Linux TCP/IP Netfilter Devel
Thread Index
[
Prev Page
][
Next Page
]
[PATCH] iptables: libxt_hashlimit.man: correct address
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: "Serge E. Hallyn" <serge@xxxxxxxxxx>
Re: [PATCH] nftables: allow protocols by number in inet_protocol_type_parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] nftables: validate port number in inet_service_type_parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] nftables: add additional --numeric level
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] nftables: allow protocols by number in inet_protocol_type_parse
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] nftables: validate port number in inet_service_type_parse
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: "Serge E. Hallyn" <serge@xxxxxxxxxx>
Re: [PATCHv2] iptables: link against libnetfilter_conntrack
From
: Jan Engelhardt <jengelh@xxxxxxx>
Re: [libnftables PATCH] xml: expr: fix mem leak in the expr parser
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] netfilter: export xt_HMARK.h to userland
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/2] netfilter: export xt_rpfilter.h to userland
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Reset connection state to NEW
From
: Iain Fraser <iainkfraser@xxxxxxxxx>
Re: [PATCHv2] iptables: link against libnetfilter_conntrack
From
: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
Re: [PATCHv2] iptables: link against libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCHv2] iptables: link against libnetfilter_conntrack
From
: Jan Engelhardt <jengelh@xxxxxxx>
Re: [PATCHv2] iptables: link against libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCHv2] iptables: link against libnetfilter_conntrack
From
: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
From
: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
Re: [PATCH lnf-queue] build: avoid sym namespace pollution
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
From
: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: link libxtables against libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH] iptables: link libxtables against libnetfilter_conntrack
From
: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
[PATCH 2/2] netfilter: export xt_HMARK.h to userland
From
: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
[PATCH 1/2] netfilter: export xt_rpfilter.h to userland
From
: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
[PATCH lnf-queue] build: avoid sym namespace pollution
From
: Florian Westphal <fw@xxxxxxxxx>
[libnftables PATCH] xml: expr: fix mem leak in the expr parser
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [libnftables PATCH] nat: xml: fix wrong node name in snprintf
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] chain: xml: delete <use> node
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] tests: xml: reorder XML elements in sets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] xml: expr: limit: fix wrong assignation when parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[libnftables PATCH] nat: xml: fix wrong node name in snprintf
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] chain: xml: delete <use> node
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] tests: xml: reorder XML elements in sets
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] xml: expr: limit: fix wrong assignation when parsing
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] test: compare content parsing with original file content.
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/4] netfilter fixes for 3.11-rc4
From
: David Miller <davem@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] test: compare content parsing with original file content.
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] src: expr: use the function base2str in payload.
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[PATCH 4/4] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 3/4] netfilter: nfnetlink_{log,queue}: fix information leaks in netlink message
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/4] netfilter: xt_TCPOPTSTRIP: fix possible off by one access
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/4] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/4] netfilter fixes for 3.11-rc4
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open
From
: Yuchung Cheng <ycheng@xxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 15/16] nft: Add a function to reset the counters of an existing rule
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/4] Generalize DEBUGP macros
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Neal Cardwell <ncardwell@xxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 15/16] nft: Add a function to reset the counters of an existing rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 13/16] xtables: nft: Complete refactoring on how rules are saved
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 12/16] nft: Refactor rule deletion so it compares both cs structure
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 10/16] nft: Register all relevant xtables extensions into translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 09/16] xtables: Add support for registering nft translation function for match
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 08/16] xtables: Add support for registering nft translation function for target
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 07/16] nft: Add support for xtables extensions callback to change cs
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 06/16] nft: Manage xtables matches through nft translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 05/16] nft: Manage xtables target parsing through translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 03/16] nft: Add nft expressions translation engine as a library
