Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 0/8] nftables: fix and improve error reporting
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nftables] rebase next-3.14
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: don't release a conntrack with non-zero refcnt
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH RESEND v3] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: don't release a conntrack with non-zero refcnt
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnetfilter_acct PATCH] xml: fix inversion between pkt and bytes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ULOG Packet Count
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: ULOG Packet Count
- From: Sassy Natan <sassyn@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: don't release a conntrack with non-zero refcnt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ULOG Packet Count
- From: Eric Leblond <eric@xxxxxxxxx>
- ULOG Packet Count
- From: Sassy Natan <sassyn@xxxxxxxxx>
- Re: nftables with ipset combined types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nftables] rebase next-3.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: OOPS in nf_ct_unlink_expect_report using Polycom RealPresence Mobile
- From: astx <astx@xxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [nftables] rebase next-3.14
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] rebase next-3.14
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: OOPS in nf_ct_unlink_expect_report using Polycom RealPresence Mobile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: [PATCH]: libnetfilter_log: Uninitialized values in libnetfilter_log.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Fwd: [PATCH]: libnetfilter_log: Uninitialized values in libnetfilter_log.c
- From: Ivan Homoliak <xhomol11@xxxxxxxxx>
- Re: nftables with ipset combined types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: A conntrack, which is added via ctnetlink, can provoke a race condition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND v3] netfilter: xtables: add quota support to nfacct
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] libxtables: Print meaninful error message for an invalid MAC address string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] libxtables: Print meaninful error message for an invalid MAC address string
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- Re: [PATCH RESEND v3] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [ulogd RFC PATCH 0/2] New JSON output plugin
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] extensions: libxt_SYNPROXY: initial manual page
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH RESEND v3] netfilter: xtables: add quota support to nfacct
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RESEND v3] netfilter: xtables: add quota support to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- [PATCH 2/2] ipset: add forceadd userspace support for hash set types
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 1/2] ipset: add forceadd kernel support for hash set types
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH 0/2] ipset: forceadd support
- From: Josh Hunt <johunt@xxxxxxxxxx>
- Re: OOPS in nf_ct_unlink_expect_report using Polycom RealPresence Mobile
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- Fwd: OOPS in nf_ct_unlink_expect_report using Polycom RealPresence Mobile
- From: Daniel Borkmann <borkmann@xxxxxxxxxxxxx>
- Re: [PATCH]: libnetfilter_log: Uninitialized values in libnetfilter_log.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH]: libnetfilter_log: Uninitialized values in libnetfilter_log.c
- From: Ivan Homoliak <xhomol11@xxxxxxxxx>
- [PATCH nftables] mnl: fix inclusion of last rule in batch page
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] extensions: libxt_SYNPROXY: initial manual page
- From: Martin Topholm <mph@xxxxxxx>
- Re: [PATCH nftables] Add support for setting ct keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf v2] ipvs: fix AF assignment in ip_vs_conn_new()
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nf v2] ipvs: fix AF assignment in ip_vs_conn_new()
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH nftables] Add support for setting ct keys
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [Patch resend nf] ipvs: fix AF assignment in ip_vs_conn_new()
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [Patch resend nf] ipvs: fix AF assignment in ip_vs_conn_new()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH libnetfilter_conntrack] conntrack: fix parsing payload len
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: iptables-xml segfault if missing -A
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix oops when deleting a chain with references
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH] netfilter: nft_ct: fix unconditional dump of 'dir' attr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Patch resend nf] ipvs: fix AF assignment in ip_vs_conn_new()
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: nftables with ipset combined types
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables with ipset combined types
- From: Patrick Schaaf <netdev@xxxxxx>
- Re: TPROXY does not redirect to squid port
- From: Florian Westphal <fw@xxxxxxxxx>
- TPROXY does not redirect to squid port
- From: Peter Warasin <peter@xxxxxxxxxx>
- Re: nftables with ipset combined types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables with ipset combined types
- From: Brian Allen Vanderburg II <brianvanderburg2@xxxxxxx>
- [ulogd PATCH 2/2] json: introduce new JSON output plugin
- From: Eric Leblond <eric@xxxxxxxxx>
- [ulogd PATCH 1/2] store Common Information Model name in ulogd key
- From: Eric Leblond <eric@xxxxxxxxx>
- [ulogd RFC PATCH 0/2] New JSON output plugin
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [BUG PATCH] Memory leak on tcp_prot slab with TPROXY and TCP early demux
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH v3] netfilter: xtables: add quota support to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- Re: [PATCH RESEND v2 1/1] netfilter: xtables: add quota support to nfacct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RESEND v2 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- [BUG PATCH] Memory leak on tcp_prot slab with TPROXY and TCP early demux
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [BUG PATCH] Memory leak on tcp_prot slab with TPROXY and TCP early demux
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RESEND v2 1/1] netfilter: xtables: add quota support to nfacct
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RESEND v2 1/1] netfilter: xtables: add quota support to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- [PATCH RESEND v2 0/1] Add quota capabilities to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- Re: [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: ULOGD2 with MYSQL
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix racy rule deletion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix oops when deleting a chain with references
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables: how to parse optional packet header fields?
