Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH libnftables] expr: log: release prefix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] nftables: delete debian/
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: decrement global counter after object release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nft_compat: fix error path in nft_parse_compat()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables-nftables] nft: fix inversion of built-in selectors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ulogd: ulogd_inppkt_NFLOG: close nflog handle after unbinding
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: linux 3.12 regression - snat problem with ftp helper
- From: "Dawid Stawiarski - nazwa.pl" <dawid.stawiarski@xxxxxxxxx>
- [nftables PATCH] listing: only display wanted chain
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCh 0/3] Fix jump operation
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 3/3] verdict: fix delinearize in case of jump
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 2/3] jump: fix logic in netlink linearize.
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 1/3] expression: fix indent
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: nftables: use automake & pkgconfig
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH] netfilter: byte order issue in nf_ct_seqadj_set
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: linux 3.12 regression - snat problem with ftp helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: linux 3.12 regression - snat problem with ftp helper
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [RFC PATCH net-next] net: reorder struct netns_ct for better cache-line usage
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [RFC PATCH net-next] net: reorder struct netns_ct for better cache-line usage
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- [PATCH] build: fix make distcheck
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] expr: match: fix wrong flag setting in nft_rule_expr_match_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- linux 3.12 regression - snat problem with ftp helper
- From: "Dawid Stawiarski - nazwa.pl" <dawid.stawiarski@xxxxxxxxx>
- linux 3.12 - snat problem with ftp helper
- From: "Dawid Stawiarski - nazwa.pl" <dawid.stawiarski@xxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 2/2 nft] build: relax compilation not to break on warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2 nft] parser: fix warning on deprecated directive in bison
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftables] expr: fix leak in target and match expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH v3] tests: tests for libnftables
- From: Ana Rey <anarey@xxxxxxxxx>
- [PATCH 2/9] hsr: use genl_register_family_with_ops()
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 7/9] genetlink: allow making ops const
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 3/9] ieee802154: use genl_register_family_with_ops()
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 4/9] wimax: use genl_register_family_with_ops()
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 5/9] genetlink: remove genl_register_ops/genl_unregister_ops
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 6/9] genetlink: register family ops as array
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 8/9] genetlink: make all genl_ops users const
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 0/9] genetlink: reduce ops size and complexity (v2)
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 9/9] genetlink: make genl_ops flags a u8 and move to end
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [PATCH 1/9] taskstats: use genl_register_family_with_ops()
- From: Johannes Berg <johannes@xxxxxxxxxxxxxxxx>
- [nft PATCH] nftables: delete debian/
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/2] netfilter: synproxy: correct wscale option passing
- From: Martin Topholm <mph@xxxxxxx>
- [PATCH 1/2] netfilter: synproxy: send mss option to backend
- From: Martin Topholm <mph@xxxxxxx>
- [PATCH 0/2] Netfilter SYNPROXY mss and wscale bugfix
- From: Martin Topholm <mph@xxxxxxx>
- Re: [PATCH 0/2] Netfilter SYNPROXY mss and wscale bugfix
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH] arptables: Add man pages for arptables-{save,restore}
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- [PATCH V2] arptables: Add man pages for arptables-{save,restore}
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH] arptables: Add man pages for arptables-{save,restore}
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [libnftables PATCH 2/2] json: Refactor of exporting and parsing support flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] json: remove the rule flags in ruleset file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix connlimit Kconfig prompt string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Fix the format of /proc/net/nf_conntrack_expect
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 v2] Fix all set output from list/save when set with counters in use.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: Fix the format of /proc/net/nf_conntrack_expect
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- [PATCH 1/3 v2] Fix all set output from list/save when set with counters in use.
- From: Sergey Popovich <popovich_sergei@xxxxxxx>
- Re: [PATCH] add hash:ip,mark data type to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 3/3] ipset: Follow manual page behavior for SET target on list:set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/3] ipset: Fix malformed output from list/save for ICMP types in port field.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/3] Fix all set output from list/save when set with counters in use.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] ipset: fix timeout data type size
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] add hash:ip,mark data type to ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [GIT] Networking
- From: David Miller <davem@xxxxxxxxxxxxx>
- [libnftables PATCH 2/2] json: Refactor of exporting and parsing support flags
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] json: remove the rule flags in ruleset file
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH v2] tests: tests for libnftables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH v2] tests: tests for libnftables
- From: Ana Rey <anarey@xxxxxxxxx>
- [nftables kernel PATCH v2] netfilter: nf_tables: allow to dump sets using NFPROTO_UNSPEC
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: TOS target mask - leave alone the ECN bits
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [patch net-next 0/2] netfilter: push reasm skb through instead of original frag skbs
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] tests: tests for libnftables
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] tests: tests for libnftables
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] tests: tests for libnftables
- From: Ana Rey <anarey@xxxxxxxxx>
- TOS target mask - leave alone the ECN bits
- From: Patrick Schaaf <netdev@xxxxxx>
- Re: [PATCH v2] netfilter: introduce l2tp match extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Panic on 3.10.18 in nf_conntrack_sip with IPv6
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] nft-bridge: translating ebt to ip flags and viceversa
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH] nft-bridge: translating ebt to ip flags and viceversa
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [libnftables PATCH] tests: fix undefined symbol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: arp: inhibate -l option so only a fixed size arhln is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables v2 PATCH] nft: arp: inhibate -l option so only a fixed size arhln is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] ipset: fix timeout data type size
- From: Nikolay Martynov <mar.kolya@xxxxxxxxx>
- Re: [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [patch net-next 2/2] netfilter: push reasm skb through instead of original frag skbs
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [PATCH 3/3] ipset: Follow manual page behavior for SET target on list:set
- From: Sergey Popovich <popovich_sergei@xxxxxxx>
- [PATCH 2/3] ipset: Fix malformed output from list/save for ICMP types in port field.
