Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 2/5] ipvs: make the service replacement more robust
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/5] ipvs: stats should not depend on CPU 0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/5] ipvs: do not use dest after ip_vs_dest_put in LBLC
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 4/5] ipvs: do not use dest after ip_vs_dest_put in LBLCR
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL 0/5] IPVS fixes for v3.12
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] ipset: Add net namespace for ipset
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 5/6] ipset: Support comments in the userspace library.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 5/6] ipset: Support comments in the userspace library.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 4/6] ipset: Rework the "fake" argument parsing for ipset restore.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/6] netfilter: ipset: Support comments in hash-type ipsets.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: Support comments for ipset entries in the core.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/2] ipset: Add userspace code to support hash:net,net kernel module.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: ipset: Add hash:net,net module to kernel.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Conntrack events using SMP
- From: Sébastien LAVEZE <slaveze@xxxxxxxxx>
- Re: [PATCH 0/7] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 0/7] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nf_tables: do not allow deletion/replacement of stale rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nf_tables: attach replacement rule after stale one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v3 4/4] netfilter: nf_tables: all rule updates are transactional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v3 1/4] netfilter: nf_tables: get rid of per rule list_head for commits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: ipset: Consistent userspace testing with nomatch flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: ipset: Validate the set family and not the set type family at swapping
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: nf_nat_proto_icmpv6:: fix wrong comparison in icmpv6_manip_pkt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: nfnetlink_queue: use network skb for sequence adjustment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/7] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: nf_conntrack: use RCU safe kfree for conntrack extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: ipset: Skip really non-first fragments for IPv6 when getting port/protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ip6_finish_output2 change broke netfilter xt_TEE target
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH 1/1] ipset: Add net namespace for ipset
- From: "V. Lavrov" <lve@xxxxxxx>
- [PATCH 6/6] ipset: Add new userspace set revisions for comment support
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 5/6] ipset: Support comments in the userspace library.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 4/6] ipset: Rework the "fake" argument parsing for ipset restore.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: ipset: Support comments in bitmap-type ipsets.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: ipset: Support comments in hash-type ipsets.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: ipset: Support comments for ipset entries in the core.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/6] Add new comments extension to ipset.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/2] Add new hash:net,net type to ipset.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/2] ipset: Add userspace code to support hash:net,net kernel module.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: Add hash:net,net module to kernel.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nftables 0/4] misc improvements and cleaning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libmnl PATCH] configure: uclinux is also linux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfnetlink_queue: shouldn't it be entry->skb?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] ipset patches for nf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v2 4/4] netfilter: nf_tables: all rule updates are transactional
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v2 3/4] netfilter: nfnetlink: add batch support and use it from nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v2 2/4] netfilter: nf_tables: use per netns commit list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -nftables v2 1/4] netfilter: nf_tables: get rid of per rule list_head for commits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4 -nftables v2] nf_tables atomic rule-set update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nfnetlink_queue: shouldn't it be entry->skb?
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [nftables PATCH 3/4] Update chain creation format.
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH] examples: add nft-ruleset-get
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [ANNOUNCE] 10th Netfilter Workshop in Montpellier, France
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH] src: add ruleset API
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] build: fix build error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] src: xml: refactor XML parsing code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH 3/4] Update chain creation format.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/4] netfilter: ipset: Skip really non-first fragments for IPv6 when getting port/protocol
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: ipset: Consistent userspace testing with nomatch flag
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/4] ipset patches for nf
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: ipset: Validate the set family and not the set type family at swapping
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftables PATCH] src: xml: refactor XML parsing code
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] build: fix build error
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [nftables PATCH 3/4] Update chain creation format.
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables 0/4] misc improvements and cleaning
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 2/4] Suppress non working examples.
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 1/4] nat: add mandatory family attribute
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 4/4] display family in table listing.
