Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Fwd: Bug 883 - Uninitialized values in libnetfilter_log.c
- From: Ivan Homoliak <xhomol11@xxxxxxxxx>
- [PATCH libnftables v4] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] meta: Let user specify any combination of sreg/dreg
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nf_ct] Fix compilation warning if NF_CONNTRACK_MARK is not set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix missing byteorder conversion in policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH iptables-nftables] nft: fix inconsistent data type in NFT_EXPR_CMP_OP and NFT_EXPR_META_KEY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [libnftables PATCH next-3.14] expr: fix registers datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: fix wrong type in attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables] expr: fix incorrect data type for several expression object fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH next-3.14] expr: fix registers datatypes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] datatype: revert "fix crash if wrong integer type is passed"
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/4] meta: fix crash when parsing unresolvable mark values
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/4] erec: fix error markup for errors starting at column 0
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/4] nftables: bug fixes and minor cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/4] nftables: shorten "could not process rule in batch" message
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/23] nf_tables updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/23] netfilter: nf_tables: make chain types override the default AF functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/23] netfilter: nf_tables: add hook ops to struct nft_pktinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/23] netfilter: nft_meta: add l4proto support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/23] netfilter: nf_tables: split chain policy validation from actually setting it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/23] netfilter: nft_ct: Add support to set the connmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/23] netfilter: nft_meta: fix lack of validation of the input register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/23] netfilter: nf_tables: fix check for table overflow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/23] netfilter: nf_tables: restore chain change atomicity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/23] netfilter: nf_tables: add nfproto support to meta expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/23] netfilter: nf_tables: add support for multi family tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/23] netfilter: nf_tables: constify chain type definitions and pointers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/23] netfilter: nf_tables: prohibit deletion of a table with existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/23] netfilter: nf_tables: take AF module reference when creating a table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/23] netfilter: nf_tables: add missing module references to chain types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/23] netfilter: nf_tables: replay request after dropping locks to load chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/23] netfilter: nf_tables: fix chain type module reference handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/23] netfilter: nf_tables: perform flags validation before table allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/23] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/23] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/23] netfilter: nf_tables: minor nf_chain_type cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/23] netfilter: nf_tables: add "inet" table for IPv4/IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/23] nf_tables updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables next-3.14 v2] src: fix compilation due to missing NFPROTO_INET definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables next-3.14] src: fix compilation due to missing NFPROTO_INET definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables v2] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrey Wagin <avagin@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v6] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH v6] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables] netfilter: nft_meta: fix lack of validation of the input register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/13] netfilter: nf_tables: unininline nft_trace_packet()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/13] netfilter: nf_tables: prohibit deletion of a table with existing sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/13] netfilter: nf_tables: take AF module reference when creating a table
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 09/13] netfilter: nf_tables: perform flags validation before table allocation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/13] netfilter: nf_tables: minor nf_chain_type cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/13] netfilter: nf_tables: constify chain type definitions and pointers
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/13] netfilter: nf_tables: replay request after dropping locks to load chain type
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/13] netfilter: nf_tables: add missing module references to chain types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/13] netfilter: nf_tables: fix chain type module reference handling
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/13] netfilter: nf_tables: fix check for table overflow
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/13] netfilter: nf_tables: restore chain change atomicity
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/13] netfilter: nf_tables: split chain policy validation from actually setting it
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/3] tests: update tests with nft_*_parse_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/3] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/3] parsing: rework and generalize the build/parse system
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- [libnftables PATCH 3/3] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/3] parsing: rework and generalize the build/parse system
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/3] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/1] add hash:ip,mark data type to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/3] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: nf_conntrack_dccp: use %s format string for buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] Revert "netfilter: avoid get_random_bytes calls"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nf_conntrack_dccp: fix skb_header_pointer API usages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v2)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v2)
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/12] proto: add support for meta templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/12] meta: add l4proto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/12] meta: add nfproto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/12] include: resync nftables.h with kernel
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/12] nftables: add support for the "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/12] proto: add helper function to update protocol context
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/12] proto: add debugging for protocol context updates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/12] expr: add protocol context update callback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/12] nftables: generic procotol contexts
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 00/12] nftables: generic protocol contexts, "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH libnftables] Improved error handling and minor clean-up
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Improved error handling and minor clean-up
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] src: add support for UID/GID socket info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/6] set_elem: add json parsing to API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/6] mxml: add error reference of the top node
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix warning in nft_reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 7/6] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nf_nat: fix access to uninitialized buffer in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: only warn once on wrong seqadj usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] Add support for setting ct keys
