Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: TCP LAST ACK incorrectly treated as invalid
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: vDev <vijaypas@xxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: vDev <vijaypas@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_hashlimit: Enhance the xt_hashlimit to avoid duplicated codes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 4/4 v4] test: update and add the reject tests for ip, ip6, bridge and inet.
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4 v2] evaluate: accept a reject reason with incorrect network context
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4 v2] evaluate: check in bridge and inet the network context in reject
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4 v2] evaluate: refactor function to check the reject family in inet and bridge
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [PATCH] netfilter: Fix wastful cleanup check for unconfirmed conn in get_next_corpse
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- Re: [nft PATCH 3/4] evaluate: no check the network context in reject with tcp reset reason
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 4/4 v3] evaluate: fix a crash if we check the transport protocol is tcp
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [RFC nft PATCH] src: add import operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftnl PATCH v3] utils: fix arp family number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v3] utils: fix arp family number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] netfilter: ipset: off by one in ip_set_nfnl_get_byindex()
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft PATCH] mnl: delete useless parameter nf_sock in batch functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: check for NULL in nf_tables_newchain pcpu stats allocation
- From: Sabrina Dubroca <sd@xxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH v3] utils: fix arp family number
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 1/4] evaluate: refactor function to check the reject family in inet and bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [patch] netfilter: ipset: off by one in ip_set_nfnl_get_byindex()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [nft PATCH 4/4 v3] evaluate: fix a crash if we check the transport protocol is tcp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v3] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v3] utils: fix arp family number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] evaluate: no check the network context in reject with tcp reset reason
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: TCP LAST ACK incorrectly treated as invalid
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: Fix wastful cleanup check for unconfirmed conn in get_next_corpse
- From: Feng Gao <gfree.wind@xxxxxxxxx>
- [nft PATCH 4/4 v3] evaluate: fix a crash if we check the transport protocol is tcp
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4] evaluate: accept a reject reason with incorrect network context
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4] evaluate: no check the network context in reject with tcp reset reason
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4] evaluate: refactor function to check the reject family in inet and bridge
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH] netfilter: log: protect nf_log_register against double registering
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- TCP LAST ACK incorrectly treated as invalid
- From: vDev <vijaypas@xxxxxxxxx>
- Re: NAT dropping FIN ACK from remote server
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NAT dropping FIN ACK from remote server
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [libnftnl PATCH] ruleset: deconstify _get interface
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 0/7] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [nft PATCH v3] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [libnftnl PATCH v3] utils: fix arp family number
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: fix arp family number
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 1/7] netfilter: missing module license in the nf_reject_ipvX modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH v2] utils: fix arp family number
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/7] netfilter: missing module license in the nf_reject_ipvX modules
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: fix arp family number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] utils: fix arp family number
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 2/4 v2] evaluate: fix a crash if we check the transport protocol
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 2/4 v2] evaluate: fix a crash if we check the transport protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4 v2] evaluate: fix a crash if we check the transport protocol
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [iptables-compat PATCH 1/3] ebtables-compat: fix print_header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-compat PATCH 3/3] nft-ipv46: replace offset var with ctx->payload.offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-compat PATCH 2/3] nft: fix syntax error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-compat PATCH 1/3] ebtables-compat: fix print_header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/4 v2] evaluate: fix a crash if we check the transport protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: missing module license in the nf_reject_ipvX modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: nft_compat: validate chain type in match/target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: nft_nat: insufficient attribute validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: nft_compat: fix hook validation for non-base chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: nft_nat: NFTA_NAT_REG_ADDR_MAX depends on NFTA_NAT_REG_ADDR_MIN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: nft_nat: dump attributes if they are set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: nf_tables: restrict nat/masq expressions to nat chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] nft: don't resolve hostnames by default
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] ipset: Adjust the maximum timeout jiffies of set timeout extension
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] tests: add tests for masquerade
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4 v2] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 1/4 v2] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 4/4 v3] test: update and add the reject tests for ip, ip6, bridge and inet.
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 1/4 v2] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 3/4 v2] delinearize: list the icmpx reason with the string associated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/4 v2] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 4/4 v2] test: update and add the reject tests for ip, ip6, bridge and inet.
