Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH nf-next] netfilter: conntrack: simplify init/uninit of L4 protocol trackers
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH 00/13] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nft] src: don't need keyword for log level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: nf_tables: allow expressions to return STOLEN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_numgen: start round robin from zero
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/22] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_log: Use GFP_NOWARN for skb allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_multiport: Use switch case instead of multiple condition checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: update kernel modules to clean
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Mathew Heard <mat999@xxxxxxxxx>
- [PATCH 02/13] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/13] netfilter: xt_hashlimit: Add missing ULL suffixes for 64-bit constants
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/13] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/13] netfilter: nft_range: validate operation netlink attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/13] netfilter: conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/13] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/13] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/13] netfilter: conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/13] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: fix nf_queue handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/13] netfilter: x_tables: suppress kmemcheck warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/13] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/13] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/13] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Netfilter: Fix an ICMPv6 bug which caused by a latter ICMPv6 NA packet to inherit the mark of previous NS packet.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH] Netfilter: Fix an ICMPv6 bug which caused by a latter ICMPv6 NA packet to inherit the mark of previous NS packet.
- From: XU Tianwen <evan.xu.tianwen@xxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Mathew Heard <mat999@xxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH 1/1] netlink: fix monitor trace crash with netdev family
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v3 nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_conntrack_sip: check for trailing spaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next v2 3/3] netfilter: built-in NAT support for UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 2/3] netfilter: built-in NAT support for SCTP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next v2 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nft] src: add notrack support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_ct: add notrack support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: add notrack expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: Add anonymous set to named set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: built-in NAT support for UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: built-in NAT support for SCTP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: built-in NAT support for DCCP
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: built-in NAT support for DCCP, SCTP, UDPlite
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [RFC nf-next PATCH] netfilter: nf_conntrack_proto_tcp: propagate IP_CT_TCP_FLAG_BE_LIBERAL
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH v2 nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 libnftnl] introduce rt expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH v2 nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nf_conntrack_sip: check for trailing spaces
- From: Ulrich Weber <ulrich.weber@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_numgen: start round robin from zero
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH net] conntrack: restart gc immediately if GC_MAX_EVICTS is reached
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: fix nf_queue handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH next] netfilter: nf_tables: allow expressions to return STOLEN
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/28] [v2] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iproute2] tc, ipt: don't enforce iproute2 dependency on iptables-devel
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [iptables PATCH] extensions: update Arturo Borrero email address
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] conntrack-tools: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [nf-next PATCH] netfilter: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [nft PATCH] tests: shell: update kernel modules to clean
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH net] conntrack: perform a full scan in gc
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] xt: update Arturo Borrero Gonzalez email address
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH net] conntrack: perform a full scan in gc
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH 00/28] Reenable maybe-uninitialized warnings
- From: Christoph Hellwig <hch@xxxxxxxxxxxxx>
- [PATCH nftables] Fix register allocation for EXPR_SET_ELEM
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH 28/28] Kbuild: bring back -Wmaybe-uninitialized warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 01/28] [v2] netfilter: nf_tables: avoid uninitialized variable warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 00/28] Reenable maybe-uninitialized warnings
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf] netfilter: x_tables: suppress kmemcheck warning
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: support ct l3proto/protocol without direction syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] libnftnl: update Arturo Borrero Gonzalez email
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] set_elem: don't add NFTA_SET_ELEM_LIST_ELEMENTS attribute if set is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch v2] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [ANNOUNCE] ipset 6.30 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH 18/22] netfilter: ipset: hash:ipmac type support added to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/22] netfilter: ipset: Make sure element data size is a multiple of u32
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/22] netfilter: ipset: Split extensions into separate files
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/22] netfilter: ipset: Optimize hash creation routine
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/22] netfilter: ipset: Improve comment extension helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/22] netfilter: ipset: Make NLEN compile time constant for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/22] netfilter: ipset: Add element count to all set types header
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/22] netfilter: ipset: Make struct htype per ipset family
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/22] netfilter: ipset: Simplify mtype_expire() for hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 22/22] netfilter: ipset: hash: fix boolreturn.cocci warnings
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/22] netfilter: ipset: Regroup ip_set_put_extensions and add extern
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 19/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 17/22] netfilter: ipset: Fix reported memory size for hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/22] netfilter: ipset: Improve skbinfo get/init helpers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/22] netfilter: ipset: Correct rcu_dereference_bh_nfnl() usage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/22] netfilter: ipset: Headers file cleanup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/22] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 16/22] netfilter: ipset: Collapse same condition body to a single one
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/22] netfilter: ipset: Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/22] netfilter: ipset: Count non-static extension memory for userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 21/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/22] netfilter: ipset: Separate memsize calculation code into dedicated function
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 20/22] netfilter: ipset: use setup_timer() and mod_timer().