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 0/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 1/2] src: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: valentina.giusti@xxxxxxxxxxxx
- [libnftables PATCH 1/6] mxml: add error reference of the top node
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: A conntrack, which is added via ctnetlink, can provoke a race condition
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 5/6] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/6] set_elem: add json parsing to API
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 0/6] parsing update
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrey Wagin <avagin@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- A conntrack, which is added via ctnetlink, can provoke a race condition
- From: Andrey Wagin <avagin@xxxxxxxxx>
- Re: [PATCH v4 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nftables: fix warning in nft_reject
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for nft_connmark
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrew Vagin <avagin@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nftables] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: hash_netnet4_data_equal typo commit status follow-up
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/13] nftables updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- [PATCH 7/6] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- ipset: hash_netnet4_data_equal typo commit status follow-up
- From: David Gervais <dgervais@xxxxxxxxx>
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/12] include: resync nftables.h with kernel
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/12] nftables: add support for the "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/12] proto: add support for meta templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/12] proto: add debugging for protocol context updates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/12] proto: add helper function to update protocol context
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/12] expr: add protocol context update callback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/12] meta: add nfproto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/12] meta: add l4proto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/12] nftables: generic procotol contexts
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [RFC PATCH 00/12] nftables: generic protocol contexts, "inet" family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] Add support for the meta connmark key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for the connmark meta key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nfnetlink_queue: fix compilation problem due missing header
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: nfnetlink_queue: fix compilation problem due missing header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 02/13] netfilter: xt_NFQUEUE: separate reusable code
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 02/13] netfilter: xt_NFQUEUE: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/13] netfilter: nf_tables: remove nft_meta_target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/13] netfilter: nft: add queue module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/13] netfilter: nft_reject: support for IPv6 and TCP reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/13] netfilter: add help information to new nf_tables Kconfig options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/13] netfilter: REJECT: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/13] netfilter: nf_tables: fix type in parsing in nf_tables_set_alloc_name()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/13] netfilter: nf_tables: fix issue with verdict support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/13] netfilter: nf_tables: Expose the table usage counter via netlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/13] netfilter: nf_tables: remove unused variable in nf_tables_dump_set()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: nf_tables: dump sets in all existing families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/13] netfilter: select NFNETLINK when enabling NF_TABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/13] netfilter: nf_tables: nft_meta module get/set ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/13] nftables updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net PATCH] netfilter: only warn once on wrong seqadj usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_log: use %s format string for buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_conntrack: fix skb_header_pointer API usages in DCCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for nft_connmark
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nftables] Add support for connmark target
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for nft_connmark
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [libnftables PATCH v2] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH v6] iptables: add support for l2tp match
- From: James Chapman <jchapman@xxxxxxxxxxx>
- [PATCH v6] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: [net PATCH] netfilter: only warn once on wrong seqadj usage
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH 00/12] netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_log: use %s format string for buffer
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf] netfilter: nf_conntrack: fix skb_header_pointer API usages in DCCP
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: add IPv4/6 IPComp extension match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: nf_conntrack: remove dead code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: nf_nat: add full port randomization support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: ipset: remove unused code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] net: netprio: rename config to be more consistent with cgroup configs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: xt_CT: fix error value in xt_ct_tg_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: x_tables: lightweight process control group matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] net: net_cls: move cgroupfs classid handling into core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] ipvs: Remove unused variable ret from sync_thread_master()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: ipset: remove unused code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: x_tables: lightweight process control group matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] net: net_cls: move cgroupfs classid handling into core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] net: netprio: rename config to be more consistent with cgroup configs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: xt_CT: fix error value in xt_ct_tg_check()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] ipvs: Remove unused variable ret from sync_thread_master()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: add IPv4/6 IPComp extension match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: nf_conntrack: remove dead code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: nf_nat: add full port randomization support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nf_tables: limit maximum number of elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nf_tables: limit maximum number of elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nf_tables: limit maximum number of elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: nft_hash: use set->maxelems to calculate number of buckets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: nf_tables: limit maximum number of elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3/3] netfilter: nft_hash: use set->maxelems to calculate number of buckets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] src: set maximum length in constant sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables] set: support new maximum and number of elements attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nf_tables: fix suboptimal set selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nft_hash: use set->maxelems to calculate number of buckets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: nf_tables: limit maximum number of elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3 nftables RFC] set infrastructure updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] extensions: libxt_set: Add missing hyphen to --bytes-eq synopsis in manpage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: How to get pid of packet sender from NFQUEUE?
