Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- iptables nftables compat weirdness
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: xtables-addons 64-bit counter patch
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: xtables-addons 64-bit counter patch
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] datatype: default to display bitmask in hexadecimal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] proto: use bitmask_type for comp flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- [PATCH nft 5/9] netlink_linearize: generate concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 6/9] netlink: pad constant concat sub-expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 7/9] netlink_delinearize: introduce register translation helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 8/9] netlink_delinearize: handle relational and lookup concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 9/9] netlink: handle concat expressions in set data
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 3/9] netlink: pass expression to register allocation/release functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 4/9] netlink_linearize: use NFT_REG32 values internally
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 1/9] eval: prohibit variable sized types in concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 2/9] headers: sync headers for new register values
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 0/9] concat support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next] net: ip_fragment: remove BRIDGE_NETFILTER mtu special handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [patch] ipvs: prevent some underflows
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- xtables-addons 64-bit counter patch
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] remove unused 'numbytes'
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Florian Westphal <fw@xxxxxxxxx>
- netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 6/6 nft] tests: regression: fix warnings related to range listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6 nft] tests: regression: reduce code duplication a bit on error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6 nft] netlink_delinearize: consolidate range printing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6 nft] netlink_delinearize: keep pointer to current statement from rule_pp_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6 nft] netlink_delinearize: pass ctx pointer to stmt_reject_postprocess()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6 nft] netlink_delinearize: add payload_match_expand()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6 nft] improvements for the range printing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netlink_delinearize: remove obsolete fixme
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] netlink_linearize: fix range cmp instruction generation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] ct: add maximum helper length value
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: [PATCH net] Netfilter fix for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] Netfilter fix for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] remove unused 'numbytes'
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- [PATCH 00/11] Replace module_init with an alternate initcall in non modules
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 71/98] include/uapi/linux/netfilter/xt_TEE.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 56/98] include/uapi/linux/netfilter.h: include in.h and in6.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 76/98] include/uapi/linux/netfilter/xt_recent.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 75/98] include/uapi/linux/netfilter/xt_sctp.h: use _Bool type, 1 for true and 0 for false
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 57/98] include/uapi/linux/netfilter_bridge.h: include in.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 63/98] include/uapi/linux/netfilter/xt_policy.h: include linux/in.h and linux/in6.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 68/98] include/uapi/linux/netfilter/ipset/ip_set_hash.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 70/98] include/uapi/linux/netfilter/xt_HMARK.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 73/98] include/uapi/linux/netfilter/xt_ipvs.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 74/98] include/uapi/linux/netfilter/xt_mac.h: include linux/if_ether.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 69/98] include/uapi/linux/netfilter/ipset/ip_set_list.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 60/98] include/uapi/linux/netfilter/xt_osf.h: include linux/ip.h and linux/tcp.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 72/98] include/uapi/linux/netfilter/xt_TPROXY.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 59/98] include/uapi/linux/netfilter: include linux/if.h in several headers
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 44/98] nf_conntrack_tuple_common.h: include linux/types.h and linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCHv7 4/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 3/4] netfilter: bridge: re-order check_hbh_len()
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv6 2/4] netfilter: bridge: rename br_parse_ip_options
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv2 1/4] netfilter: bridge: refactor frag_max_size
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv4 3/3] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 2/3] netfilter: bridge: re-order br_nf_pre_routing_finish_ipv6()
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 1/3] netfilter: bridge: refactor clearing BRNF_NF_BRIDGE_PREROUTING
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [RESEND PATCH V2] Add element count to hash headers
- From: Eric B Munson <emunson@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH conntrackd] expect: Fix wrong memset usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Patrick Schaaf <netdev@xxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- libnetfilter_queue multi-threaded nfq_handle shared or unique?