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4 v2] delinearize: list the icmpx reason with the string associated
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4 v2] evaluate: fix a crash if we check the transport protocol
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4 v2] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [libnftnl PATCH v3] src: add support for nft_redir expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH v3 2/2] netfilter: nf_tables: add new expression nft_redir
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH v3 1/2] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] libipset: Add missing ipset_parse_uint16 to map file
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- [PATCH] ipset: Adjust the maximum timeout jiffies of set timeout extension
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- NAT dropping FIN ACK from remote server
- From: vDev <vijaypas@xxxxxxxxx>
- [iptables-compat PATCH 3/3] nft-ipv46: replace offset var with ctx->payload.offset
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [iptables-compat PATCH 2/3] nft: fix syntax error
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [iptables-compat PATCH 1/3] ebtables-compat: fix print_header
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH nf 3/3] netfilter: nft_nat: dump attributes if they are set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 1/3] netfilter: nft_nat: insufficient attribute validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 2/3] netfilter: nft_nat: NFTA_NAT_REG_ADDR_MAX depends on NFTA_NAT_REG_ADDR_MIN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v2 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v2 2/3] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v2 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] src: add support for nft_redir expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH v2] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH v2] src: add support for nft_redir expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH v2 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH v2 2/3] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH v2 1/3] netfilter: refactor NAT redirect IPv4 to use it from nf_tables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: queuing to userspace for the bridge family, using nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nf_tables PATCH 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf_tables PATCH 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf_tables PATCH 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] src: add redirect support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Vitezslav Samel <vitezslav@xxxxxxxx>
- [nft PATCH] tests: add tests for masquerade
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf_tables PATCH 1/3] netfilter: refactor NAT's redirect IPv4 code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft PATCH] src: add redirect support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] nf_conntrack_proto_tcp: allow server to become a client in TW handling
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftnl PATCH 2/2] tests: add tests for nft_redir expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 1/2] src: add support for nft_redir expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v2] netfilter: release skbuf when nlmsg put fail
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf_tables PATCH 3/3] netfilter: nf_tables: add new expression nft_redir
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH 2/3] netfilter: refactor NAT's redirect IPv6 code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH 1/3] netfilter: refactor NAT's redirect IPv4 code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v2] netfilter: release skbuf when nlmsg put fail
- From: Houcheng Lin <houcheng@xxxxxxxxx>
- [PATCH 2/2 nf] netfilter: nft_compat: validate chain type in match/target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf] netfilter: nft_compat: fix hook validation for non-base chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: release skbuf when nlmsg put fail
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] netfilter: release skbuf when nlmsg put fail
- From: Houcheng Lin <houcheng@xxxxxxxxx>
- Re: [PATCH] netfilter: release skbuf when nlmsg put fail
- From: Houcheng Lin <houcheng@xxxxxxxxx>
- Re: nf_reject_ipv4: module license 'unspecified' taints kernel
- From: Dave Young <dyoung@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: restrict nat/masq expressions to nat chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Josh Boyer <jwboyer@xxxxxxxxxxxxxxxxx>
- [PATCH] nf_conntrack_proto_tcp: allow server to become a client in TW handling
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Josh Boyer <jwboyer@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Josh Boyer <jwboyer@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: release skbuf when nlmsg put fail
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: release skbuf when nlmsg put fail
- From: Houcheng Lin <houcheng@xxxxxxxxx>
- [nft PATCH 3/3] test: update and add the reject tests for ip, ip6, bridge and inet.
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/3] delinearize: list the icmpx reason with the string associated
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/3] evaluate: fix a crash if we specify ether type or meta nfproto in reject
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [libnftnl PATCH] src: cleanup in mxml and jansson regarding set_id parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- queuing to userspace for the bridge family, using nftables
- From: stéphane bryant <stephane.ml.bryant@xxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftnl PATCH] src: cleanup in mxml and jansson regarding set_id parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 0/2] Netfilter fixes for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] build: remove unnecessary libintl.h check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Vitezslav Samel <vitezslav@xxxxxxxx>
- Re: ipset: bad timeout assignments
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft PATCH] build: remove unnecessary libintl.h check
- From: Steven Barth <cyrus@xxxxxxxxxxx>
- Re: [nft PATCHv2] build: allow disabling libreadline-support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nf_reject_ipv4: module license 'unspecified' taints kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ipset: bad timeout assignments
- From: Vitezslav Samel <vitezslav@xxxxxxxx>
- [nft PATCHv2] build: allow disabling libreadline-support
- From: Steven Barth <cyrus@xxxxxxxxxxx>
- [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: fix wrong arithmetics regarding NFT_REJECT_ICMPX_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter fixes for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- More work on ebtables-compat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tests: regression: nft-test.py: Delete an unnecessary whitespace in an output messages.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tests: regression: Delete all reference to wlan0 in test files.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/2] src: internal set id allocation from nft_ruleset_parse*()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] ruleset: add the set_id to the parsed sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v2] src: add masquerade support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] build: allow disabling libreadline-support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] build: allow disabling libreadline-support
- From: Steven Barth <cyrus@xxxxxxxxxxx>
- Re: [nft PATCH] build: allow disabling libreadline-support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] src: add nat persistent and random options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4 v5] nft: complete reject support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH arptables-compat] arptables-compat: remove save code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-compat] arptables-compat: get output in sync with arptables -L -n --line-numbers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-compat 3/4] arptables-compat: fix missing error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-compat 4/4] arptables-compat: allow to not specify a target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-compat 1/4] iptables-compat: nft: fix user chain addition, deletion and rename
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH xtables-compat 2/4] iptables-compat: nft: fix error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] tests: regression: nft-test.py: Delete an unnecessary whitespace in an output messages.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH] tests: regression: Delete all reference to wlan0 in test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: bridge: Save frag_max_size between PRE_ROUTING and POST_ROUTING
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 2/2] netfilter: fix wrong arithmetics regarding NFT_REJECT_ICMPX_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: kill nf_send_reset6() from include/net/netfilter/ipv6/nf_reject.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/9] netfilter: move nf_send_resetX() code to nf_reject_ipvX modules
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- re: netfilter: nft_reject: introduce icmp code abstraction for inet and bridge
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCHv3 1/1 lnf-ct] qa: build unshared nfct environment
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCHv3 0/1 lnf-ct] qa: build unshared nfct environment
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- net-next is CLOSED...
