Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [GIT PULL nf] Second Round of IPVS Fixes for v4.7
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next] IPVS Updates for v4.8
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Multi-thread udp 4.7 regression, bisected to 71d8c47fc653
- From: Marc Dionne <marc.c.dionne@xxxxxxxxx>
- [PATCH] fix off-by-one in DecodeQ931
- From: Toby DiPasquale <toby@xxxxxxxx>
- Re: [PATCH iptables] xtables-translate: fix multiple spaces issue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 2/3] src: expose delinearize/linearize structures and stmt_error()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v4 3/3] src: add xt compat support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] xtables-translate: fix multiple spaces issue
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [PATCH nft v4 3/3] src: add xt compat support
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [PATCH nft v4 2/3] src: expose delinearize/linearize structures and stmt_error()
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [PATCH nft v4 1/3] include: cache ip_tables.h, ip6_tables.h, arp_tables.h and ebtables.h
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [RFC 0/7] netlink: Add allocation flag to netlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- Re: [RFC 0/7] netlink: Add allocation flag to netlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: replace list_head with single linked list
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: add missing macro
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH v2 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- RE: [PATCH v2 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: David Laight <David.Laight@xxxxxxxxxx>
- [PATCH 2/2] netfilter: add missing macro
- From: Eric Engestrom <eric.engestrom@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: fix expiration getter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: get rid of possible_net_t from set and basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: fix expiration getter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: get rid of possible_net_t from set and basechain
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nft_ct: fix expiration getter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: get rid of possible_net_t from set and basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: constify arg to is_dying/confirmed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC 5/7] net: Add allocation flag to rtnl_unicast()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [RFC 5/7] net: Add allocation flag to rtnl_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- Re: [RFC 5/7] net: Add allocation flag to rtnl_unicast()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 2/2] libxt_hashlimit: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v2 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v2 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v2 1/2] netfilter: Prepare xt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH nf-next] ipvs: count pre-established TCP states as active
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS Updates for v4.8
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] Second Round of IPVS Fixes for v4.7
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf] ipvs: fix bind to link-local mcast IPv6 address in backup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [RFC 0/7] netlink: Add allocation flag to netlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH 01/26] bridge: netfilter: checkpatch data type fixes
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 03/26] netfilter: x_tables: fix possible ZERO_SIZE_PTR pointer dereferencing error.
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/26] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- RE: [PATCH 06/26] netfilter: conntrack: align nf_conn on cacheline boundary
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 2/2 libnfntl] Fix nftnl_*_get to set data_len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 libnfntl] Fix nftnl_*_set_str
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 06/26] netfilter: conntrack: align nf_conn on cacheline boundary
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 06/26] netfilter: conntrack: align nf_conn on cacheline boundary
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/26] netfilter: nf_log: handle NFPROTO_INET properly in nf_logger_[find_get|put]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/26] netfilter: nf_log: Remove NULL check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/26] netfilter: make comparision helpers stub functions in ZONES=n case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/26] netfilter: move zone info into struct nf_conn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/26] netfilter: Allow xt_owner in any user namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/26] netfilter: nf_tables: add generation mask to tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/26] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/26] netfilter: nf_tables: add generic macros to check for generation mask
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/26] netfilter: nf_tables: add generation mask to sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/26] netfilter: nf_tables: add generation mask to chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/26] netfilter: nft_rbtree: check for next generation when deactivating elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/26] netfilter: x_tables: simplify ip{6}table_mangle_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/26] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/26] etherdevice.h & bridge: netfilter: Add and use ether_addr_equal_masked
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/26] netfilter: Remove references to obsolete CONFIG_IP_ROUTE_FWMARK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/26] netfilter: nf_tables: get rid of NFT_BASECHAIN_DISABLED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/26] netfilter: nf_log: fix error on write NONE to logger choice sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/26] netfilter: Convert FWINV<[foo]> macros and uses to NF_INVF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/26] netfilter: conntrack: allow increasing bucket size via sysctl too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/26] netfilter: nft_hash: support deletion of inactive elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/26] netfilter: xt_NFLOG: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/26] netfilter: xt_TRACE: add explicitly nf_logger_find_get call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/26] netfilter: x_tables: fix possible ZERO_SIZE_PTR pointer dereferencing error.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/26] netfilter: helper: avoid extra expectation iterations on unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/26] bridge: netfilter: checkpatch data type fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/26] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nft_ct: fix expiration getter