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH v5] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v5] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ipset PATCH] configure: uclinux is also linux
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipv6: icmpv6_manip_pkt comparing codes to types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables 3/3] log: s/threshold/queue-threshold/
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftables 2/3] expr: log: use real length when fetching attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables kernel 1/3] netfilter: nft_log: group is u16, snaplen u32
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v5] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH nftables 3/3] log: s/threshold/queue-threshold/
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nftables kernel 1/3] netfilter: nft_log: group is u16, snaplen u32
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH libnftables 2/3] expr: log: use real length when fetching attributes
- From: Florian Westphal <fw@xxxxxxxxx>
- [arptables] please include license file in tarball
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH] netfilter: ipv6: icmpv6_manip_pkt comparing codes to types
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH v4] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v3] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v2] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nf] netfilter: use RCU safe kfree for conntrack extensions
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: Fix serious failure in CIDR tracking
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [nfacct PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_queue PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_cttimeout PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_cthelper PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_log PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_conntrack PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnfnetlink PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libnetfilter_acct PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [ipset PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [libmnl PATCH] configure: uclinux is also linux
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: BUG: kernel 3.10 + ipset + NET_NS
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- BUG: kernel 3.10 + ipset + NET_NS
- From: "V. Lavrov" <lve@xxxxxxx>
- Re: [iptables PATCH] build: add DESTDIR to vx_bin_links
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- added new hash:ip,net ipset type
- From: David Gervais <dgervais@xxxxxxxxx>
- netfilter: active obj WARN when cleaning up
- From: Sasha Levin <sasha.levin@xxxxxxxxxx>
- Re: [iptables PATCH] build: add DESTDIR to vx_bin_links
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [iptables PATCH] build: add DESTDIR to vx_bin_links
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [iptables PATCH] docs: use generic syslog reference in libxt_LOG.man
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [iptables PATCH] build: add DESTDIR to vx_bin_links
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Fwd: tproxy and NAT incompatible?
- From: umesh sirsiwal <umesh31@xxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 3/3] libxtables: Port libarptc mangle target into libxtables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 2/3] libxtables: Add NFPROTO_ARP support for libarpt_* prefixed extensions
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 1/3] nft: Fix a minor compilation warning
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 0/3] NFPROTO_ARP and arp mangle target support (+ one minor fix)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: linux-next: Tree for Sep 5 (netfilter: xt_socket.c)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Sep 5 (netfilter: xt_socket.c)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Sep 5 (netfilter: xt_socket.c)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxxxxxx>
- Re: xt_recent.c bug - and cleanup
- From: Valentijn Sessink <valentyn@xxxxxxxx>
- [PATCH 2/3] conntrack: support add/delete of conntrack labels
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 3/3] conntrack: do not exit when update returns an error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/3] conntrack: support multiple -l options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftables PATCH] set: xml: fix key_type parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 2/4] src: Ensure given base chain type is a valid one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] set: xml: fix key_type parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] set: xml: fix key_type parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] libnetfilter-acct: Introduce support for notifications
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxxxxxx>
- Re: [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxxxxxx>
- [libnftables PATCH] src: xml: get rid of mxml parsing flags
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: linux-next: Tree for Sep 4 (netfilter: xt_TPROXY)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: merge window warning
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: linux-next: Tree for Sep 4 (netfilter: xt_TPROXY)
- From: Randy Dunlap <rdunlap@xxxxxxxxxxxxx>
- Re: merge window warning
- From: Jeff Kirsher <jeffrey.t.kirsher@xxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- merge window warning
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH 0/4] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [libnftables PATCH] set: xml: fix key_type parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] xt_owner: enable xt_owner on INPUT chain
- From: Valentina Giusti <valentina.giusti@xxxxxxxxxxxxxxxx>