- From: Mehran Kholdi <kholdi.mehran@xxxxxxxxx>
- [PATCH] extensions: libxt_set: Add missing hyphen to --bytes-eq synopsis in manpage
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net PATCH] netfilter: only warn once on wrong seqadj usage
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [net PATCH] netfilter: only warn once on wrong seqadj usage
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] src: add support for listing the entire ruleset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] src: new error reporting approach for XML/JSON parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: remove unused variable
- From: Michal Nazarewicz <mina86@xxxxxxxxxx>
- Re: [nftables PATCHv2] Add support for queue target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] iptables: snat: add randomize-full support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: rename the parameter tag to node_name in jansson function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Remove some backward-compat Kconfig symbols
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] tests: add table 'use' attr to testfiles
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND] netfilter: remove unused variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: fix type in parsing in nf_tables_set_alloc_name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: CT: improve error treatment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: remove dead code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipset: remove unused code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: How to test netfilter SYNPROXY target properly?
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: How to test netfilter SYNPROXY target properly?
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: [PATCH v5] netfilter: introduce l2tp match extension
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v5] iptables: add support for l2tp match
- From: James Chapman <jchapman@xxxxxxxxxxx>
- [PATCH v5] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: How to test netfilter SYNPROXY target properly?
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [libnftables PATCH v2] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 5/6] netfilter: nf_tables: add nfproto support to meta expression
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/6] netfilter: nf_tables: add "inet" table for IPv4/IPv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 6/6] netfilter: nft_meta: add l4proto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/6] netfilter: nf_tables: add support for multi family tables
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/6] netfilter: nf_tables: add hook ops to struct nft_pktinfo
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/6] netfilter: nf_tables: make chain types override the default AF functions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v4] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: How to get pid of packet sender from NFQUEUE?
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH iptables 2/3] android: Don't include conflicting headers
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- How to get pid of packet sender from NFQUEUE?
- From: Mehran Kholdi <semekh.dev@xxxxxxxxx>
- How to test netfilter SYNPROXY target properly?
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- Re: [PATCH v4] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/2] netfilter: nftables: introduce ct_set module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] expr: add ct_set expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] tests: add table 'use' attr to testfiles
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] expr: add ct_set expression
- From: Eric Leblond <eric@xxxxxxxxx>
- Fwd: ULOGD2 with MYSQL
- From: Sassy Natan <sassyn@xxxxxxxxx>
- Re: [libnftables PATCH] expr: add ct_set expression
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] expr: add ct_set expression
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 2/2] netfilter: nftables: introduce ct_set module
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 1/2] netfilter: CT: factorize reusable code
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 0/2] ct_set: port CT target to nftables
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH] netfilter: CT: improve error treatment
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH libnftables] examples: nft-rule-add: use existing batch infrastructure
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH libnftables] examples: nft-rule-add: use existing batch infrastructure
- From: Eric Leblond <eric@xxxxxxxxx>
- libmnl nl-mmap patch review request
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- [PATCH RESEND] netfilter: remove unused variable
- From: Michal Nazarewicz <mina86@xxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: rename the parameter tag to node_name in jansson function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH] src: add support for listing the entire ruleset
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH iptables] libxtables: Call ipaddr_to_network before ipaddr_to_host.