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 02/16] xtables: add support for injecting xtables matches into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 01/16] xtables: Add support for injecting xtables target into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables RFC v3 PATCH 00/16] Xtables extensions: full support (pure nft or compat layer)
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [libnftables PATCH 01/13] src: expr: missing commas in json output support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH 11/13] expr: payload: add nft_str2base function
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 13/13] jansson: Add nft_jansson_family function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 12/13] example: nft-rule-get: family parameter added
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 11/13] expr: payload: add nft_str2base function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 10/13] expr: nat: add nft_str2nat function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 09/13] expr: cmp: add nft_str2cmp function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 08/13] expr: bytecode: add nft_str2ntoh function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 07/13] src: json: delete unneeded JSON prefixes
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 06/13] json: bitwise: add missing node len
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 05/13] expr: ct: optional output in ct
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 04/13] src: fix display of compat_flag and compat_proto
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 03/13] src: expr: change wrong value in data_reg
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 02/13] src: expr: missing curly braces in json output support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 01/13] src: expr: missing commas in json output support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH 6/7] netfilter: conntrack: don't send destroy events from iterator
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
From
: Julian Anastasov <ja@xxxxxx>
[PATCH nftables 2/2] netfilter: nft_log: group and qthreshold are 2^16
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH nftables 1/2] netfilter: nf_tables: don't delete table if in use
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: iptables calls setsockopt incorrectly
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] iptables: iptables calls setsockopt incorrectly
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
Re: [PATCH] iptables: state match incompatibilty across versions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2 -next 2/2] netfilter: nfnetlink_queue: allow to attach expectations to conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2 -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: state match incompatibilty across versions
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
Re: [PATCH -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [patch] netfilter: information leaks building packet message
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
Re: [PATCH] iptables: correctly reference generated file
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -next 2/2] netfilter: nfnetlink_queue: allow to attach expectations to conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: state match incompatibilty across versions
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: Gao feng <gaofeng@xxxxxxxxxxxxxx>
Re: state match incompatibilty across versions
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
[PATCH] iptables: state match incompatibilty across versions
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH 5/5] netfilter: add IPv6 SYNPROXY target
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH 4/5] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH 2/5] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH 1/5] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH v3 07/11] syslog_ns: implement function for creating syslog ns
From
: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
Re: libnfnetlink license
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 04/11] syslog_ns: make syslog handling per namespace
From
: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
Re: [PATCH v3 05/11] syslog_ns: make permisiion check per user namespace
From
: Ben Hutchings <bhutchings@xxxxxxxxxxxxxx>
Re: [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[PATCH 1/5] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 5/5] netfilter: add IPv6 SYNPROXY target
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 4/5] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 3/5] netfilter: add SYNPROXY core/target
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 2/5] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH RFC 0/5] netfilter: implement netfilter SYN proxy
From
: Patrick McHardy <kaber@xxxxxxxxx>
libnfnetlink license
From
: Thomas Woerner <twoerner@xxxxxxxxxx>
Re: [PATCH v3, -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: Serge Hallyn <serge.hallyn@xxxxxxxxxx>
[PATCH v3, -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Gao feng <gaofeng@xxxxxxxxxxxxxx>
Re: [libnftables PATCH] table: add nft_table_list_del function
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH] table: add nft_table_list_del function
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] xtables: trivial spelling fix
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 11/11] netfilter: use ns_printk in iptable context
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [GIT PULL 0/2] IPVS enhancement for v3.12
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 3/3] nft: Print unknown target data only when relevant