- From: Sergey Popovich <popovich_sergei@xxxxxxx>
- [PATCH 1/3] Fix all set output from list/save when set with counters in use.
- From: Sergey Popovich <popovich_sergei@xxxxxxx>
- [libnftables PATCH] tests: fix undefined symbol
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [iptables-nftables v2 PATCH] nft: arp: inhibate -l option so only a fixed size arhln is in use
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH] netfilter: fix connlimit Kconfig prompt string
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- [PATCH v2 04/11] net ipset: use rbtree postorder iteration instead of opencoding
- From: Cody P Schafer <cody@xxxxxxxxxxxxxxxxxx>
- Re: [patch net-next 2/2] netfilter: push reasm skb through instead of original frag skbs
- From: Julian Anastasov <ja@xxxxxx>
- bugfix: fix regression bug in ebt_ip6 which resulted in ebtables IPv6 src/dst fields not being zeroed
- From: Luis Fernando Cornachioni Estrozi <lestrozi@xxxxxxxxxx>
- Re: [PATCH 3/4] build: avoid inclusion of stdbool.h in C++
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH iptables] extensions: libxt_cluster: add note on arptables-jf
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [patch net-next 2/2] netfilter: push reasm skb through instead of original frag skbs
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch net-next 1/2] ip6_output: fragment outgoing reassembled skb properly
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch net-next 0/2] netfilter: push reasm skb through instead of original frag skbs
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: arp: inhibate -l option so only a fixed size arhln is in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables PATCH] nft: arp: inhibate -l option so only a fixed size arhln is in use
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH] nft: arp: Fix a compilation warning
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [patch net-next 1/3] move skb_nfct_reasm into skbuff.h
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next 3/3] fix skb_morph to preserve skb->sk and skb->destructor pointers
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Arnaldo Carvalho de Melo <acme@xxxxxxxxxxxxxxxxxx>
- Re: [patch net-next 3/3] fix skb_morph to preserve skb->sk and skb->destructor pointers
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH iptables 2/3] android: Don't include conflicting headers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/4] build: avoid inclusion of stdbool.h in C++
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] build: resolve build errors in dependent programs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] build: resolve automake 1.12 warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [patch net-next 3/3] fix skb_morph to preserve skb->sk and skb->destructor pointers
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- Re: [patch net-next 1/3] move skb_nfct_reasm into skbuff.h
- From: Marcelo Ricardo Leitner <mleitner@xxxxxxxxxx>
- [patch net-next 1/3] move skb_nfct_reasm into skbuff.h
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch net-next 3/3] fix skb_morph to preserve skb->sk and skb->destructor pointers
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch net-next 2/3] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch net-next 0/3] couple of reasm fixes
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [libnftables PATCH] src: Fix a build issue on header inclusion in internal.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] src: Fix a build issue on header inclusion in internal.h
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH v2] iptables: add support for l2tp match
- From: James Chapman <jchapman@xxxxxxxxxxx>
- [PATCH v2] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: [PATCH 0/5] nf_tables updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/20] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: nft_compat: use _safe version of list_for_each
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: bridge: nf_tables: add filter chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nft_nat: Fix endianness issue reported by sparse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] nf_tables updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: bridge: fix nf_tables bridge dependencies with main core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nf_tables: remove duplicated include from nf_tables_ipv4.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/20] netfilter: ipt_CLUSTERIP: make proc directory per net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/20] ipvs: improved SH fallback strategy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/20] netfilter: ipt_CLUSTERIP: make clusterip_lock per net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/20] netfilter: ipt_CLUSTERIP: make clusterip_list per net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/20] ipvs: avoid rcu_barrier during netns cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/20] netfilter: ipt_CLUSTERIP: use proper net namespace to operate CLUSTERIP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/20] netfilter: ipt_CLUSTERIP: add parameter net in clusterip_config_find_get
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/20] netfilter: ctnetlink: account both directions in one step
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/20] netfilter: introduce nf_conn_acct structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/20] net: ipvs: sctp: do not recalc sctp csum when ports didn't change
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/20] netfilter: ipset: The unnamed union initialization may lead to compilation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/20] netfilter: ipset: Use netlink callback dump args only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/20] netfilter: ipset: remove duplicate define
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/20] netfilter: ipt_CLUSTERIP: create proc entry under proper ipt_CLUSTERIP directory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/20] net: ipvs: sctp: add missing verdict assignments in sctp_conn_schedule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/20] bridge: netfilter: orphan skb before invoking ip netfilter hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/20] netfilter: ip6t_REJECT: skip checksum verification for outgoing ipv6 packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/20] netfilter:ipset: Fix memory allocation for bitmap:port
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/20] netfilter: xt_socket: use sock_gen_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/20] ipvs: fix the IPVS_CMD_ATTR_MAX definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/20] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: add support for l2tp match
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: [PATCH] netfilter: introduce l2tp match extension
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] netfilter: introduce l2tp match extension
- From: James Chapman <jchapman@xxxxxxxxxxx>
- Re: [patch net-next RFC] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [patch] netfilter: nf_tables: use _safe version of list_for_each