- From: David Miller <davem@xxxxxxxxxxxxx>
- [nft PATCH v2] src: add masquerade support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nft 1/2] src: interpret the event type from the evaluation step
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] netlink: use switch whenever possible in the monitor code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- queuing to userspace for the bridge family, using nftables
- From: stéphane bryant <stephane.ml.bryant@xxxxxxxxx>
- Re: bridge: Do not compile options in br_parse_ip_options
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: bridge: Respect call-iptables sysctls everywhere
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- Re: bridge: Respect call-iptables sysctls everywhere
- From: Florian Westphal <fw@xxxxxxxxx>
- bridge: Save frag_max_size between PRE_ROUTING and POST_ROUTING
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- bridge: Respect call-iptables sysctls everywhere
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- Re: bridge: Do not compile options in br_parse_ip_options
- From: Florian Westphal <fw@xxxxxxxxx>
- bridge: Do not compile options in br_parse_ip_options
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- [PATCHv2 lnfct] qa: build unshared nfct environment
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [PATCH nf next 0/3] bridge: netfilter: fix handling of ipv4 packets w. options
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf next 0/3] bridge: netfilter: fix handling of ipv4 packets w. options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf next 0/3] bridge: netfilter: fix handling of ipv4 packets w. options
- From: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
- [PATCH nf next 0/3] bridge: netfilter: fix handling of ipv4 packets w. options
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: bridge: don't mangle ipv4 header options
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf next 1/3] bridge: prepend inet_skb_param dummy to bridge cb
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf next 2/3] netfilter: bridge: don't parse ip headers in fwd and output path
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftnl PATCH 2/2] src: internal set id allocation from nft_ruleset_parse*()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [libnftnl PATCH 1/2] ruleset: add the set_id to the parsed sets
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH 5/9] netfilter: nft_compat: remove incomplete 32/64 bits arch compat code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/9] netfilter: nf_tables: allow to filter from prerouting and postrouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/9] netfilter: explicit module dependency between br_netfilter and physdev
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 9/9] netfilter: nft_masq: register/unregister notifiers on module init/exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/9] ipvs: Clean up comment style in ip_vs.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/9] netfilter: move nf_send_resetX() code to nf_reject_ipvX modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/9] netfilter: use IS_ENABLED(CONFIG_BRIDGE_NETFILTER)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/9] netfilter: nf_tables: wait for call_rcu completion on module removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/9] netfilter: nft_reject: introduce icmp code abstraction for inet and bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/9] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- How to generate statistics for a TCP flow using netfilter conntrack?
- From: Phuong Cao <phuong.m.cao@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: nft_masq: fix register/unregister notifier on module _init and _exit
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 2/2] src: add masquerade support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 2/2] src: add masquerade support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 1/2] src: add nat persistent and random options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf-next PATCH] netfilter: nft_masq: fix register/unregister notifier on module _init and _exit
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftnl PATCH 3/3] tests: also test nat's flags attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/3] tests: add tests for the masq expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/3] expr: masq: optional printing of flags attr in snprintf_default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] bridge: Fix NAT66ed IPv6 packets not being bridged correctly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: Clean up comment style in ip_vs.h
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] ipvs: Clean up comment style in ip_vs.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: explicit module dependency between br_netfilter and physdev
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] netfilter: explicit module dependency between br_netfilter and physdev
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Migrating an established TCP connection to a different port
- From: Anuradha Ratnaweera <anuradha@xxxxxxxxxxxxx>
- [libnftnl PATCH 3/3] tests: also test nat's flags attribute
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 2/3] tests: add tests for the masq expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 1/3] expr: masq: optional printing of flags attr in snprintf_default
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: explicit module dependency between br_netfilter and physdev
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: explicit module dependency between br_netfilter and physdev
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4/4] netfilter: nf_tables: allow to filter from prerouting and postrouting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nft_compat: remove incomplete 32/64 bits arch compat code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: nf_tables: wait for call_rcu completion on module removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: use IS_ENABLED(CONFIG_BRIDGE_NETFILTER)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: explicit module dependency between br_netfilter and physdev
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] build: allow disabling libreadline-support
- From: Steven Barth <cyrus@xxxxxxxxxxx>
- Re: [PATCH 1/3] xtables: bootstrap xtables-eb for nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] Operations for bridge family
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH 2/3] nft-shared: make compare_matches as public
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH 1/3] xtables: bootstrap xtables-eb for nftables
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH 33/34] netfilter: nf_tables: store and dump set policy
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: bridge: build br_nf_core only if required
- From: David Miller <davem@xxxxxxxxxxxxx>
- merge of iptables-tests to master
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables-compat] iptables-compat: get rid of error reporting via perror
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables-compat 1/2] iptables-compat: nft: use nft_batch_begin and nft_batch_end from libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables-compat 2/2] iptables-compat: fix use after free in the batch send path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: use nft_batch_begin and nft_batch_end from libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [nft PATCH 4/4 v5] nft: complete reject support
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4 v3] datatype: Enhance symbolic_constant_parse()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4 v3] src: Enhance payload_gen_dependency()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4 v3] payload: generate dependency in the appropriate byteorder
