [Patch net] ipvs: use IPVS_CMD_ATTR_MAX for family.maxattr
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- [nf-next:master 8/10] net/netfilter/nfnetlink_queue.c:922:16: sparse: incompatible types in comparison expression (different address spaces)
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_hash: get random bytes if seed is not specified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] nft_meta: add skb hash get support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RFC netfilter-next 1/3] netfilter: introduce accessor functions for hook entries
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH RFC netfilter-next 1/3] netfilter: introduce accessor functions for hook entries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: fix CT target for UNSPEC helpers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 10/10] netfilter: handle NF_REPEAT from nf_conntrack_in()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 09/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 08/10] netfilter: remove hook_entries field from nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 03/10] netfilter: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,v2 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 3/3] tests: shell: add a new testcase for ruleset loading bug
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 2/3] tests: shell: introduce the cache testcases directory
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 1/3] tests: shell: delete useless stderr output in testcase
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf v2] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 00/12] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 08/12] netfilter: nf_log: add packet logging for netdev family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: nf_tables: add fib expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: nf_tables: introduce routing expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: nf_queue: place volatile data in own cacheline
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: move socket lookup infrastructure to nf_socket_ipv{4,6}.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: nf_tables: remove useless U8_MAX validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: nft_ct: add notrack support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: nft_numgen: start round robin from zero
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: nf_tables: allow expressions to return STOLEN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: nfnetlink_log: Use GFP_NOWARN for skb allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: xt_multiport: Use switch case instead of multiple condition checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: refine gc worker heuristics
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: refine gc worker heuristics
- From: Florian Westphal <fw@xxxxxxxxx>
- Rebasing nf-next...
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 19/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 16/22] netfilter: ipset: Collapse same condition body to a single one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 11/22] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 07/22] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 06/22] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 05/22] netfilter: ipset: Split extensions into separate files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 05/22] netfilter: ipset: Split extensions into separate files
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 04/22] netfilter: ipset: Improve comment extension helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 03/22] netfilter: ipset: Improve skbinfo get/init helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/22] netfilter: ipset: Headers file cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/22] netfilter: ipset: Correct rcu_dereference_bh_nfnl() usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next, v2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nft 2/4] src: add offset attribute for hash expression
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH v2 nft 1/4] src: make hash seed attribute optional
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH next] nft_meta: add skb hash get support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_dup: do not use sreg_dev if the user doesn't specify it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: destroy the set if fail to add transaction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: nf_queue: place volatile data in own cacheline
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: remove useless U8_MAX validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [v2 netfilter-next] netfilter: nf_tables: fib warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables] Allow concatenation of rt nexthop etc.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] log: rename the log level "warning" to "warn"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink_linearize: skip set element expression in flow table key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] nft_meta: add skb hash get support
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH next] nft_meta: add skb hash get support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests/py: add missing payload test for numgen offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] expr: missing offset handling for snprintf() in hash and numgen
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: fix compilation with !CONFIG_NF_CONNTRACK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH next] netfilter: nf_queue: place volatile data in own cacheline
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] ct: fix "ct l3proto/protocol" syntax broken
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] ct: fix "ct l3proto/protocol" syntax broken
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft] log: rename the log level "warning" to "warn"
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft] ct: fix "ct l3proto/protocol" syntax broken
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Chris Caputo <ccaputo@xxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [nf-next:master 10/11] undefined reference to `udp4_lib_lookup'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Chris Caputo <ccaputo@xxxxxxx>
- [nf-next:master 10/11] include/net/netfilter/nf_conntrack.h:83:22: error: field 'ct_general' has incomplete type
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH] Correct description of -n/--numeric option
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next:master 8/11] net/ipv4/netfilter/nft_fib_ipv4.c:80:6: warning: unused variable 'i'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH nf] netfilter: nft_dup: do not use sreg_dev if the user doesn't specify it
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: nf_tables: destroy the set if fail to add transaction
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: remove useless U8_MAX validation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nftables] Allow concatenation of rt nexthop etc.