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- re: netfilter: nf_tables: add compatibility layer for x_tables
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH iptables] extensions: libxt_cluster: add note on arptables-jf
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH iptables] extensions: libxt_cluster: add note on arptables-jf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: improve chain name validation
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH iptables 3/3] android: build: Blacklist TCPOPTSTRIP on systems that lack TCPOPT_*
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] ip6tables: Use consistent exit code for EAGAIN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 4/6] test: report errors building XML tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: nf_tables: remove duplicated include from nf_tables_ipv4.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL] Second Round of IPVS updates for v3.13
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 6/6] test: report compilation without support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 5/6] test: style cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/6] test: use constants for coloured strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/6] test: fix memleak in XML testing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/6] test: return EXIT_FAILURE if some error was found
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: add fprintf API functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] ruleset: factorize json/xml tagging
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC 3/3] acct: add input and output interface index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: spurious error in load_extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: improve chain name validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] payload: fix ethernet type protocol matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: tar packages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables: tar packages
- From: Xose Vazquez Perez <xose.vazquez@xxxxxxxxx>
- Re: [RFC PATCH nf_conntrack_extend] new extensions without changes kernel source
- From: "Vitaly E. Lavrov" <lve@xxxxxxx>
- [PATCH iptables] ip6tables: Use consistent exit code for EAGAIN
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH 1/8] net ipset: use rbtree postorder iteration instead of opencoding
- From: Cody P Schafer <cody@xxxxxxxxxxxxxxxxxx>
- Re: ipv6 fragmentation-related panic in netfilter
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ipv6 fragmentation-related panic in netfilter
- From: Steffen Klassert <steffen.klassert@xxxxxxxxxxx>
- [PATCH] iptables: add --line-numbers short option
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] add hash:ip,mark data type to ipset
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- [libnftables PATCH 6/6] test: report compilation without support
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 5/6] test: style cleanup
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 4/6] test: report errors building XML tree
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 3/6] test: use constants for coloured strings
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/6] test: return EXIT_FAILURE if some error was found
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/6] test: fix memleak in XML testing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [RFC PATCH nf_conntrack_extend] new extensions without changes kernel source
- From: Dirk <biecie547@xxxxxxxxx>
- [PATCH 1/1] ipset: fix timeout data type size
- From: Nikolay Martynov <mar.kolya@xxxxxxxxx>
- Re: [BUG 3.12.rc4] Oops: unable to handle kernel paging request during shutdown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC nft] flush/delete ruleset
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] add hash:ip,mark data type to ipset
- From: Vytas Dauksa <vytas.dauksa@xxxxxxxxxxxxxx>
- Re: [patch net-next RFC] netfilter: ip6_tables: use reasm skb for matching
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch net-next RFC] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [patch net-next RFC] netfilter: ip6_tables: use reasm skb for matching
- From: Florian Westphal <fw@xxxxxxxxx>
- [patch net-next RFC] netfilter: ip6_tables: use reasm skb for matching
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [PATCH -next] netfilter: nf_tables: remove duplicated include from nf_tables_ipv4.c
- From: Wei Yongjun <weiyj.lk@xxxxxxxxx>
- [PATCH nf-next 2/2] net: ipvs: sctp: do not recalc sctp csum when ports didn't change
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL] Second Round of IPVS updates for v3.13
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next 1/2] net: ipvs: sctp: add missing verdict assignments in sctp_conn_schedule
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: ipv6 fragmentation-related panic in netfilter
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [libnftables PATCH v2] src: add fprintf API functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- ipv6 fragmentation-related panic in netfilter
- From: Tomas Hlavacek <tmshlvck@xxxxxxxxx>
- Re: [PATCH] netfilter fix for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: IPV6 nf defrag does not work
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [nft tool PATCH] src: include <stdio.h>
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nf_conntrack_extend] new extensions without changes kernel source
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: xt_NFQUEUE: fix --queue-bypass regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter fix for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: IPV6 nf defrag does not work
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH FIX] NFQUEUE: fix --queue-bypass regression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: IPV6 nf defrag does not work
- From: Florian Westphal <fw@xxxxxxxxx>
- IPV6 nf defrag does not work
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- [nft tool PATCH] src: include <stdio.h>
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH nf_tables] netfilter: bridge: nf_tables: add filter chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH v2] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH FIX] NFQUEUE: fix --queue-bypass regression
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [libnftables PATCH] test: xml: fix truncated ruleset testfile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/2 nf_tables] 32/64/128-bits word addressing in nf_tables
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [RFC PATCH nft] src: finish concatenation support using the set infrastructure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH 1/2 nf_tables] netfilter: nf_tables: allow 32/64/128-bits register addressing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH 2/2 nf_tables] netfilter: nf_tables: round to 32 bits in payload operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH 0/2 nf_tables] 32/64/128-bits word addressing in nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables 1/3] android: libiptc: Fix socklen_t type mismatch on Android
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/4] build: avoid inclusion of stdbool.h in C++