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] Netdev 1.2 Registration open
- From: Hajime Tazaki <thehajime@xxxxxxxxx>
- Re: [PATCH] netfilter: physdev: physdev-is-out should not work with OUTPUT chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: physdev: physdev-is-out should not work with OUTPUT chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: nf_log: fix error on write NONE to logger choice sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: DoS attack mitigation in netfilter
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- DoS attack mitigation in netfilter
- From: Vikas <vikas.c.kumar@xxxxxxxxxx>
- Re: [RFC 0/7] netlink: Add allocation flag to netlink_unicast()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC 3/7] netlink: Add allocation flag to nlmsg_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 4/7] infiniband: Add allocation flag to ibnl_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 7/7] genetlink: Add allocation flag to genlmsg_reply()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 6/7] genetlink: Add allocation flag to genlmsg_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 5/7] net: Add allocation flag to rtnl_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 2/7] netfilter: Add allocation flag to nfnetlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 1/7] netlink: Add allocation flag to netlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- [RFC 0/7] netlink: Add allocation flag to netlink_unicast()
- From: Masashi Honma <masashi.honma@xxxxxxxxx>
- Re: [PATCH 2/3] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH] netfilter: physdev: physdev-is-out should not work with OUTPUT chain
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 2/2 libnfntl] Fix nftnl_*_get to set data_len
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 1/2 libnfntl] Fix nftnl_*_set_str
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_ct: make byte/packet expr more friendly
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nft_ct: make byte/packet expr more friendly
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [nft PATCH 3/3 v3] src: add xt compat support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: physdev: physdev-is-out should not work with OUTPUT chain
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- Re: [PATCH libnftnl] Fix string length calculations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Multi-thread udp 4.7 regression, bisected to 71d8c47fc653
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/6] netfilter: nat: convert nat bysrc hash to rhashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: move nat hlist_head to nf_conn
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: nat: simplify & convert bysrc hash to rhashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] fix off-by-one in DecodeQ931
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] netlink_delinearize, meta: show meta prandom <= value as probability mnemonic
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/3] meta: add short-hand mnemonic for probalistic matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] meta: add random expression key
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/3] meta: add random and probability match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: libxtables backward compatibility
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: libxtables backward compatibility
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: libxtables backward compatibility
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: libxtables backward compatibility
- From: Jan Engelhardt <jengelh@xxxxxxx>
- libxtables backward compatibility
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- [PATCH] fix off-by-one in DecodeQ931
- From: Toby DiPasquale <toby@xxxxxxxx>
- [PATCH -next] netfilter: conntrack: simplify early_drop
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl] Fix string length calculations
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH v5] xtables: Add an interval option for xtables lock wait
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Replace gethostbyname() with getaddrinfo()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1 rev. 1] nft: configure.ac: Replace magic dblatex dep.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: check result of malloc when creating queue
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnetfilter_queue] src: check result of malloc when creating queue
- [PATCH V2,nf 1/3] netfilter: conntrack: fix race between nf_conntrack proc read and hash resize
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH V2,nf 3/3] netfilter: nf_ct_helper: unlink helper again when hash resize happen
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH V2,nf 2/3] netfilter: cttimeout: unlink timeout obj again when hash resize happen
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH V2,nf 0/3] netfilter: conntrack: fix race condition associated with hash resize
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH nf 1/3] netfilter: conntrack: fix race between nf_conntrack proc read and hash resize
- From: "Liping Zhang" <zlpnobody@xxxxxxx>
- Re: [PATCH 1/1] nft: configure.ac: Replace magic dblatex dep.
- From: Nick Vinson <nvinson234@xxxxxxxxx>
- Re: [PATCH 1/1 rev. 1] nft: configure.ac: Replace magic dblatex dep.
- From: Nick Vinson <nvinson234@xxxxxxxxx>
- [PATCH 1/1 rev. 1] nft: configure.ac: Replace magic dblatex dep.
- From: Nicholas Vinson <nvinson234@xxxxxxxxx>
- Re: [PATCH nf 1/3] netfilter: conntrack: fix race between nf_conntrack proc read and hash resize
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables: Dynamically updating sets gives syntax error
- From: "Anders K. Pedersen" <akp@xxxxxx>
- [PATCH nf 1/3] netfilter: conntrack: fix race between nf_conntrack proc read and hash resize
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 3/3] netfilter: nf_ct_helper: unlink helper again when hash resize happen
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 0/3] netfilter: conntrack: fix race condition associated with hash resize
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf 2/3] netfilter: cttimeout: unlink timeout obj again when hash resize happen
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [ANNOUNCE] libmnl 1.0.4 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] Fix string length calculations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v5] xtables: Add an interval option for xtables lock wait
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH libnftnl] set: Fix nftnl_set_set_str
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH libnftnl] Fix string length calculations
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH libnfntl v2] set: Fix nftnl_set_set_str
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH libmnl] Move declaration of visibility attributes before definition.