- Re: [libnftables PATCH] chain: xml: optional attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: synproxy_core: fix warning in __nf_ct_ext_add_length()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: SYNPROXY: let unrelated packets continue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: xt_TCPMSS: correct return value in tcpmss_mangle_packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: more strict TCP flag matching in SYNPROXY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_TCPMSS: correct return value in tcpmss_mangle_packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: SYNPROXY core: fix warning in __nf_ct_ext_add_length()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: SYNPROXY core: fix warning in __nf_ct_ext_add_length()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: SYNPROXY let unrelated packets continue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 1/1 v4] nft: refactoring parse operations for more genericity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/4] libnetfilter-acct: Introduce support for notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [iptables-nftables PATCH 1/1 v4] nft: refactoring parse operations for more genericity
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH] xt_owner: enable xt_owner on INPUT chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] nfacct: Add 'notify' commands for notifications
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 1/4] nfnetlink_acct: Traffic-based and periodic notifications
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 2/4] libnetfilter-acct: Introduce support for notifications
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH 4/4] nfacct: Add man page section for the 'notify' commands
- From: valentina.giusti@xxxxxxxxxxxx
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 2/4] src: Ensure given base chain type is a valid one
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 4/4] tests: Update bate chain creation according to latest syntax changes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 3/4] src: Add priority keyword on base chain description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 2/4] src: Ensure given base chain type is a valid one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool v2 PATCH 1/4] src: Wrap netfilter hooks around human readable strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables tool v2 PATCH 4/4] tests: Update bate chain creation according to latest syntax changes
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool v2 PATCH 3/4] src: Add priority keyword on base chain description
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool v2 PATCH 2/4] src: Ensure given base chain type is a valid one
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool v2 PATCH 1/4] src: Wrap netfilter hooks around human readable strings
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool v2 PATCH 0/4] Easier base chain declaration
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH v3] nft: refactoring parse operations for more genericity
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 2/3] conntrack: favor multiple -l options over -l foo,bar
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 3/3] conntrack: allow adding/deleting labels from conntrack entries
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/3] conntrack: minor cleanup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/3] conntrack: favor multiple -l options over -l foo,bar
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next 2/2] net: use reciprocal_divide instead of reimplementing it
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH net-next 2/2] net: use reciprocal_divide instead of reimplementing it
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH v3] nft: refactoring parse operations for more genericity
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH] netfilter: ipset: refactor hash types to use address/cidr arrays.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/2 v2] cleanup and shrink ipset handling code.
- From: Oliver <olipro@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/2 v2] netfilter: ipset: rework bitmap ext. handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/2 v2] netfilter: ipset: rework hash ext. handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/2 v2] cleanup and shrink ipset handling code.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 0/2] ipset: rework extension handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH net-next 2/2] net: use reciprocal_divide instead of reimplementing it
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH v2] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/6] Ipset comment extension - provide annotation of ipset entries
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH v2] nft: refactoring parse operations for more genericity
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH net] bridge: netfiler: update find_inlist_lock_noload() more accurate
- From: Ding Tianhong <dingtianhong@xxxxxxxxxx>
- Re: [PATCH v2] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [iptables-nftables PATCH v2] nft: refactoring parse operations for more genericity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/6] Ipset comment extension - provide annotation of ipset entries
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Corey Hickey <bugfood-ml@xxxxxxxxxx>
- Re: [PATCH 0/6] Ipset comment extension - provide annotation of ipset entries
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 0/2] ipset: rework extension handling to be more manageable.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Ignore bogus SACK option values in TCP conntrack
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [iptables-nftables PATCH v2] nft: refactoring parse operations for more genericity
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: refactoring parse operations for more genericity
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: Support comments for ipset entries in the core.