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/4] build: resolve build errors in dependent programs
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/4] build: use C++11 headers if available
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/4] build: resolve automake 1.12 warning
- From: Jan Engelhardt <jengelh@xxxxxxx>
- libnftables header includes fixups
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 2/2] build: resolve build errors in dependent programs
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [libnftables PATCH 2/2] src: add fprintf API functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] ruleset: factorize json/xml tagging
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] test: xml: fix truncated ruleset testfile
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nftables-kernel PATCH v2] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [libnftables PATCH] test: xml: fix malformed ruleset testfile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] test: xml: fix malformed ruleset testfile
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix library interface version
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] nft: nft_set_attr_get_u32 null pointer deref
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: linux-next: Tree for Oct 18 (netdev: nf_tables_bridge.c)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] build: resolve build errors in dependent programs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: orphan skb before invoking ip netfilter hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [BUG 3.12.rc4] Oops: unable to handle kernel paging request during shutdown
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] nft: nft_set_attr_get_u32 null pointer deref
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [BUG] libnftables: NULL pointer dereference in nft_expr_ops_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] test: update to fit latest limit changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] test: xml: fix malformed ruleset testfile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: WGH <wgh@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.20.1 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/2] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: remove duplicate define
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter:ipset: Fix memory allocation for bitmap:port
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: WGH <wgh@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix library interface version
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] build: fix incorrect library versioning
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: remove duplicate define
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset 6.20 compile failure on <3.8
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: conntrack, idle TCP connection and keep-alives
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH libmnl] socket: Enable specifying receiver of a netlink messages
- From: Kristian Evensen <kristian.evensen@xxxxxxxxx>
- conntrack, idle TCP connection and keep-alives
- From: WGH <wgh@xxxxxxxxx>
- [PATCH iptables 3/3] android: build: Blacklist TCPOPTSTRIP on systems that lack TCPOPT_*
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH iptables 2/3] android: Don't include conflicting headers
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH iptables 1/3] android: libiptc: Fix socklen_t type mismatch on Android
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH iptables 0/3] Fix build errors on Android
- From: Kevin Cernekee <cernekee@xxxxxxxxx>
- [PATCH] netfilter: ipset: Fix library interface version
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- [PATCH] nft: nft_set_attr_get_u32 null pointer deref
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [BUG] libnftables: NULL pointer dereference in nft_expr_ops_lookup
- From: Jiri Benc <jbenc@xxxxxxxxxx>
- Re: [BUG] libnftables: NULL pointer dereference in nft_expr_ops_lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_queue/libnetfilter_conntrack: TCP packet reordering
- From: Florian Westphal <fw@xxxxxxxxx>
- libnetfilter_queue/libnetfilter_conntrack: TCP packet reordering
- From: Christian Priebe <chr.priebe@xxxxxxxxxxxxxx>
- [BUG] libnftables: NULL pointer dereference in nft_expr_ops_lookup
- From: Jiri Benc <jbenc@xxxxxxxxxx>
- [PATCH libnftables] rule: remove NFT_RULE_ATTR_FLAGS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: orphan skb before invoking ip netfilter hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: orphan skb before invoking ip netfilter hooks
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] bridge: netfilter: orphan skb before invoking ip netfilter hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftables PATCH] test: xml: fix malformed ruleset testfile
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Pekka Pietikäinen <pp@xxxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Pekka Pietikäinen <pp@xxxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Jari Turkia <jmjt@xxxxxx>
- Re: [PATCH net-next 0/3] initialize fragment hash secrets with net_get_random_once
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/4] [RFC] net: Explicitly initialize u64_stats_sync structures for lockdep
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 1/4] [RFC] net: Explicitly initialize u64_stats_sync structures for lockdep
- From: John Stultz <john.stultz@xxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: x_tables: fix ordering of jumpstack allocation and table update
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 3/3] netfilter: x_tables: fix ordering of jumpstack allocation and table update
- From: Will Deacon <will.deacon@xxxxxxx>
- RE: [PATCH 3/3] netfilter: x_tables: fix ordering of jumpstack allocation and table update
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] netfilter: ipset: remove duplicate define
- From: Michael Opdenacker <michael.opdenacker@xxxxxxxxxxxxxxxxxx>
- RE: [PATCH 3/3] netfilter: x_tables: fix ordering of jumpstack allocation and table update
- From: "David Laight" <David.Laight@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: skip checksum verification for outgoing rejected ipv6 packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: x_tables: fix ordering of jumpstack allocation and table update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ebt_ulog: fix info leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: ipt_ULOG: fix info leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/3] inet: remove old fragmentation hash initializing
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 2/3] ipv6: split inet6_hash_frag for netfilter and initialize secrets with net_get_random_once
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 1/3] ipv4: initialize ip4_frags hash secret as late as possible
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 0/3] initialize fragment hash secrets with net_get_random_once
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [libnftables PATCH] test: update to fit latest limit changes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag causes behavioural change in userspace?