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 1/3] nft: Remove useless test on rulenum in nft_rule_list()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[GIT PULL 1/2] ipvs: fixed spacing at for statements
From
: Simon Horman <horms@xxxxxxxxxxxx>
[GIT PULL 2/2] ipvs: ip_vs_sh: ip_vs_sh_get_port: check skb_header_pointer for NULL
From
: Simon Horman <horms@xxxxxxxxxxxx>
[GIT PULL 0/2] IPVS enhancement for v3.12
From
: Simon Horman <horms@xxxxxxxxxxxx>
[iptables-nftables PATCH 2/3] nft: Generalize nft_rule_list() against current family
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables PATCH 3/3] nft: Print unknown target data only when relevant
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables PATCH 1/3] nft: Remove useless test on rulenum in nft_rule_list()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables PATCH 0/3] Generalize nft_rule_list() (+ 2 fixes)
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[PATCH] iptables: correctly reference generated file
From
: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
Re: [PATCH v3 00/11] Add namespace support for syslog
From
: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
[PATCH v3 02/11] syslog_ns: add syslog_ns into user_namespace
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 00/11] Add namespace support for syslog
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 06/11] syslog_ns: use init syslog_ns for console action
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 07/11] syslog_ns: implement function for creating syslog ns
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 01/11] syslog_ns: add syslog_namespace and put/get_syslog_ns
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 08/11] syslog_ns: implement ns_printk for specific syslog_ns
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 03/11] syslog_ns: add init syslog_ns for global syslog
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 05/11] syslog_ns: make permisiion check per user namespace
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 09/11] syslog_ns: implement ns_printk_emit for specific syslog_ns
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 04/11] syslog_ns: make syslog handling per namespace
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 11/11] netfilter: use ns_printk in iptable context
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
[PATCH v3 10/11] syslog_ns: implement ns_console_unlock for specific syslog_ns
From
: Rui Xiang <rui.xiang@xxxxxxxxxx>
Re: state match incompatibilty across versions
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: state match incompatibilty across versions
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
state match incompatibilty across versions
From
: "Laurence J. Lane" <ljlane@xxxxxxxxxx>
[ANNOUNCE] conntrack-tools 1.4.2 release
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[ANNOUNCE] iptables 1.4.20 release
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[ANNOUNCE] libnetfilter_conntrack 1.0.4 release
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] (fix_led_parse_delay) value will now be set
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] (fix_led_parse_delay) value will now be set
From
: Florian Eckert <eckert.florian@xxxxxxxxxxxxxx>
[PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] ipvs: fixed style errors in ip_vs_dh
From
: Simon Horman <horms@xxxxxxxxxxxx>
Re: [PATCH] ipvs: fixed spacing at for statements
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH v2 2/2] netfilter: xt_TCPOPTSTRIP: fix possible off by one access
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -next] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] xtables: trivial spelling fix
From
: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
[PATCH -next] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH V3 0/3] networking: Use ETH_ALEN where appropriate
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: libnetfilter_queue callback and verdict order
From
: Eric Leblond <eric@xxxxxxxxx>
Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
From
: Henry Lee <henryronlee@xxxxxxxxx>
Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
From
: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
[PATCH V3 0/3] networking: Use ETH_ALEN where appropriate
From
: Joe Perches <joe@xxxxxxxxxxx>
[PATCH V3 1/3] uapi: Convert some uses of 6 to ETH_ALEN
From
: Joe Perches <joe@xxxxxxxxxxx>
Re: [PATCH] ebtables: Adding --noflush command line support for ebtables-restore
From
: Bart De Schuymer <bdschuym@xxxxxxxxxx>
[PATCH V2 0/3] networking: Use ETH_ALEN where appropriate
From
: Joe Perches <joe@xxxxxxxxxxx>
[PATCH V2 1/3] uapi: Convert some uses of 6 to ETH_ALEN
From
: Joe Perches <joe@xxxxxxxxxxx>
[libnftables PATCH] table: add nft_table_list_del function
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
From
: Michal Kubecek <mkubecek@xxxxxxx>
[patch] netfilter: information leaks building packet message
From
: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
Re: [PATCH 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 6/7] netfilter: conntrack: don't send destroy events from iterator
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH v3] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header
From
: Julian Anastasov <ja@xxxxxx>
Re: [PATCH 5/5] netfilter: nf_nat: use per-conntrack locking for sequence number adjustments
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 4/5] netfilter: nf_nat: change sequence number adjustments to 32 bits
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: nf_nat: fix locking in nf_nat_seq_adjust()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: nf_nat: fix locking in nf_nat_seq_adjust()
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [nftables PATCH] Add icmpv6 support.
