Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 1/2] conntrack: refactor handling of address options
- From: pfeiffer.szilard@xxxxxxxxxx
- expectation entry creation with conntrack
- From: pfeiffer.szilard@xxxxxxxxxx
- [PATCH] conntrack: made the protocol option value case insensitive
- From: pfeiffer.szilard@xxxxxxxxxx
- [PATCH] conntrack: made the manual page and help consistent in case of proto option
- From: pfeiffer.szilard@xxxxxxxxxx
- [PATCH] conntrack: made the manual page and help consistent in case of proto option
- From: pfeiffer.szilard@xxxxxxxxxx
- [ANNOUNCE] ipset 6.25.1 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: net/netfilter/ipset: work around gcc-4.4.4 initializer bug (was: Re: linux-next: Tree for Jun 25)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: net/netfilter/ipset: work around gcc-4.4.4 initializer bug (was: Re: linux-next: Tree for Jun 25)
- From: Geert Uytterhoeven <geert@xxxxxxxxxxxxxx>
- Re: [RESEND PATCH V2] Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ulogd2 PATCHv3] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- merge window freeze
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [nftables 3/3] mnl: improve select timeout logic
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables 3/3] mnl: improve select timeout logic
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables 2/3] erec: fix logic when reading from file
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables 1/3] erec: fix buffer overflow
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables 0/3] misc fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [ulogd2 PATCHv2] Use stdint types everywhere
- From: Eric Leblond <eric@xxxxxxxxx>
- [ulogd2 PATCHv2] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [ulogd2 PATCH 2/4] Use stdint types everywhere
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nftables: Do not run chains in the wrong network namespace
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [ulogd2 PATCH 2/4] Use stdint types everywhere
- From: Eric Leblond <eric@xxxxxxxxx>
- RE: Kernel 4.1.0 broke the TARPIT & DELUGE targets in xtables-addons-2.6
- From: Alexander Petrenas <zeracles@xxxxxxxxxxxxxxx>
- RE: Kernel 4.1.0 broke the TARPIT & DELUGE targets in xtables-addons-2.6
- From: Alexander Petrenas <zeracles@xxxxxxxxxxxxxxx>
- Re: Kernel 4.1.0 broke the TARPIT & DELUGE targets in xtables-addons-2.6
- From: Florian Westphal <fw@xxxxxxxxx>
- Kernel 4.1.0 broke the TARPIT & DELUGE targets in xtables-addons-2.6
- From: Alexander Petrenas <zeracles@xxxxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH 03/12] netfilter: x_tables: align per cpu xt_counter
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- RE: [PATCH 03/12] netfilter: x_tables: align per cpu xt_counter
- From: David Laight <David.Laight@xxxxxxxxxx>
- Re: [PATCH 00/12] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/32] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH 00/32] Netfilter updates for net-next
- From: Jakub Kiciński <moorray3@xxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] netfilter: nf_queue: Don't recompute the hook_list head
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net] netfilter: nf_qeueue: Drop queue entries on nf_unregister_hook
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nftables: Do not run chains in the wrong network namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: bridge: rename br_netfilter.c to br_netfilter_hooks.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: Kill unused copies of RCV_SKB_FAIL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: bridge: split ipv6 code into separated file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: xt_socket: add XT_SOCKET_RESTORESKMARK flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: use forward declaration instead of including linux/proc_fs.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] net: include missing headers in net/net_namespace.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] net: sched: Simplify em_ipset_match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: x_tables: align per cpu xt_counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: Remove spurios included of netfilter.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: xtables: fix warnings on 32bit platforms
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: don't pull include/linux/netfilter.h from netns headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: nfnetlink_queue: add security context information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] netfilter: nftables: Do not run chains in the wrong network namespace
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH nft] src: add tee statement
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf-next, v4] netfilter: nft_counter: convert it to use per-cpu counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Marcelo Ricardo Leitner <marcelo.leitner@xxxxxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Patrick Schaaf <netdev@xxxxxx>
- Re: [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 3/3] rule: fix use of intervals in set declarations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] segtree: pass element expression as parameter to set_to_intervals()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] rule: use netlink_add_setelems() when creating literal sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add tee statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next, v4] netfilter: nft_counter: convert it to use per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next, v3] netfilter: nft_counter: convert it to use per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add tee statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] expr: add new nft_tee expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] libnetfilter_queue.h: Include <sys/time.h> for struct timeval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next,v2] netfilter: nft_counter: convert it to use per-cpu counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_counter: add per-cpu support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_counter: add per-cpu support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: nft_counter: add per-cpu support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/43] Simplify netfilter and network namespaces (take 2)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH -next] netfilter: xtables: fix warnings on 32bit platforms