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nftables: how to parse optional packet header fields?
- From: James Chapman <jchapman@xxxxxxxxxxx>
- [Question and PATCH] nfconntrack: clear counter at IPCTNL_MSG_CT_DELETE
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: [README] bug fixes only...
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [README] bug fixes only...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [README] bug fixes only...
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH] iptables: iptables-xml segfault if missing -A
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [README] bug fixes only...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [README] bug fixes only...
- From: Cong Wang <cwang@xxxxxxxxxxxxxxxx>
- Re: nftables documentation
- From: Andreas Herz <andi@xxxxxxxxxxxxxxx>
- Re: nftables documentation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [README] bug fixes only...
- From: David Miller <davem@xxxxxxxxxxxxx>
- nftables documentation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nft PATCH v3] This patch adds the following operation:
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnetfilter_conntrack] conntrack: fix parsing payload len
- From: Ken-ichirou MATSUZAWA <chamaken@xxxxxxxxx>
- Re: RFC: nftables set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: RFC: nftables set selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v3] This patch adds the following operation:
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft PATCH v3] This patch adds the following operation:
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft RFC PATCH v2] src: add export operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables and sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables and sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nftables and sets
- From: Bjørnar Ness <bjornar.ness@xxxxxxxxx>
- [PATCH libnftnl] include: add cached copy of linux/kernel.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: RFC: nftables set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: RFC: nftables set selection
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] uapi: netfilter_arp: use __u8 instead of u_int8_t
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 04/73] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [nft RFC PATCH v2] src: add export operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add import operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH v2] src: add export operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add import operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- RFC: nftables set selection
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft RFC PATCH] src: add import operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft RFC PATCH v2] src: add export operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add export operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add export operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables add vs replace
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft RFC PATCH] src: add export operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nft RFC PATCH] src: add export operation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: Can't compile nftables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] cmd: add create command for tables and chains
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: Can't compile nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Can't compile nftables
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Can't compile nftables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] include: add stdint.h to common.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2] build: resolve build failure involving linux/netlink.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [libnftables PATCH] include: add stdint.h to common.h
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables add vs replace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables add vs replace
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftnl] build: fix final report after configuration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [BUG PATCH RFC] Memory on tcp_prot with TPROXY and TCP early demux
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: Fwd: Linux bridge for route
- From: tingwei liu <tingw.liu@xxxxxxxxx>
- Re: [netfilter-core] Release of nftables-plus 0.099
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [netfilter-core] Release of nftables-plus 0.099
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/2] build: resolve compile error involving XT_EXTENSION_MAXNAMELEN
- From: Jan Engelhardt <jengelh@xxxxxxx>
- libnftnl: two trivial build fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/2] build: resolve build failure involving linux/netlink.h
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [netfilter-core] Release of nftables-plus 0.099
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Release of nftables-plus 0.099
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nftable atomic rule replacement/update/restore?
- From: Patrick McHardy <kaber@xxxxxxxxx>
- nftable atomic rule replacement/update/restore?