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH 00/10, nf-next] Netfilter core updates
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 00/10, nf-next] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/10] netfilter: remove hook_entries field from nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/10] netfilter: handle queue bypass flag from nf_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/10] netfilter: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] meta: permit numeric interface type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] meta: permit numeric interface type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH nftables] rt: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH libnftnl] introduce rt expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nft: rt nexthop for inet family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nft: rt nexthop for IPv6 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nft: rt nexthop for IPv4 family
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nft: basic routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nft: UAPI headers for routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next 0/5] netfilter: nft: introduce routing expression
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 0/8] iptables-translate: fix some bugs and add more translations to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: routing table lookup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: slab corruption with current -git
- From: Al Viro <viro@xxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nf] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 00/10] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 01/10] netfilter: get rid of useless debugging from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 02/10] netfilter: remove comments that predate rcu days
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next,RFC 00/10] Netfilter core updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf] netfilter: nf_queue: don't re-enter same hook on packet reinjection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf] netfilter: nft_range: validate operation netlink attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- [PATCH nft] src: use new range expression for != [a,b] intervals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: add range expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Markus Trippelsdorf <markus@xxxxxxxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH nf] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <uweber.linux@xxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch v2] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <uweber.linux@xxxxxxxxx>
- Re: [RFC] SIP conntrack handler and TCP fragmentation
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [RFC] SIP conntrack handler and TCP fragmentation
- From: Ulrich Weber <ulrich.weber@xxxxxxxxx>
- Re: [patch] netfilter: nf_tables: underflow in nft_parse_u32_check()
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: routing table lookup
- From: Michal Kubecek <mkubecek@xxxxxxx>
- [patch] netfilter: nft_exthdr: fix error handling in nft_exthdr_init()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- RE: [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: "Justin Piszcz" <jpiszcz@xxxxxxxxxxxxxxx>
- Re: routing table lookup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: routing table lookup
- From: Jan Engelhardt <jengelh@xxxxxxx>
- routing table lookup
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: slab corruption with current -git
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [libnftnl PATCH] libnftnl: update Arturo Borrero Gonzalez email
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- [PATCH net 2/2] conntrack: enable to tune gc parameters
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH net 1/2] conntrack: remove obsolete sysctl (nf_conntrack_events_retry_timeout)
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH net 0/2] conntrack update
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Florian Westphal <fw@xxxxxxxxx>
- slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice))
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_dynset: fix element timeout for HZ != 1000
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH net-next] nfnetlink_log: Use GFP_NOWARN for skb allocation
- From: Calvin Owens <calvinowens@xxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables 8/8] extensions: libxt_statistic: add translation to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 6/8] extensions: libxt_quota: add translation to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 5/8] extensions: libxt_ipcomp: add range support in translation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 1/8] extensions: libipt_realm: add a missing space in translation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 3/8] extensions: libxt_iprange: handle the invert flag properly in translation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 2/8] extensions: libxt_iprange: rename "ip saddr" to "ip6 saddr" in ip6tables-xlate
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 7/8] extensions: libxt_DSCP: add translation to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 4/8] extensions: libxt_devgroup: handle the invert flag properly in translation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH iptables 0/8] iptables-translate: fix some bugs and add more translations to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf-next 2/2] xt_nat: probe module for non-builtin L4 protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: persistent aliases for l4 nat protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols
- From: Davide Caratti <dcaratti@xxxxxxxxxx>
- Re: [PATCH] netfilter: xt_hashlimit: Add missing ULL suffixes for 64-bit constants
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH] netfilter: xt_hashlimit: Add missing ULL suffixes for 64-bit constants
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: error: 'struct net_device' has no member named 'nf_hooks_ingress'
- From: Sergey Senozhatsky <sergey.senozhatsky.work@xxxxxxxxx>
- Re: [GIT] Networking