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH] Correct description of -n/--numeric option
- From: Jon Jensen <jon@xxxxxxxxxxxx>
- Re: [PATCH] Correct manpage description of -n / --numeric option
- From: Jon Jensen <jon@xxxxxxxxxxxx>
- Re: [PATCH] Correct manpage description of -n / --numeric option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] Correct manpage description of -n / --numeric option
- From: Jon Jensen <jon@xxxxxxxxxxxx>
- Re: [PATCH nftables] rt: update test scripts and fix documentation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nftables] rt: update test scripts and fix documentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: connmark: ignore skbs with magic untracked conntrack objects
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [v2 netfilter-next] netfilter: nf_tables: fib warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [rfc, netfilter-next] netfilter: nf_tables: fib warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH] [v2 netfilter-next] netfilter: nf_tables: fib warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH nftables] rt: update test scripts and fix documentation
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: James Feeney <james@xxxxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: James Feeney <james@xxxxxxxxxxx>
- Re: [PATCH] [rfc, netfilter-next] netfilter: nf_tables: fib warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [rfc, netfilter-next] netfilter: nf_tables: fib warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] [rfc, netfilter-next] netfilter: nf_tables: fib warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] [rfc, netfilter-next] netfilter: nf_tables: fib warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v4 nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nftables] rt: introduce routing expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH v4 nftables] rt: introduce routing expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 libnftnl] introduce rt expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 nf-next] netfilter: nft: introduce routing expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH v2] log: print messages to stdout/sderr if running in console mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH v2] log: print messages to stdout/sderr if running in console mode
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH v4 nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v4 libnftnl] introduce rt expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v4 nf-next] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nft] parser: add offset keyword and parser rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] log: print messages to stdout/sderr if running in console mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: move socket lookup infrastructure to nf_socket_ipv{4,6}.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_log: add packet logging for netdev family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC netfilter-next 3/3] netfilter: convert while loops to for loops
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH RFC netfilter-next 2/3] netfilter: decouple nf_hook_entry and nf_hook_ops
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH RFC netfilter-next 1/3] netfilter: introduce accessor functions for hook entries
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH RFC netfilter-next 0/3] Additional refactoring enhancements for nf_hook_entry
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] nf_tables: add fib expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] meta: fix pkttype name and add 'other' symbol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/4] src: add offset attribute for hash expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] meta: fix pkttype name and add 'other' symbol
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/3] support ct/meta key lookups at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/4] src: make hash seed attribute optional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/4] src: make hash seed attribute optional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] support ct/meta key lookups at runtime
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 4/4] netlink: fix linearize numgen type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/4] src: add offset attribute for numgen expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next, v2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] support ct/meta key lookups at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/3] support ct/meta key lookups at runtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: avoid excess memory allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: NFTables Internals
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] nf_conntrack_sip: extend request line validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: fix type mismatch with error return from nft_parse_u32_check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/3] netfilter: nf_tables: fix some bugs related to dynset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- NFTables Internals
- From: mark diener <rpzrpzrpz@xxxxxxxxx>
- [conntrack-tools PATCH] log: print messages to stdout/sderr if running in console mode
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [conntrack-tools PATCH] sync-mode: print errno message on failure
- From: Florian Westphal <fw@xxxxxxxxx>
- [conntrack-tools PATCH] sync-mode: print errno message on failure
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH nft 2/3] ct: allow resolving ct keys at run time
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] support ct/meta key lookups at runtime
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] utils: provide snprintf helper macro
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/3] meta: allow resolving meta keys at run time
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: avoid excess memory allocation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: James Feeney <james@xxxxxxxxxxx>
- Re: [PATCH nf 1/3] netfilter: nft_dynset: fix panic if NFT_SET_HASH is not enabled
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: reject statement - "crazy" parse error?
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Logical processing
- From: mark diener <rpzrpzrpz@xxxxxxxxx>
- reject statement - "crazy" parse error?