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [PATCH 2/7] netfilter: Convert print_tuple functions to return void
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH iptables-compat] iptables-compat: fix address prefix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix nf_conn_nat->masq_index visibility
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: fix nf_conn_nat->masq_index visibility
- From: Arnd Bergmann <arnd@xxxxxxxx>
- Re: [PATCH 2/7] netfilter: Convert print_tuple functions to return void
- From: Petr Mladek <pmladek@xxxxxxx>
- Re: [PATCH lnfct] qa: build unshared nfct environment
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnfct] qa: build unshared nfct environment
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [libnftnl PATCH 2/2] examples: nft-set-parse-add: give batching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] examples: nft-table-add: fix wrong buffer pointer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: bridge: build br_nf_core only if required
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Fix hyphen used as minus sign in manpage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 18/34] ipvs: prevent mixing heterogeneous pools and synchronization
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] ipvs: Clean up comment style in ip_vs.h
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 00/34] pull request: netfilter/ipvs updates for net-next
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/7] seq_printf cleanups
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 2/7] netfilter: Convert print_tuple functions to return void
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [libnftnl PATCH] examples: nft-table-add: fix wrong buffer pointer
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 00/34] pull request: netfilter/ipvs updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 18/34] ipvs: prevent mixing heterogeneous pools and synchronization
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 33/34] netfilter: nf_tables: store and dump set policy
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 30/34] net/netfilter/x_tables.c: use __seq_open_private()
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/2] examples: nft-set-parse-add: give batching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] examples: nft-set-json-add: generalize parsing format support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/34] netfilter: nf_tables: add NFTA_MASQ_UNSPEC to nft_masq_attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/34] netfilter: fix compilation of masquerading without IP_NF_TARGET_MASQUERADE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/34] netfilter: ipset: Add skbinfo extension kernel support in the ipset core.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/34] netfilter: ipset: Fix static checker warning in ip_set_core.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/34] netfilter: ipset: Add skbinfo extension kernel support for the list set type.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/34] netfilter: masquerading needs to be independent of x_tables in Kconfig
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/34] netfilter: ipset: Add skbinfo extension kernel support for the bitmap set types.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/34] netfilter: ipset: Add skbinfo extension kernel support for the hash set types.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/34] ipvs: Pass destination address family to ip_vs_trash_get_dest
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/34] ipvs: Supply destination address family to ip_vs_conn_new
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/34] ipvs: prevent mixing heterogeneous pools and synchronization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/34] ipvs: Add destination address family to netlink interface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/34] ipvs: use correct address family in scheduler logs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/34] ipvs: Pull out update_pmtu code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/34] ipvs: use the new dest addr family field
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/34] ipvs: address family of LBLC entry depends on svc family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/34] netfilter: nfnetlink: use original skbuff when committing/aborting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/34] netfilter: nf_tables: store and dump set policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/34] ipvs: Add generic ensure_mtu_is_adequate to handle mixed pools
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/34] netfilter: bridge: move br_netfilter out of the core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/34] netfilter: bridge: nf_bridge_copy_header as static inline in header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/34] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 34/34] netfilter: conntrack: disable generic tracking for known protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/34] net/netfilter/x_tables.c: use __seq_open_private()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/34] ipvs: Allow heterogeneous pools now that we support them
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/34] ipvs: address family of LBLCR entry depends on svc family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/34] ipvs: support ipv4 in ipv6 and ipv6 in ipv4 tunnel forwarding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/34] ipvs: Supply destination addr family to ip_vs_{lookup_dest,find_dest}
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/34] ipvs: Pull out crosses_local_route_boundary logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/34] netfilter: ipset: hash:mac type added to ipset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/34] ipvs: Add simple weighted failover scheduler
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/34] netfilter: ipset: Add skbinfo extension support to SET target.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/34] netfilter: ipset: send nonzero skbinfo extensions only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/34] netfilter: NFT_CHAIN_NAT_IPV* is independent of NFT_NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/34] pull request: netfilter/ipvs updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/3 v3] src: add list ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/3] rule: rename do_command_list_cleanup() to table_cleanup()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] rule: factorize chain and table listing code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: disable generic tracking for known protocols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH 1/2 v2] netfilter: nf_tables: store and dump sets policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: bridge: unshare bridge info before change it
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 0/5] nf pull request for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [libnftnl PATCH 2/2] examples: nft-set-parse-add: give batching support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 1/2] examples: nft-set-json-add: generalize parsing format support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 4/4 v4] nft: complete reject support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH 4/4 v4] nft: complete reject support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] using `nft -i' as user shell
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: mmotm 2014-09-25-16-28 uploaded (nf_nat_masquerade_ipv4.c)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft] using `nft -i' as user shell