- From: Oliver <olipro@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/6] netfilter: ipset: Support comments for ipset entries in the core.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/6 v2] netfilter: ipset: Support comments for ipset entries in the core.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 6/6] ipset: Add new userspace set revisions for comment support
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 5/6] ipset: Support comments in the userspace library.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 4/6] ipset: Rework the "fake" argument parsing for ipset restore.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 2/6] netfilter: ipset: Support comments in hash-type ipsets.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 3/6] netfilter: ipset: Support comments in bitmap-type ipsets.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 0/6] Ipset comment extension - provide annotation of ipset entries
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH 1/6] netfilter: ipset: Support comments for ipset entries in the core.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nftables tool PATCH 2/5] src: Wrap netfilter hooks around human readable strings
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH v3] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v3] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [libnftables PATCH] chain: xml: optional attributes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH v2 0/2] ipset: rework extension handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 2/2] netfilter: ipset: rework bitmap ext. handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 1/2] netfilter: ipset: rework hash ext. handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: xt_TCPMSS: correct return value in tcpmss_mangle_packet
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] netfilter: ipset: rework extensions handling to be more manageable.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nf 0/5] IPVS fixes for v3.11
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH nf 0/5] IPVS fixes for v3.11
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool PATCH] INSTALL: Update dependency list and repository URLs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH] nft: refactoring parse operations for more genericity
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool PATCH 2/5] src: Wrap netfilter hooks around human readable strings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables tool PATCH 1/5] src: Fix base chain print out
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3] iptables: Sort table names in ip[6]tables-save
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tcp: tcp_make_synack() should use sock_wmalloc
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf 0/5] IPVS fixes for v3.11
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: xt_recent.c bug - and cleanup
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] [RFC] xt_owner: enable xt_owner on INPUT chain
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] [RFC] xt_owner: enable xt_owner on INPUT chain
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [iptables-nftables PATCH] nft: refactoring parse operations for more genericity
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH] xt_owner: enable xt_owner on INPUT chain
- From: valentina.giusti@xxxxxxxxxxxx
- [PATCH] [RFC] xt_owner: enable xt_owner on INPUT chain
- From: valentina.giusti@xxxxxxxxxxxx
- [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH nf-next] Second round of IPVS updates for v3.12
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next] ipvs: fix the IPVS_CMD_ATTR_MAX definition
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 1/5] ipvs: do not use dest after ip_vs_dest_put in LBLC
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 2/5] ipvs: do not use dest after ip_vs_dest_put in LBLCR
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 3/5] ipvs: make the service replacement more robust
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 0/5] IPVS fixes for v3.11
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 4/5] ipvs: stats should not depend on CPU 0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf 5/5] ipvs: fix overflow on dest weight multiply
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: xt_recent.c bug - and cleanup
- From: Valentijn Sessink <valentyn@xxxxxxxx>
- [PATCH v2] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: xt_recent.c bug - and cleanup
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: SYNPROXY core: fix warning in __nf_ct_ext_add_length()
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: more strict TCP flag matching in SYNPROXY
- From: Patrick McHardy <kaber@xxxxxxxxx>
- xt_recent.c bug - and cleanup
- From: Valentijn Sessink <valentyn@xxxxxxxx>
- Re: [nf-next PATCH] netfilter: SYNPROXY let unrelated packets continue
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nf-next PATCH] netfilter: SYNPROXY let unrelated packets continue
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH] netfilter: SYNPROXY core: fix warning in __nf_ct_ext_add_length()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nf-next PATCH] netfilter: Extend SYNPROXY with a --continue option
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [nftables tool PATCH] INSTALL: Update dependency list and repository URLs
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nf-next PATCH] netfilter: Extend SYNPROXY with a --continue option
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [nf-next PATCH] netfilter: Extend SYNPROXY with a --continue option
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [nf-next PATCH] netfilter: more strict TCP flag matching in SYNPROXY
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- Re: [PATCH lnf-queue] api: add nfq_nlmsg_get_timestamp helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [nftables tool PATCH 5/5] tests: Update bate chain creation according to latest syntax changes
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool PATCH 4/5] src: Ensure given base chain type is a valid one