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/7] chain: change policy2str function to nft_verdict2str function
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH] xtables: Do not dump before command parsing has been finished
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 6/7] netfilter: conntrack: don't send destroy events from iterator
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 5/7] netfilter: conntrack: remove duplicate code in conntrack_netlink
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 4/7] netfilter: tproxy: remove nf_tproxy_core.h
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/7] netfilter: tproxy: remove nf_tproxy_core, keep tw sk assigned to skb
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/7] netfilter: nf_queue: relax NFQA_CT attribute check
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/7] netfilter: connlabels: remove unneeded includes
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: nf_nat: fix locking in nf_nat_seq_adjust()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/5] netfilter: nf_conntrack: constify sk_buff argument to nf_ct_attach()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/5] netfilter: nf_conntrack: remove net_ratelimit() for LOG_INVALID()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: xt_addrtype: fix trivial typo
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v3] iptables: allow service names in [DS]NAT targets
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH 2/2] netfilter: xt_TCPOPTSTRIP: fix off by one access
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 7/7] examples: Add nft-chain-json-add
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 6/7] test:chain:test json parsing support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 5/7] chain:Add json parser support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 4/7] chain: remove the properties node in Json output
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 3/7] table: remove the properties node in Json output
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 2/7] jansson: Add helper function for building the tree
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/7] chain: change policy2str function to nft_verdict2str function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[iptables-nftables - PATCH] xtables: Do not dump before command parsing has been finished
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same
From
: Henry Lee <henryronlee@xxxxxxxxx>
libnetfilter_queue callback and verdict order
From
: medialy <medialy@xxxxxxxxx>
Re: [iptables-nftables PATCH 5/5] nft: fix family operation lookup
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 4/5] nft: export functions reusability
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[PATCH 5/7] netfilter: conntrack: remove duplicate code in conntrack_netlink
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 3/7] netfilter: tproxy: remove nf_tproxy_core, keep tw sk assigned to skb
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 4/7] netfilter: tproxy: remove nf_tproxy_core.h
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 6/7] netfilter: conntrack: don't send destroy events from iterator
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 7/7] netfilter: conntrack: remove timer from ecache extension
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 0/7 -next] rm tproxy_core, ct event redelivery via workqueue
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 1/7] netfilter: connlabels: remove unneeded includes
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/7] netfilter: nf_queue: relax NFQA_CT attribute check
From
: Florian Westphal <fw@xxxxxxxxx>
[iptables-nftables PATCH 4/5] nft: export functions reusability
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[PATCH 0/3] networking: Use ETH_ALEN where appropriate
From
: Joe Perches <joe@xxxxxxxxxxx>
[PATCH 1/3] uapi: Convert some uses of 6 to ETH_ALEN
From
: Joe Perches <joe@xxxxxxxxxxx>
[nftables PATCH] Add icmpv6 support.
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH 2/5] netfilter: nf_conntrack: constify sk_buff argument to nf_ct_attach()
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 5/5] netfilter: nf_nat: use per-conntrack locking for sequence number adjustments
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 1/5] netfilter: nf_conntrack: remove net_ratelimit() for LOG_INVALID()
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 0/5] netfilter: NAT sequence number adjustment fixes/improvements
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 3/5] netfilter: nf_nat: fix locking in nf_nat_seq_adjust()
From
: Patrick McHardy <kaber@xxxxxxxxx>
[PATCH 4/5] netfilter: nf_nat: change sequence number adjustments to 32 bits
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [iptables-nftables PATCH 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH v2 net-next] net/sctp: Refactor SCTP skb checksum computation
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] xml: expr: fix public interface for parsing XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: iptables-xml: Fix various parsing bugs
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] build: fail in configure on missing dependency for optional component
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] xml: expr: fix public interface for parsing XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH] xml: expr: fix public interface for parsing XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH libnftables] src: remove version from XML and JSON representations
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[iptables-nftables PATCH v2] nft: load only the tables of the current family.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [libnftables PATCH v3] set: XML parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH 1/5] nft: let nft_handle struct own the builtin table pointer
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH v3] set: XML parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] set: xml: change XML attributes to nodes.
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [iptables-nftables PATCH] nft: load only the tables of the current family.