- From: Pekka Pietikäinen <pp@xxxxxxxxxx>
- Re: [PATCH nft] statement: avoid huge rodata array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] statement: avoid huge rodata array
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] statement: avoid huge rodata array
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] netfilter: skip checksum verification for outgoing rejected ipv6 packets
- From: Stanislav Fomichev <stfomichev@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: skip checksum verification for outgoing rejected ipv6 packets
- From: Stanislav Fomichev <stfomichev@xxxxxxxxxxxxxx>
- [PATCH nft] statement: avoid huge rodata array
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: skip checksum verification for outgoing rejected ipv6 packets
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] nftables: operational limit match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: skip checksum verification for outgoing rejected ipv6 packets
- From: Stanislav Fomichev <stfomichev@xxxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: ipset: The unnamed union initialization may lead to compilation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] net: sched: Use dev_net() instead of the direct access to ->nd_net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: ipset: Use netlink callback dump args only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Wagner <wagi@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Wagner <wagi@xxxxxxxxx>
- RE: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: "Ni, Xun" <xun.ni@xxxxxxxxx>
- ipset 6.20 compile failure on <3.8
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net 2/3] ipv6: fill rt6i_gateway with nexthop address
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Wagner <wagi@xxxxxxxxx>
- [PATCH libnftables] set_elem: fix access after free in case of parsing errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/3] ipv6: fill rt6i_gateway with nexthop address
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net 3/3] netfilter: nf_conntrack: fix rt6i_gateway checks for H.323 helper
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/3] ipv6: fill rt6i_gateway with nexthop address
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 1/3] ipv6: always prefer rt6i_gateway if present
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/3] ipv6: fill rt6i_gateway with nexthop address
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH 2/3] build: rename conflicting parser.h instances
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/3] build: use automake and pkgconfig
- From: Jan Engelhardt <jengelh@xxxxxxx>
- nftables: use automake & pkgconfig
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/3] build: remove unused checks
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/2] build: resolve automake 1.12 warning
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/2] build: resolve build errors in dependent programs
- From: Jan Engelhardt <jengelh@xxxxxxx>
- libnftables: build fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] build: fix incorrect library versioning
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH net 2/3] ipv6: fill rt6i_gateway with nexthop address
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net 3/3] netfilter: nf_conntrack: fix rt6i_gateway checks for H.323 helper
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH net 1/3] ipv6: always prefer rt6i_gateway if present
- From: Julian Anastasov <ja@xxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 03/17] netfilter: add nftables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: linux-next: Tree for Oct 18 (netdev: nf_tables_bridge.c)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Will Deacon <will.deacon@xxxxxxx>
- [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] net: sched: Use dev_net() instead of the direct access to ->nd_net
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 2/3] net: sched: Use dev_net() instead of the direct access to ->nd_net
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ipset: Use netlink callback dump args only
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: ipset: The unnamed union initialization may lead to compilation error
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/3] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nftables-kernel PATCH] netfilter: nftables: Fix sparse endianness issue on nft_nat.c
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: ip{,6}tables-save misleading return code
- From: mancha <mancha1@xxxxxxxx>
- Re: [PATCH 00/17] netfilter updates: nf_tables pull request
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH iptables-nftables] nft: fix interface wildcard matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: fix ordering of jumpstack allocation and table update
- From: Will Deacon <will.deacon@xxxxxxx>
- Re: [libnftables PATCH] src: add fprintf functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH iptables-nftables] nft: fix interface wildcard matching
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [PATCH RFC 3/3] acct: add input and output interface index
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 3/3] acct: add input and output interface index
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- No more PHYSIN in iptables INPUT rules in kernel 3.11.3
- From: Rolf Fokkens <rolf@xxxxxxxxxxxxxx>
- Re: [libnftables PATCH] src: add fprintf functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix configure failure when --with-kmod=no
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nftables PATCH v2] src: fix return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/6] Add net namespace support for ipt_CLUSTERIP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables-nftables] nft: fix interface wildcard matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ip{,6}tables-save misleading return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables-nftables] nft: fix interface wildcard matching
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [PATCH] nft: arp: fix STRING_OVERFLOW
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xt_socket: use sock_gen_put()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] json: remove space in Json output support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Julian Anastasov <ja@xxxxxx>
- [RFC PATCH nf_conntrack_extend] new extensions without changes kernel source
- From: "Vitaly E. Lavrov" <lve@xxxxxxx>
- [libnftables PATCH] src: add fprintf functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH iptables-nftables] nft: fix interface wildcard matching
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH nft] src: add support for interface wildcard name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC PATCH nft] src: add support for interface wildcard name
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrackd: Don't hardcode libs dir path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] ipvs: improved SH fallback strategy
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL] IPVS updates for v3.13
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] ipvs: fix the IPVS_CMD_ATTR_MAX definition
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/3] ipvs: avoid rcu_barrier during netns cleanup