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool PATCH 3/5] syntax: Add priority keyword on base chain description
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool PATCH 2/5] src: Wrap netfilter hooks around human readable strings
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool PATCH 1/5] src: Fix base chain print out
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nftables tool PATCH 0/5] Easier base chain declaration
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/8] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] tcp: tcp_make_synack() should use sock_wmalloc
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH 3/8] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/8] netfilter: add SYNPROXY core/target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 7/8] netfilter: add IPv6 SYNPROXY target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/8] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6/8] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] netfilter: ctnetlink: fix uninitialized variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/8] netfilter: nf_defrag_ipv6.o included twice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/8] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/8] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 4/4] examples: Add nft-set-json-add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/4] tests: set: add json parsing support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/4] set: Add json parser support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/4] tests: remove unnecessary variable initialization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: ctnetlink: fix uninitialized variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_defrag_ipv6.o included twice
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Netfilter owner match breakage
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Netfilter owner match breakage
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- spurious errors with protocol names used as chain names
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [libnftables PATCH 4/4] examples: Add nft-set-json-add
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 3/4] tests: set: add json parsing support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 2/4] set: Add json parser support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/4] tests: remove unnecessary variable initialization
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Martin Topholm <mph@xxxxxxx>
- Re: [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Jesper Dangaard Brouer <brouer@xxxxxxxxxx>
- [PATCH next] netfilter: ctnetlink: fix uninitialized variable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- [PATCH] extensions: add SYNPROXY extension
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 0/6] SYNPROXY target v2
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/5] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/5] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/5] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/5] netfilter: SYNPROXY target v3
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH lnf-queue] api: add nfq_nlmsg_get_timestamp helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC 0/6] SYNPROXY target v2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: allow to specify the base chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: travelling...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH RFC 0/6] SYNPROXY target v2
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v3] iptables: libxt_string.man add examples
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4] iptables: libxt_string.man add examples
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [PATCH v3] iptables: libxt_string.man add examples
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [PATCH] iptables: libxt_recent.{c,man} dead URL
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] iptables: libxt_string.man add example
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: libxt_recent.{c,man} dead URL
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [PATCH v2] iptables: libxt_string.man add example
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: travelling...
- From: Antonio Quartulli <ordex@xxxxxxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables: libxt_string.man add example
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: travelling...
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: avoid array overflow in nf_register_hook
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- travelling...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: avoid array overflow in nf_register_hook
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] netfilter: avoid array overflow in nf_register_hook
- From: Dong Fang <yp.fangdong@xxxxxxxxx>
- [PATCH] netfilter: avoid array overflow in nf_register_hook
- From: Dong Fang <yp.fangdong@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- [libnftables PATCH] rule: complete print/parse position attr
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 1/6] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/6] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 6/6] netfilter: synproxy: fix handling of retransmissions before established state
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/6] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/6] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 5/6] netfilter: add IPv6 SYNPROXY target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH RFC 0/6] SYNPROXY target v2
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nft] src: allow to specify the base chain type
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH] iptables: libxt_string.man add example
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [PATCH] netfilter: nf_defrag_ipv6.o included twice
- From: Nathan Hintz <nlhintz@xxxxxxxxxxx>
- [PATCH] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH] [RFC] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.