- From: Hani Benhabiles <kroosec@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: fix type in parsing in nf_tables_set_alloc_name
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [libnftables PATCH 2/2] src: new error reporting approach for XML/JSON parsers
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] src: rename the parameter tag to node_name in jansson function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: Merging iptables-nftables into iptables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH nf-next] netfilter: add help information to new nf_tables Kconfig options
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ULOGD2 with MYSQL
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Li Zefan <lizefan@xxxxxxxxxx>
- [PATCH net-next] netfilter: remove dead code
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH net-next] ipset: remove unused code
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: Merging iptables-nftables into iptables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] Add UID/GID info to NFQUEUE
- From: JP Abgrall <jpa@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [PATCH iptables] libxtables: Call ipaddr_to_network before ipaddr_to_host.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xtables make functions local
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: nft: select NFNETLINK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCHv3 2/2] netfilter: nft: reject support for IPv6 and TCP reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCHv3 1/2] netfilter: REJECT: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: add help information to new nf_tables Kconfig options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Remove some backward-compat Kconfig symbols
- From: Ben Hutchings <ben@xxxxxxxxxxxxxxx>
- Re: ULOGD2 with MYSQL
- From: Sassy Natan <sassyn@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- [nftables PATCHv2] Add support for queue target
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCHv2 0/1] Support for queue target
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH nf-next v5 1/3] net: net_cls: move cgroupfs classid handling into core
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v5 3/3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v5 2/3] net: netprio: rename config to be more consistent with cgroup configs
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v5 0/3] xtables socket classid matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v4 1/3] net: net_cls: move cgroupfs classid handling into core
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v4 3/3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v4 2/3] net: netprio: rename config to be more consistent with cgroup configs
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v4 0/3] xtables socket classid matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [RFC PATCHv3 2/2] netfilter: nft: reject support for IPv6 and TCP reset
- From: Eric Leblond <eric@xxxxxxxxx>
- [RFC PATCHv3 1/2] netfilter: REJECT: separate reusable code
- From: Eric Leblond <eric@xxxxxxxxx>
- [RFC PATCHv3 finish reject support]
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH 2/2] netfilter: nft: explicit dependency to IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nft: explicit dependency to IPv6
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 1/2] netfilter: nft: select NFNETLINK
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 0/2] nftables: minor Kconfig fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH 0/8] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nf_ct_timestamp: Fix BUG_ON after netns deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: nfnetlink_log: unset nf_loggers for netns when unloading module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] netfilter: WARN about wrong usage of sequence number adjustments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nft_exthdr: call ipv6_find_hdr() with explicitly initialized offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: nf_tables: fix oops when updating table with user chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] netfilter: nf_tables: fix dumping with large number of sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: nf_tables: fix wrong datatype in nft_validate_data_load()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] ipvs: correct usage/allocation of seqadj ext in ipvs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [libnftables PATCH v3] src: update meta expr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xtables make functions local
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: remove nft_meta_target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xtables make functions local
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [GIT PULL nf-next] IPVS Updates for v3.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf 0/2] IPVS Fixes for v3.13
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Li Zefan <lizefan@xxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Li Zefan <lizefan@xxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xtables make functions local
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Li Zefan <lizefan@xxxxxxxxxx>
- [PATCH 2/2 nft] netlink: fix dictionary feature
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nft] mnl: print netlink message if if --debug=netlink in mnl_talk()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix wrong datatype in nft_validate_data_load()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: xtables make functions local