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[libnftables PATCH] xml: expr: fix public interface for parsing XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[iptables-nftables PATCH] nft: load only the tables of the current family.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[iptables-nftables PATCH 5/5] nft: fix family operation lookup
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[iptables-nftables PATCH 4/5] nft: export functions reusability
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[iptables-nftables PATCH 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[iptables-nftables PATCH 2/5] nft: search builtin tables via nft_handle tables pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[iptables-nftables PATCH 1/5] nft: let nft_handle struct own the builtin table pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [libnftables PATCH v2] set: XML parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] log: fix qthreshold data type
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH v2] set: XML parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH 4/6] chain: json: add function for parsing chain
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/6] examples: Add nft-table-json-add
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/6] table : tests: test the table json parser support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/6] table: json: Add Json parser support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] immediate: xml: fix name inconsistency
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] tests: xml: add realistic XML tests files
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH] immediate: xml: fix name inconsistency
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 6/6] examples: Add nft-chain-json-add
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 5/6] chain: test: test the chain parser support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 4/6] chain: json: add function for parsing chain
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 3/6] examples: Add nft-table-json-add
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 2/6] table : tests: test the table json parser support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/6] table: json: Add Json parser support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [libnftables PATCH 2/2] set: XML parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH] tests: xml: add realistic XML tests files
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH 1/2] src: utils: add verdict2str
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] set: XML parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 1/2] src: utils: add verdict2str
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 17/17] xtables: Support -Z options for a given rule number
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 16/17] nft: Add a function to reset the counters of an existing rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 14/17] xtables: nft: Complete refactoring on how rules are saved
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 15/17] xtables: Support pure nft expressions for DNAT extension
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 13/17] nft: Refactor rule deletion so it compares both cs structure
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 12/17] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 11/17] nft: Register all relevant xtables extensions into translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 10/17] xtables: Add support for registering nft translation function for match
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 09/17] xtables: Add support for registering nft translation function for target
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 08/17] nft: Add support for xtables extensions callback to change cs
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 07/17] nft: Manage xtables matches through nft translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 06/17] nft: Manage xtables target parsing through translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 05/17] nft: Integrate nft translator engine in current core
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 04/17] nft: Add nft expressions translation engine as a library
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 03/17] xtables: add support for injecting xtables matches into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 02/17] xtables: Add support for injecting xtables target into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 01/17] nft: Remove useless function
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC v2 PATCH 00/17] Xtables extensions: full support (pure nft or compat layer)
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[libnftables PATCH] src: xml: consolidate common XML code via nft_mxml_num_parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] log: fix qthreshold data type
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH 4/4] libiptc: Use DEBUGP macro from trace.h
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 3/4] iptables: Use DEBUGP macro from trace.h
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 2/4] extensions: Use DEBUGP macro from trace.h
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 1/4] iptables: Introduce header for keeping debug and trace entities
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 0/4] Generalize DEBUGP macros
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
Re: [PATCH v2 net-next] net/sctp: Refactor SCTP skb checksum computation
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [PATCH v2 net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Simon Horman <horms@xxxxxxxxxxxx>
Re: [PATCH v2 net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Julian Anastasov <ja@xxxxxx>
[PATCH v2 net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Joe Stringer <joe@xxxxxxxxxxx>
Re: [net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Joe Stringer <joe@xxxxxxxxxxx>
Re: [PATCH v2] iptables: allow service names in [DS]NAT targets
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v2] iptables: allow service names in [DS]NAT targets
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[PATCH conntrack-tools] conntrack: fix reporting of unknown arguments
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v2] iptables: allow service names in [DS]NAT targets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: additional include path required after UAPI changes
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
iptables-nftables rebased upon 1.4.19.1
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 5/5] nft: replace args.family
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 5/5] nft: replace args.family