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] x_table: align per cpu xt_counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] xt_socket: add --restore-skmark option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: nft_counter: split out counters from nft_counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_counter: add per-cpu support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- =?y?q?=5BPATCH=20nf-next=2C=20v2=202/3=5D=20netfilter=3A=20move=20generic=20TEE=20code=20from=20xtables=20to=20nf=5Ftee=5Fipv=7B4=2C6=7D=20modules?=
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next, v2 3/3] netfilter: nf_tables: add nft_tee expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next, v2 1/3] netfilter: xt_TEE: always allocate private area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Kedves Email felhasználói;
- From: "rendszer Administrator®" <fizik@xxxxxxxxxxxxxx>
- Re: [PATCH net-next 00/43] Simplify netfilter and network namespaces (take 2)
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net-next] x_table: align per cpu xt_counter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] x_table: align per cpu xt_counter
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH COLO-Frame v6 00/31] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- [RFC] COLO Proxy Module
- From: Li Zhijian <lizhijian@xxxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH -next] netfilter: xtables: fix warnings on 32bit platforms
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net-next 43/43] netfilter: Skip unnecessary calls to synchronize_net
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- [PATCH 0/5] nft trace
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 4/5] trace: implement commands action
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 5/5] trace: add log for packets
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 3/5] rule: make cache creation a function
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/5] parser: add trace command
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/5] netlink: delinarize chain policy
- From: Markus Koetter <koetter@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next 43/43] netfilter: Skip unnecessary calls to synchronize_net
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH net-next] x_table: align per cpu xt_counter
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next 28/43] x_tables: Where possible convert to the new hook registration method
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 23/43] netfilter: Add a struct net parameter to nf_unregister_hook[s]
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 19/43] ipvs: Read hooknum from state rather than ops->hooknum
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 14/43] ipv4: Pass struct net into ip_defrag and ip_check_defrag
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 13/43] nf_conntrack: Add a struct net parameter to l4_pkt_to_tuple
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 38/43] netfilter: synproxy: Register netfilter hooks in all network namespaces
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 42/43] netfilter bridge: Make the sysctl knobs per network namespace
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 25/43] netfilter: Make nf_hook_ops just a parameter structure
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 24/43] netfilter: Make the netfilter hooks per network namespace
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 17/43] netfilter: use forward declaration instead of including linux/proc_fs.h
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 29/43] x_tables: Kill xt_[un]hook_link
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 16/43] net: include missing headers in net/net_namespace.h
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 35/43] ipvs: Register netfilter hooks in all network namespaces
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 40/43] smack: adapt it to pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 20/43] netfilter: Pass priv instead of nf_hook_ops to netfilter hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 31/43] netfilter: nf_tables: adapt it to pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 22/43] netfilter: Add a struct net parameter to nf_register_hook[s]
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 12/43] nf_tables: Use pkt->net instead of computing net from the passed net_devices
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 39/43] selinux: adapt it to pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 30/43] x_tables: Update ip?table_nat to register their hooks in all network namespaces
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 41/43] netfilter: Remove the network namespace Kconfig conflict
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 43/43] netfilter: Skip unnecessary calls to synchronize_net
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 27/43] x_tables: Add magical hook registration in the common case
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 37/43] netfilter: nf_defrag: Register netfilter hooks in all network namespaces
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 36/43] netfilter: nf_conntract: Register netfilter hooks in all network namespaces
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 26/43] netfitler: Remove spurios included of netfilter.h