- From: James Feeney <james@xxxxxxxxxxx>
- Re: [PATCH] netfilter: fix type mismatch with error return from nft_parse_u32_check
- From: "John W. Linville" <linville@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: fix type mismatch with error return from nft_parse_u32_check
- From: "John W. Linville" <linville@xxxxxxxxxxxxx>
- [PATCH] netfilter: fix type mismatch with error return from nft_parse_u32_check
- From: "John W. Linville" <linville@xxxxxxxxxxxxx>
- RE: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH nf 1/3] netfilter: nft_dynset: fix panic if NFT_SET_HASH is not enabled
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2] nf_conntrack_sip: extend request line validation
- From: Marco Angaroni <marcoangaroni@xxxxxxxxx>
- Re: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v2] nf_conntrack_sip: extend request line validation
- From: Ulrich Weber <ulrich.weber@xxxxxxxxxxxx>
- Re: [PATCH] nf_conntrack_sip: check for trailing spaces
- From: Ulrich Weber <uweber.linux@xxxxxxxxx>
- [PATCH] netfilter: ip_vs_sync: fix bogus maybe-uninitialized warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 3/3 nft] src: add fib expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/3 libnftables] expr: add fib expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/3 nf-next] nf_tables: add fib expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/3 various] netfilter: add fib expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 20/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 16/22] netfilter: ipset: Collapse same condition body to a single one
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/22] netfilter: ipset: Make struct htype per ipset family
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 19/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 18/22] netfilter: ipset: hash:ipmac type support added to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 21/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/22] netfilter: ipset: Optimize hash creation routine
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/22] netfilter: ipset: Add element count to all set types header
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 17/22] netfilter: ipset: Fix reported memory size for hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/22] netfilter: ipset: Make NLEN compile time constant for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/22] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/22] netfilter: ipset: Improve comment extension helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/22] netfilter: ipset: Count non-static extension memory for userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 22/22] netfilter: ipset: hash: fix boolreturn.cocci warnings
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/22] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/22] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/22] ipset patches for nf-next, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/22] netfilter: ipset: Headers file cleanup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/22] netfilter: ipset: Improve skbinfo get/init helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/22] netfilter: ipset: Split extensions into separate files
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/22] netfilter: ipset: Make sure element data size is a multiple of u32
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/22] netfilter: ipset: Correct rcu_dereference_bh_nfnl() usage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/22] netfilter: ipset: Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nft 4/4] netlink: fix linearize numgen type
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nft 3/4] src: add offset attribute for numgen expression
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nft 2/4] src: add offset attribute for hash expression
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nft 1/4] src: make hash seed attribute optional
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nft 0/4] src: changes related to numgen and hash expressions
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: Jann Horn <jann@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nftables] doc: fix synopsis for ct expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf 3/3] netfilter: nf_tables: fix race when create new element in dynset
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 1/3] netfilter: nft_dynset: fix panic if NFT_SET_HASH is not enabled
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 0/3] netfilter: nf_tables: fix some bugs related to dynset
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 2/3] netfilter: nf_tables: fix *leak* when expr clone fail
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH 00/13] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nft] src: don't need keyword for log level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: nf_tables: allow expressions to return STOLEN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_numgen: start round robin from zero
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_log: Use GFP_NOWARN for skb allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_multiport: Use switch case instead of multiple condition checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: update kernel modules to clean
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Mathew Heard <mat999@xxxxxxxxx>
- [PATCH 02/13] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/13] netfilter: xt_hashlimit: Add missing ULL suffixes for 64-bit constants
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/13] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/13] netfilter: nft_range: validate operation netlink attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/13] netfilter: conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/13] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/13] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/13] netfilter: conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/13] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: fix nf_queue handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/13] netfilter: x_tables: suppress kmemcheck warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/13] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/13] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/13] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Netfilter: Fix an ICMPv6 bug which caused by a latter ICMPv6 NA packet to inherit the mark of previous NS packet.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH] Netfilter: Fix an ICMPv6 bug which caused by a latter ICMPv6 NA packet to inherit the mark of previous NS packet.