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/5] Netfilter fixes for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: fix namespace handling in nf_log_proc_dostring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: Fix potential null pointer dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: nft_limit: fix divided by zero panic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: accommodate different kconfig in nf_set_hooks_head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] Netfilter fixes for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [GIT] Networking
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: error: 'struct net_device' has no member named 'nf_hooks_ingress'
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- error: 'struct net_device' has no member named 'nf_hooks_ingress'
- From: Michal Sojka <sojkam1@xxxxxxxxxxx>
- Re: [PATCH nft] doc: Fix wrong word in description of option "-n --numberic"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_limit: fix divded by zero panic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2] libxt_hashlimit: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 0/3] expr: complete log flags support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix namespace handling in nf_log_proc_dostring
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Sep 27
- From: Sergey Senozhatsky <sergey.senozhatsky.work@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 1/2] netfilter: Fix potential null pointer dereference
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: avoid uninitialized variable warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v3] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v4 2/2] nf_set_hooks_head: accommodate different kconfig
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: xt_hashlimit: uses div_u64 for division
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH 3/3] netfilter: xt_hashlimit: uses div_u64 for division
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: hide reference to nf_hooks_ingress
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: xt_hashlimit: uses div_u64 for division
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 3/3] netfilter: xt_hashlimit: uses div_u64 for division
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 2/3] netfilter: hide reference to nf_hooks_ingress
- From: Arnd Bergmann <arnd@xxxxxxxx>
- [PATCH 1/3] netfilter: nf_tables: avoid uninitialized variable warning
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: linux-next: manual merge of the netfilter-next tree with the net tree
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH net-next v3] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Maciej Żenczykowski <maze@xxxxxxxxxx>
- [PATCH net-next v3] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [NetDev] [ANNOUNCE] Netdev 1.2 program announced
- From: Hajime Tazaki <thehajime@xxxxxxxxx>
- [PATCH nft] doc: Fix wrong word in description of option "-n --numberic"
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: linux-next: manual merge of the netfilter-next tree with the net tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v4 2/2] nf_set_hooks_head: accommodate different kconfig
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v4 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v4 0/2] fixes for recent nf_compact hooks
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] netfilter: Fix potential null pointer dereference
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] netfilter: Fix potential null pointer dereference
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 2/2] nf_set_hooks_head: accommodate different kconfig
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 0/2] fixes for recent nf_compact hooks
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH v2] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Maciej Żenczykowski <maze@xxxxxxxxxx>
- Re: [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [ANNOUNCE] Netdev 1.2 updates (27th September, 2016)
- From: Hajime Tazaki <thehajime@xxxxxxxxx>
- [PATCH v2] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH nf-next v2 2/2] nf_set_hooks_head: acommodate different kconfig
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v2 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v2 0/2] fixes for recent nf_compact hooks
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH] Fix link error in 32bit arch because of 64bit division
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf] netfilter: nft_limit: fix divded by zero panic
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH] Fix link error in 32bit arch because of 64bit division
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: linux-next: Tree for Sep 27
- From: Sergey Senozhatsky <sergey.senozhatsky.work@xxxxxxxxx>
- [PATCH] Fix link error in 32bit arch because of 64bit division
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <pai.vishwain@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check
- From: Gao Feng <fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v4 2/2] libxt_hashlimit: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v4 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH nf-next 2/2] nf_set_hooks_head: acommodate different kconfig
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next 2/2] nf_set_hooks_head: acommodate different kconfig
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: Fix potential null pointer dereference
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next 2/2] nf_set_hooks_head: acommodate different kconfig
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next 0/2] fixes for recent nf_compact hooks
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH nf-next] netfilter: xt_multiport: Use switch case instead of multiple condition checks
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [nft] Problems with flushing all elements from a set
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH 00/53] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [nf-next:master 43/54] net/netfilter/core.c:96: error: type defaults to 'int' in declaration of '__val'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- [PATCH 05/53] netfilter: ftp: Remove the useless dlen==0 condition check in find_pattern