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: [PATCHv5 3/4] netfilter: bridge: rename br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv6 2/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv3 1/4] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: nf_tables: add netdev table to filter from ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: remove unused comefrom hookmask argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: remove unused comefrom hookmask argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: conntrack-tools bugs
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 4/4] netfilter: bridge: refactor frag_max_size
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv5 3/4] netfilter: bridge: rename br_parse_ip_options
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv6 2/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv3 1/4] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH 1/2] Sync with kernel headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- [PATCH -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add netdev family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ebtables not working correctly with 1086bbe97a074844188c6c988fa0b1a98c3ccbb9
- From: Florian Westphal <fw@xxxxxxxxx>
- ebtables not working correctly with 1086bbe97a074844188c6c988fa0b1a98c3ccbb9
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1] Added a vlan id and pcp matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- Re: [libmnl PATCH 2/2] examples/netfilter: Include <endian.h> for be64toh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libmnl] example: netfilter: get rid of aligned_be64 definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH] Security context information added to netfilter_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3 nf-next] nf_tables support at ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3 nf-next] netfilter: nf_tables: add netdev table to filter from ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] table: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Security context information added to netfilter_queue
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] libnetfitler_queue: receive security context info
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH] Security context information added to netfilter_queue
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH -next] netfilter: remove unused comefrom hookmask argument
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/3] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ensure number of counters is >0 in do_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Harden iptables memory allocator
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- Mangling packets & routing in kernels>3.17
- From: aikipooh@xxxxxxxxx (Юрий Пухальский)
- Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH] cthelper: don't pass up a 0 length queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables PATCH 1/2] extensions: Use stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH 1/6] configure: Add AM_PROG_AR to silence automake warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: netfilter: ensure number of counters is >0 in do_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- [PATCH] cthelper: don't pass up a 0 length queue
- From: Chas Williams III <Charles.Williams@xxxxxxxxxxx>
- Re: [libnetfilter_cttimeout PATCH] Sync with kernel headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log PATCH] Make it possible to build libipulog
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable] netfilter: nf_tables: fix error handling of rule replacement
- From: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
- Re: [arptables PATCH 1/2] Use stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Fix kernel panic in nfulnl_rcv_nl_event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- netfilter: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: Florian Westphal <fw@xxxxxxxxx>
- iptables: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: [PATCH -stable] netfilter: Zero the tuple in nfnl_cthelper_parse_tuple()
- From: Jiri Slaby <jslaby@xxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: ipset: Fix sparse warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: ipset: make ip_set_get_ip*_port to use skb_network_offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: ipset: No need to make nomatch bitfield
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: ipset: Return ipset error instead of bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: ipset: Check IPSET_ATTR_PORT only once
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: ipset: Use HOST_MASK literal to represent host address CIDR len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: ipset: Check for comment netlink attribute length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: ipset: Preprocessor directices cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: ipset: Fix ext_*() macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: ipset: deinline ip_set_put_extensions()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: x_tables: add context to know if extension runs from nft_compat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: xt_MARK: Add ARP support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: Use correct return for seq_show functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: ipset: Give a better name to a macro in ip_set_core.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: bridge: free nf_bridge info on xmit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: bridge: neigh_head and physoutdev can't be used at same time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: ipset: Fix hashing for ipv6 sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: ipset: Use better include files in xt_set.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: ipset: Improve preprocessor macros checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: ipset: Properly calculate extensions offsets and total length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: Use correct return for seq_show functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Fix kernel panic in nfulnl_rcv_nl_event
- From: fruggeri@xxxxxxxxxxxxxxxxxx (Francesco Ruggeri)
- Re: cthelper's and default QueueLen -- bug?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: avoid build error if TPROXY/SOCKET=y && NF_DEFRAG_IPV6=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: avoid build error if TPROXY/SOCKET=y && NF_DEFRAG_IPV6=m
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS Fixes for v4.1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: restore rule tracing via nfnetlink_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: nft_compat: set IP6T_F_PROTO flag if protocol is set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: nft_rbtree: fix locking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: Zero the tuple in nfnl_cthelper_parse_tuple()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: nf_tables: allow to change chain policy without hook if it exists
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: nf_tables: check for overflow of rule dlen field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable] netfilter: nf_tables: fix error handling of rule replacement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: nf_tables: fix bogus warning in nft_data_uninit()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] ipvs: fix memory leak in ip_vs_ctl.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] conntrack: RFC5961 challenge ACK confuse conntrack LAST-ACK transition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: avoid build error if TPROXY/SOCKET=y && NF_DEFRAG_IPV6=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ulogd2 PATCHv2] ulogd: Use /dev/null as dummy logfile when logging to syslog
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [ulogd2 PATCH 3/4] ulogd: Use (FILE *)(-1) as dummy logfile when logging to syslog
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [ulogd2 PATCH 3/4] ulogd: Use (FILE *)(-1) as dummy logfile when logging to syslog
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [ulogd2 PATCH 4/4] Define _GNU_SOURCE to get members of tcphdr
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [ulogd2 PATCH 3/4] ulogd: Use (FILE *)(-1) as dummy logfile when logging to syslog