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Fwd: [PATCH] add hash:ip,mark data type to ipset
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: REJECT: separate reusable code
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: nf_tables_api.c:nf_tables_update cause oops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nf_tables_api.c:nf_tables_update cause oops
- From: Alex Wei <alex.kern.mentor@xxxxxxxxx>
- nf_tables_api.c:nf_tables_update cause oops
- From: Alex Wei <alex.kern.mentor@xxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next] ipvs: Remove unused variable ret from sync_thread_master()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS Updates for v3.14
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 1/2] netfilter: WARN about wrong usage of sequence number adjustments
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 2/2] ipvs: correct usage/allocation of seqadj ext in ipvs
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf 0/2] IPVS Fixes for v3.13
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [net PATCH 0/2] Fixing OOPSes in seqadj code
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Li Zefan <lizefan@xxxxxxxxxx>
- Re: [xtables-addons-1.47.1] compilation failed - compat_xtables.c:633: error: too few arguments to function ipv6_find_hdr
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH nft] netlink: add support to set meta keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v3] src: update meta expr
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf-next] netfilter: nf_tables: dump sets in all existing families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: fix dumping with large number of sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 iptables] iptables: Add IPv4/6 IPcomp match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2 net-next] netfilter: add IPv4/6 IPComp extension match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- [xtables-addons-1.47.1] compilation failed - compat_xtables.c:633: error: too few arguments to function ipv6_find_hdr
- From: <remoteshaman.com@xxxxxxxxx>
- [nft PATCH] files: replace interpreter during installation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: IPV6: kernel panic in net filter and ipv6 path while doing interface up and down continuously with ipv6 traffic
- From: Sasikanth babu <sasikanth.v19@xxxxxxxxx>
- [PATCH iptables-nftables v3] iptables: add libxt_cgroup frontend
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next v3] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH v4 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] build: properly handle --without-{xml,json}-parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] build: properly handle --without-{xml,json}-parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: IPV6: kernel panic in net filter and ipv6 path while doing interface up and down continuously with ipv6 traffic
- From: Sasikanth babu <sasikanth.v19@xxxxxxxxx>
- [libnftables PATCH] build: properly handle --without-{xml,json}-parsing
- From: Douglas Freed <dwfreed@xxxxxxx>
- Re: IPV6: kernel panic in net filter and ipv6 path while doing interface up and down continuously with ipv6 traffic
- From: Shawn Wilson <ag4ve.us@xxxxxxxxx>
- [resend patch net-next v3 4/7] ipv4: fix all space errors in file igmp.c
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 5/7] ipv4: ERROR: do not initialise globals to 0 or NULL
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 6/7] ipv4: ERROR: code indent should use tabs where possible
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 7/7] ipv4: ipv4: Cleanup the comments in tcp_yeah.c
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 2/7] ipv4: fix checkpatch error "space prohibited"
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 3/7] ipv4: fix checkpatch error with foo * bar
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 1/7] ipv4: do clean up with spaces
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [resend patch net-next v3 0/7] fix checkpatch errors
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- Re: [patch net-next v3 0/7] fix checkpatch errors
- From: chenweilong <chenweilong@xxxxxxxxxx>
- IPV6: kernel panic in net filter and ipv6 path while doing interface up and down continuously with ipv6 traffic
- From: Sasikanth babu <sasikanth.v19@xxxxxxxxx>
- [patch net-next v3 6/7] ipv4: ERROR: code indent should use tabs where possible
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 3/7] ipv4: fix checkpatch error with foo * bar
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 4/7] ipv4: fix all space errors in file igmp.c
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 0/7] fix checkpatch errors
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 5/7] ipv4: ERROR: do not initialise globals to 0 or NULL
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 7/7] ipv4: ipv4: Cleanup the comments in tcp_yeah.c
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next v3 1/7] ipv4: do clean up with spaces
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- Re: [patch net-next 6/7] ipv4: ERROR: code indent should use tabs where possible
- From: chenweilong <chenweilong@xxxxxxxxxx>
- Re: iptc_handle : where is header and structure info for iptc_handle ?
- From: Florian Westphal <fw@xxxxxxxxx>
- iptc_handle : where is header and structure info for iptc_handle ?