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 11/43] nftables: Pass struct net in nft_pktinfo
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 18/43] netfilter: don't pull include/linux/netfilter.h from netns headers
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 15/43] ipv6: Pass struct net into nf_ct_frag6_gather
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 33/43] netfilter: ebtables: adapt the filter and nat table to pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 32/43] netfilter: ipt_CLUSTERIP: adapt it to support pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 34/43] netfilter: bridge: adapt it to pernet hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 21/43] netfilter: Add a network namespace Kconfig conflict
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 02/43] netfilter: Pass struct net into the netfilter hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 08/43] tc: Simplify em_ipset_match
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 04/43] ebtables: Simplify the arguments to ebt_do_table
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 07/43] nftables: kill nft_pktinfo.ops
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 10/43] x_tables: Use par->net instead of computing from the passed net devices
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 09/43] x_tables: Pass struct net in xt_action_param
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 06/43] inet netfilter: Prefer state->hook to ops->hooknum
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 05/43] inet netfilter: Remove hook from ip6t_do_table, arp_do_table, ipt_do_table
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 03/43] netfilter: Use nf_hook_state.net
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 01/43] netfilter: Kill unused copies of RCV_SKB_FAIL
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 00/43] Simplify netfilter and network namespaces (take 2)
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH nf-next 0/3] netfilter: socket lookup function refactoring, cgroup match fixes
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: socket lookup function refactoring, cgroup match fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables nftables compat weirdness
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH nft] parser_bison: allow to use mark as datatype for maps and sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables nftables compat weirdness
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: socket lookup function refactoring, cgroup match fixes
- From: Daniel Mack <daniel@xxxxxxxxxx>
- Re: [PATCH nft] parser_bison: allow to use mark as datatype for maps and sets
- From: Miroslav Kratochvil <exa.exa@xxxxxxxxx>
- Re: [PATCH nft,next-4.2,v2] src: add netdev family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 3/4] netfilter: move generic TEE code from xtables to nf_tee_ipv{4,6} modules
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: socket lookup function refactoring, cgroup match fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: factor out helpers from xt_socket into separate modules
- From: Daniel Mack <daniel@xxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: x_tables: fix cgroup's NF_INET_LOCAL_IN sk lookups
- From: Daniel Mack <daniel@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nft_meta: fix cgroup socket lookups
- From: Daniel Mack <daniel@xxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: socket lookup function refactoring, cgroup match fixes
- From: Daniel Mack <daniel@xxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [musl] [PATCH iptables RFC 4/4] libxt_TCPOPTSTRIP: Use local copy of TCPOPTS constants
- From: Rich Felker <dalias@xxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH iptables RFC 4/4] libxt_TCPOPTSTRIP: Use local copy of TCPOPTS constants
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH iptables 3/4] ip*_tables.h: Sync with upstream
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH iptables 2/4] xtables.h: Use <stdint.h> types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH iptables 1/4] Sync with ethernetdb.h from ebtables
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH nft-sync] event.c: Include <signal.h> for signal names
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH libnetfilter_queue] libnetfilter_queue.h: Include <sys/time.h> for struct timeval
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- Re: [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/4] netfilter: move generic TEE code from xtables to nf_tee_ipv{4,6} modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/4] netfilter: move generic TEE code from xtables to nf_tee_ipv{4,6} modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,next-4.2,v2] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libmnl: security context retrieval in nf-queue example
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH nft] netlink: fix use-after-free netlink_events_cache_deltable()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables nftables compat weirdness
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,next-4.2] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_bison: allow to use mark as datatype for maps and sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_bison: allow to use mark as datatype for maps and sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] parser_bison: allow to use mark as datatype for maps and sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft,next-4.2] src: add netdev family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft,next-4.2] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnfnl] chain: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libmnl: security context retrieval in nf-queue example
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: fix packet mark type name
