Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH] dtype: remove unnecessary icmp* parse/print functions
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [conntrack-tools PATCH] Fix file descriptor leak in channel_open() on error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] dtype: remove unnecessary icmp* parse/print functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [conntrack-tools PATCH] Fix file descriptor leak in channel_open() on error
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- conntrack-tools: cli test script broken
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: conntrack: route cache for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: return -EFAULT directly when counters_ptr is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/2] netfilter: conntrack: route cache for forwarded connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC ebtables-compat PATCH] extensions: add ebt 802_3 extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC ebtables-compat PATCH] extensions: add ebt 802_3 extension
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: nfnetlink: remove redundant variable nskb
- From: Duan Jiong <duanj.fnst@xxxxxxxxxxxxxx>
- [GIT PULL nf-next] Second round of IPVS Updates for v3.19
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next] ipvs: uninitialized data with IP_VS_IPV6
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [patch v2] ipvs: uninitialized data with IP_VS_IPV6
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nft 2/3] netlink_delinearize: fix listing of set members in host byteorder using integer_type
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 2/3] netlink_delinearize: fix listing of set members in host byteorder using integer_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/3] netlink_delinearize: fix listing of set members in host byteorder using integer_type
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch v2] ipvs: uninitialized data with IP_VS_IPV6
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [patch v2] ipvs: uninitialized data with IP_VS_IPV6
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf-next 1/2] netfilter: conntrack: cache route for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] rule: fix segmentation faults on kernels without nftables support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] netlink_delinearize: fix listing of set members in host byteorder using integer_type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] netlink: fix listing of range set elements in host byteorder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] src: generate set members using integer_type in the appropriate byteorder
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] src: add big endian integer datatype
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 1/2] src: add big endian integer datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] src: add big endian integer datatype
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft 2/2] netlink: fix listing of range set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: add big endian integer datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: conntrack: cache route for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: use conntrack rtcache if available
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/2] netfilter: conntrack: route cache for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch v2] ipvs: uninitialized data with IP_VS_IPV6
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] netfilter: Fix build for NETFILTER_XT_TARGET_REDIRECT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Getting started
- From: Rahul Radhakrishnan <rahulnitt93@xxxxxxxxx>
- [patch v2] ipvs: uninitialized data with IP_VS_IPV6
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH] netfilter: Fix build for NETFILTER_XT_TARGET_REDIRECT
- From: Guenter Roeck <linux@xxxxxxxxxxxx>
- Re: [PATCH 00/12] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 1/1] bridge: detect NAT66 correctly and change MAC address
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH nft v2] payload: fix endianess issue in payload_expr_pctx_update()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] ipvs: uninitialized data with IP_VS_IPV6
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: Reversed byte order issue with nft ?
- From: leroy christophe <christophe.leroy@xxxxxx>
- Re: [PATCH nft v2] payload: fix endianess issue in payload_expr_pctx_update()
- From: leroy christophe <christophe.leroy@xxxxxx>
- Re: [patch] ipvs: uninitialized data with IP_VS_IPV6
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nft v2] payload: fix endianess issue in payload_expr_pctx_update()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: conntrack: adjust nf_conntrack_buckets default value
- From: Jesper Dangaard Brouer <netdev@xxxxxxxxxx>
- Re: Reversed byte order issue with nft ?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] payload: fix endianess issue in payload_expr_pctx_update()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: conntrack: adjust nf_conntrack_buckets default value
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Reversed byte order issue with nft ?