- From: Anders Berggren <anders@xxxxxxxx>
- Re: [libnftnl PATCH] build: Ensure pkg-config file provides the right informations
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [iptables (nft branch) PATCH] nft: Use new libnftnl library name against former libnftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] build: Ensure pkg-config file provides the right informations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables (nft branch) PATCH] nft: Use new libnftnl library name against former libnftables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [libnftnl PATCH] build: Ensure pkg-config file provides the right informations
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH v2 1/1] netfilter: xtables: add quota support to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- [PATCH v2 0/1] Add quota capabilities to nfacct
- From: mathieu.poirier@xxxxxxxxxx
- Re: [HEADS UP] libnftables renamed to libnftnl
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [HEADS UP] libnftables renamed to libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [HEADS UP] libnftables renamed to libnftnl
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [HEADS UP] libnftables renamed to libnftnl
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [HEADS UP] libnftables renamed to libnftnl
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [ANNOUNCE]: Release of nftables 0.099
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [HEADS UP] libnftables renamed to libnftnl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipcomp: Convert struct xt_ipcomp spis into 16bits
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- [libnftables PATCH] tests: use the error reporting infraestructure
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] data_reg: fix verdict format approach
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] data_reg: fix verdict format approach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] ct: use a string with 'dir' attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: fix verdict format approach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] utils: fix nft_str2verdict return value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] ct: use a string with 'dir' attribute
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH v2] data_reg: fix verdict format approach
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: fix verdict format approach
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] utils: fix nft_str2verdict return value
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH net-next] ipcomp: Convert struct xt_ipcomp spis into 16bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: new xtables-addons implementation of XOR target
- From: Jan Engelhardt <jengelh@xxxxxxx>
- new xtables-addons implementation of XOR target
- From: Andrew Smith <iamasmith.home@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Alex Elsayed <eternaleye@xxxxxxxxx>
- [PATCH net-next] ipcomp: Convert struct xt_ipcomp spis into 16bits
- From: Fan Du <fan.du@xxxxxxxxxxxxx>
- Re: Fwd: Linux bridge for route
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- [PATCH nft] mnl: fix chain type autoloading
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- xtables-addons implementation of XOR target
- From: Andrew Smith <iamasmith.home@xxxxxxxxx>
- Re: [libnftables PATCH] ct: fix dir, is optional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Fwd: Linux bridge for route
- From: tingwei liu <tingw.liu@xxxxxxxxx>
- [nftables PATCH] netfilter: nft_ct: fix unconditional dump of 'dir' attr
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] ct: fix dir, is optional
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] ct: fix key and dir requirements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nft RFC] datatype: add time type parser and adapt output
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH v2] ct: fix key and dir requirements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] datatype: fix output of time type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft RFC] datatype: add time type parser and adapt output
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft RFC] datatype: add time type parser and adapt output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] ct: fix key and dir requirements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH-next v3] netfilter: don't use module_init/exit in core IPV4 code
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH-next v3] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- [PATCH 0/2] set: set parsing fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/2] set: make set initializer parsable
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/2] set: make set flags output parsable
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] src: use ':' instead of '=>' in dictionaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nftables] make set initializer parsable
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH-next v2] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH-next v2] netfilter: don't use module_init/exit in core IPV4 code
- From: Benjamin Poirier <benjamin.poirier@xxxxxxxxx>
- Re: [PATCH nft] src: use ':' instead of '=>' in dictionaries
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nftables] make set flags output parsable
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nftables] fix parser.h recursive inclusion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nftables] fix parser.h recursive inclusion
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] ct: fix key and dir requirements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables] fix parser.h recursive inclusion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH] ct: fix missing NFT_CT_L3PROTOCOL in ctkey2str_array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: use ':' instead of '=>' in dictionaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] src: add new --debug=mnl option to enable libmnl debugging
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/3] parser: fix parsing of ethernet protocol types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 1/3] parser: fix parsing of ethernet protocol types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 3/3] payload: fix inconsistency in ethertype output
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 2/3] payload: fix crash when wrong ethernet protocol type is used
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft 1/3] parser: fix parsing of ethernet protocol types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/2] segtree: fix decomposition of unclosed intervals
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/2]: nftables: segtree fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/2] segtree: only use prefix expressions for ranges for selected datatypes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: libnftables set element printing, DATA_CHAIN
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: libnftables set element printing, DATA_CHAIN
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/3] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: nf_tables: fix missing byteorder conversion in policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nft_ct: fix compilation warning if NF_CONNTRACK_MARK is not set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: Add dependency on IPV6 for NF_TABLES_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Jan 15 (netfilter: nft_reject)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- libnftables set element printing, DATA_CHAIN
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH-next v2] netfilter: don't use module_init/exit in core IPV4 code