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH conntrack-tools] conntrackd: Don't hardcode libs dir path
- From: Hani Benhabiles <kroosec@xxxxxxxxx>
- ip{,6}tables-save misleading return code
- From: "mancha" <mancha1@xxxxxxxx>
- [PATCH 00/17] netfilter updates: nf_tables pull request
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/17] netfilter: pass hook ops to hookfn
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/17] netfilter: nf_nat: move alloc_null_binding to nf_nat_core.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/17] netfilter: nf_tables: add netlink set API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/17] netfilter: nf_tables: expression ops overloading
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/17] netfilter: nf_tables: add optimized data comparison for small values
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/17] netfilter: nf_tables: nft_payload: fix transport header base
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/17] netfilter: nf_tables: convert built-in tables/chains to chain types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/17] netfilter: nft_payload: add optimized payload implementation for small loads
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/17] netfilter: nf_tables: add support for dormant tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/17] netfilter: nf_tables: Add support for IPv6 NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/17] netfilter: nf_tables: add insert operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/17] netfilter: nf_tables: complete net namespace support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/17] netfilter: nfnetlink: add batch support and use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/17] netfilter: nf_tables: add trace support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/17] netfilter: nf_tables: add ARP filtering support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/17] netfilter: add nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/17] netfilter: nf_tables: add compatibility layer for x_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH 0/7] API minor fixes and improvement proposals
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH 0/7] API minor fixes and improvement proposals
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables-kernel PATCH 7/7] netfilter: nf_tables: Improve payload expression for an extra offset
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 6/7] netfilter: nf_tables: Add left and right shifts to bitwise expression
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 5/7] netfilter: nf_tables: Add a meta key to get the device address length
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 4/7] netfilter: nf_tables: Use a semantically relevant name on chain's refs
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 3/7] netfilter: nf_tables: Expose the table's chain usage to the netlink API
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 2/7] netfilter: nf_tables: Use byteorder operands length relevantly
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 1/7] netfilter: nf_tables: Fix API documentation on a missing part
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables-kernel PATCH 0/7] API minor fixes and improvement proposals
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] nft: arp: fix STRING_OVERFLOW
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [libnftables PATCH] json: remove space in Json output support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH] nft: arp: fix STRING_OVERFLOW
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] nfct: Fix use-after-free / double-free
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH conntrack-tools] nfct: Fix use-after-free / double-free
- From: Hani Benhabiles <kroosec@xxxxxxxxx>
- [PATCH net-next] netfilter: xt_socket: use sock_gen_put()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [OOPS PATCH 1/1] netfilter: fix OOPS in flush_expectations()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [OOPS PATCH 1/1] netfilter: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: Fix configure failure when --with-kmod=no
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: Fix configure failure when --with-kmod=no
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [OOPS PATCH 1/1] netfilter: fix OOPS in flush_expectations()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [OOPS PATCH 1/1] netfilter: fix OOPS in flush_expectations()
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [nftables PATCH] src: error if listing nonexistent table
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables PATCH v2] src: fix return code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [nftables kernel - PATCH 1/2] netfilter: nf_tables: Update uapi nftables netlink header documentation
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: ipt_ULOG: fix info leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: ebt_ulog: fix info leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libmnl PATCH] debug: don't colorize output on non tty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables kernel - PATCH 2/2] netfilter: nf_tables: Fix the netlink attributes policy for chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables kernel - PATCH 1/2] netfilter: nf_tables: Update uapi nftables netlink header documentation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH] src: fix return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH] src: error if listing nonexistent table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables-nftables nft: Removes NFT_META_IIF ,NFT_META_OIF
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_IIF, iniface
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <borkmann@xxxxxxxxxxxxx>
- [nftables PATCH] src: error if listing nonexistent table
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nftables PATCH] src: fix return code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nftables PATCH] src: fix return code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nftables tool PATCH v2] src: add support for listing the entire ruleset
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- extension module 'owner' enhancement
- From: Adam Kubicki <akubicki@xxxxxxxxx>
- [nftables tool PATCH] src: add support for listing the entire ruleset
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Tejun Heo <tj@xxxxxxxxxx>
- [libnftables PATCH 2/2] examples: nft-set-get: retrieve all sets
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: iptables-nftables mnl_nft_batch_talk:: Invalid argument
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- Re: iptables-nftables mnl_nft_batch_talk:: Invalid argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables-nftables mnl_nft_batch_talk:: Invalid argument
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] nfnetlink: use rcu_assign_pointer in nfnetlink_subsys_unregister
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] nft: arp: add parse_target to nft_family_ops_arp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: spurious error in load_extension
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] iptables: improve chain name validation