- From: Peter Foley <pefoley2@xxxxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] extensions: added AR substitution
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter/nflog: nflog-range does not truncate packets (userspace)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 libnftnl] set: Add new attribute into 'set' to store user data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 libnftnl] tests: Check set user data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] set: Fix nftnl_set_set_str
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libipt_realm: fix order of mask and id when do nft translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] nft: configure.ac: Replace magic dblatex dep.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: nf_log: fix error on write NONE to logger choice sysctl
- From: Pavel Tikhomirov <ptikhomirov@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] Move declaration of visibility attributes before definition.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libmnl] src: cleanup function definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_log: fix error on write NONE to logger choice sysctl
- From: Pavel Tikhomirov <ptikhomirov@xxxxxxxxxxxxx>
- Re: [PATCH v5] xtables: Add an interval option for xtables lock wait
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq
- From: Christophe Leroy <christophe.leroy@xxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq
- From: chleroy <chleroy@ce692ce0-f8e3-4c9c-b4d7-dcccc219094e.localdomain>
- [PATCH nf-next 3/3] netfilter: replace list_head with single linked list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: bridge: add and use br_nf_hook_thresh
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: call nf_hook_state_init with rcu_read_lock held
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH nf-next 0/3] Compact netfilter hooks list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- Re: [PATCH] netfilter: Remove references to obsolete CONFIG_IP_ROUTE_FWMARK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Remove references to obsolete CONFIG_IP_ROUTE_FWMARK
- From: Moritz Sichert <moritz+linux@xxxxxxxxxx>
- Re: [PATCH] etherdevice.h & bridge: netfilter: Add and use ether_addr_equal_masked
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] Statement of netfilter project on GPL enforcement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Roberto García <rodanber@xxxxxxxxx>
- [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- [nft PATCH 3/3 v3] src: add xt compat support
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [nft PATCH 2/3 v3] src: expose delinearize/linearize structures and stmt_error()
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- [nft PATCH 1/3 v3] include: cache ip_tables.h, ip6_tables.h, arp_tables.h and ebtables.h
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [PATCH net v2] openvswitch: fix conntrack netlink event delivery
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [ovs-dev] [PATCH net v2] openvswitch: fix conntrack netlink event delivery
- From: Joe Stringer <joe@xxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Roberto García <rodanber@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Advice requested: de-masquerading from a qdisc?
- From: Kevin Darbyshire-Bryant <kevin@xxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] iptables: extensions: libxt_ecn: Add translation to nft
- [PATCH net v2] openvswitch: fix conntrack netlink event delivery
- From: Samuel Gauthier <samuel.gauthier@xxxxxxxxx>
- Re: [ovs-dev] [PATCH net] openvswitch: fix conntrack netlink event delivery
- From: Joe Stringer <joe@xxxxxxx>
- Re: [PATCH] etherdevice.h & bridge: netfilter: Add and use ether_addr_equal_masked
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net] openvswitch: fix conntrack netlink event delivery
- From: Samuel Gauthier <samuel.gauthier@xxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2 libnftnl] tests: Check set user data
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 1/2 libnftnl] set: Add new attribute into 'set' to store user data
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH libnftnl] set: Fix nftnl_set_set_str
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH libnftnl] set: Fix nftnl_set_set_str
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH iptables] extensions: libipt_realm: fix order of mask and id when do nft translation
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH 1/1] nft: configure.ac: Replace magic dblatex dep.
- From: Nicholas Vinson <nvinson234@xxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] netfilter/nflog: nflog-range does not truncate packets (userspace)
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH] netfilter: Convert FWINV<[foo]> macros and uses to NF_INVF
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 1/1] extensions: added AR substitution
- From: Jordan Yelloz <jordan@xxxxxxxxx>
- [PATCH] etherdevice.h & bridge: netfilter: Add and use ether_addr_equal_masked
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH nf-next] netfilter: x_tables: simplify ip{6}table_mangle_hook()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] expr: lookup: give support for inverted matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] expr: lookup: give support for inverted matching
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH v2] expr: lookup: give support for inverted matching
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_cpu: no need to check the validity of invert flag
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH v5] xtables: Add an interval option for xtables lock wait
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH v4] xtables: Add an interval option for xtables lock wait
- From: subashab@xxxxxxxxxxxxxx
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH v4] xtables: Add an interval option for xtables lock wait
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: run-tests.sh: use src/nft binary by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] expr: lookup: give support for inverted matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 2/2] netfilter/nflog: nflog-range does not truncate packets (userspace)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next v3] netfilter: conntrack: allow increasing bucket size via sysctl too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v5] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_log: Remove NULL check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: move zone info into struct nf_conn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: make comparision helpers stub functions in ZONES=n case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: align nf_conn on cacheline boundary
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V3] net: Allow xt_owner in any user namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter/nflog: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/4] netfilter: nft_meta: add explicitly nf_logger_find_get call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/4] netfilter: xt_TRACE: add explicitly nf_logger_find_get call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] tests: shell: run-tests.sh: use src/nft binary by default