- From: Oliver <oliver@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: ipvsadm: One-packet scheduling with UDP service is unstable
- From: Drunkard Zhang <gongfan193@xxxxxxxxx>
- [PATCH v2] iptables: extensions/GNUMakefile.in use CPPFLAGS
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [PATCH nft] src: allow to specify the base chain type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH lnf-queue] api: add nfq_nlmsg_get_timestamp helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ipvsadm: One-packet scheduling with UDP service is unstable
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] nftables: add additional --numeric level
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: libxt_hashlimit.man: correct address
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: libip(6)t_REJECT.man default icmp types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: iptables-xm1.1 correct man section
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: libxt_conntrack.man extraneous commas
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipvsadm: One-packet scheduling with UDP service is unstable
- From: Drunkard Zhang <gongfan193@xxxxxxxxx>
- Re: ipvsadm: One-packet scheduling with UDP service is unstable
- From: Julian Anastasov <ja@xxxxxx>
- Re: [libnftables PATCH] src: constify nft_*_parse input data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] src: constify nft_*_parse input data
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] src: constify nft_*_parse input data
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] src: constify nft_*_parse input data
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 00/19] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/3] rule: Add json parser support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 0/5] Centralizes rule parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH 1/3] rule: Add json parser support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 3/3] examples: Add nft-rule-json-add
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 2/3] tests: rule: add json parsing support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- ipvsadm: One-packet scheduling with UDP service is unstable
- From: Drunkard Zhang <gongfan193@xxxxxxxxx>
- Re: [libnftables PATCH] utils: fix error path for nft_strtoi
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/19] netfilter: xt_addrtype: fix trivial typo
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/19] netfilter: nf_queue: relax NFQA_CT attribute check
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/19] netfilter: nf_conntrack: constify sk_buff argument to nf_ct_attach()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/19] netfilter: tproxy: remove nf_tproxy_core, keep tw sk assigned to skb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/19] netfilter: nf_conntrack: remove net_ratelimit() for LOG_INVALID()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 15/19] netfilter: nf_conntrack: don't send destroy events from iterator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/19] netfilter: nf_conntrack: remove duplicate code in ctnetlink
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 16/19] netfilter: ctnetlink: refactor ctnetlink_create_expect
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/19] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 19/19] netfilter: export xt_HMARK.h to userland
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/19] netfilter: nfnetlink_queue: allow to attach expectations to conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 18/19] netfilter: export xt_rpfilter.h to userland
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/19] netfilter: nf_nat: use per-conntrack locking for sequence number adjustments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 14/19] ipvs: ip_vs_sh: ip_vs_sh_get_port: check skb_header_pointer for NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/19] netfilter: nf_nat: fix locking in nf_nat_seq_adjust()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/19] netfilter: connlabels: remove unneeded includes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/19] netfilter: tproxy: remove nf_tproxy_core.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/19] netfilter: nf_nat: change sequence number adjustments to 32 bits
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 13/19] ipvs: fixed spacing at for statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Corey Hickey <bugfood-ml@xxxxxxxxxx>
- Re: [PATCH] iptables: extensions/GNUMakefile.in use CPPFLAGS
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- heavily backlogged...
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Corey Hickey <bugfood-ml@xxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- [PATCH] iptables: iptables-xm1.1 correct man section
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [PATCH] iptables: extensions/GNUMakefile.in use CPPFLAGS
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Christoph Paasch <christoph.paasch@xxxxxxxxxxxx>
- [libnftables PATCH] utils: fix error path for nft_strtoi
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [iptables-nftables PATCH 5/5] nft: Add a function to reset the counters of an existing rule
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 4/5] xtables: nft: Complete refactoring on how rules are saved
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 3/5] nft: Refactor rule deletion so it compares both cs structure
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 2/5] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 1/5] nft: Parse fully and properly at once a rule into a cs
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 0/5] Centralizes rule parsing
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Corey Hickey <bugfood-ml@xxxxxxxxxx>
- Fastest way to send a packet from a target module
- From: Lorraine Hall <lorraineehall@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] iptables: libip(6)t_REJECT.man default icmp types
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] iptables: libxt_conntrack.man extraneous commas
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Corey Hickey <bugfood-ml@xxxxxxxxxx>
- Re: NAT stops forwarding ACKs after PMTU discovery
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] iptables: libxt_hashlimit.man: correct address
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: "Serge E. Hallyn" <serge@xxxxxxxxxx>
- Re: [PATCH] nftables: allow protocols by number in inet_protocol_type_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nftables: validate port number in inet_service_type_parse
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nftables: add additional --numeric level
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] nftables: allow protocols by number in inet_protocol_type_parse