- From: leroy christophe <christophe.leroy@xxxxxx>
- Netdev 0.1 Call for Proposals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: nf_tables_bridge: export nft_reject_ip*hdr_validate functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: conntrack: avoid zeroing timer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: nf_tables_bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: nf_log_ipv6: correct typo in module description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: ipset: Indicate when /0 networks are supported
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: ipset: Support updating extensions when the set is full
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: ipset: Explicitly add padding elements to hash:net, net and hash:net, port, net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: ipset: Simplify cidr handling for hash:*net* types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] datatype: fix name of icmp* code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] scanner: fix reading of really long line
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 12/14] netfilter: ipset: styles warned by checkpatch.pl fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] datatype: fix name of icmp* code
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 08/14] netfilter: ipset: Introduce RCU locking instead of rwlock per set in the core
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 07/14] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [patch] ipvs: uninitialized data with IP_VS_IPV6
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH] netfilter: return -EFAULT directly when counters_ptr is NULL
- From: Duan Jiong <duanj.fnst@xxxxxxxxxxxxxx>
- [nft PATCH] datatype: fix name of icmp* code
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: feature request: snat to @random_ip_from_this_set and negative set lookups
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- feature request: snat to @random_ip_from_this_set and negative set lookups
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 12/14] netfilter: ipset: styles warned by checkpatch.pl fixed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/14] netfilter: ipset: Introduce RCU locking instead of rwlock per set in the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 07/14] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module
- From: Or Gerlitz <ogerlitz@xxxxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: cache route for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: cache route for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ipset website
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Out-of-bounds access in nfnetlink_bind
- From: Andrey Ryabinin <ryabinin.a.a@xxxxxxxxx>
- Out-of-bounds access in nfnetlink_bind
- From: Dmitry Vyukov <dvyukov@xxxxxxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: cache route for forwarded connections
- From: Julian Anastasov <ja@xxxxxx>
- Re: [RFC PATCH] netfilter: conntrack: cache route for forwarded connections
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [RFC PATCH] netfilter: conntrack: cache route for forwarded connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] scanner: fix reading of really long line
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [nft PATCH] scanner: fix reading of really long line
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5] scanner: don't bug on too large values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/5] tests: regression: any/ct: remove wrong output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] tests: regression: fix "Listing is broken" instead of output mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] tests: regression: fix "Listing is broken" instead of output mismatch
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/5] meta: set base field on clones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/5] netlink_delinearize: clone on netlink_get_register(), release previous on _set()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types
- From: Jesper Dangaard Brouer <netdev@xxxxxxxxxx>
- Re: ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- Re: ipset website
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/14] netfilter: ipset: styles warned by checkpatch.pl fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/14] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/14] netfilter: ipset: Simplify cidr handling for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 13/14] netfilter: ipset: Fix parallel resizing and listing of the same set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/14] netfilter: ipset: Fix sparse warning
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/14] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/10] ipset patches for nf-next, v2
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/14] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/14] netfilter: ipset: Introduce RCU locking in the bitmap types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/14] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/14] netfilter: ipset: Introduce RCU locking instead of rwlock per set in the core
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/14] netfilter: ipset: Indicate when /0 networks are supported
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- Re: ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- [nft PATCH] scanner: fix reading of really long line
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ipset website
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- Re: ipset website
- From: Jan Engelhardt <jengelh@xxxxxxx>
- ipset website
- From: Mike Wright <nobody@xxxxxxxxxxxxxxxxxxxx>
- [PATCH nft 2/2 v2] datatype: relax datatype check in integer_type_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2 v2] datatype: fix crash when using basetype instead of symbolic constants
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] datatype: relax datatype check in integer_type_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] bridge: Fix NAT66ed IPv6 packets not being bridged correctly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_log_ipv6: correct typo in module description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] bridge: Fix NAT66ed IPv6 packets not being bridged correctly
- From: Bernhard Thaler <bernhard.thaler@xxxxxxxx>
- Re: [PATCH nft] datatype: fix crash when using basetype instead of symbolic constants
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: issue with nftable - goto : Operation not supported
- From: leroy christophe <christophe.leroy@xxxxxx>
- [PATCH nft] datatype: fix crash when using basetype instead of symbolic constants
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 2/2 v4] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 1/2 v4] bridge: export nft_reject_ip*hdr_validate functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: conntrack: avoid zeroing timer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- travelling...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] evaluate: reject: fix crash on NULL location with bridge and tcp reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v2] evaluate: reject: fix crash on NULL location with bridge and tcp reset
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Andreas Ruprecht <rupran@xxxxxxxxxxxx>