- From: Miroslav Kratochvil <exa.exa@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_RESTORESKMARK flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Matching MLD with ip6tables
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- RE: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_RESTORESKMARK flag
- From: "Harout Hedeshian" <harouth@xxxxxxxxxxxxxx>
- Re: [PATCH] libmnl: security context retrieval in nf-queue example
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: bridge: split ipv6 code out of the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libmnl: security context retrieval in nf-queue example
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: bridge: split ipv6 code out of the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: bridge: rename br_netfilter.c to br_netfilter_hooks.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] libmnl: security context retrieval in nf-queue example
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: Roman Khimov <khimov@xxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Matching MLD with ip6tables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Matching MLD with ip6tables
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net-next] x_table: align per cpu xt_counter
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH RFC 04/15] netfilter: add pernet hook support
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- RE: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: "Harout Hedeshian" <harouth@xxxxxxxxxxxxxx>
- [PATCH iptables] xt_socket: add --restore-skmark option
- From: Harout Hedeshian <harouth@xxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_RESTORESKMARK flag
- From: Harout Hedeshian <harouth@xxxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/32] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 16/32] netfilter: ipset: Permit CIDR equal to the host address CIDR in IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/32] net: ip_fragment: remove BRIDGE_NETFILTER mtu special handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/32] netfilter: ipset: Use SET_WITH_*() helpers to test set extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/32] netfilter: ipset: Use MSEC_PER_SEC consistently
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/32] netfilter: xtables: use percpu rule counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/32] netfilter: xtables: avoid percpu ruleset duplication
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/32] netfilter: ipset: Check extensions attributes before getting extensions.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/32] netfilter: ipset: Check CIDR value only when attribute is given
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/32] netfilter: ipset: Make sure we always return line number on batch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/32] netfilter: bridge: restore vlan tag when refragmenting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/32] netfilter: ipset: Fix cidr handling for hash:*net* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/32] netfilter: bridge: re-order check_hbh_len()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/32] netfilter: ipset: Fix parallel resizing and listing of the same set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/32] netfilter: ipset: Make sure listing doesn't grab a set which is just being destroyed.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/32] netfilter: ipset: Fix coding styles reported by checkpatch.pl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/32] netfilter: nf_tables: add nft_register_basechain() and nft_unregister_basechain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/32] netfilter: nf_tables_netdev: unregister hooks on net_device removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/32] netfilter: ipset: Prepare the ipset core to use RCU at set level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/32] netfilter:ipset Remove rbtree from hash:net,iface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/32] netfilter: nf_tables: attach net_device to basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/32] netfilter: ipset: Introduce RCU locking in hash:* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/32] netfilter: x_tables: remove XT_TABLE_INFO_SZ and a dereference.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/32] netfilter: Kconfig: get rid of parens around depends on
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/32] netfilter: ipset: Introduce RCU locking in bitmap:* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/32] netfilter: ipset: Introduce RCU locking in list type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/32] netfilter: bridge: forward IPv6 fragmented packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/32] netfilter: bridge: refactor frag_max_size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/32] netfilter: bridge: rename br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/32] netfilter: bridge: refactor clearing BRNF_NF_BRIDGE_PREROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/32] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/32] netfilter: bridge: re-order br_nf_pre_routing_finish_ipv6()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/32] netfilter: conntrack: warn the user if there is a better helper to use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/32] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] x_tables: remove XT_TABLE_INFO_SZ and a dereference.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: Roman Khimov <khimov@xxxxxxxxx>
- RE: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: "Harout Hedeshian" <harouth@xxxxxxxxxxxxxx>
- Re: [PATCH 00/15] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: "Harout Hedeshian" <harouth@xxxxxxxxxxxxxx>
- Re: [PATCH] net: fix search limit handling in skb_find_text()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] x_tables: remove XT_TABLE_INFO_SZ and a dereference.