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: mmotm 2014-09-25-16-28 uploaded (nf_nat_masquerade_ipv4.c)
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 4/4 v4] nft: complete reject support
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: mmotm 2014-09-25-16-28 uploaded (nf_nat_masquerade_ipv4.c)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [nft PATCH 4/4 v4] nft: complete reject support
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4 v2] datatype: Enhance symbolic_constant_parse()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4 v2] src: Enhance payload_gen_dependency()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4 v2] payload: generate dependency in the appropriate byteorder
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/3 v3] src: add list ruleset command
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/2 nf-next] netfilter: move nf_send_resetX() code to nf_reject_ipvX modules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf-next] netfilter: nft_reject: introduce icmp code abstraction for inet and bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6 -stable] ipvs: avoid netns exit crash on ip_vs_conn_drop_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6 -stable] ipvs: Maintain all DSCP and ECN bits for ipv6 tun forwarding
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6 -stable] netfilter: xt_hashlimit: perform garbage collection from process context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6 -stable] netfilter: x_tables: allow to use default cgroup match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6 -stable] netfilter: nf_tables: don't update chain with unset counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6 -stable] ipvs: fix ipv6 hook registration for local replies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6 -stable] netfilter/ipvs patches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] netfilter: conntrack: disable generic tracking for known protocols
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf v2] netfilter: conntrack: disable generic tracking for known protocols
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] Allow to compile for < 3.17 kernel version
- From: Vadim Kochan <vadim4j@xxxxxxxxx>
- Re: [conntrack-tools PATCH] man: fix hyphen used as minus sign
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/3 v2] src: add list ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Allow to compile for < 3.17 kernel version
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Allow to compile for < 3.17 kernel version
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: conntrack: disable generic protocol tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: move br_netfilter out of the bridge core
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCHv2 libmnl] socket: creating a struct mnl_socket from a pre-existing socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [conntrack-tools PATCH] man: fix hyphen used as minus sign
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] ipset: Fix hyphen used as minus sign in manpage
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- [PATCH] Allow to compile for < 3.17 kernel version
- From: Vadim Kochan <vadim4j@xxxxxxxxx>
- [PATCHv2 libmnl] socket: creating a struct mnl_socket from a pre-existing socket
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [nft PATCH 3/3 v2] src: add list ruleset command
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 3/3] parser: rearrange monitor/export rules
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] queue: clean up queue statement
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] expr: make range_low()/range_high() usable outside of segtree
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/3]: parser cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] parser: simplify monitor command parsing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft PATCH 3/3 v2] src: add list ruleset command
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 2/3 v2] rule: factorize chain and table listing code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 1/3] rule: rename do_command_list_cleanup() to table_cleanup()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 2/2] src: add list ruleset command
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 1/2] rule: factorize chain and table listing code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] parser: simplify monitor command parsing
- From: Eric Leblond <eric@xxxxxxxxx>
- [nft PATCH 2/2] src: add list ruleset command
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH 1/2] rule: factorize chain and table listing code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [Linux-kernel] [PATCH v2] net/netfilter/x_tables.c: use __seq_open_private()
- From: Rob Jones <rob.jones@xxxxxxxxxxxxxxx>
- Re: [Linux-kernel] [PATCH v2] net/netfilter/x_tables.c: use __seq_open_private()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Linux-kernel] [PATCH v2] net/netfilter/x_tables.c: use __seq_open_private()
- From: Ben Hutchings <ben.hutchings@xxxxxxxxxxxxxxx>
- [PATCH v2] net/netfilter/x_tables.c: use __seq_open_private()
- From: Rob Jones <rob.jones@xxxxxxxxxxxxxxx>
- Re: [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/x_tables.c: use __seq_open_private()
- From: Rob Jones <rob.jones@xxxxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/x_tables.c: use __seq_open_private()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/x_tables.c: use __seq_open_private()
- From: Rob Jones <rob.jones@xxxxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter/x_tables.c: use __seq_open_private()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 2/2] examples: nft-rule-parse-add: give batching support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH 1/2] examples: merge nft-rule-{xml|json}-add.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH 2/2 v3] src: add set optimization options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [ANNOUNCE] ipset 6.23 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nft PATCH 2/2 v2] src: add set optimization options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables PATCH 1/2 v2] netfilter: nf_tables: store and dump sets policy
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 2/2] examples: nft-rule-parse-add: give batching support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH 1/2] examples: merge nft-rule-{xml|json}-add.c
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 1/5] netfilter: nft_hash: no need for rcu in the hash set destroy path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: xt_TPROXY: undefined reference to `udp6_lib_lookup'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nfnetlink: deliver netlink errors on batch completion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] rhashtable: fix lockdep splat in rhashtable_destroy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nft_rbtree: no need for spinlock from set destroy path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] nf pull request for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 4/4 v3] nft: complete reject support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- gen_ip/ip_rcv tools
- From: John de la Garza <john@xxxxxxxxx>
- Re: [nft PATCH 4/4 v3] nft: complete reject support
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: bridge: nf_bridge_copy_header as static inline in header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: move br_netfilter out of the bridge core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 0/2] modularize br_netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] socket: creating a struct mnl_socket from a pre-existing socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libmnl] socket: creating a struct mnl_socket from a pre-existing socket