- Re: [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Andreas Ruprecht <rupran@xxxxxxxxxxxx>
- [PATCH nf 2/2 v4] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf 1/2 v4] bridge: export nft_reject_ip*hdr_validate functions
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Custom Module for Userspace Proxy
- From: NuSkooler <nuskooler@xxxxxxxxx>
- Re: [PATCH 2/2 nf] netfilter: conntrack: fix race between confirmation and flush
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH net] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse"
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental6 PATCH v2] iptables: xtables-eb: fix renaming of chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nf] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: named vmaps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] segfault, bitmask datatype without parse() function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH] evaluate: reject: fix a crash to use tcp reset with network context in bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] segfault, bitmask datatype without parse() function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions
- From: Andreas Ruprecht <rupran@xxxxxxxxxxxx>
- [PATCH nf 2/2 v3] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf 1/2 v3] bridge: export nft_reject_ip*hdr_validate functions
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft] segfault, bitmask datatype without parse() function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/2 nf] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse"
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH nft] src: restore nft --debug and add missing \
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 2/2 v2] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2 nf] netfilter: conntrack: fix race between confirmation and flush
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: add missing \ in src/Makefile.am (AM_CPPFLAGS)
- From: David Kozub <zub.272@xxxxxxxxx>
- Fwd: [Bug 88841] New: Kernel crash after a few minutes
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [ANNOUNCE] ipset 6.24 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 00/17] netfilter/ipvs updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/10] netfilter: ipset: styles warned by checkpatch.pl fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/10] netfilter: ipset: Fix parallel resizing and listing of the same set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/10] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/10] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/10] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/10] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/10] netfilter: ipset: Simplify cidr handling for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/10] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/10] netfilter: ipset: Indicate when /0 networks are supported
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/10] netfilter: ipset: Support updating extensions when the set is full
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft PATCH] evaluate: reject: fix a crash to use tcp reset with network context in bridge
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf 2/2 v2] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf 1/2 v2] bridge: export nft_reject_ip*hdr_validate functions
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: named vmaps
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ebtables-compat-experimental6 PATCH v2] iptables: xtables-eb: fix renaming of chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH -next] netfilter: conntrack: drop new packets that lose race against get_next_corpse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH next] netfilter: conntrack: avoid zeroing timer
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 00/17] netfilter/ipvs updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/17] netfilter: refactor NAT redirect IPv4 to use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/17] netfilter: nf_log: Introduce nft_log_dereference() macro
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/17] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/17] netfilter: fix spelling errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/17] ipvs: remove unnecessary assignment in __ip_vs_get_out_rt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/17] netfilter: nf_log: fix sparse warning in nf_logger_find_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/17] netfilter: fix unmet dependencies in NETFILTER_XT_TARGET_REDIRECT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/17] netfilter: nfnetlink_log: remove unnecessary error messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/17] netfilter: fix various sparse warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/17] netfilter: nft_redir: fix sparse warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/17] netfilter: nf_conntrack_h323: lookup route from proper net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/17] netfilter: xt_connlimit: honor conntrack zone if available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/17] netfilter: nft_meta: add cgroup support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/17] netfilter: Deletion of unnecessary checks before two function calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/17] netfilter: nfnetlink_log: Make use of pr_fmt where applicable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/17] netfilter: log: protect nf_log_register against double registering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/17] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: named vmaps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] iptables: nft: create a separated object update type to rename chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nft compilation issues
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nft compilation issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] iptables: nft: create a separated object update type to rename chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- nft compilation issues
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft-tests 1/2] tests: regression: don't use -nnn for non-list commands
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft-tests 2/2] tests: regression: any/meta.t: fix bogus error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] parser: restore named vmap
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] src: restore nft --debug
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- Re: [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Andres Freund <andres@xxxxxxxxxxx>
- Re: [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- Re: catch netlink event when create/delete ipset
- From: Vasiliy Tolstov <v.tolstov@xxxxxxxxx>
- Re: catch netlink event when create/delete ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- catch netlink event when create/delete ipset
- From: Vasiliy Tolstov <v.tolstov@xxxxxxxxx>
- [PATCH v2 9/9] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- [PATCH v2 0/9] Replace smp_read_barrier_depends() with lockless_derefrence()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- RE: nftables error compile current git
- From: Marco Berizzi <pupilla@xxxxxxxxxxx>