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 15/15] netfilter: bridge: adapt it to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 14/15] security: adapt it to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 13/15] netfilter: nf_tables: adapt it to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 07/15] netfilter: x_tables: adapt tables to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 12/15] netfilter: ebtables: adapt the filter and nat table to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 11/15] ipvs: adapt it to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 10/15] netfilter: defrag: add pernet hook support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 09/15] netfilter: synproxy: adapt IPv4 and IPv6 targets to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 08/15] netfilter: nf_conntrack: adapt IPv4 and IPv6 trackers to pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 03/15] netfilter: don't pull include/linux/netfilter.h from netns headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 06/15] netfilter: x_tables: adapt xt_hook_link() to support pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 04/15] netfilter: add pernet hook support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 05/15] netfilter: ipt_CLUSTERIP: adapt it to support pernet hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 02/15] netfilter: use forward declaration instead of including linux/proc_fs.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 01/15] net: include missing headers in net/net_namespace.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC 00/15] Netfilter pernet hook support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- [PATCH nf-next 3/3] netfilter: nf_tables_netdev: unregister hooks on net_device removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nf_tables: add nft_register_basechain() and nft_unregister_basechain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3, v2] netfilter: nf_tables: attach net_device to basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] net: fix search limit handling in skb_find_text()
- From: Roman I Khimov <khimov@xxxxxxxxx>
- Re: [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/15] ipv4: Pass struct net into ip_defrag and ip_check_defrag
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 11/15] nftables: Pass struct net in nft_pktinfo
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 12/15] nf_tables: Use pkt->net instead of computing net from the passed net_devices
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 13/15] nf_conntrack: Add a struct net parameter to l4_pkt_to_tuple
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 15/15] ipv6: Pass struct net into nf_ct_frag6_gather
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 09/15] x_tables: Pass struct net in xt_action_param
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 10/15] x_tables: Use par->net instead of computing from the passed net devices
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 08/15] tc: Simplify em_ipset_match
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 07/15] nftables: kill nft_pktinfo.ops
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 06/15] inet netfilter: Prefer state->hook to ops->hooknum
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 05/15] inet netfilter: Remove hook from ip6t_do_table, arp_do_table, ipt_do_table
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 04/15] ebtables: Simplify the arguments to ebt_do_table
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 03/15] netfilter: Use nf_hook_state.net
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 02/15] netfilter: Pass struct net into the netfilter hooks
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 01/15] netfilter: Kill unused copies of RCV_SKB_FAIL
- From: "Eric W. Biederman" <ebiederm@xxxxxxxxxxxx>
- [PATCH net-next 00/15] Simplify netfilter and network namespaces
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Felix Janda <felix.janda@xxxxxxxxx>
- [PATCH 15/15] netfilter: ipset: Fix coding styles reported by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/15] netfilter: ipset: Introduce RCU locking in list type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/15] netfilter: ipset: Introduce RCU locking in bitmap:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/15] netfilter:ipset Remove rbtree from hash:net,iface
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/15] netfilter: ipset: Make sure listing doesn't grab a set which is just being destroyed.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/15] netfilter: ipset: Introduce RCU locking in hash:* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/15] netfilter: ipset: Make sure we always return line number on batch
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/15] netfilter: ipset: Prepare the ipset core to use RCU at set level
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/15] netfilter: ipset: Permit CIDR equal to the host address CIDR in IPv6
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/15] netfilter: ipset: Fix cidr handling for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/15] netfilter: ipset: Check extensions attributes before getting extensions.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/15] netfilter: ipset: Check CIDR value only when attribute is given
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/15] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/15] netfilter: ipset: Use SET_WITH_*() helpers to test set extensions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/15] netfilter: ipset: Fix parallel resizing and listing of the same set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/15] netfilter: ipset: Use MSEC_PER_SEC consistently
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: regression: ip6: reduce warning noise
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Does arptables support adding new extensions dinamically like iptables does?