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [ulogd2 PATCH 2/4] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [ulogd2 PATCH 1/4] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [nfacct PATCH] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnfnetlink PATCH 3/3] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnfnetlink PATCH 2/3] Convert kernel to userspace types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnfnetlink PATCH 1/3] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_queue PATCH 4/4] tcp.c udp.c: Define _GNU_SOURCE to get members of tcphdr&ucphdr
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_queue PATCH 3/4] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_queue PATCH 2/4] Convert kernel to userspace types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_queue PATCH 1/4] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_log PATCH 3/3] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_log PATCH 1/3] Sync with current kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_cthelper PATCH] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_conntrack PATCH 2/2] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_conntrack PATCH 1/2] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libnetfilter_acct PATCH] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libmnl PATCH 2/2] examples/netfilter: Include <endian.h> for be64toh
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [libmnl PATCH 1/2] examples/netfilter: Use stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [ebtables PATCH 2/2] ethernetdb.h: Remove C++ specific compiler hint macro _THROW
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [ebtables PATCH 1/2] extensions: Use stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 6/6] src/netlink: Use <fcntl.h> instead of legacy synonym <sys/fcntl.h>
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 5/6] Define _GNU_SOURCE to get members of tcphdr&ucphdr
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 4/6] Include <sys/select.h> for fd_set
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 3/6] include: Use stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 2/6] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [conntrack-tools PATCH 1/6] configure: Add AM_PROG_AR to silence automake warning
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [arptables PATCH 2/2] Remove support for libc5
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [arptables PATCH 1/2] Use stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [PATCH] configure.ac: Add --without-{mysql,pgsql}
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnetfilter_cttimeout PATCH] Sync with kernel headers
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: libnetfilter_*: Use uint*_t instead of u_int*_t
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: deinline ip_set_put_extensions()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] nf_tables: fix bogus warning in nft_data_uninit()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf] nf_tables: fix bogus warning in nft_data_uninit()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_*: Use uint*_t instead of u_int*_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- libnetfilter_*: Use uint*_t instead of u_int*_t
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [PATCH nf] conntrack: RFC5961 challenge ACK confuse conntrack LAST-ACK transition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: avoid build error if TPROXY/SOCKET=y && NF_DEFRAG_IPV6=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnetfilter_log PATCH] Make it possible to build libipulog
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [PATCH libnetfilter_log] Add include needed for integer type definition.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS Fixes for v4.1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Add arpt_MARK to xt_mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: deinline ip_set_put_extensions()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: bridge: free nf_bridge info on xmit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: bridge: neigh_head and physoutdev can't be used at same time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add netfilter ingress hook after handle_ing() under unique static key
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/5 net-next] Netfilter ingress support (v4)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add netfilter ingress hook after handle_ing() under unique static key
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add netfilter ingress hook after handle_ing() under unique static key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add netfilter ingress hook after handle_ing() under unique static key
- From: Alexei Starovoitov <ast@xxxxxxxxxxxx>
- Re: [PATCH 4/5] net: add CONFIG_NET_INGRESS to enable ingress filtering
- From: Alexei Starovoitov <ast@xxxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: cleanup struct nf_hook_ops indentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] net: add CONFIG_NET_INGRESS to enable ingress filtering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: add netfilter ingress hook after handle_ing() under unique static key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: add nf_hook_list_active()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: add hook list to nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5 net-next] Netfilter ingress support (v4)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_all_queues(), remove WARN_ON in netif_tx_stop_queue()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: Use correct return for seq_show functions
- From: Joe Perches <joe@xxxxxxxxxxx>
- Kernel panic with skb_alloc during post_routing
- From: Praveen Kumar <praveenkr.cs@xxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_all_queues(), remove WARN_ON in netif_tx_stop_queue()
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: Probably bug in netfilter hashlimit extension
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Probably bug in netfilter hashlimit extension
- From: Klaus Ethgen <Klaus+lkml@xxxxxxxxx>
- [PATCH] net: deinline netif_tx_stop_all_queues(), remove WARN_ON in netif_tx_stop_queue()
- From: Denys Vlasenko <dvlasenk@xxxxxxxxxx>
- Re: Probably bug in netfilter hashlimit extension
- From: Cong Wang <xiyou.wangcong@xxxxxxxxx>
- Re: Probably bug in netfilter hashlimit extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Probably bug in netfilter hashlimit extension
- From: Klaus Ethgen <Klaus+lkml@xxxxxxxxx>
- Re: [PATCH nf] conntrack: RFC5961 challenge ACK confuse conntrack LAST-ACK transition
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ulogd 2.0.5
- From: Chris Boot <bootc@xxxxxxxxx>
- [ANNOUNCE] ulogd 2.0.5 release
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ulogd 2.0.5
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ulogd 2.0.5
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ulogd 2.0.5
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ulogd 2.0.5
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 04/34] netfilter: ipset: Introduce RCU locking in hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 02/34] netfilter: ipset: Prepare the ipset core to use RCU at set level
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 03/34] netfilter: ipset: Introduce RCU locking in bitmap:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Alexander Duyck <alexander.duyck@xxxxxxxxx>
- Re: [iptables PATCH 2/2 RFC] Remove Libc5 support code
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Denys Vlasenko <dvlasenk@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf] ipvs: fix memory leak in ip_vs_ctl.c
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] IPVS Fixes for v4.1
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 04/34] netfilter: ipset: Introduce RCU locking in hash:* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/34] netfilter: ipset: Prepare the ipset core to use RCU at set level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 03/34] netfilter: ipset: Introduce RCU locking in bitmap:* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: fix memory leak in ip_vs_ctl.c
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Alexander Duyck <alexander.duyck@xxxxxxxxx>
- cthelper's and default QueueLen -- bug?