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: get rid of NFT_BASECHAIN_DISABLED
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCH nf-next 1/4] netfilter: nf_log: handle NFPROTO_INET properly in nf_logger_[find_get|put]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/4] netfilter: nf_log: handle NFPROTO_INET properly in nf_logger_[find_get|put]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_cpu: no need to check the validity of invert flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nft_meta: set skb->nf_trace appropriately
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: fix memory leak if expr init fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft shell tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft shell tests
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- nft shell tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 1/3] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next PATCH v5] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] ipset: Backports for the nla_put_net64() API changes
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCH v2] netfilter: fix possible ZERO_SIZE_PTR pointer dereferencing error.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Implicit flow tables can't be listed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v4] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH v4] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next PATCH v4] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH iptables] configure: Fix assignment statement
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 net] ipvs: fix bind to link-local mcast IPv6 address in backup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [RFC nf-next 1/3] netfilter: bridge: add and use br_nf_hook_thresh
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [RFC nf-next 3/3] netfilter: replace list_head with single linked list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [RFC nf-next 2/3] netfilter: call nf_hook_state_init with rcu_read_lock held
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [RFC nf-next 1/3] netfilter: bridge: add and use br_nf_hook_thresh
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [RFC nf-next 0/3] Compact netfilter hooks list
- From: Aaron Conole <aconole@xxxxxxxxxx>
- [PATCH iptables] configure: Fix assignment statement
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [nf-next PATCH v4] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: Add support for inverted bitwise value list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] iptables-compat: use nft built-in comments support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] extensions: libxt_conntrack: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] libxt_iprange: remove extra space in translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_CONNMARK: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Add translation for revision 1 to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl, v2] fix some error checking in parser functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl, v2] fix some error checking in parser functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: Add support for inverted bitwise value list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] iptables-compat: use nft built-in comments support
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [PATCH] nft: Add support for inverted bitwise value list
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH iptables] configure: Fix logic to show connlabel support
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH iptables] configure: Fix logic to show connlabel support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: cover transactions via nft -f using flat syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: Add support for inverted bitwise value list
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] nft: Add support for inverted bitwise value list
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: cover transactions via nft -f using flat syntax
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH iptables] configure: Fix logic to show connlabel support
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH conntrack-tools] configure: Remove flex check warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] configure: Remove flex check warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH] netfilter: nf_tables: invert chain deletion abort path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- Re: Implicit flow tables can't be listed
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Implicit flow tables can't be listed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: cover transactions via nft -f using flat syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/6] netfilter: nf_tables: add generation mask to tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- From: Roberto García Calero <rodanber@xxxxxxxxx>
- [PATCH -next v3] netfilter: conntrack: allow increasing bucket size via sysctl too
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 6/6] netfilter: nft_hash: support deletion of inactive elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 5/6] netfilter: nft_rbtree: check for next generation when deactivating elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/6] netfilter: nf_tables: add generation mask to sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/6] netfilter: nf_tables: add generation mask to chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/6] netfilter: nf_tables: add generation mask to tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/6] netfilter: nf_tables: add generic macros to check for generation mask
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] segtree: don't check for overlaps if set definition is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next v2] netfilter: conntrack: allow increasing bucket size via sysctl too
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] Suricata meets Netfilter Conference on 27th June in Amsterdam, Netherlands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Add translation for revision 1 to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [stable] netfilter fixes for CVE-2016-3134
- From: Willy Tarreau <w@xxxxxx>
- Re: [stable] netfilter fixes for CVE-2016-3134
- From: Greg KH <greg@xxxxxxxxx>
- [stable] netfilter fixes for CVE-2016-3134
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- [PATCH] iptables: extensions: libxt_MARK: Fix translation of --set-xmark option
- [PATCH] iptables: extensions: libxt_MARK: Add translation for revision 1 to nft
- Re: [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCH v2 2/2] netfilter/nflog: nflog-range does not truncate packets (userspace)