- netfilter: xt_connlimit: it could get the accurate conn count with heavy traffic and multi cores
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- named vmaps
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- Re: [PATCH 0/2] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: nftables error compile current git
- From: Giorgio <giorgio.nicole@xxxxxxxx>
- Re: x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf 2/2] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] buffer: include stdarg header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nfnetlink: fix insufficient validation in nfnetlink_bind
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] buffer: include stdarg header
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: nftables error compile current git
- From: Marco Berizzi <pupilla@xxxxxxxxxxx>
- Re: [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls
- From: Julian Anastasov <ja@xxxxxx>
- Re: nftables error compile current git
- From: Giorgio <giorgio.nicole@xxxxxxxx>
- Re: [PATCH] build: add and use a symbol version map
- From: Jan Engelhardt <jengelh@xxxxxxx>
- nftables error compile current git
- From: Marco Berizzi <pupilla@xxxxxxxxxxx>
- Re: [PATCH] build: add and use a symbol version map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] use NF_BR_PRI_BRNF in NF_HOOK_THRESH
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH] use NF_BR_PRI_BRNF in NF_HOOK_THRESH
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls
- From: SF Markus Elfring <elfring@xxxxxxxxxxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Repost] Fix userspace compilation of ip_tables.h/ip6_tables.h in C++ mode
- From: Matthew Weber <matthew.weber@xxxxxxxxxxxxxxxxxxx>
- Re: nftables in network name spaces breaks networking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [ebtables-compat PATCH] build ebtables extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] ebtables-compat: include /etc/ethertypes in tarball
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables/xtables-eb.c: delete extra 'policy' printf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [netfileter] nf_conntrack_h323: lookup route from proper net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: xt_connlimit: honor conntrack zone if available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH RFC] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- [PATCH RFC 0/1] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- [ebtables-compat-experimental5 PATCH] iptables/xtables-eb.c: delete extra 'policy' printf
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftnl PATCH] examples: nft-rule-parse-add: fix wrong buffer usage when building rule header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] examples: nft-rule-parse-add: fix wrong buffer usage when building rule header
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [BUG] index is out of range for nfnl_group2type[]
- From: Andrey Ryabinin <a.ryabinin@xxxxxxxxxxx>
- [PATCH RESEND] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [BUG] libnftnl examples/nft-rule-parse-add.c hangs
- From: Ian Bishop <ian@xxxxxxxxx>
- Re: [PATCH 0/8] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ebtables-compat-experimental5 PATCH] ebtables-compat: include /etc/ethertypes in tarball
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [BUG] index is out of range for nfnl_group2type[]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: don't bug on unknown events
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: nft_masq: fix uninitialized range in nft_masq_{ipv4, ipv6}_eval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: ipset: small potential read beyond the end of buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: nft_compat: use current net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: nft_compat: relax chain type validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] ipvs: Keep skb->sk when allocating headroom on tunnel xmit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nf_tables: restore synchronous object release from commit/abort
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nft_compat: use the match->table to validate dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat PATCH] build ebtables extensions
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH -next] netfilter: xt_connlimit: honor conntrack zone if available
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/2] bridge: set the pktinfo for IPv4/IPv6 traffic
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf 1/2] bridge: export nft_reject_ip*hdr_validate functions
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [GIT PULL nf] Second Round of IPVS Fixes for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: Mark Brown <broonie@xxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [RFC PATCH 00/16] Replace smp_read_barrier_depends() with lockless_derefrence()
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: Mark Brown <broonie@xxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC PATCH 00/16] Replace smp_read_barrier_depends() with lockless_derefrence()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- [PATCH 15/16] netfilter: Replace smp_read_barrier_depends() with lockless_dereference()
- From: Pranith Kumar <bobby.prani@xxxxxxxxx>
- Re: x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24
- From: Ronny Janssen <ronny.janssen@xxxxxxxxx>
- Re: x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Aw: Re: [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'.
- From: giorgio.nicole@xxxxxxxx
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Jörg Marx <joerg.marx@xxxxxxxxxxx>
- x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24
- From: Ronny Janssen <ronny.janssen@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: Mark Brown <broonie@xxxxxxxxxx>
- Re: [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'.
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'.
- From: Giorgio Dal Molin <giorgio.nicole@xxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] [netfileter] nf_conntrack_h323: lookup route from proper net namespace
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat PATCH] build ebtables extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf] Second Round of IPVS Fixes for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: arm64 allmodconfig failures in nft_reject_bridge.c
- From: Mark Brown <broonie@xxxxxxxxxx>
- Re: [ebtables-compat-experimental5 PATCH] iptables/nft-bridge.c: fix inversion of builtin matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: fix various sparse warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: fix various sparse warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- [BUG] index is out of range for nfnl_group2type[]
- From: Andrey Ryabinin <a.ryabinin@xxxxxxxxxxx>
- Re: [PATCH 3/3] autotools conversion: added autotools support for the 'files' subdir.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] autotools conversion: added autotools support for the 'doc' subdir.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] autotools conversion: added a missing 'Makefile.am' under 'include/linux/netfilter/'.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] autotools conversion: added autotools support for the 'doc' subdir.
- From: Giorgio Dal Molin <giorgio.nicole@xxxxxxxx>
- [PATCH 3/3] autotools conversion: added autotools support for the 'files' subdir.