- From: "Roberto Santalla Fdez." <roobre@xxxxxxxxx>
- [PATCH iptables] xt_socket: add --mark option
- From: Harout Hedeshian <harouth@xxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_MATCHSOCKMARK flag and mark fields
- From: Harout Hedeshian <harouth@xxxxxxxxxxxxxx>
- Re: [RESEND PATCH V2] Add element count to hash headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH] remove unused 'numbytes'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context informationg
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RESEND PATCH V2] Add element count to hash headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] net: ip_fragment: remove BRIDGE_NETFILTER mtu special handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv7 4/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/4] netfilter: bridge: re-order check_hbh_len()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv6 2/4] netfilter: bridge: rename br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 1/4] netfilter: bridge: refactor frag_max_size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv4 3/3] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: bridge: re-order br_nf_pre_routing_finish_ipv6()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: bridge: refactor clearing BRNF_NF_BRIDGE_PREROUTING
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 4/4] netfilter: nf_tables: add nft_tee expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- =?y?q?=5BPATCH=20nf-next=203/4=5D=20netfilter=3A=20move=20generic=20TEE=20code=20from=20xtables=20to=20nf=5Ftee=5Fipv=7B4=2C6=7D=20modules?=
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/4] netfilter: xt_TEE: always allocate private area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/4] netfilter: Kconfig: get rid of parens around depends on
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: attach net_device to basechain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH v3 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxxxx>
- Re: nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nft rules processed in wrong network namespace
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- iptables nftables compat weirdness
- From: Andreas Schultz <aschultz@xxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch] ipvs: prevent some underflows
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: xtables: avoid percpu ruleset duplication
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: xtables: use percpu rule counters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: xtables-addons 64-bit counter patch
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: xtables-addons 64-bit counter patch
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nft netdev family bindings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] datatype: default to display bitmask in hexadecimal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] proto: use bitmask_type for comp flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Possible bug when bridging traffic we just SNATed and sent to another router
- From: Florian Westphal <fw@xxxxxxxxx>
- Possible bug when bridging traffic we just SNATed and sent to another router
- From: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
- [PATCH nft 5/9] netlink_linearize: generate concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 6/9] netlink: pad constant concat sub-expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 7/9] netlink_delinearize: introduce register translation helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 8/9] netlink_delinearize: handle relational and lookup concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 9/9] netlink: handle concat expressions in set data
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 3/9] netlink: pass expression to register allocation/release functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 4/9] netlink_linearize: use NFT_REG32 values internally
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 1/9] eval: prohibit variable sized types in concat expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 2/9] headers: sync headers for new register values
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 0/9] concat support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nft netdev family bindings
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next] net: ip_fragment: remove BRIDGE_NETFILTER mtu special handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: bridge: restore vlan tag when refragmenting
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [patch] ipvs: prevent some underflows
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- xtables-addons 64-bit counter patch
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] remove unused 'numbytes'
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] netlink_delinearize: restore listing of host byteorder set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: netlink multi-thread / libmnl / nfq
- From: Florian Westphal <fw@xxxxxxxxx>
- netlink multi-thread / libmnl / nfq
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 6/6 nft] tests: regression: fix warnings related to range listing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6 nft] tests: regression: reduce code duplication a bit on error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6 nft] netlink_delinearize: consolidate range printing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6 nft] netlink_delinearize: keep pointer to current statement from rule_pp_ctx
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6 nft] netlink_delinearize: pass ctx pointer to stmt_reject_postprocess()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6 nft] netlink_delinearize: add payload_match_expand()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6 nft] improvements for the range printing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netlink_delinearize: remove obsolete fixme
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] netlink_linearize: fix range cmp instruction generation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] ct: add maximum helper length value
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: [PATCH net] Netfilter fix for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH net] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] Netfilter fix for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH] Optimise nfq_queue_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] remove unused 'numbytes'