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v2 1/2] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH -next v2] netfilter: conntrack: allow increasing bucket size via sysctl too
- From: Florian Westphal <fw@xxxxxxxxx>
- Linux Module based on netfilter hooks
- From: Salis Joshi <salis.joshi@xxxxxxxxx>
- Re: [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Liping Zhang <zlpnobody@xxxxxxxxx>
- [PATCH iptables] configure: Remove flex check warning
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH conntrack-tools] configure: Remove flex check warning
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- [PATCHv2] extensions: libxt_conntrack: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PACTH nf-next] netfilter: nf_reject_ipv4: don't send tcp RST if the packet is non-TCP
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix memory leak if expr init fails
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH libnetfilter_queue] src: make nfq_open_nfnl thread-safe
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: make nfq_open_nfnl thread-safe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: make nfq_open_nfnl thread-safe
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: make nfq_open_nfnl thread-safe
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: make nfq_open_nfnl thread-safe
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftnl, v2] fix some error checking in parser functions
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH iptables] libxt_iprange: remove extra space in translation
- From: "Pablo M. Bermudo Garay" <pablombg@xxxxxxxxx>
- Re: [PATCH conntrack-tools] configure: Fix flex version check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] configure: Fix flex version check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH conntrack-tools] configure: Fix flex version check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_CONNMARK: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 0/7] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH conntrack-tools] configure: Fix flex version check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH nft] configure: Show flex version check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH iptables] configure: Fix logic for flex version check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH 2/7] netfilter: nf_tables: fix wrong check of NFT_SET_MAP in nf_tables_bind_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: conntrack: destroy kmemcache on module removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nf_tables: fix wrong destroy anonymous sets if binding fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: xt_SYNPROXY: include missing <linux/types.h>
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: nf_tables: reject loops from set element jump to chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nf_tables: fix a wrong check to skip the inactive rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: xt_SYNPROXY: add missing header to Kbuild
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: extensions: libxt_CONNMARK: Add translation to nft
- Re: rfc: netfilter: Unhide FWINV macro arguments ?
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 1/1] extensions: NETMAP: fix iptables-save output
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] libipt_NETMAP: Avoid listing 32 bit mask and fix tests
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: rfc: netfilter: Unhide FWINV macro arguments ?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libipt_NETMAP: Avoid listing 32 bit mask and fix tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: xt_SYNPROXY: include missing <linux/types.h>
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: add missing xt_SYNPROXY.h header to Kbuild
- From: kbuild test robot <lkp@xxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] configure: Fix logic for flex version check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: add missing xt_SYNPROXY.h header to Kbuild
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 net] ipvs: fix bind to link-local mcast IPv6 address in backup
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] configure: Fix logic for flex version check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- rfc: netfilter: Unhide FWINV macro arguments ?
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 2/3 libnftnl] fix some error checking in parser functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 libnftnl] chain: Fix bug. Check correct attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Implicit flow tables can't be listed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/3 libnftnl] fix some error checking in parser functions
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 3/3 libnftnl] Consolidate setters
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 1/3 libnftnl] chain: Fix bug. Check correct attribute
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH v4 net] ipvs: fix bind to link-local mcast IPv6 address in backup
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH net-next v4 2/3] ipvs: Don't check result < 0 after setting result = 0
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH net-next v4 1/3] ipvs: Stop calling __dev_get_by_name() repeatedly when starting sync daemon
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH net-next v4 3/3] ipvs: log additional sync daemon parameters
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/4] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Joe Perches <joe@xxxxxxxxxxx>
- "header-y += xt_SYNPROXY.h" is missing in include/uapi/linux/netfilter/Kbuild
- From: Matt Whitlock <kernel@xxxxxxxxxxxxxxxxx>
- [PATCH v3 0/4] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v3 2/4] ipvs: Stop calling __dev_get_by_name() repeatedly when starting sync daemon
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v3 3/4] ipvs: Don't check result < 0 after setting result = 0
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v3 4/4] ipvs: log additional sync daemon parameters
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v3 1/4] ipvs: Enable setting IPv6 multicast address for ipvs
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH] bridge: netfilter: spanning tree: Add masked_ether_addr_equal and neatening
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH v2 0/5] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Tejun Heo <tj@xxxxxxxxxx>
- RE: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: "Lubashev, Igor" <ilubashe@xxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH] extensions: libxt_conntrack: Add translation to nft
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_cgroup: Add translation to nft
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ip6tables: Warn about use of DROP in nat table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_conntrack: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix buffer null termination