- From: Giorgio Dal Molin <giorgio.nicole@xxxxxxxx>
- [PATCH 1/3] autotools conversion: added a missing 'Makefile.am' under 'include/linux/netfilter/'.
- From: Giorgio Dal Molin <giorgio.nicole@xxxxxxxx>
- [PATCH 0/3] autotools conversion: forgotten Makefile.am, 'doc' and 'files'
- From: Giorgio Dal Molin <giorgio.nicole@xxxxxxxx>
- Aw: Re: [PATCH 1/1] autotools conversion fixups
- From: giorgio.nicole@xxxxxxxx
- [ebtables-compat-experimental5 PATCH] iptables/nft-bridge.c: fix inversion of builtin matches
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH -next 2/2] seq_putc: Convert to return void and convert uses too.
- From: Corey Minyard <minyard@xxxxxxx>
- Re: [RFC nft PATCH] src: add import operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] build: add and use a symbol version map
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH -next 2/2] seq_putc: Convert to return void and convert uses too.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] autotools conversion: added autotools support for the 'files' subdir.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] autotools conversion: added autotools support for the 'doc' subdir.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_redir: fix sparse warnings: cast to restricted __be32
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/1] autotools conversion fixups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] arptables: remove dead dynamic hooks code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_redir: fix sparse warnings: cast to restricted __be32
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_redir: fix sparse warnings: cast to restricted __be32
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: nft_redir: fix sparse warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: fix unmet dependencies in NETFILTER_XT_TARGET_REDIRECT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Jörg Marx <joerg.marx@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [GIT PULL nf] IPVS Fixes for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf] ipvs: Keep skb->sk when allocating headroom on tunnel xmit
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] Second Round of IPVS Fixes for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [iptables PATCH] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables PATCH] iptables/nft-shared.c: kill add_*() invflags parameter
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH -next 2/2] seq_putc: Convert to return void and convert uses too.
- From: Petr Mladek <pmladek@xxxxxxx>
- [PATCH 3/3] netfilter: nf_tables: restore synchronous object release from commit/abort
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nft_compat: relax chain type validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: nft_compat: use the match->table to validate dependencies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] arptables: remove dead dynamic hooks code
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH -nf] nft: masq: fix uninitialized range in nft_masq_{ipv4,ipv6}_eval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ebtables-compat PATCH] build ebtables extensions
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH -next 2/2] seq_putc: Convert to return void and convert uses too.
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH -next 0/2] seq: Convert seq_puts and seq_putc to return void
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] arptables: disable dlfcn.h include
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental3 PATCH 2/2] nft-bridge: fix printing of inverted protocols, addresses
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] nft-arp: fix inversion of matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat-experimental3 PATCH 1/2] nft-bridge: fix inversion of matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/3] parser: allow both nat_flags and port specification in redirect
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/3] tests/regression: redirect: fix invalid syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/3] tests/regression: masquerade: fix invalid syntax
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] From fryasu: Trim kernel struct to allow deletion for TEE targets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-compat: homogenize error messages with 'R' option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnf PATCH] expr: meta: Add cgroup support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] src: Add cgroup support in meta expresion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_meta: add cgroup support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] autotools conversion: added autotools support for the 'files' subdir.
- From: Giorgio Dal Molin <giorgio.dal.molin@xxxxxxxxxxx>
- [PATCH 0/1] autotools conversion: added autotools support for the 'files' subdir.
- From: Giorgio Dal Molin <giorgio.dal.molin@xxxxxxxxxxx>
- [PATCH 1/1] autotools conversion: added autotools support for the 'doc' subdir.
- From: Giorgio Dal Molin <giorgio.dal.molin@xxxxxxxxxxx>
- [PATCH 0/1] autotools conversion: added autotools support for the 'doc' subdir.
- From: Giorgio Dal Molin <giorgio.dal.molin@xxxxxxxxxxx>
- [PATCH 0/1] autotools conversion: added autotools support for the 'doc' subdir.