- From: Chas Williams III <Charles.Williams@xxxxxxxxxxx>
- [PATCH nf] conntrack: RFC5961 challenge ACK confuse conntrack LAST-ACK transition
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH] netfilter: avoid build error if TPROXY/SOCKET=y && NF_DEFRAG_IPV6=m
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] ipvs: fix memory leak in ip_vs_ctl.c
- From: Tommi Rantala <tt.rantala@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH] net: deinline netif_tx_stop_queue() and netif_tx_stop_all_queues()
- From: Denys Vlasenko <dvlasenk@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: deinline ip_set_put_extensions()
- From: Denys Vlasenko <dvlasenk@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Q on contribution to Netfilter
- From: Ravi Kerur <rkerur@xxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Thomas Graf <tgraf@xxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: fix dependency issues between IPv6 defragmentation and ip6tables
- From: liusdu <liusdu@xxxxxxx>
- Re: [PATCH 0/4] Netfilter ingress support (v3)
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Thomas Graf <tgraf@xxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2 RFC] Remove Libc5 support code
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2 RFC] Remove Libc5 support code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter ingress support (v3)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH 2/2 RFC] Remove Libc5 support code
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/4] net: add minimalistic ingress filter hook and port sch_ingress on top of it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: cleanup struct nf_hook_ops indentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: add hook list to nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] net: add netfilter ingress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] libxt_CT: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables] libxt_CT: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: conntrack: add support for flextuples
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 3.19 176/177] netfilter: x_tables: fix cgroup matching on non-full sks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix dependency issues between IPv6 defragmentation and ip6tables
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next] netfilter: bridge: free nf_bridge info on xmit
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next] netfilter: bridge: neigh_head and physoutdev can't be used at same time
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] configure.ac: Add --without-{mysql,pgsql}
- From: Harald Welte <laforge@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix dependency issues between IPv6 defragmentation and ip6tables
- From: liusdu <liusdu@xxxxxxx>
- Re: [PATCH] netfilter: fix dependency issues between IPv6 defragmentation and ip6tables
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: fix dependency issues between IPv6 defragmentation and ip6tables
- From: Liu Hua <sdu.liu@xxxxxxxxxx>
- Re: [iptables PATCH 1/2] Consistently use <errno.h>
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [iptables PATCH 2/2 RFC] Remove Libc5 support code
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [iptables PATCH 1/2] Consistently use <errno.h>
- From: Florian Westphal <fw@xxxxxxxxx>
- [iptables PATCH 1/2] Consistently use <errno.h>
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH 24/34] netfilter: ipset: Make sure we always return line number on batch
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 25/34] netfilter: ipset: Check CIDR value only when attribute is given
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 34/34] netfilter: ipset: Use better include files in xt_set.c
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 33/34] netfilter: ipset: Fix coding styles reported by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/34] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/34] netfilter: ipset: Introduce RCU locking in hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/34] netfilter: ipset: make ip_set_get_ip*_port to use skb_network_offset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/34] netfilter: ipset: Fix cidr handling for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 19/34] netfilter: ipset: Use SET_WITH_*() helpers to test set extensions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 17/34] netfilter: ipset: Preprocessor directices cleanup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 20/34] netfilter: ipset: Check extensions attributes before getting extensions.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 28/34] netfilter: ipset: Fix ext_*() macros
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 22/34] netfilter: ipset: Use HOST_MASK literal to represent host address CIDR len
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 31/34] netfilter: ipset: Make sure dumping can't grab set being just destroyed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 32/34] netfilter: ipset: RCU safe comment extension handling
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 30/34] netfilter: ipset: Improve preprocessor macros checks
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 29/34] netfilter: ipset: Fix hashing for ipv6 sets
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 26/34] netfilter: ipset: Return bool values instead of int
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 21/34] netfilter: ipset: Check IPSET_ATTR_PORT only once
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 18/34] netfilter: ipset: Return ipset error instead of bool
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 27/34] netfilter: ipset: Check for comment netlink attribute length
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 23/34] netfilter: ipset: Permit CIDR equal to the host address CIDR in IPv6
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/34] netfilter: ipset: Make sure bit operations are not reordered
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 16/34] netfilter: ipset: No need to make nomatch bitfield
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/34] netfilter: ipset: Make sure listing doesn't grab a set which is just being destroyed.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/34] netfilter: ipset: Properly calculate extensions offsets and total length