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [nft PATCH] tests/shell: cleanup tempfile handling in testcases/sets/cache_handling_0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] tests/shell: delete unused variable in run-tests.sh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: add endless jump loop tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: make testcases which using tcp/udp port more rubost
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: use new definitions from libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: fix a wrong check to skip the inactive rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Re: [PATCH nf-next 2/3] netfilter: nf_tables: fix a endless jump loop when use vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3] netfilter: nf_tables: fix wrong destroy anonymous sets if binding fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 1/3] netfilter: nf_tables: fix wrong check of NFT_SET_MAP in nf_tables_bind_set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: destroy kmemcache on module removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 0/5] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v4] xtables: Add an interval option for xtables lock wait
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- [PATCH V3] net: Allow xt_owner in any user namespace
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- [PATCH] libipt_NETMAP: Avoid listing 32 bit mask and fix tests
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- [PATCH] extensions: libxt_conntrack: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: extensions: libxt_MARK: Add translation to nft
- Re: [PATCH v2] iptables: extensions: libxt_MARK: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_cgroup: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv4] extensions: libip6t_frag: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix buffer null termination
- From: Kishan Sandeep <sandeepkishan108@xxxxxxxxx>
- Re: [PATCH 2/2 v2,libnftnl] Check memory allocations in setters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 v2,libnftnl] Fix leak in nftnl_*_unset()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Re: [PATCH nf-next 2/3] netfilter: nf_tables: fix a endless jump loop when use vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix buffer null termination
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 0/5] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v2 1/5] ipvs: Enable setting IPv6 multicast address for ipvs sync daemon backup
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v2 2/5] ipvs: Stop calling __dev_get_by_name() repeatedly when starting sync daemon
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v2 3/5] ipvs: Don't check result < 0 after setting result = 0
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v2 4/5] ipvs: Lock socket before setting SK_CAN_REUSE
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH v2 5/5] ipvs: log additional sync daemon parameters
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 4/9] src: check for strdup() errors from setters and parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 8/9] tests: shuffle values that are injected
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/9] src: get rid of aliases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 3/9] src: return value on setters that internally allocate memory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 9/9] chain: dynamically allocate name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 7/9] src: check for flags before releasing attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 6/9] src: simplify unsetters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/9] src: assert when setting unknown attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 5/9] expr: data_reg: get rid of leftover perror() calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 4/4] netfilter: nft_meta: add explicitly nf_logger_find_get call
- From: "Liping Zhang" <zlpnobody@xxxxxxx>
- Re:Re: [PATCH nf-next 2/3] netfilter: nf_tables: fix a endless jump loop when use vmap
- From: "Liping Zhang" <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: fix a wrong check to skip the inactive rules
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [HEADS UP] scheduled downtime for netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 4/5] ipvs: Lock socket before setting SK_CAN_REUSE
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 4/5] ipvs: Lock socket before setting SK_CAN_REUSE
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH 2/5] ipvs: Stop calling __dev_get_by_name() repeatedly when starting sync daemon
- From: kbuild test robot <lkp@xxxxxxxxx>
- [PATCH 3/5] ipvs: Don't check result < 0 after setting result = 0
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH 5/5] ipvs: log additional sync daemon parameters
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH 0/5] ipvs: fix backup sync daemon with IPv6, and minor updates
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH 4/5] ipvs: Lock socket before setting SK_CAN_REUSE
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH 2/5] ipvs: Stop calling __dev_get_by_name() repeatedly when starting sync daemon
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- [PATCH 1/5] ipvs: Enable setting IPv6 multicast address for ipvs sync daemon backup
- From: Quentin Armitage <quentin@xxxxxxxxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] net: Allow xt_owner in any user namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- [PATCH V2] net: Allow xt_owner in any user namespace
- From: Kevin Cernekee <cernekee@xxxxxxxxxxxx>
- Re: [PATCH nf-next 2/3] netfilter: nf_tables: fix a endless jump loop when use vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: add endless jump loop tests
- From: Liping Zhang <zlpnobody@xxxxxxx>
- RE: [ANNOUNCE] libnftnl 1.0.6 release
- From: "Vink, Ronald" <ronald.vink@xxxxxxxxxxxx>
- Re: [PATCH ipvs-next] ipvs: count pre-established TCP states as active
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: off-by-one in DecodeQ931
- From: Toby DiPasquale <toby@xxxxxxxx>
- Re: [PATCH ipvs-next] ipvs: count pre-established TCP states as active
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf-next] netfilter: move zone info into struct nf_conn
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_log: Remove NULL check
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Tobin Harding <me@xxxxxxxx>
- [nft PATCH] tests/shell: cleanup tempfile handling in testcases/sets/cache_handling_0
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH] tests/shell: delete unused variable in run-tests.sh
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nft] tests: shell: make testcases which using tcp/udp port more rubost
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nft] tests: shell: make testcases which using tcp/udp port more rubost
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 3/3] netfilter: nf_tables: fix wrong destroy anonymous sets if binding fails
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: fix a endless jump loop when use vmap