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/53] netfilter: nft_quota: introduce nft_overquota()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/53] netfilter: nf_ct_sip: allow tab character in SIP headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/53] netfilter: nf_ct_sip: correct allowed characters in Call-ID SIP header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/53] netfilter: gre: Use consistent GRE_* macros instead of ones defined by netfilter.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/53] netfilter: nft_queue: check the validation of queues_total and queuenum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/53] netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_l3proto
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/53] netfilter: nf_ct_sip: correct parsing of continuation lines in SIP headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/53] netfilter: nft_dynset: allow to invert match criteria
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/53] netfilter: nft_hash: Add hash offset value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/53] netfilter: nf_tables: ensure proper initialization of nft_pktinfo fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/53] netfilter: introduce nft_set_pktinfo_{ipv4, ipv6}_validate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/53] netfilter: nf_tables_ipv6: setup pktinfo transport field on failure to parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/53] netfilter: Add the missed return value check of register_netdevice_notifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/53] netfilter: nft_hash: fix hash overflow validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/53] netfilter: nft_numgen: fix race between num generate and store it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/53] netfilter: nf_conntrack: simplify __nf_ct_try_assign_helper() return logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/53] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/53] netfilter: nf_tables: validate maximum value of u32 netlink attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/53] netfilter: nf_tables: improve nft payload fast eval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/53] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/53] netfilter: nf_queue: improve queue range support for bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/53] netfilter: nf_tables: check tprot_set first when we use xt.thoff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/53] netfilter: Enhance the codes used to get random once
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/53] netfilter: nft_numgen: add number generation offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 36/53] netfilter: xt_TCPMSS: Refactor the codes to decrease one condition check and more readable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/53] netfilter: xt_helper: Use sizeof(variable) instead of literal number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 35/53] netfilter: nft_lookup: remove superfluous element found check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 37/53] netfilter: bridge: add and use br_nf_hook_thresh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/53] netfilter: call nf_hook_state_init with rcu_read_lock held
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 45/53] netfilter: nft_ct: unnecessary to require dir when use ct l3proto/protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 44/53] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 41/53] netfilter: Only allow sane values in nf_register_net_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 42/53] netfilter: nf_queue: whitespace cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 43/53] netfilter: replace list_head with single linked list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 46/53] netfilter: nft_ct: report error if mark and dir specified simultaneously
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 53/53] netfilter: nf_log: get rid of XT_LOG_* macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 48/53] netfilter: xt_hashlimit: Create revision 2 to support higher pps rates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 50/53] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 51/53] netfilter: nf_tables: add range expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 52/53] netfilter: nft_log: complete NFTA_LOG_FLAGS attr support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 40/53] netfilter: Remove explicit rcu_read_lock in nf_hook_slow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 47/53] netfilter: xt_hashlimit: Prepare for revision 2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 49/53] netfilter: evict stale entries when user reads /proc/net/nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 39/53] netfilter: call nf_hook_ingress with rcu_read_lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/53] netfilter: Add the missed return value check of nft_register_chain_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/53] netfilter: conntrack: remove packet hotpath stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/53] netfilter: nf_tables: don't drop IPv6 packets that cannot parse transport
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/53] netfilter: nf_tables_bridge: use nft_set_pktinfo_ipv{4, 6}_validate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/53] netfilter: nft_quota: fix overquota logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/53] netfilter: nft_numgen: rename until attribute by modulus
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/53] netfilter: ftp: Remove the useless code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/53] netfilter: gre: Use consistent GRE and PTTP header structure instead of the ones defined by netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/53] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next:master 43/54] net/netfilter/core.c:96:30: error: 'struct net_device' has no member named 'nf_hooks_ingress'
- From: kbuild test robot <fengguang.wu@xxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nf_log: get rid of XT_LOG_* macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: nft_log: complete NFTA_LOG_FLAGS attr support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: evict stale entries when user reads /proc/net/nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_ct: report error if mark and dir specified simultaneously
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: nft_ct: unnecessary to require dir when use ct l3proto/protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v5] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 0/7] Compact netfilter hooks list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] doc: add description about log flags