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/34] netfilter: ipset: Introduce RCU locking in bitmap:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/34] netfilter: ipset: Remove rbtree from hash:net,iface
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/34] netfilter: ipset: Give a better name to a macro in ip_set_core.c
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/34] netfilter: ipset: Fix sparse warning
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/34] netfilter: ipset: Use MSEC_PER_SEC consistently
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/34] netfilter: ipset: Introduce RCU locking in list type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/34] netfilter: ipset: Fix parallel resizing and listing of the same set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/34] netfilter: ipset: Prepare the ipset core to use RCU at set level
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/34] netfilter: ipset: Missing rcu protection in mtype_list() fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Matching MLD with ip6tables
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: Matching MLD with ip6tables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Matching MLD with ip6tables
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: roadmap of the nftables development
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH 4/6] netfilter: move generic hook infrastructure into net/core/hooks.c
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Cong Wang <cwang@xxxxxxxxxxxxxxxx>
- net-next is now OPEN
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- [PATCH 0/6 RFC] Netfilter ingress support (v2)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: move generic hook infrastructure into net/core/hooks.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: add hook list to nf_hook_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] net: add netfilter ingress hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] net: move qdisc ingress filtering on top of netfilter ingress hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: cleanup struct nf_hook_ops indentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: add nf_hook_list_active()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Q on contribution to Netfilter
- From: Ravi Kerur <rkerur@xxxxxxxxx>
- [PATCH] nf_tables: silence needless warning on element delete
- From: Miroslav Kratochvil <exa.exa@xxxxxxxxx>
- [PATCH nft] datatype: fix packet mark type name
- From: Miroslav Kratochvil <exa.exa@xxxxxxxxx>
- [PATCH libnetfilter_log] Add include needed for integer type definition.
- From: Natanael Copa <ncopa@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: bridge: fix NULL deref in physin/out ifindex helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nf_tables: fix wrong length for jump/goto verdicts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter; Add some missing default cases to switch statements in nft_reject.
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] Allow use of 'socket' match in OUTPUT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: nf_tables: fix wrong length for jump/goto verdicts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: bridge: fix NULL deref in physin/out ifindex helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/6] ipv6: netfilter - coding style improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- roadmap of the nftables development
- From: Nikita Klimov <nikita@xxxxxxxxx>
- [PATCH nf] netfilter: bridge: fix NULL deref in physin/out ifindex helpers
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] Allow use of 'socket' match in OUTPUT
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- [PATCH] Add arpt_MARK to xt_mark
- From: Zhang Chunyu <zhangcy@xxxxxxxxxxxxxx>
- Re: Re: [PATCH] Add NFPROTO_ARP for mark
- From: "Zhang, Chunyu" <zhangcy@xxxxxxxxxxxxxx>
- Re: Re: [PATCH] Add NFPROTO_ARP for mark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/7] net: refactor __netif_receive_skb_core
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Re: [PATCH] Add NFPROTO_ARP for mark
- From: "Zhang, Chunyu" <zhangcy@xxxxxxxxxxxxxx>
- Re: Re: [PATCH] Add NFPROTO_ARP for mark
- From: "Zhang, Chunyu" <zhangcy@xxxxxxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 1/7] net: refactor __netif_receive_skb_core
- From: Jesper Dangaard Brouer <netdev@xxxxxxxxxx>
- Re: [PATCH 1/7] net: refactor __netif_receive_skb_core
- From: Alexander Duyck <alexander.h.duyck@xxxxxxxxxx>
- RE: [PATCH 1/7] net: refactor __netif_receive_skb_core
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: x_tables: add context to know if extension runs from nft_compat
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH nft] mnl: use new libnftnl batch API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/2] src: add batch abstraction
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: John Fastabend <john.r.fastabend@xxxxxxxxx>
- [PATCH -next] netfilter: nf_tables: fix wrong length for jump/goto verdicts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables: oob crash w. verdict maps & jumps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables: oob crash w. verdict maps & jumps
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables: oob crash w. verdict maps & jumps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nftables: oob crash w. verdict maps & jumps
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Thomas Graf <tgraf@xxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Thomas Graf <tgraf@xxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Thomas Graf <tgraf@xxxxxxx>
- [PATCH libnftnl 5/5] dynset: support expression templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl 4/5] set_elem: support expressions attached to set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl 3/5] expr: seperate expression parsing and building functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl 2/5] data: increase maximum possible data size
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl 1/5] headers: resync headers for new register definitions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl 0/5] concatenation and dynamic expression instantiation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/5 v4] netlink: Fix portid type in netlink_notify