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] nfnetlink: use rcu_assign_pointer in nfnetlink_subsys_unregister
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- iptables-nftables mnl_nft_batch_talk:: Invalid argument
- From: Anand Raj Manickam <anandrm@xxxxxxxxx>
- [PATCH iptables-nftables] nft: fix bad length when comparing extension data area
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nfnetlink: use rcu_assign_pointer in nfnetlink_subsys_unregister
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [iptables-nftables 1/2] xtables: fix missing ipt_entry for MASQUERADE target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- iptables automated tests
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables 1/2] xtables: fix missing ipt_entry for MASQUERADE target
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables 1/2] xtables: fix missing ipt_entry for MASQUERADE target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables 2/2] nft: pass ipt_entry to ->save_firewall hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: Creation of a custom netfilter/iptables target module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Creation of a custom netfilter/iptables target module
- From: "Steve \(Telsat Broadband\)" <steve@xxxxxxxxxxx>
- [PATCH 1/4] [RFC] net: Explicitly initialize u64_stats_sync structures for lockdep
- From: John Stultz <john.stultz@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Tejun Heo <tj@xxxxxxxxxx>
- Re: [PATCH] iptables: improve chain name validation
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [nftables kernel - PATCH 2/2] netfilter: nf_tables: Fix the netlink attributes policy for chain
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables kernel - PATCH 1/2] netfilter: nf_tables: Update uapi nftables netlink header documentation
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables kernel - PATCH 0/2] Minor API fixes (mostly documentation)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] man: update the manpage for cluster match
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] man: update the manpage for cluster match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH] man: update the manpage for cluster match
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] nft: arp: add parse_target to nft_family_ops_arp
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH] nft: arp: add parse_target to nft_family_ops_arp
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH] nftables: operational limit match
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] iptables: improve chain name validation
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH iptables] iptables: add libxt_cgroup frontend
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH nf-next] netfilter: xtables: lightweight process control group matching
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH 00/33] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/6] Add net namespace support for ipt_CLUSTERIP
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 12/33] netfilter: ipset: Introduce new operation to get both setname and family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/33] netfilter: ipset: Fix sparse warnings due to missing rcu annotations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/33] netfilter: ipset: Sparse warning about shadowed variable fixed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/33] netfilter: ipset: Fix "may be used uninitialized" warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/33] netfilter: ipset: Prepare ipset to support multiple networks for hash types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/33] netfilter: ipset: list:set: make sure all elements are checked by the gc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/33] netfilter: ipset: Generalize extensions support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/33] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 24/33] netfilter: ipset: Support comments in hash-type ipsets.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 25/33] netfilter: ipset: Fix hash resizing with comments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 26/33] netfilter: ipset: For set:list types, replaced elements must be zeroed out
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 31/33] netfilter: nfnetlink_log: use proper net to allocate skb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 23/33] netfilter: ipset: Support comments in the list-type ipset.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 21/33] netfilter: ipset: Support comments for ipset entries in the core.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/33] netfilter: ipset: Move extension data to set structure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 28/33] netfiler: ipset: Add net namespace for ipset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/33] netfilter: ipset: Rename simple macro names to avoid namespace issues.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 33/33] netfilter: cttimeout: allow to set/get default protocol timeouts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/33] netfilter: ipset: Support package fragments for IPv4 protos without ports
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 32/33] netfilter: nf_ct_sip: consolidate NAT hook functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/33] netfilter: ipset: Use a common function at listing the extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/33] netfilter: ipset: Kconfig: ipset needs NETFILTER_NETLINK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/33] netfilter: ipset: Support comments in bitmap-type ipsets.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 20/33] netfilter: ipset: Add hash:net,net module to kernel.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/33] netfilter: xt_TCPMSS: Get mtu only if clamp-mss-to-pmtu is specified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/33] netfilter: ipset: Add hash:net,port,net module to kernel.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 30/33] netfilter: nfnetlink_queue: use proper net namespace to allocate skb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/33] netfilter: ipset: order matches and targets separatedly in xt_set.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/33] netfilter: ipset: Rename extension offset ids to extension ids
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/33] netfilter: ipset: Support extensions which need a per data destroy function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/33] netfilter: ipset: Use fix sized type for timeout in the extension part
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/33] netfilter: xt_TCPMSS: lookup route from proper net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/33] netfilter: ipset: Don't call ip_nest_end needlessly in the error path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/33] netfilter: nf_ct_sip: extend RCU read lock in set_expected_rtp_rtcp()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH] netlink: use build_id to lower message size
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: initialize flags in nft_arp_parse_meta
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: Calculate properly the target size when parsing it back