- From: Giorgio Dal Molin <giorgio.dal.molin@xxxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 3/3] expr: data_reg: use 'reg' instead of 'data_reg'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 2/3 v2] src: consolidate XML/JSON exportation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl 1/3] expr: nat: use 'nat_type' instead of 'type' in the parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] src: consolidate XML/JSON exportation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] src: consolidate XML/JSON exportation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] autotools conversion fixups
- From: giorgio.nicole@xxxxxxxx
- [PATCH] From fryasu: Trim kernel struct to allow deletion for TEE targets
- From: Loganaden Velvindron <logan@xxxxxxxxxxxx>
- How to debug libiptc and mechanism for exchanging information between user space and kernel space
- From: Nguyen Duong Tuan <hoang.su.tk@xxxxxxxxx>
- [ebtables-compat-experimental3 PATCH 2/2] nft-bridge: fix printing of inverted protocols, addresses
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [ebtables-compat-experimental3 PATCH 1/2] nft-bridge: fix inversion of matches
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [iptables PATCH] nft-arp: fix inversion of matches
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] arptables: disable dlfcn.h include
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCH nft 5/5] build: autotools conversion
- From: Giorgio <giorgio.nicole@xxxxxxxx>
- [PATCH] netfilter: nft_compat: use current net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nf] nft: masq: fix uninitialized range in nft_masq_{ipv4,ipv6}_eval
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [nft PATCH 3/3] parser: allow both nat_flags and port specification in redirect
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 1/3] tests/regression: masquerade: fix invalid syntax
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 2/3] tests/regression: redirect: fix invalid syntax
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- re: netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: "Bill Bonaparte" <programme110@xxxxxxxxx>
- [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nft 5/5] build: autotools conversion
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft 0/5] autotools conversion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5] build: autotools conversion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/5] include: add cli.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] rename parser.y to parser_bison.y
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/5] build: use PKG_CHECK_MODULES to check for libmnl and libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/5] build: use AC_PROG_YACC and AM_PROG_LEX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nfnetlink_log: improve error handling on __build_packet_message()
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [nft PATCH v2] nft: don't resolve hostnames by default
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 3/3] netfilter: nfnetlink_log: Make use of pr_fmt where applicable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: nfnetlink_log: improve error handling on __build_packet_message()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nfnetlink_log: remove unnecessary error messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] nft: don't resolve hostnames by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v2] nft: don't resolve hostnames by default
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: Remove checks of seq_printf() return values
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [PATCH] iptables-compat: homogenize error messages with 'R' option
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: recent module
- From: Sven-Haegar Koch <haegar@xxxxxxxxx>
- Re: [PATCH] Make_global.am: Don't include host headers
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [Repost] Fix userspace compilation of ip_tables.h/ip6_tables.h in C++ mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [GIT PULL nf] IPVS Fixes for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v4 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v4 3/3] Make use of pr_fmt where applicable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] extensions: devgroup: fix showing and saving of dst-group
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] utils: indicate file and line on memory allocation errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFA][PATCH 4/8] netfilter: Remove checks of seq_printf() return values
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [Repost] Fix userspace compilation of ip_tables.h/ip6_tables.h in C++ mode
- From: Matthew Weber <matthew.weber@xxxxxxxxxxxxxxxxxxx>
- Re: netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: "billbonaparte" <programme110@xxxxxxxxx>
- Re: [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH] src: Add cgroup support in meta expresion
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH] netfilter: nft_meta: add cgroup support
- From: Ana Rey <anarey@xxxxxxxxx>
- [libnftnf PATCH] expr: meta: Add cgroup support
- From: Ana Rey <anarey@xxxxxxxxx>
- recent module
- From: Pietro Paolini <pulsarpietro@xxxxxxx>
- Re: [PATCH] netfilter: nft_reject_bridge: Fix powerpc build error
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_reject_bridge: fix missing declaration of csum_ipv6_magic
- From: Jeff Mahoney <jeffm@xxxxxxxx>
- [PATCH] netfilter: nft_reject_bridge: Fix powerpc build error
- From: Guenter Roeck <linux@xxxxxxxxxxxx>
- Re: bug report: use after free bug leading to kernel panic
- From: Mathias Krause <minipli@xxxxxxxxxxxxxx>
- Re: iptables/ipset "-m set" alignment problem 64bit kernel 32bit userspace
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: iptables/ipset "-m set" alignment problem 64bit kernel 32bit userspace
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: iptables/ipset "-m set" alignment problem 64bit kernel 32bit userspace
- From: Florian Westphal <fw@xxxxxxxxx>
- iptables/ipset "-m set" alignment problem 64bit kernel 32bit userspace
- From: Sven-Haegar Koch <haegar@xxxxxxxxx>
- Re: bug report: use after free bug leading to kernel panic
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: bug report: use after free bug leading to kernel panic
- From: Mathias Krause <minipli@xxxxxxxxxxxxxx>
- Re: bug report: use after free bug leading to kernel panic
- From: eric gisse <jowr.pi@xxxxxxxxx>
- Re: bug report: use after free bug leading to kernel panic