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/4] datatype: add symbolic_constant_parse_table()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft] the -nnn switch
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft] the -nnn switch
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH 3/4] datatype: add symbolic_constant_parse_table()
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 1/4] payload: generate dependency in the appropriate byteorder
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH 4/4 v3] nft: complete reject support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH 3/4] datatype: add symbolic_constant_parse_table()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH 1/4] payload: generate dependency in the appropriate byteorder
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft PATCH 4/4 v3] nft: complete reject support
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 3/4] datatype: add symbolic_constant_parse_table()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 2/4] src: Enhance payload_gen_dependency()
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [nft PATCH 1/4] payload: generate dependency in the appropriate byteorder
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: Bug: ipset-6.22 broken with dynamic modules
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset save issue
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Bug: ipset-6.22 broken with dynamic modules
- From: Sergei Zhirikov <sfzhi@xxxxxxxxx>
- Re: [nft 3/3] src: add set optimization options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libmnl] socket: creating a struct mnl_socket from a pre-existing socket
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [nft 3/3] src: add set optimization options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_devgroup: Fix the path of the mappings file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] the -nnn switch
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] net/netfilter/x_tables.c: use __seq_open_private()
- From: Rob Jones <rob.jones@xxxxxxxxxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [HEADS UP] netfilter.org maintainance downtime
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft] the -nnn switch
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft 3/3] src: add set optimization options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- ipset save issue
- From: Stig Thormodsrud <stig@xxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftnl 2/3] set: fix set nlmsg desc parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft 3/3] src: add set optimization options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft 3/3] src: add set optimization options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nf_tables 1/3] netfilter: nf_tables: store and dump sets mechanism options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl 2/3] set: fix set nlmsg desc parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: Query on "Add locking to prevent concurrent instances" patch
- From: SaRaVanAn <saravanan.nagarajan87@xxxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: libxt_devgroup: Fix the path of the mappings file
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: [v3 nft 0/7] tests: Automated regression testing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [v3 nft 7/7] tests: Add any folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 6/7] tests: Add bridge folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 4/7] tests: Add inet folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 5/7] tests: Add arp folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 3/7] tests: Add ip6 folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 2/7] tests: Add ip folder with test files
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 1/7] tests: Add automated regression testing
- From: Ana Rey <anarey@xxxxxxxxx>
- [v3 nft 0/7] tests: Automated regression testing
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: [GIT PULL v2 00/15] Second Round of IPVS Updates for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2 0/6] tests: Automated regression testing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/15] ipvs: Pass destination address family to ip_vs_trash_get_dest
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 03/15] ipvs: Supply destination addr family to ip_vs_{lookup_dest,find_dest}
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 01/15] ipvs: Add simple weighted failover scheduler
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 08/15] ipvs: Pull out update_pmtu code
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 06/15] ipvs: prevent mixing heterogeneous pools and synchronization
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 10/15] ipvs: support ipv4 in ipv6 and ipv6 in ipv4 tunnel forwarding
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 09/15] ipvs: Add generic ensure_mtu_is_adequate to handle mixed pools
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 07/15] ipvs: Pull out crosses_local_route_boundary logic
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 12/15] ipvs: address family of LBLCR entry depends on svc family
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 13/15] ipvs: use correct address family in scheduler logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 11/15] ipvs: address family of LBLC entry depends on svc family
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 14/15] ipvs: use the new dest addr family field
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 15/15] ipvs: Allow heterogeneous pools now that we support them
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 05/15] ipvs: Supply destination address family to ip_vs_conn_new
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 02/15] ipvs: Add destination address family to netlink interface
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL v2 00/15] Second Round of IPVS Updates for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nft v2 0/6] tests: Automated regression testing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Conntrack TW->SS in Reply direction
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH 2/2 nf-next] net: bridge: deprecate call_iptables=1 default value
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2 v2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] parser: compact log level grammar
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 03/22] netfilter: Replace strnicmp with strncasecmp
- From: Rasmus Villemoes <linux@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 03/22] netfilter: Replace strnicmp with strncasecmp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] parser: simplify monitor command parsing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] parser: simplify monitor command parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] parser: simplify monitor command parsing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH v2] src: add specific byteorder to the struct proto_hdr_template
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 03/22] netfilter: Replace strnicmp with strncasecmp
- From: Rasmus Villemoes <linux@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH v4 0/2] nfacct: add filter in to the list operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: nft_fprintf: prevent an empty buffer from being printed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] netlink: include file and line in netlink ABI errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/8] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nf-next] net: bridge: don't register netfilter call_iptables hooks by default