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 0/3] netfilter: fix a endless jump loop bug
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: fix wrong check of NFT_SET_MAP in nf_tables_bind_set
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: make comparision helpers stub functions in ZONES=n case
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: align nf_conn on cacheline boundary
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: destroy kmemcache on module removal
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: David Laight <David.Laight@xxxxxxxxxx>
- [PATCH] ip6tables: Warn about use of DROP in nat table
- From: Thomas Woerner <twoerner@xxxxxxxxxx>
- [PATCH 1/2 v2,libnftnl] Fix leak in nftnl_*_unset()
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 2/2 v2,libnftnl] Check memory allocations in setters
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH 1/2 libnftnl] Fix leak in nftnl_*_unset()
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH 2/2 libnftnl] Check memory allocations in setters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 libnftnl] Fix leak in nftnl_*_unset()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: ip6tables: Warn about use of DROP in nat table
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/2 libnftnl] Fix leak in nftnl_*_unset()
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 2/2 libnftnl] Check memory allocations in setters
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- ip6tables: Warn about use of DROP in nat table
- From: Thomas Woerner <twoerner@xxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Daniel Wagner <daniel.wagner@xxxxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] nfnetlink_queue: enable PID info retrieval
- From: Saeed Mahameed <saeedm@xxxxxxxxxxxx>
- [PATCH] extensions: libxt_cgroup: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH v2] iptables: extensions: libxt_MARK: Add translation to nft
- From: Roberto García <rodanber@xxxxxxxxx>
- [PATCHv4] extensions: libip6t_frag: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Joe Perches <joe@xxxxxxxxxxx>
- Netfilter/Suricata user day on 27th June in Amsterdam, Netherlands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_TRACE: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/4] netfilter: xt_TRACE: add explicitly nf_logger_find_get call
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 4/4] netfilter: nft_meta: add explicitly nf_logger_find_get call
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH iptables] extensions: libxt_TRACE: Add translation to nft
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 0/4] netfilter: request related nf_log module when we add TRACE rule
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 4/4] netfilter: nft_meta: add explicitly nf_logger_find_get call
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 2/4] netfilter: nft_log: no need to deal with NFPROTO_INET family
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 1/4] netfilter: nf_log: handle NFPROTO_INET properly in nf_logger_[find_get|put]
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next 3/4] netfilter: xt_TRACE: add explicitly nf_logger_find_get call
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: xt_cpu: no need to check the validity of invert flag
- From: Liping Zhang <zlpnobody@xxxxxxx>
- [PATCH nf-next] netfilter: nft_meta: set skb->nf_trace appropriately
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 libnftnl] Check all strdup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 libnftnl] Check all strdup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 libnftnl] Check all strdup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libmnl] nlmsg: Improve payload printing
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: helper: avoid extra expectation iterations on unregister
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 3/3] bridge: netfilter: checkpatch null comparison fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] bridge: netfilter: checkpatch data type fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] bridge: netfilter: checkpatch whitespace fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 libnftnl] Check all strdup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/2] src: get rid of EXPORT_SYMBOL_ALIAS()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/2] examples: nft-table-upd: don't use deprecated aliases
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- Re: [PATCHv3] extensions: libip6t_frag: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv3] extensions: libip6t_frag: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH v3] xtables: Add a smaller delay option when waiting for xtables lock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] extensions: libip6t_frag: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] extensions: libip6t_frag: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] extensions: libxt_dscp: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: x_tables: don't reject valid target size on some architectures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] ipvs: update real-server binding of outgoing connections in SIP-pe
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] payload: don't update protocol context if we can't find a description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] payload: don't update protocol context if we can't find a description
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCHv2] extensions: libip6t_frag: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCHv2] extensions: libxt_dscp: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: off-by-one in DecodeQ931
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: off-by-one in DecodeQ931
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: off-by-one in DecodeQ931
- From: Toby DiPasquale <toby@xxxxxxxx>
- 4.7-rc2: iptables broken on ARM 32 bits
- From: Sylvain Lemieux <slemieux.tyco@xxxxxxxxx>
- Re: [PATCH] doc: Update datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libip6t_frag: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv4] extensions: libxt_multiport: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH] include/network.h: fix erroneus comment in NTA_(S|D)NAT_IPV6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 07/23] netfilter: x_tables: check standard target size too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL] IPVS Fixes for v4.7
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_dscp: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: update real-server binding of outgoing connections in SIP-pe
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL] IPVS Fixes for v4.7
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] iptables: extensions: libxt_MARK: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH ipvs-next] ipvs: count pre-established TCP states as active
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 07/23] netfilter: x_tables: check standard target size too