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/6] netfilter/ipvs fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- bug report: use after free bug leading to kernel panic
- From: eric gisse <jowr.pi@xxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tables_bridge: update hook_mask to allow {pre,post}routing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: nft_reject_bridge: restrict reject to prerouting and input
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] netfilter: nf_reject_ipv6: split nf_send_reset6() in smaller functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: nf_reject_ipv4: split nf_send_reset() in smaller functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] netfilter: nft_reject_bridge: don't use IP stack to reject traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] ipvs: Avoid null-pointer deref in debug code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] netfilter/ipvs fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS Fixes for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_log: fix sparse warning in nf_logger_find_get()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-compat: homogenize error messages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ebtables-compat PATCH 1/2] nft-shared: rework inversion of matches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: fix spelling errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 1/3] netfilter: log: protect nf_log_register against double registering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] Introduce nft_log_dereference() macro
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next] IPVS Updates for v3.19
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v3] src: add support for nft_redir expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] src: add support for nft_redir expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v3 2/2] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v3 1/2] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v2 1/3] netfilter: refactor NAT redirect IPv4 to use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: devgroup: fix showing and saving of dst-group
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: [nft PATCH v2] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables-compat: homogenize error messages
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH net-next] netfilter: fix spelling errors
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFA][PATCH 2/8] netfilter: Remove return values for print_conntrack callbacks
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [RFA][PATCH 3/8] netfilter: Convert print_tuple functions to return void
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [RFA][PATCH 4/8] netfilter: Remove checks of seq_printf() return values
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- Re: nf_reject_ipv4: module license 'unspecified' taints kernel
- From: Benjamin Tissoires <benjamin.tissoires@xxxxxxxxx>
- Re: [ebtables-compat PATCH] extensions: libebt_log
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [ebtables-compat PATCH] extensions: libebt_log
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [ebtables-compat PATCH] build ebtables extensions
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH v3 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v4 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v4 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v4 1/3] netfilter: log: protect nf_log_register against double registering
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v3 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v3 2/3] Do error handling if __build_packet_message fails
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v2] Introduce nft_log_dereference() macro
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v3 1/3] netfilter: log: protect nf_log_register against double registering
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- nftables in network name spaces breaks networking
- From: Ed Tomlinson <edt@xxxxxx>
- Re: [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH] Make_global.am: Don't include host headers
- From: Baruch Siach <baruch@xxxxxxxxxx>
- Re: [PATCH v2] add missing ipset_parse_tcp_udp_port to libipset.map
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] libipset: Bump lib version and update map file
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ebtables-compat PATCH 1/2] nft-shared: rework inversion of matches
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [ebtables-compat PATCH 2/2] nft-bridge: fix printing of inverted protocols, addresses
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 0/7] seq_printf cleanups
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 0/7] seq_printf cleanups
- From: Steven Rostedt <rostedt@xxxxxxxxxxx>
- [PATCH 3/5] netfilter: nf_reject_ipv6: split nf_send_reset6() in smaller functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: nft_reject_bridge: restrict reject to prerouting and input
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: nf_tables_bridge: update hook_mask to allow {pre,post}routing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nft_reject_bridge: don't use IP stack to reject traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nf_reject_ipv4: split nf_send_reset() in smaller functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] bridge reject fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH v2 2/3] netfilter: log: protect nf_log_register against double registering
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 1/3] Introduce nft_log_dereference() macro
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: Florian Westphal <fw@xxxxxxxxx>
- netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: "billbonaparte" <programme110@xxxxxxxxx>
- netfilter: nf_conntrack: there maybe a bug in __nf_conntrack_confirm, when it race against get_next_corpse
- From: "billbonaparte" <programme110@xxxxxxxxx>
- [PATCH nf] ipvs: Avoid null-pointer deref in debug code
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] IPVS Fixes for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next] ipvs: remove unnecessary assignment in __ip_vs_get_out_rt
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS Updates for v3.19
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 0/8] Netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 2/3] netfilter: log: protect nf_log_register against double registering
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] Introduce nft_log_dereference() macro