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] nftables: validate port number in inet_service_type_parse
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: "Serge E. Hallyn" <serge@xxxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [libnftables PATCH] xml: expr: fix mem leak in the expr parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: export xt_HMARK.h to userland
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: export xt_rpfilter.h to userland
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Reset connection state to NEW
- From: Iain Fraser <iainkfraser@xxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCHv2] iptables: link against libnetfilter_conntrack
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCH lnf-queue] build: avoid sym namespace pollution
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] iptables: link libxtables against libnetfilter_conntrack
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: export xt_HMARK.h to userland
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH 1/2] netfilter: export xt_rpfilter.h to userland
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH lnf-queue] build: avoid sym namespace pollution
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftables PATCH] xml: expr: fix mem leak in the expr parser
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [libnftables PATCH] nat: xml: fix wrong node name in snprintf
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] chain: xml: delete <use> node
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] tests: xml: reorder XML elements in sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] xml: expr: limit: fix wrong assignation when parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [libnftables PATCH] nat: xml: fix wrong node name in snprintf
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] chain: xml: delete <use> node
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] tests: xml: reorder XML elements in sets
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] xml: expr: limit: fix wrong assignation when parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] test: compare content parsing with original file content.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] netfilter fixes for 3.11-rc4
- From: David Miller <davem@xxxxxxxxxxxxx>
- [libnftables PATCH 2/2] test: compare content parsing with original file content.
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] src: expr: use the function base2str in payload.
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [PATCH 4/4] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: nfnetlink_{log,queue}: fix information leaks in netlink message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: xt_TCPOPTSTRIP: fix possible off by one access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] netfilter fixes for 3.11-rc4
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
- From: Yuchung Cheng <ycheng@xxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 15/16] nft: Add a function to reset the counters of an existing rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] Generalize DEBUGP macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Neal Cardwell <ncardwell@xxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 15/16] nft: Add a function to reset the counters of an existing rule
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 13/16] xtables: nft: Complete refactoring on how rules are saved
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 12/16] nft: Refactor rule deletion so it compares both cs structure
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 10/16] nft: Register all relevant xtables extensions into translation tree
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 09/16] xtables: Add support for registering nft translation function for match
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 08/16] xtables: Add support for registering nft translation function for target
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 07/16] nft: Add support for xtables extensions callback to change cs
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 06/16] nft: Manage xtables matches through nft translation tree
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 05/16] nft: Manage xtables target parsing through translation tree
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 03/16] nft: Add nft expressions translation engine as a library
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 02/16] xtables: add support for injecting xtables matches into nft rule
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 01/16] xtables: Add support for injecting xtables target into nft rule
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables RFC v3 PATCH 00/16] Xtables extensions: full support (pure nft or compat layer)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [libnftables PATCH 01/13] src: expr: missing commas in json output support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 13/13] jansson: Add nft_jansson_family function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 12/13] example: nft-rule-get: family parameter added
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 11/13] expr: payload: add nft_str2base function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 10/13] expr: nat: add nft_str2nat function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 09/13] expr: cmp: add nft_str2cmp function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 08/13] expr: bytecode: add nft_str2ntoh function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 07/13] src: json: delete unneeded JSON prefixes
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 06/13] json: bitwise: add missing node len
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 05/13] expr: ct: optional output in ct
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 04/13] src: fix display of compat_flag and compat_proto
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 03/13] src: expr: change wrong value in data_reg
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 02/13] src: expr: missing curly braces in json output support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 01/13] src: expr: missing commas in json output support
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH 6/7] netfilter: conntrack: don't send destroy events from iterator
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nftables 2/2] netfilter: nft_log: group and qthreshold are 2^16
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nftables 1/2] netfilter: nf_tables: don't delete table if in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: iptables calls setsockopt incorrectly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: iptables calls setsockopt incorrectly