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2 nf-next] net: bridge: deprecate call_iptables=1 default
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH v2] src: add specific byteorder to the struct proto_hdr_template
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH nft] src: fix 'describe' command when passing wrong expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 0/2] nfacct: add filter in to the list operation
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH nf-next 01/21] ipvs: Add simple weighted failover scheduler
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 04/21] ipvs: Pass destination address family to ip_vs_trash_get_dest
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 02/21] ipvs: Add destination address family to netlink interface
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 03/21] ipvs: Supply destination addr family to ip_vs_{lookup_dest,find_dest}
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 09/21] ipvs: Add generic ensure_mtu_is_adequate to handle mixed pools
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 05/21] ipvs: Supply destination address family to ip_vs_conn_new
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 08/21] ipvs: Pull out update_pmtu code
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 07/21] ipvs: Pull out crosses_local_route_boundary logic
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 10/21] ipvs: support ipv4 in ipv6 and ipv6 in ipv4 tunnel forwarding
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 12/21] ipvs: address family of LBLCR entry depends on svc family
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 13/21] ipvs: use correct address family in DH logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 17/21] ipvs: use correct address family in SED logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 16/21] ipvs: use correct address family in RR logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 18/21] ipvs: use correct address family in SH logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 14/21] ipvs: use correct address family in LC logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 15/21] ipvs: use correct address family in NQ logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 20/21] ipvs: use the new dest addr family field
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 19/21] ipvs: use correct address family in WLC logs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 21/21] ipvs: Allow heterogeneous pools now that we support them
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 11/21] ipvs: address family of LBLC entry depends on svc family
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 06/21] ipvs: prevent mixing heterogeneous pools and synchronization
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next 00/21] Second Round of IPVS Updates for v3.18
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] bridge: Fix NAT66ed IPv6 packets not being bridged correctly
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.22 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: ipset: send nonzero skbinfo extensions only
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: ipset: Add skbinfo extension support to SET target.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: ipset: Add skbinfo extension kernel support for the list set type.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: ipset: Add skbinfo extension kernel support for the hash set types.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: ipset: Add skbinfo extension kernel support in the ipset core.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: ipset: hash:mac type added to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: ipset: Fix static checker warning in ip_set_core.c
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/8] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: ipset: Add skbinfo extension kernel support for the bitmap set types.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v4 0/2] nfacct: add filter in to the list operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libxt_devgroup: manpage corrections
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 4/6] tests: Add arp folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 3/6] tests: Add inet folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 6/6] tests: Add any folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 2/6] tests: Add ip6 folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 5/6] tests: Add bridge folder with test files.
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 1/6] tests: Add Automated regression testing
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH nft v2 0/6] tests: Automated regression testing
- From: Ana Rey <anarey@xxxxxxxxx>
- Query on "Add locking to prevent concurrent instances" patch
- From: SaRaVanAn <saravanan.nagarajan87@xxxxxxxxx>
- [PATCH] libxt_devgroup: manpage corrections
- From: Ana Rey <anarey@xxxxxxxxx>
- [nft PATCH] netlink: include file and line in netlink ABI errors
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- modify + redirect xtables addon using the same skb
- From: "Pratik M." <pvmpublic@xxxxxxxxx>
- Re: [PATCH net-next 5/5] netfilter: Convert pr_warning to pr_warn
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 4/5] ipset: remove extran newline on debug output
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 3/5] ipset: coalesce two ifs
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/5] ipset: avoid duplicate command flags
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/5] Remove a duplicate debug print
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftnl PATCH] utils: nft_fprintf: prevent an empty buffer from being printed
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add set optimization options
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add set optimization options
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft PATCH] payload: generate expression using big endian byteorder
- From: Álvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nft PATCH] payload: generate expression using big endian byteorder
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft PATCH] payload: generate expression using big endian byteorder
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- [PATCH v4 2/2] nfacct: add filter in to the list operation
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH v4 1/2] nfacct: check cmd line argument for singleness
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH v4 0/2] nfacct: add filter in to the list operation
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH libnftnl] src: add ruleset generation class
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] nfacct: check cmd line argument for singleness
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] nfacct: check cmd line argument for singleness
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnf-ct 2/2] qa: add tests for new bitmask functions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH lnf-ct 1/2] add two new bitmask functions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] include: refresh include/linux/nf_tables.h cached copy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftnl PATCH] nf_tables.h: add NFTA_MASQ_UNSPEC
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] nfacct: check cmd line argument for singleness
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] log: netlink_linearize: don't set level if user didn't specify
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/2] netfilter: masquerading needs to be independent of x_tables in Kconfig