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- [PATCH nft 3/3] payload: fix inconsistency in ethertype output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] payload: fix crash when wrong ethernet protocol type is used
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/3] parser: fix parsing of ethernet protocol types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v2] ct: fix key and dir requirements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] ct: fix missing NFT_CT_L3PROTOCOL in ctkey2str_array
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: remove double colon
- From: Denis Kirjanov <kda@xxxxxxxxxxxxxxxxx>
- Re: [libnftables PATCH] ct: fix key and dir requirements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] ct: fix key and dir requirements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nft RFC] payload: use ethertype in hexadecimal for meta protocol
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft RFC] payload: use ethertype in hexadecimal for meta protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] tests: xml: delete comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: remove double colon
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH] tests: xml: delete comments
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] segtree: add new segtree debugging option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] segtree: add new segtree debugging option
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] segtree: add new segtree debugging option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] segtree: add new segtree debugging option
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH] tests: xml: delete comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] lookup: xml: conditional output of dreg
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] mxml: add optional/mandatory flag to nft_mxml_reg_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] segtree: add new segtree debugging option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2 nft RFC] expression: default to print binary operations using nominal representation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2 nft RFC] expression: default to print binary operations using nominal representation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] expression: fix printing of binary operation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/2 nft RFC] expression: default to print binary operations using nominal representation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/2] expr: remove secmark from ct and meta expression
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/2] meta: don't require "meta" keyword for a subset of meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/2] nftables: removal of secmark and shortened meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [libnftables PATCH] tests: xml: delete comments
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/2] expression: fix printing of binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nft RFC] expression: default to print binary operations using nominal representation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH 2/2] lookup: xml: conditional output of dreg
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] mxml: add optional/mandatory flag to nft_mxml_reg_parse
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH netfilter: nf_ct] Fix compilation warning if NF_CONNTRACK_MARK is not set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables v4] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] meta: Let user specify any combination of sreg/dreg
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] scanner: add aliases to symbols for easier interaction with most shells
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nft: scanner: fixed problem with ipv6 address
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftables]: expr/cmp: fix type size
- From: Patrick McHardy <kaber@xxxxxxxxx>
- RFC: removing meta keyword
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] nft: scanner: fixed problem with ipv6 address
- From: Ana Rey <anarey@xxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- [PATCH] [RFC] netfilter: nf_conntrack: don't relase a conntrack with non-zero refcnt
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- Re: [PATCH] netfilter: Add dependency on IPV6 for NF_TABLES_INET
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: Add dependency on IPV6 for NF_TABLES_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- [PATCH nft] scanner: add aliases to symbols for easier interaction with most shells
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] scanner: replace binary characters '&' '|' and '!' by their names
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3/3] scanner: rename address selector from 'eth' to 'ether'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] scanner: replace binary characters '&' '|' and '!' by their names
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] scanner: replace binary characters '&' '|' and '!' by their names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3 nft] [RFC] more syntax changes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/3] evaluate: allow to use string with binary operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] scanner: rename address selector from 'eth' to 'ether'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] scanner: replace binary characters '&' '|' and '!' by their names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3 nft] [RFC] more syntax changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Andrey Wagin <avagin@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: xtables: add quota support to nfacct
- From: Mathieu Poirier <mathieu.poirier@xxxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: randconfig build error with next-20140113, in net/netfilter/nft_reject.c
- From: Paul Gortmaker <paul.gortmaker@xxxxxxxxxxxxx>
- Re: Fwd: Bug 883 - Uninitialized values in libnetfilter_log.c
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- randconfig build error with next-20140113, in net/netfilter/nft_reject.c
- From: Jim Davis <jim.epost@xxxxxxxxx>
- Re: [PATCH nft] expression: fix output of verdict maps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nft] expression: fix output of verdict maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] set: xml: data_type/data_len are optional
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nftables] netfilter: nf_tables: fix unmet dependencies in nf_tables_inet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: improve build system
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: improve build system
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables: improve build system
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft PATCH] files: replace interpreter during installation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nft PATCH] files: replace interpreter during installation
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: nftables: improve build system
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] build: rename conflicting parser.h instances
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/3] build: use automake and pkgconfig
- From: Jan Engelhardt <jengelh@xxxxxxx>
- nftables: improve build system
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/3] build: remove unused checks
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] nftables: Drop hard coded install using root user owner and group.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] nftables: Drop hard coded install using root user owner and group.