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: ipset: off by one in ip_set_nfnl_get_byindex()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: nf_log: account for size of NLMSG_DONE attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nf_log: release skbuff on nlmsg put failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: nft_compat: fix wrong target lookup in nft_target_select_ops()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] bridge: Do not compile options in br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nf_tables: check for NULL in nf_tables_newchain pcpu stats allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nfnetlink_log: fix maximum packet length logged to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: nf_conntrack: allow server to become a client in TW handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH] netfilter: nft_compat: fix wrong target lookup in nft_target_select_ops()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Kernel Bug 86261] Ipset add/restore slowed to a crawl in kernel 3.17 (and 3.17.1)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH netfilter] Fix Unknown symbols in nf_reject_ipvX modules
- From: Li Zhong <zhong@xxxxxxxxxxxxxxxxxx>
- Re: [Kernel Bug 86261] Ipset add/restore slowed to a crawl in kernel 3.17 (and 3.17.1)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [Kernel Bug 86261] Ipset add/restore slowed to a crawl in kernel 3.17 (and 3.17.1)
- From: Thomas Graf <tgraf@xxxxxxx>
- Re: [Kernel Bug 86261] Ipset add/restore slowed to a crawl in kernel 3.17 (and 3.17.1)
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nf_tables PATCH] netfilter: nft_compat: fix wrong target lookup in nft_target_select_ops()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [Kernel Bug 86261] Ipset add/restore slowed to a crawl in kernel 3.17 (and 3.17.1)
- From: Kim N <spam1@xxxxxxxxxx>
- iptables doesn't match udp rule
- From: "Ralf Schwarzmaier" <ralf@xxxxxxxxxxxxx>
- Re: [PATCH] add missing ipset_parse_tcp_udp_port to libipset.map
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v2] add missing ipset_parse_tcp_udp_port to libipset.map
- From: Thomas Backlund <tmb@xxxxxxxxxx>
- Re: [PATCH] add missing ipset_parse_tcp_udp_port to libipset.map
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] add missing ipset_parse_tcp_udp_port to libipset.map
- From: Thomas Backlund <tmb@xxxxxxxxxx>
- [PATCH v2 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_log: account for size of NLMSG_DONE attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] Make use of pr_fmt where applicable
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH v2 2/3] netfilter: log: protect nf_log_register against double registering
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH 1/3] Introduce nft_log_dereference() macro
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: nf_log: release skbuff on nlmsg put failure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nfnetlink_log: fix maximum packet length logged to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_log: account for size of NLMSG_DONE attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: bridge: Do not compile options in br_parse_ip_options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: bridge: Do not compile options in br_parse_ip_options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables PATCH] meta: Add support for datatype devgroup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2 v3] evaluate: reject: check in bridge and inet the network context in reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2 v3] evaluate: reject: accept a reject reason with incorrect network context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2 v2] evaluate: reject: enhance the error support throwing message with more details
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2 v2] evaluate: reject: check the context in reject without reason for bridge and inet tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] mnl: delete useless parameter nf_sock in batch functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] ruleset: deconstify _get interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH netfilter] Fix Unknown symbols in nf_reject_ipvX modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libipset: Add missing ipset_parse_uint16 to map file
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- [PATCH] libipset: Bump lib version and update map file
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCHv3 1/1 lnf-ct] qa: build unshared nfct environment
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/3] iptables-compat: fix chain policy reset with iptables -L -n
- From: Ana Rey <anarey@xxxxxxxxx>
- [RFC PATCH netfilter] Fix Unknown symbols in nf_reject_ipvX modules
- From: Li Zhong <zhong@xxxxxxxxxxxxxxxxxx>
- netfilter: NAT: do the optimization for getting curr_tuple in function nf_nat_setup_info
- From: "billbonaparte" <programme110@xxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: vDev <vijaypas@xxxxxxxxx>
- [nft PATCH 2/2 v2] evaluate: reject: enhance the error support throwing message with more details
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/2 v2] evaluate: reject: check the context in reject without reason for bridge and inet tables
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/2] evaluate: reject: check the context in reject without reason for bridge and inet tables
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/2] evaluate: reject: enhance the error support throwing messages with more details
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nftables PATCH] meta: Add support for datatype devgroup
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH] iptables-compat: fix empty chains after first invocation of iptables-compat -L
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] iptables-compat: fix chain policy reset with iptables -L -n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] iptables-compat: statify unused built-in table/chain functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] iptables-compat: assume chain policy NF_ACCEPT when creating built-in chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nf_log: release skbuff on nlmsg put failure
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/3] netfilter: nfnetlink_log: fix maximum packet length logged to userspace
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/3] netfilter: nf_log: account for size of NLMSG_DONE attribute
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/3] netfilter: nf_log: nlmsg size fixes
- From: Florian Westphal <fw@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]