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 2/5 v4] nfc: Fix portid type in urelease_work
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 3/5 v4] netfilter: Fix portid types
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 4/5 v4] netfilter: Fix format string of nfnetlink_queue proc file
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 5/5 v4] netfilter: Fix format string of nfnetlink_log proc file
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: nf_tables: get rid of NFT_REG_VERDICT usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: nft_lookup: use nft_validate_register_store() to validate types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: nf_tables: kill nft_data_cmp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: nf_tables: rename nft_validate_data_load()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: nf_tables: convert sets to u32 data pointers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: nf_tables: use struct nft_verdict within struct nft_data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] uapi: ebtables: don't include linux/if.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: nf_tables: convert expressions to u32 register pointers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: nf_tables: switch registers to 32 bit addressing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: nf_tables: support variable sized data in nft_data_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: nf_tables: add register parsing/dumping helpers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: nf_tables: variable sized set element keys / data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: nf_tables: add flag to indicate set contains expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: nf_tables: prepare for expressions associated to set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: nft_dynset: dynamic stateful expression instantiation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: nf_tables: add helper functions for expression handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: nf_tables: mark stateful expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: nf_tables: get rid of the expression example code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: nf_tables: kill nft_validate_output_register()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: nf_tables: introduce nft_validate_register_load()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: nf_tables: validate len in nft_validate_data_load()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] expr: dynset: fix json/xml parsing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [libnftnl PATCH v2] expr: dynset: fix json/xml parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH] expr: dynset: fix json/xml parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 6/5] netfilter: nft_dynset: make sure expr extension exists before using it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter: nf_tables: dynamic stateful expression instantiation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/5 v4] netfilter: Fix portid types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 4/5 v4] netfilter: Fix format string of nfnetlink_queue proc file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/5 v4] netfilter: Fix format string of nfnetlink_log proc file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: get rid of the expression example code
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: get rid of the expression example code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Looking for extensible kernel database format
- From: "Luis R. Rodriguez" <mcgrof@xxxxxxxx>
- Re: [kernel PATCH] uapi: ebtables: don't include linux/if.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/14] netfilter: nf_tables: concatenation support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7 RFC] Netfilter/nf_tables ingress support
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 3/5 v4] netfilter: Fix portid types
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 2/5 v4] nfc: Fix portid type in urelease_work
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 4/5 v4] netfilter: Fix format string of nfnetlink_queue proc file
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 5/5 v4] netfilter: Fix format string of nfnetlink_log proc file
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 1/5 v4] netlink: Fix portid type in netlink_notify
- From: Richard Weinberger <richard@xxxxxx>
- [PATCH 6/5] netfilter: nft_dynset: make sure expr extension exists before using it
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/3] dynset: support expression templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] set_elem: support expressions attached to set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] expr: seperate expression parsing and building functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/3] libnftnl: dynset dynamic expression instantiation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/3] expr: add support for the dynset expr
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] set_elem: add support for userdata
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] set: print set elem timeout information
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/3] libnfnl: support for new set features
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/10] nftables: add set statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 09/10] setelem: add support for attaching comments to set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/10] setelem: add timeout support for set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/10] set: add timeout support for sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/10] expr: add set_elem_expr as container for set element attributes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/10] parser: add a time_spec rule
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/10] parser: fix inconsistencies in set expression rules
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/10] datatype: seperate time parsing/printing from time_type
- From: Patrick McHardy <kaber@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]