- From: "hanasaki@xxxxxxxxx" <hanasaki@xxxxxxxxx>
- [PATCH iptables] iptables: snat: add randomize-full support
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 -next] netfilter: don't use per-destination incrementing ports in nat random mode
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [patch net-next 6/7] ipv4: ERROR: code indent should use tabs where possible
- From: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
- [PATCH v4 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v4 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v4 0/2] Add UID/GID info to NFQUEUE
- From: valentina.giusti@xxxxxxxxxxxx
- Re: [PATCH v3 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH v3 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH v3 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nf_conntrack_timestamp: Fix BUG_ON after netns deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nf_conntrack_timestamp: Fix BUG_ON after netns deletion
- From: Helmut Schaa <helmut.schaa@xxxxxxxxxxxxxx>
- [PATCH v3 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v3 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v3 0/2] Add UID/GID info to NFQUEUE
- From: valentina.giusti@xxxxxxxxxxxx
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch net-next 7/7] ipv4: ERROR: do not use C99 // comments
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 4/7] ipv4: fix all space errors in file igmp.c
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 0/7] fix checkpatch errors
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 3/7] ipv4: fix checkpatch error with foo * bar
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 1/7] ipv4: do clean up with spaces
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 6/7] ipv4: ERROR: code indent should use tabs where possible
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- [patch net-next 5/7] ipv4: ERROR: do not initialise globals to 0 or NULL
- From: Chen Weilong <chenweilong@xxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH net] net: nft: call ipv6_find_hdr() with explicitly initialized offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] net: nft: call ipv6_find_hdr() with explicitly initialized offset
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: REJECT: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH] nfnetlink_log: unset nf_loggers for net namespace when unload nfnetlink_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next 2/2] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next 1/2] net: netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next v2] nf-nat: don't use per destination incrementing ports in nat random mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH next v2] nf-nat: don't use per destination incrementing ports in nat random mode
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] nf-nat: don't use per destination incrementing ports in nat random mode
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH next 2/2] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH next 1/2] net: netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Bart Van Assche <bvanassche@xxxxxxx>
- [PATCH] nf-nat: don't use per destination incrementing ports in nat random mode
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Bart Van Assche <bvanassche@xxxxxxx>
- Re: [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: BUG ip6tables and helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v2 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH v2 0/2] Add UID/GID info to NFQUEUE
- From: valentina.giusti@xxxxxxxxxxxx
- Re: [PATCH 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- BUG ip6tables and helper
- From: Noel Butler <noel.butler@xxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 0/2] Add UID/GID info to NFQUEUE
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: valentina.giusti@xxxxxxxxxxxx
- Re: xt_sslpin experimental match module for SSL/TLS pinning
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- xt_sslpin experimental match module for SSL/TLS pinning
- From: Fredburger <fredburgerbox@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCHv2 iptables] iptables: Add IPv4/6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- [PATCHv2 net-next] netfilter: add IPv4/6 IPComp extension match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Sasha Levin <sasha.levin@xxxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Thomas Gleixner <tglx@xxxxxxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Christoph Lameter <cl@xxxxxxxxx>
- Re: [PATCH 0/2] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: netfilter: active obj WARN when cleaning up
- From: Sasha Levin <sasha.levin@xxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: [PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: [PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- [PATCH 0/1] add hash:ip,mark data type to ipset
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Expose the table's chain usage to the netlink API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Expose the table's chain usage to the netlink API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] include: Update nftables API header in sync with kernel's one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net PATCH 0/2] Fixing OOPSes in seqadj code
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [net PATCH 0/2] Fixing OOPSes in seqadj code
- From: Julian Anastasov <ja@xxxxxx>
- [libnftables PATCH v2] src: update meta expr
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [net PATCH 2/2] ipvs: correct usage/allocation of seqadj ext in ipvs
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [net PATCH 1/2] netfilter: WARN about wrong usage of sequence number adjustments
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [net PATCH 0/2] Fixing OOPSes in seqadj code
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [nftables kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] nfnetlink_log: unset nf_loggers for net namespace when unload nfnetlink_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Kill unreplied conntracks by ICMP errors
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- iptc_handle : finding header and structure info
- From: "hanasaki@xxxxxxxxx" <hanasaki@xxxxxxxxx>
- [PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH -stable-3.12] netfilter: fix wrong byte order in nf_ct_seqadj_set internal information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nft_reject: fix endianness in dump function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: SYNPROXY target: restrict to INPUT/FORWARD
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] iptables: Add IPv6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- [PATCH 1/2] iptables: Add IPv4 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- [PATCH 0/2] iptables: IPv4/v6 IPcomp match support
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]