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft 3/3] tests: py: add some testcases for log flags
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft 1/3] src: add log flags syntax support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft 0/3] src: add nft log flags support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 3/3] expr: log: complete log flags support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 2/3] expr: log: do not print prefix if it is not set
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 1/3] expr: log: fix typo in nftnl_expr_log_export
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 0/3] expr: complete log flags support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 2/2] netfilter: nf_log: get rid of XT_LOG_* macros
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_log: complete NFTA_LOG_FLAGS attr support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 0/2] netfilter: complete nft log flags support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_TCPMSS: Refactor the codes to decrease one condition check and more readable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: don't permit unprivileged writes to global state via sysctls
- From: Jann Horn <jann@xxxxxxxxx>
- Re: [PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive
- From: Fabian Frederick <fabf@xxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: add range expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: KOVACS Krisztian <hidden@xxxxxxxxxxx>
- Re: [libnftnl PATCH] libnftnl: remove libmxml support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: display offset only if present in hash and numgen expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: evict stale entries when user reads /proc/net/nf_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive
- From: Fabian Frederick <fabf@xxxxxxxxx>
- Re: [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v3 1/2] netfilter: Prepare xt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_helper: Use sizeof(variable) instead of literal number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Enhance the codes used to get random once
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: py: fix numgen case failed due to changes in libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: check tprot_set first when we use xt.thoff
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_queue: improve queue range support for bridge family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: py: add more test cases for queue expr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next V2] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] libnftnl: remove libmxml support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v3 libnftnl] expr: numgen: add number generation offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: support ct l3proto/protocol without direction syntax
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH v3] netfilter: nft_numgen: add number generation offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_ct: unnecessary to require dir when use ct l3proto/protocol
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_ct: report error if mark and dir specified simultaneously
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH conntrack-tools] Link nfct and helper modules with `-z lazy`
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf v5] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH nf v4] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH nf v3] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v3] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [PATCH nf v3] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive
- From: Fabian Frederick <fabf@xxxxxxxxx>
- Re: [PATCH] netfilter: replace list_head with single linked list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 2/7] netfilter: call nf_hook_state_init with rcu_read_lock held
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 6/7] nf_queue_handler: whitespace cleanup
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 4/7] nf_hook_slow: Remove explicit rcu_read_lock
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 1/7] netfilter: bridge: add and use br_nf_hook_thresh
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH] netfilter: replace list_head with single linked list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 5/7] nf_register_net_hook: Only allow sane values
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 3/7] netfilter: call nf_hook_ingress with rcu_read_lock
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next v3 0/7] Compact netfilter hooks list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- libnftnl XML parsing seems broken with libmxml 2.10
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_lookup: remove superfluous element found check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Why ctinfo is IP_CT_RELATED_REPLY when reject with TCP RST
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets
- From: KOVACS Krisztian <hidden@xxxxxxxxxxx>
- Re: rate limit not working ?
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: Seeking help for implementing CT HELPER in nftables
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: rate limit not working ?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: xt_helper: Use sizeof(variable) instead of literal number
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH] netfilter: fix namespace handling in nf_log_proc_dostring
- From: Jann Horn <jann@xxxxxxxxx>
- [nft] Problems with flushing all elements from a set
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: Enhance the codes used to get random once
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [netfilter-core] [lkp] [netfilter] 68263ddb47: WARNING: CPU: 0 PID: 1225 at net/netfilter/nf_conntrack_seqadj.c:232 nf_ct_seq_offset+0x7a/0x9a
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: check tprot_set first when we use xt.thoff
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [netfilter-core] [lkp] [netfilter] 68263ddb47: WARNING: CPU: 0 PID: 1225 at net/netfilter/nf_conntrack_seqadj.c:232 nf_ct_seq_offset+0x7a/0x9a
- From: Florian Westphal <fw@xxxxxxxxx>
- rate limit not working ?