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Optimise nfq_queue_cb
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- [PATCH 00/11] Replace module_init with an alternate initcall in non modules
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- [PATCH 03/11] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH 0/4] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 71/98] include/uapi/linux/netfilter/xt_TEE.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 56/98] include/uapi/linux/netfilter.h: include in.h and in6.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 76/98] include/uapi/linux/netfilter/xt_recent.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 75/98] include/uapi/linux/netfilter/xt_sctp.h: use _Bool type, 1 for true and 0 for false
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 57/98] include/uapi/linux/netfilter_bridge.h: include in.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 63/98] include/uapi/linux/netfilter/xt_policy.h: include linux/in.h and linux/in6.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 68/98] include/uapi/linux/netfilter/ipset/ip_set_hash.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 70/98] include/uapi/linux/netfilter/xt_HMARK.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 73/98] include/uapi/linux/netfilter/xt_ipvs.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 74/98] include/uapi/linux/netfilter/xt_mac.h: include linux/if_ether.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 69/98] include/uapi/linux/netfilter/ipset/ip_set_list.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 67/98] include/uapi/linux/netfilter/ipset/ip_set_bitmap.h: include linux/netfilter/ipset/ip_set.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 60/98] include/uapi/linux/netfilter/xt_osf.h: include linux/ip.h and linux/tcp.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 72/98] include/uapi/linux/netfilter/xt_TPROXY.h: include linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 59/98] include/uapi/linux/netfilter: include linux/if.h in several headers
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCH 44/98] nf_conntrack_tuple_common.h: include linux/types.h and linux/netfilter.h
- From: Mikko Rapeli <mikko.rapeli@xxxxxx>
- [PATCHv7 4/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 3/4] netfilter: bridge: re-order check_hbh_len()
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv6 2/4] netfilter: bridge: rename br_parse_ip_options
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv2 1/4] netfilter: bridge: refactor frag_max_size
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv4 3/3] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 2/3] netfilter: bridge: re-order br_nf_pre_routing_finish_ipv6()
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 1/3] netfilter: bridge: refactor clearing BRNF_NF_BRIDGE_PREROUTING
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [RESEND PATCH V2] Add element count to hash headers
- From: Eric B Munson <emunson@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH conntrackd] expect: Fix wrong memset usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Patrick Schaaf <netdev@xxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- libnetfilter_queue multi-threaded nfq_handle shared or unique?
- From: Ryan Johnston <ryan@xxxxxxxxxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: Wen Congyang <wency@xxxxxxxxxxxxxx>
- Re: [PATCHv5 3/4] netfilter: bridge: rename br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv6 2/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv3 1/4] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: nf_tables: add netdev table to filter from ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: remove unused comefrom hookmask argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: remove unused comefrom hookmask argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: conntrack-tools bugs
- From: Paul Aitken <paitken@xxxxxxxxxxx>
- [PATCH] Revert "netfilter: ensure number of counters is >0 in do_replace()"
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCH 4/4] netfilter: bridge: refactor frag_max_size
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv5 3/4] netfilter: bridge: rename br_parse_ip_options
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv6 2/4] netfilter: bridge: forward IPv6 fragmented packets
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- [PATCHv3 1/4] netfilter: bridge: detect NAT66 correctly and change MAC address
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log PATCH 2/3] Convert kernel to stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_conntrack PATCH 1/2] Sync with kernel headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: REOUTE target extenstion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: REOUTE target extenstion
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH v3] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- REOUTE target extenstion
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- [PATCH -next 2/2] netfilter: store rules per NUMA node instead of per cpu
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next 1/2] netfilter: iptables: separate counters from iptables rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add netdev family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddi Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- Re: [PATCH] libnetfitler_queue: receive security context info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ebtables not working correctly with 1086bbe97a074844188c6c988fa0b1a98c3ccbb9
- From: Florian Westphal <fw@xxxxxxxxx>
- ebtables not working correctly with 1086bbe97a074844188c6c988fa0b1a98c3ccbb9
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Simon Horman <simon.horman@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Added vlan matching extension
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] nfnetlink_queue: add security context information
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1] Added a vlan id and pcp matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Added vlan matching extension
- From: Eddie Linder <eddi@xxxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- Re: [libmnl PATCH 2/2] examples/netfilter: Include <endian.h> for be64toh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libmnl] example: netfilter: get rid of aligned_be64 definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] nfnetlink_queue: add security context information