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 07/23] netfilter: x_tables: check standard target size too
- From: Andreas Schwab <schwab@xxxxxxxxxxxxxx>
- [PATCH] extensions: libxt_dscp: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- [PATCH] doc: Update datatypes
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH] iptables: extensions: libxt_MARK: Add translation to nft
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Will Deacon <will.deacon@xxxxxxx>
- [PATCH ipvs-next] ipvs: count pre-established TCP states as active
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [RFC][PATCH 1/3] locking: Introduce smp_acquire__after_ctrl_dep
- From: Vineet Gupta <Vineet.Gupta1@xxxxxxxxxxxx>
- [conntrack-tools PATCH] include/network.h: fix erroneus comment in NTA_(S|D)NAT_IPV6
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH v3] xtables: Add a smaller delay option when waiting for xtables lock
- From: Subash Abhinov Kasiviswanathan <subashab@xxxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.6 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Will Deacon <will.deacon@xxxxxxx>
- [PATCHv4] extensions: libxt_multiport: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: Next libmnl release
- From: Guillaume Nault <g.nault@xxxxxxxxxxxx>
- Re: Next libmnl release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.6 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: libip6t_frag: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Next libmnl release
- From: Guillaume Nault <g.nault@xxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- Re: [PATCH] extensions: libip6t_hbh: Add translation to nft
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_devgroup: Fix order of mask and id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- [PATCH] extensions: libxt_devgroup: Fix order of mask and id
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH nf] netfilter: x_tables: don't reject valid target size on some architectures
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -v4 3/7] locking: Move smp_cond_load_acquire() to asm-generic/barrier.h
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 1/7] locking: Replace smp_cond_acquire with smp_cond_load_acquire
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 7/7] locking,netfilter: Fix nf_conntrack_lock()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 6/7] locking: Update spin_unlock_wait users
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 5/7] locking, arch: Update spin_unlock_wait()
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 0/7] spin_unlock_wait borkage and assorted bits
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 2/7] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH -v4 4/7] locking, tile: Provide TILE specific smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libip6t_hbh: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_connmark: Fix order of mask and mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2,libnftnl] Free user data in unsetters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2,libnftnl] Check memory allocations in setters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2,libnftnl] Free user data in unsetters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] doc: fix old parameters and update datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] extensions: libxt_multiport: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2,libnftnl] Check memory allocations in setters
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [PATCH 1/2,libnftnl] Free user data in unsetters
- From: Carlos Falgueras García <carlosfg@xxxxxxxxxx>
- [ANNOUNCE] Netdev 1.2 call for proposals
- From: Hajime Tazaki <thehajime@xxxxxxxxx>
- [PATCH v2] netfilter: fix possible ZERO_SIZE_PTR pointer dereferencing error.
- From: Xiubo Li <lixiubo@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix possible ZERO_SIZE_PTRpointerdereferencing error.
- From: Xiubo Li <lixiubo@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/7] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter/nflog: nflog-range does not truncate packets
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH iptables 3/3] libxt_hashlimit: iptables-restore does not work as expected with xt_hashlimit
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH iptables 2/3] libxt_hashlimit: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH iptables 1/3] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 3/3] netfilter: iptables-restore does not work as expected with xt_hashlimit
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 2/3] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- [PATCH 1/3] netfilter: Prepare xt_hashlimit.c for revision 2
- From: Vishwanath Pai <vpai@xxxxxxxxxx>
- Re: [PATCH -v3 3/8] locking: Introduce smp_acquire__after_ctrl_dep
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- [PATCH] doc: fix old parameters and update datatypes
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- [PATCH] extensions: libip6t_hbh: Add translation to nft
- From: Laura Garcia Liebana <nevola@xxxxxxxxx>
- Re: [PATCH v3] extensions: libxt_multiport: Add translation to nft
- From: Laura Garcia <nevola@xxxxxxxxx>
- [PATCH] extensions: libxt_connmark: Fix order of mask and mark
- From: Shivani Bhardwaj <shivanib134@xxxxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Waiman Long <waiman.long@xxxxxxx>
- Re: [PATCH -v3 3/8] locking: Introduce smp_acquire__after_ctrl_dep
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [nf-next PATCH v4] netfilter: nf_tables: add support for inverted logic in nft_lookup
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_ipcomp: Add translation to nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_mark: fix a wrong translation to nft when mask is specified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] extensions: libxt_multiport: Add translation to nft
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [PATCH -v3 3/8] locking: Introduce smp_acquire__after_ctrl_dep
- From: Boqun Feng <boqun.feng@xxxxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Will Deacon <will.deacon@xxxxxxx>
- [PATCH] extensions: libxt_mark: fix a wrong translation to nft when mask is specified
- From: Liping Zhang <zlpnobody@xxxxxxx>
- Re: [PATCH -v3 7/8] locking: Move smp_cond_load_acquire() and friends into asm-generic/barrier.h
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: nf_queue: Make the queue_handler pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: nf_ct_helper: bail out on duplicated helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nf_tables: validate NFTA_SET_TABLE parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nf_dup_ipv6: set again FLOWI_FLAG_KNOWN_NH at flowi6_flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: conntrack: remove leftover binary sysctl define
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nfnetlink_queue: fix timestamp attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nf_ct_helper: Fix helper unregister count.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]