- From: XU Tianwen <evan.xu.tianwen@xxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Mathew Heard <mat999@xxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH 1/1] netlink: fix monitor trace crash with netdev family
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_conntrack_sip: check for trailing spaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 3/3] netfilter: built-in NAT support for UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 2/3] netfilter: built-in NAT support for SCTP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nft] src: add notrack support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_ct: add notrack support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: add notrack expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: Add anonymous set to named set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: built-in NAT support for UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: built-in NAT support for SCTP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH v2 nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 libnftnl] introduce rt expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nf_conntrack_sip: check for trailing spaces
- From: Ulrich Weber <ulrich.weber@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_numgen: start round robin from zero
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: fix nf_queue handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH next] netfilter: nf_tables: allow expressions to return STOLEN
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/28] [v2] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iproute2] tc, ipt: don't enforce iproute2 dependency on iptables-devel
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [iptables PATCH] extensions: update Arturo Borrero email address
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] conntrack-tools: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [nf-next PATCH] netfilter: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [nft PATCH] tests: shell: update kernel modules to clean
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] xt: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH 00/28] Reenable maybe-uninitialized warnings
- From: Christoph Hellwig <hch@xxxxxxxxxxxxx>
- [PATCH nftables] Fix register allocation for EXPR_SET_ELEM
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH 28/28] Kbuild: bring back -Wmaybe-uninitialized warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 01/28] [v2] netfilter: nf_tables: avoid uninitialized variable warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 00/28] Reenable maybe-uninitialized warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: support ct l3proto/protocol without direction syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] libnftnl: update Arturo Borrero Gonzalez email
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] set_elem: don't add NFTA_SET_ELEM_LIST_ELEMENTS attribute if set is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch v2] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [ANNOUNCE] ipset 6.30 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH 18/22] netfilter: ipset: hash:ipmac type support added to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/22] netfilter: ipset: Make sure element data size is a multiple of u32
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/22] netfilter: ipset: Split extensions into separate files
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/22] netfilter: ipset: Optimize hash creation routine
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/22] netfilter: ipset: Improve comment extension helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/22] netfilter: ipset: Make NLEN compile time constant for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/22] netfilter: ipset: Add element count to all set types header
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/22] netfilter: ipset: Make struct htype per ipset family
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/22] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 22/22] netfilter: ipset: hash: fix boolreturn.cocci warnings
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/22] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 19/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 17/22] netfilter: ipset: Fix reported memory size for hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/22] netfilter: ipset: Improve skbinfo get/init helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/22] netfilter: ipset: Correct rcu_dereference_bh_nfnl() usage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/22] netfilter: ipset: Headers file cleanup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/22] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 16/22] netfilter: ipset: Collapse same condition body to a single one
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/22] netfilter: ipset: Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/22] netfilter: ipset: Count non-static extension memory for userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 21/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/22] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 20/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 00/10, nf-next] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/10] netfilter: remove hook_entries field from nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/10] netfilter: handle queue bypass flag from nf_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/10] netfilter: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] meta: permit numeric interface type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] meta: permit numeric interface type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH libnftnl] introduce rt expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 0/8] iptables-translate: fix some bugs and add more translations to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: routing table lookup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: slab corruption with current -git
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nf] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 00/10] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 00/10] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf] netfilter: nft_range: validate operation netlink attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- [PATCH nft] src: use new range expression for != [a,b] intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: add range expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH nf] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <uweber.linux@xxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch v2] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <uweber.linux@xxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <ulrich.weber@xxxxxxxxx>
- Re: [patch] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: routing table lookup
- From: Michal Kubecek <mkubecek@xxxxxxx>
- [patch] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- RE: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: "Justin Piszcz" <jpiszcz@xxxxxxxxxxxxxxx>
- Re: routing table lookup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: routing table lookup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: slab corruption with current -git
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [libnftnl PATCH] libnftnl: update Arturo Borrero Gonzalez email
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH net 0/2] conntrack update
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Florian Westphal <fw@xxxxxxxxx>
- slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH net-next] nfnetlink_log: Use GFP_NOWARN for skb allocation
- From: Calvin Owens <calvinowens@xxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 8/8] extensions: libxt_statistic: add translation to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]