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- Re: [PATCH] Security context information added to netfilter_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3 nf-next] netfilter: nf_tables: allow to bind table to net_device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3 nf-next] nf_tables support at ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3 nf-next] netfilter: nf_tables: add netdev table to filter from ingress
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] table: add netdev family support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3 nf-next] netfilter: default CONFIG_NETFILTER_INGRESS to y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Security context information added to netfilter_queue
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] libnetfitler_queue: receive security context info
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH] Security context information added to netfilter_queue
- From: Roman Kubiak <r.kubiak@xxxxxxxxxxx>
- [PATCH -next] netfilter: remove unused comefrom hookmask argument
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/3] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ensure number of counters is >0 in do_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Harden iptables memory allocator
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- Re: Harden iptables memory allocator
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- Mangling packets & routing in kernels>3.17
- From: aikipooh@xxxxxxxxx (Юрий Пухальский)
- Harden iptables memory allocator
- From: Loganaden Velvindron <loganaden@xxxxxxxxx>
- [PATCH nf] netfilter: conntrack: warn the user if there is a better helper to use
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH] cthelper: don't pass up a 0 length queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables PATCH 1/2] extensions: Use stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [conntrack-tools PATCH 1/6] configure: Add AM_PROG_AR to silence automake warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: netfilter: ensure number of counters is >0 in do_replace()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: "Dr. David Alan Gilbert" <dgilbert@xxxxxxxxxx>
- Re: [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Conntrack to support secondary end points
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH COLO-Frame v5 00/29] COarse-grain LOck-stepping(COLO) Virtual Machines for Non-stop Service
- From: zhanghailiang <zhang.zhanghailiang@xxxxxxxxxx>
- [PATCH] cthelper: don't pass up a 0 length queue
- From: Chas Williams III <Charles.Williams@xxxxxxxxxxx>
- Re: [libnetfilter_cttimeout PATCH] Sync with kernel headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnetfilter_log PATCH] Make it possible to build libipulog
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable] netfilter: nf_tables: fix error handling of rule replacement
- From: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
- Re: [arptables PATCH 1/2] Use stdint types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -nf] Revert "netfilter: bridge: query conntrack about skb dnat"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nfnetlink_{log,queue}: Register pernet in first place
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Fix kernel panic in nfulnl_rcv_nl_event
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- netfilter: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: iptables: ensure number of counters is >0 in do_replace()
- From: Florian Westphal <fw@xxxxxxxxx>
- iptables: ensure number of counters is >0 in do_replace()
- From: Dave Jones <davej@xxxxxxxxxxxxxxxxx>
- Re: [PATCH -stable] netfilter: Zero the tuple in nfnl_cthelper_parse_tuple()
- From: Jiri Slaby <jslaby@xxxxxxx>
- Re: [PATCH 00/21] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 00/21] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/21] netfilter: ipset: Fix sparse warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/21] netfilter: ipset: make ip_set_get_ip*_port to use skb_network_offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/21] netfilter: ipset: No need to make nomatch bitfield
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/21] netfilter: ipset: Return ipset error instead of bool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/21] netfilter: ipset: Check IPSET_ATTR_PORT only once
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/21] netfilter: ipset: Use HOST_MASK literal to represent host address CIDR len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/21] netfilter: ipset: Check for comment netlink attribute length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/21] netfilter: ipset: Preprocessor directices cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/21] netfilter: ipset: Return bool values instead of int
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/21] netfilter: ipset: Fix ext_*() macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/21] netfilter: ipset: deinline ip_set_put_extensions()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/21] netfilter: x_tables: add context to know if extension runs from nft_compat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/21] netfilter: xt_MARK: Add ARP support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/21] netfilter: Use correct return for seq_show functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/21] netfilter: ipset: Give a better name to a macro in ip_set_core.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/21] netfilter: bridge: free nf_bridge info on xmit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/21] netfilter: bridge: neigh_head and physoutdev can't be used at same time
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/21] netfilter: ipset: Fix hashing for ipv6 sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/21] netfilter: ipset: Use better include files in xt_set.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/21] netfilter: ipset: Improve preprocessor macros checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/21] netfilter: ipset: Properly calculate extensions offsets and total length
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: Use correct return for seq_show functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]