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- [lkp] [netfilter] 68263ddb47: WARNING: CPU: 0 PID: 1225 at net/netfilter/nf_conntrack_seqadj.c:232 nf_ct_seq_offset+0x7a/0x9a
- From: kernel test robot <xiaolong.ye@xxxxxxxxx>
- [PATCH nft] tests: py: fix numgen case failed due to changes in libnftnl
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: improve nft payload fast eval
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nf_queue: improve queue range support for bridge family
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: py: add more test cases for queue expr
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl V2] expr: queue: add NFTA_QUEUE_SREG_QNUM attr support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next V2] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH nft] meta: support for nexthop and nexthop6
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6
- From: "Anders K. Pedersen | Cohaesio" <akp@xxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ANNOUNCE] netdev 1.2 tokyo weekly update (13th September, 2016)
- From: Hajime Tazaki <thehajime@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH v3 libnftnl] expr: numgen: add number generation offset
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH v3] netfilter: nft_numgen: add number generation offset
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nf_nat: handle NF_DROP from nfnetlink_parse_nat_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: nft_chain_route: re-route before skb is queued to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: nf_tables_trace: fix endiness when dump chain policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_hash: fix hash overflow validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v8 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_hash: fix hash overflow validation
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_hash: Add hash offset value
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_hash: Add hash offset value
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH v8 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- linux-next: manual merge of the netfilter-next tree with the net tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_hash: Add hash offset value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: remove packet hotpath stats
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 2/3] tests: queue: add missing NFTNL_EXPR_QUEUE_FLAGS compare test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl 1/3] expr: queue: remove redundant NFTNL_EXPR_QUEUE_NUM set in json parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft V2] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_numgen: fix race between num generate and store it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_numgen: add increment counter offset value
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_numgen: add increment counter offset value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v7 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_numgen: add increment counter offset value
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_hash: Add hash offset value
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_numgen: add increment counter offset value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nft_hash: Add hash offset value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nft_numgen: fix race between num generate and store it
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft V2] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC] nftables: reverse path filtering for nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH nft] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nft] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH nft] tests: py: replace "eth0" with "lo" in dup expr tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: remove packet hotpath stats
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools] Link nfct and helper modules with `-z lazy`
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH libnftnl 3/3] expr: queue: add sreg_from and sreg_to support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 2/3] tests: queue: add missing NFTNL_EXPR_QUEUE_FLAGS compare test
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 1/3] expr: queue: remove redundant NFTNL_EXPR_QUEUE_NUM set in json parse
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH libnftnl 0/3] expr: queue: add sreg_from and sreg_to support
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nft_queue: add _SREG_FROM and _SRGE_TO to select the queue numbers
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nft] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [RFC] nftables: reverse path filtering for nft
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] tests: py: replace "eth0" with "lo" in dup expr tests
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: check the validation of queues_total and queuenum
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH v4 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH v3 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 1/2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH v3 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- [PATCH v7 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions
- From: fgao@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
- Re: [PATCH v2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_l3proto
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_queue: check the validation of queues_total and queuenum
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v6 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_nat: handle NF_DROP from nfnetlink_parse_nat_setup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] payload: remove byteorder conversion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] tests: catch ordering issue w. ether set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] datatype: ll: use big endian byte ordering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] payload: remove byteorder conversion
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] tests: catch ordering issue w. ether set
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] datatype: ll: use big endian byte ordering
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/3] fix ether address formatting
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_conntrack: simplify __nf_ct_try_assign_helper() return logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Snooping expected connections in a user CT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nf_tables_bridge: use nft_set_pktinfo_ipv{4,6}_validate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nf_tables: don't drop IPv6 packets that cannot parse transport
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nf_tables: ensure proper initialization of nft_pktinfo fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: introduce nft_set_pktinfo_{ipv4,ipv6}_validate()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nf_tables_ipv6: setup pktinfo transport field on failure to parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]