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: masquerading needs to be independent of x_tables in Kconfig
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: NFT_CHAIN_NAT_IPV* is independent of NFT_NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3 2/2] nfacct: add filter in to the list operation
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH v3 1/2] nfacct: check cmd line argument for singleness
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- [PATCH v3 0/2] nfacct: add filter in to the list operation
- From: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nfnetlink: use original skbuff when committing/aborting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 3/3 v2] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nf_tables: add NFTA_MASQ_UNSPEC to nft_masq_attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: randconfig build error with next-20140911, in net/ipv6/netfilter/nf_nat_masquerade_ipv6.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- randconfig build error with next-20140911, in net/ipv6/netfilter/nf_nat_masquerade_ipv6.c
- From: Jim Davis <jim.epost@xxxxxxxxx>
- Re: [PATCH 00/25] nf-next pull request
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/5] net: Convert pr_warning to pr_warn
- From: David Miller <davem@xxxxxxxxxxxxx>
- randconfig build error with next-20140910, in net/netfilter/xt_socket.c
- From: Jim Davis <jim.epost@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: export rule-set generation ID
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/25] netfilter: ipset: Removed invalid IPSET_ATTR_MARKMASK validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/25] uapi: netfilter_arp: use __u8 instead of u_int8_t
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/25] netfilter: nft_meta: Add cpu attribute support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/25] netfilter: ipset: Fix warn: integer overflows 'sizeof(*map) + size * set->dsize'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/25] netfilter: ipset: netnet,netportnet: Fix value range support for IPv4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/25] netfilter: nat: move specific NAT IPv4 to core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/25] netfilter: nft_chain_nat_ipv6: use generic IPv6 NAT code from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/25] netfilter: nat: move specific NAT IPv6 to core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/25] netfilter: nf_tables: refactor rule deletion helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/25] netfilter: nft_chain_nat_ipv4: use generic IPv4 NAT code from core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/25] netfilter: nf_tables: rename nf_table_delrule_by_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/25] netfilter: nf_tables: add helper to unregister chain hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/25] netfilter: nf_tables: add helpers to schedule objects deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/25] netfilter: nf_tables: extend NFT_MSG_DELTABLE to support flushing the ruleset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/25] netfilter: nft_nat: include a flag attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/25] netfilter: nf_tables: add new nft_masq expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/25] netfilter: nf_nat: generalize IPv4 masquerading support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/25] netfilter: nf_nat: generalize IPv6 masquerading support for nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/25] netfilter: ebtables: create audit records for replaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/25] netfilter: xt_string: Remove unnecessary initialization of struct ts_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/25] ipvs: reduce stack usage for sockopt data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/25] netfilter: nf_tables: add devgroup support in meta expresion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/25] netfilter: nfnetlink_acct: add filter support to nfacct counter list/reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/25] netfilter: ipset: Resolve missing-field-initializer warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/25] netfilter: nft_meta: add pkttype support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/25] nf-next pull request
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH lnf-ct 2/2] qa: add tests for new bitmask functions
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [PATCH lnf-ct 1/2] add two new bitmask functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-ct 1/2] add two new bitmask functions
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH lnf-ct 0/2] add new bitmask functions
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH net-next 5/5] netfilter: Convert pr_warning to pr_warn
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next 0/5] net: Convert pr_warning to pr_warn
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_tables: export rule-set generation ID
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: export rule-set generation ID
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] mnl: consistency checks across several netlink dumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] src: add specific byteorder to the struct proto_hdr_template
- From: Alvaro Neira Ayuso <alvaroneay@xxxxxxxxx>
- Re: [nf_tables PATCH 5/6 v5] netfilter: nf_tables: extend NFT_MSG_DELTABLE to support flushing the ruleset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [HEADS UP] rebase nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH 4/6 v5] netfilter: nf_tables: add helpers to schedule objects deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v4 1/5] netfilter: nft_nat: include a flag attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v4 1/5] netfilter: nft_nat: include a flag attribute
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: create audit records for ebtables replaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xtables: Remove unnecessary initialization of struct ts_state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v4 3/5] netfilter: nf_nat_masquerade_ipv6: code factorization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v4 2/5] netfilter: nf_nat_masquerade_ipv4: code factorization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf_tables PATCH v4 1/5] netfilter: nft_nat: include a flag attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 5/5] ipset: data callback does not need to be part of cb_ctl[]
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 5/5] ipset: data callback does not need to be part of cb_ctl[]
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 4/5] ipset: remove extran newline on debug output
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 3/5] ipset: coalesce two ifs
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 2/5] ipset: avoid duplicate command flags
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 1/5] Remove a duplicate debug print
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 0/5] ipset: some small userland improvements
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: create audit records for ebtables replaces
- From: Richard Guy Briggs <rgb@xxxxxxxxxx>
- [PATCH net-next] netfilter: create audit records for ebtables replaces
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [nf_tables PATCH] netfilter: nf_tables: add new nft_masq expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftnl PATCH] expr: add new nft_masq expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: xtables: Remove unnecessary initialization of struct ts_state
- From: Bojan Prtvar <prtvar.b@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]