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: nftables/libnftables packages for Fedora
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- nftables/libnftables packages for Fedora
- From: Kevin Fenzi <kevin@xxxxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [RFC nft PATCH] syntax: replace '=>' with '=:'
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v3)
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- Fwd: Bug 883 - Uninitialized values in libnetfilter_log.c
- From: Ivan Homoliak <xhomol11@xxxxxxxxx>
- [PATCH libnftables v4] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] meta: Let user specify any combination of sreg/dreg
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nf_ct] Fix compilation warning if NF_CONNTRACK_MARK is not set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_tables: fix missing byteorder conversion in policy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH iptables-nftables] nft: fix inconsistent data type in NFT_EXPR_CMP_OP and NFT_EXPR_META_KEY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [libnftables PATCH next-3.14] expr: fix registers datatypes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink: fix wrong type in attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables] expr: fix incorrect data type for several expression object fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH next-3.14] expr: fix registers datatypes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: datatype: fix crash if wrong integer type is passed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] datatype: revert "fix crash if wrong integer type is passed"
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/4] meta: fix crash when parsing unresolvable mark values
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/4] erec: fix error markup for errors starting at column 0
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/4] nftables: bug fixes and minor cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/4] nftables: shorten "could not process rule in batch" message
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- datatype: fix crash if wrong integer type is passed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/23] nf_tables updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH libnftables v2] Add support for ct set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/23] netfilter: nf_tables: make chain types override the default AF functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/23] netfilter: nf_tables: add hook ops to struct nft_pktinfo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/23] netfilter: nft_meta: add l4proto support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/23] netfilter: nf_tables: split chain policy validation from actually setting it
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/23] netfilter: nft_ct: Add support to set the connmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/23] netfilter: nft_meta: fix lack of validation of the input register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/23] netfilter: nf_tables: fix check for table overflow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/23] netfilter: nf_tables: restore chain change atomicity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/23] netfilter: nf_tables: add nfproto support to meta expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/23] netfilter: nf_tables: add support for multi family tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/23] netfilter: nf_tables: constify chain type definitions and pointers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/23] netfilter: nf_tables: prohibit deletion of a table with existing sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/23] netfilter: nf_tables: take AF module reference when creating a table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/23] netfilter: nf_tables: add missing module references to chain types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/23] netfilter: nf_tables: replay request after dropping locks to load chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/23] netfilter: nf_tables: fix chain type module reference handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/23] netfilter: nf_tables: perform flags validation before table allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/23] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/23] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/23] netfilter: nf_tables: minor nf_chain_type cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/23] netfilter: nf_tables: add "inet" table for IPv4/IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/23] nf_tables updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables next-3.14 v2] src: fix compilation due to missing NFPROTO_INET definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables next-3.14] src: fix compilation due to missing NFPROTO_INET definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables v2] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrey Wagin <avagin@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v6] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxxxxxx>
- Re: [PATCH v6] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables] netfilter: nf_tables: fix error path in the init functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf_tables] netfilter: nft_meta: fix lack of validation of the input register
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/13] netfilter: nf_tables: unininline nft_trace_packet()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/13] netfilter: nf_tables: prohibit deletion of a table with existing sets
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/13] netfilter: nf_tables: take AF module reference when creating a table
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 09/13] netfilter: nf_tables: perform flags validation before table allocation
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/13] netfilter: nf_tables: minor nf_chain_type cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/13] netfilter: nf_tables: constify chain type definitions and pointers
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/13] netfilter: nf_tables: replay request after dropping locks to load chain type
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/13] netfilter: nf_tables: add missing module references to chain types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/13] netfilter: nf_tables: fix chain type module reference handling
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/13] netfilter: nf_tables: fix check for table overflow
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/13] netfilter: nf_tables: restore chain change atomicity
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/13] netfilter: nf_tables: split chain policy validation from actually setting it
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/3] tests: update tests with nft_*_parse_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/3] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/3] parsing: rework and generalize the build/parse system
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- [libnftables PATCH 3/3] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/3] parsing: rework and generalize the build/parse system
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/3] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrew Vagin <avagin@xxxxxxxxx>
- Re: [PATCH 1/1] add markmask for hash:ip,mark data type
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/1] add hash:ip,mark data type to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH RFC] nftables: fix surpression of "permission denied" errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/3] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: nf_conntrack_dccp: use %s format string for buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] Revert "netfilter: avoid get_random_bytes calls"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nf_conntrack_dccp: fix skb_header_pointer API usages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v2)
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get (v2)
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/12] proto: add support for meta templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/12] meta: add l4proto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/12] meta: add nfproto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/12] include: resync nftables.h with kernel