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [PATCH] iptables: state match incompatibilty across versions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 -next 2/2] netfilter: nfnetlink_queue: allow to attach expectations to conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: state match incompatibilty across versions
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [PATCH -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [patch] netfilter: information leaks building packet message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- Re: [PATCH] iptables: correctly reference generated file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next 2/2] netfilter: nfnetlink_queue: allow to attach expectations to conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: state match incompatibilty across versions
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: state match incompatibilty across versions
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH] iptables: state match incompatibilty across versions
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH 4/5] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH 2/5] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH 1/5] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH v3 07/11] syslog_ns: implement function for creating syslog ns
- From: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
- Re: libnfnetlink license
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 04/11] syslog_ns: make syslog handling per namespace
- From: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
- Re: [PATCH v3 05/11] syslog_ns: make permisiion check per user namespace
- From: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
- Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 1/5] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 4/5] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3/5] netfilter: add SYNPROXY core/target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/5] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
- From: Patrick McHardy <kaber@xxxxxxxxx>
- libnfnetlink license
- From: Thomas Woerner <twoerner@xxxxxxxxxx>
- Re: [PATCH v3, -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: Serge Hallyn <serge.hallyn@xxxxxxxxxx>
- [PATCH v3, -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [libnftables PATCH] table: add nft_table_list_del function
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH] table: add nft_table_list_del function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] xtables: trivial spelling fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 11/11] netfilter: use ns_printk in iptable context
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL 0/2] IPVS enhancement for v3.12
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 3/3] nft: Print unknown target data only when relevant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 1/3] nft: Remove useless test on rulenum in nft_rule_list()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [GIT PULL 1/2] ipvs: fixed spacing at for statements
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL 2/2] ipvs: ip_vs_sh: ip_vs_sh_get_port: check skb_header_pointer for NULL
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL 0/2] IPVS enhancement for v3.12
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 3/3] nft: Print unknown target data only when relevant
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 1/3] nft: Remove useless test on rulenum in nft_rule_list()
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [iptables-nftables PATCH 0/3] Generalize nft_rule_list() (+ 2 fixes)
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH] iptables: correctly reference generated file
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH v3 00/11] Add namespace support for syslog
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- [PATCH v3 02/11] syslog_ns: add syslog_ns into user_namespace
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 00/11] Add namespace support for syslog
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 06/11] syslog_ns: use init syslog_ns for console action
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 07/11] syslog_ns: implement function for creating syslog ns
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 01/11] syslog_ns: add syslog_namespace and put/get_syslog_ns
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 08/11] syslog_ns: implement ns_printk for specific syslog_ns
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 03/11] syslog_ns: add init syslog_ns for global syslog
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 05/11] syslog_ns: make permisiion check per user namespace
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 09/11] syslog_ns: implement ns_printk_emit for specific syslog_ns
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 04/11] syslog_ns: make syslog handling per namespace
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 11/11] netfilter: use ns_printk in iptable context
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- [PATCH v3 10/11] syslog_ns: implement ns_console_unlock for specific syslog_ns
- From: Rui Xiang <rui.xiang@xxxxxxxxxx>
- Re: state match incompatibilty across versions
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: state match incompatibilty across versions
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- state match incompatibilty across versions
- From: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
- [ANNOUNCE] conntrack-tools 1.4.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] iptables 1.4.20 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_conntrack 1.0.4 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] (fix_led_parse_delay) value will now be set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] (fix_led_parse_delay) value will now be set
- From: Florian Eckert <eckert.florian@xxxxxxxxxxxxxx>
- [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: fixed style errors in ip_vs_dh
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] ipvs: fixed spacing at for statements
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH v2 2/2] netfilter: xt_TCPOPTSTRIP: fix possible off by one access
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] xtables: trivial spelling fix
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH -next] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V3 0/3] networking: Use ETH_ALEN where appropriate
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: libnetfilter_queue callback and verdict order
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
- From: Henry Lee <henryronlee@xxxxxxxxx>
- Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH V3 0/3] networking: Use ETH_ALEN where appropriate
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH V3 1/3] uapi: Convert some uses of 6 to ETH_ALEN
- From: Joe Perches <joe@xxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]