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables PATCH] nft: initialize flags in nft_arp_parse_meta
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [iptables-nftables PATCH] nft: Calculate properly the target size when parsing it back
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH v2] xtables: arp: Parse properly target's options
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] xtables: arp: Parse properly target's options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: Header inclusion missing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] lixtables: Fixes option issues in libxt_mangle.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables PATCH] xtables: arp: Parse properly target's options
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] libxtables: Port libarptc mangle target into libxtables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH] nft: Header inclusion missing
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH] lixtables: Fixes option issues in libxt_mangle.c
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables PATCH 0/4] fix rule flush operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] libxtables: Port libarptc mangle target into libxtables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 3/3] xtables: arp: Do not add a useless prefix for afinfo_arp
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 3/3] xtables: arp: Do not add a useless prefix for afinfo_arp
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] libxtables: Port libarptc mangle target into libxtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] libxtables: Port libarptc mangle target into libxtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 1/3] xtables: arp: Store target entry properly and compare them relevantly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables PATCH 3/3] xtables: arp: Do not add a useless prefix for afinfo_arp
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 2/3] libxtables: Port libarptc mangle target into libxtables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 1/3] xtables: arp: Store target entry properly and compare them relevantly
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 0/3] xtables-arp fixes + libxt_mangle addition
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 0/3] NFPROTO_ARP and arp mangle target support (+ one minor fix)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 0/3] NFPROTO_ARP and arp mangle target support (+ one minor fix)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 0/3] NFPROTO_ARP and arp mangle target support (+ one minor fix)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables PATCH] netlink: use build_id to lower message size
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH] src: add function nft_rule_nlmsg_build_id
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables RFC PATCH]limit netlink message size during delete operation
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 3/4] netlink: only flush asked table/chain
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 4/4] netlink: fix nft flush operation
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 2/4] netlink: suppress useless variable
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 1/4] mnl: fix typo in comment
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 0/4] fix rule flush operation
- From: Eric Leblond <eric@xxxxxxxxx>
- [ANNOUNCE] ipset package kernel support changes
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.20 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net:drivers/net: Miscellaneous conversions to ETH_ALEN
- From: David Miller <davem@xxxxxxxxxxxxx>
- [nftables PATCH] netfilter: nf_tables: allow to dump sets with NFPROTO_UNSPEC
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libmnl PATCH] debug: don't colorize output on non tty
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [libmnl PATCH] debug: don't colorize output on non tty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] Error: STRING_OVERFLOW
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 1/2] Error: STRING_NULL
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 0/2] [arptables] Fixes for problems found by static analysis.
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: [PATCH net-next] net:drivers/net: Miscellaneous conversions to ETH_ALEN
- From: "Arend van Spriel" <arend@xxxxxxxxxxxx>
- [PATCH net-next] net:drivers/net: Miscellaneous conversions to ETH_ALEN
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 00/26] ipset patches for nf-next
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 6/6] sched, wait: Make the __wait_event*() interface more friendly
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 6/6] sched, wait: Make the __wait_event*() interface more friendly
- From: Oleg Nesterov <oleg@xxxxxxxxxx>
- Re: [PATCH 0/6] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 0/6] Add net namespace support for ipt_CLUSTERIP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net-next 1/1] sip: introduce nf_nat_sip_hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/26] ipset patches for nf-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/6] ipvs: make the service replacement more robust
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2] src: add low-level ruleset API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/6] ipvs: do not use dest after ip_vs_dest_put in LBLCR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2] src: add low-level ruleset API
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/6] netfilter: synproxy: fix BUG_ON triggered by corrupt TCP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/6] ipvs: stats should not depend on CPU 0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/6] ipvs: fix overflow on dest weight multiply
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/6] ipvs: do not use dest after ip_vs_dest_put in LBLC
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2] src: add low-level ruleset API
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 1/3] tests: fix error reporting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/3] table: json: fix json style
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/6] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/6] sched, wait: Make the __wait_event*() interface more friendly
- From: Julian Anastasov <ja@xxxxxx>
- Is there anyway for Netfilter_queue to provide only control packets.
- From: gaurav sharma <reach2gaurav@xxxxxxxxx>
- [libnftables PATCH 2] src: add low-level ruleset API
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 1/3] tests: fix error reporting
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 2/3] table: json: fix json style
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libmnl PATCH] debug: don't colorize output on non tty
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 0/2] netlink heap info leak fixes
- From: Mathias Krause <minipli@xxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipt_ULOG: fix info leaks
- From: Mathias Krause <minipli@xxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ebt_ulog: fix info leaks
- From: Mathias Krause <minipli@xxxxxxxxxxxxxx>
- [PATCH 12/26] netfilter: ipset: Move extension data to set structure
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]