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/12] nftables: add support for the "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/12] proto: add helper function to update protocol context
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/12] proto: add debugging for protocol context updates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/12] expr: add protocol context update callback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/12] nftables: generic procotol contexts
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 00/12] nftables: generic protocol contexts, "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [PATCH libnftables] Improved error handling and minor clean-up
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables v2] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Improved error handling and minor clean-up
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] src: add support for UID/GID socket info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/6] set_elem: add json parsing to API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/6] mxml: add error reference of the top node
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nftables: fix warning in nft_reject
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 7/6] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nf_nat: fix access to uninitialized buffer in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: only warn once on wrong seqadj usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Patches to xtables-addons xt_quota2
- From: Sam Liddicott <sam@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for ct set
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] Add support for setting ct keys
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for ct set
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 0/2] libnetfilter_queue: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 1/2] src: add support for UID/GID socket info
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 2/2] utils: add test for nfq_get_uid and nfq_get_gid
- From: valentina.giusti@xxxxxxxxxxxx
- [libnftables PATCH 1/6] mxml: add error reference of the top node
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: A conntrack, which is added via ctnetlink, can provoke a race condition
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftables PATCH 6/6] tests: update tests with nft_*_parse_file()
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 5/6] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 4/6] internal: add a selector for parsing ops
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 3/6] internal: rework parsing symbol logic
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/6] set_elem: add json parsing to API
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 0/6] parsing update
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Vasily Averin <vvs@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrey Wagin <avagin@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- A conntrack, which is added via ctnetlink, can provoke a race condition
- From: Andrey Wagin <avagin@xxxxxxxxx>
- Re: [PATCH v4 1/2] netfilter_queue: enable UID/GID socket info retrieval
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: nftables: fix warning in nft_reject
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH libnftables] Add support for nft_connmark
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrew Vagin <avagin@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH nftables] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset: hash_netnet4_data_equal typo commit status follow-up
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/13] nftables updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- [PATCH 7/6] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET
- From: Patrick McHardy <kaber@xxxxxxxxx>
- ipset: hash_netnet4_data_equal typo commit status follow-up
- From: David Gervais <dgervais@xxxxxxxxx>
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 07/12] include: resync nftables.h with kernel
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 08/12] nftables: add support for the "inet" family
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 10/12] proto: add support for meta templates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 05/12] proto: add debugging for protocol context updates
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 04/12] proto: add helper function to update protocol context
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 03/12] expr: add protocol context update callback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 11/12] meta: add nfproto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 12/12] meta: add l4proto support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 02/12] nftables: generic procotol contexts
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [RFC PATCH 00/12] nftables: generic protocol contexts, "inet" family support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Cyrill Gorcunov <gorcunov@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH netfilter: nft] Add the connmark meta_key
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables] Add support for the meta connmark key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for the connmark meta key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] Add the connmark meta_key
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nfnetlink_queue: fix compilation problem due missing header
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: nfnetlink_queue: fix compilation problem due missing header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback
- From: Andrey Vagin <avagin@xxxxxxxxxx>
- Re: [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 02/13] netfilter: xt_NFQUEUE: separate reusable code
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 02/13] netfilter: xt_NFQUEUE: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/13] netfilter: nf_tables: remove nft_meta_target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/13] netfilter: nft: add queue module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/13] netfilter: nft_reject: support for IPv6 and TCP reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/13] netfilter: add help information to new nf_tables Kconfig options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/13] netfilter: REJECT: separate reusable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/13] netfilter: nf_tables: fix type in parsing in nf_tables_set_alloc_name()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/13] netfilter: nf_tables: fix issue with verdict support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/13] netfilter: nf_tables: Expose the table usage counter via netlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/13] netfilter: nf_tables: remove unused variable in nf_tables_dump_set()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/13] netfilter: nf_tables: dump sets in all existing families
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/13] netfilter: select NFNETLINK when enabling NF_TABLES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/13] netfilter: nf_tables: nft_meta module get/set ops
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/13] nftables updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [net PATCH] netfilter: only warn once on wrong seqadj usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_log: use %s format string for buffer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_conntrack: fix skb_header_pointer API usages in DCCP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [PATCH 01/12] netfilter: avoid get_random_bytes calls
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH netfilter: nft] add connmark module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables] Add support for nft_connmark
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nftables] Add support for connmark target
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH libnftables] Add support for nft_connmark
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- [PATCH netfilter: nft] add connmark module
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- Re: [libnftables PATCH v2] parsing: add interface to parse from file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] parsing: add interface to parse from file
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v2] examples: add nft-ruleset-get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]