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 2/5] nft: search builtin tables via nft_handle tables pointer
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH v2 1/5] nft: add builtin_table pointer
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH] xtables: Bootstrap xtables-arptables compatible tool for nftables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[xtables-arptables PATCH] xtables: Bootstrap xtables-arptables compatible tool for nftables
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [xtables-arptables PATCH v2 0/5] nft changes for xtables-arptables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[xtables-arptables PATCH v2 5/5] nft: replace args.family
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH v2 4/5] nft: make functions public
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH v2 3/5] nft: nft_xtables_config_load() called only in nft_init()
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH v2 2/5] nft: search builtin tables via nft_handle tables pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH v2 1/5] nft: add builtin_table pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH v2 0/5] nft changes for xtables-arptables
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Julian Anastasov <ja@xxxxxx>
[net-next] net/sctp: Refactor SCTP skb checksum computation
From
: Joe Stringer <joe@xxxxxxxxxxx>
Re: [PATCH 0/2] Netfilter fixes for net (3.11-rc1)
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [xtables-arptables PATCH 0/4] nft changes for xtables-arptables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [xtables-arptables PATCH 3/4] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [xtables-arptables PATCH 3/4] nft: nft_xtables_config_load() called only in nft_init()
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[xtables-arptables PATCH 4/4] nft: make functions public
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH 3/4] nft: nft_xtables_config_load() called only in nft_init()
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH 2/4] nft: search builtin tables via nft_handle tables pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH 1/4] nft: add builtin_table pointer
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[xtables-arptables PATCH 0/4] nft changes for xtables-arptables
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[PATCH] ebtables: Adding --noflush command line support for ebtables-restore
From
: Sanket Shah <sanket.shah@xxxxxxxxxxxx>
[PATCH 2/2] netfilter: xt_socket: fix broken v0 support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/2] netfilter: ctnetlink: fix incorrect NAT expectation dumping
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/2] Netfilter fixes for net (3.11-rc1)
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: Packet loss when using NFQUEUE and nf_conntrack_ipv4
From
: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH] build: fail in configure on missing dependency for optional component
From
: Willem de Bruijn <willemb@xxxxxxxxxx>
[PATCH] iptables: additional include path required after UAPI changes
From
: Phil Oester <kernel@xxxxxxxxxxxx>
nftables rebased upon 3.10
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [nftables PATCH] Add support for insertion inside rule list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH conntrack-tools] conntrack: introduce -l option to filter by labels
From
: Florian Westphal <fw@xxxxxxxxx>
[iptables-nftables - RFC PATCH 15/15] xtables: Support pure nft expressions for DNAT extension
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 14/15] xtables: nft: Complete refactoring on how rules are saved
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 13/15] nft: Remove useless function
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 12/15] nft: Refactor rule deletion so it compares both cs structure
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 11/15] nft: Refactor firewall printing so it reuses already parsed cs struct
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 09/15] xtables: Add support for registering nft translation function for match
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 10/15] nft: Register all relevant xtables extensions into translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 07/15] nft: Add support for xtables extensions callback to change cs
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 08/15] xtables: Add support for registering nft translation function for target
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 06/15] nft: Manage xtables matches through nft translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 05/15] nft: Manage xtables target parsing through translation tree
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 04/15] nft: Integrate nft translator engine in current core
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 03/15] nft: Add nft expressions translation engine as a library
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 02/15] xtables: add support for injecting xtables matches into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 01/15] xtables: Add support for injecting xtables target into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 00/15] Xtables extensions: full support (pure nft or compat layer)
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [nftables PATCH] Add support for insertion inside rule list
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH conntrack-tools] conntrack: introduce -l option to filter by labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: net-next is now OPEN
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: net-next is now OPEN
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: net-next is now OPEN
From
: Eliezer Tamir <eliezer.tamir@xxxxxxxxxxxxxxx>
Re: [PATCHv5] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 4/4] rule: change type of function to use const
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/4] rule: display position in default printf
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/4] examples: add insert rule example
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/4] rule: add support for position attribute
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [nftables PATCH] Add support for insertion inside rule list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] chain: json: fix family and table error
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
net-next is now OPEN
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: Packet loss when using NFQUEUE and nf_conntrack_ipv4
From
: Florian Westphal <fw@xxxxxxxxx>
Packet loss when using NFQUEUE and nf_conntrack_ipv4
From
: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
[PATCHv5] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH] chain: json: fix family and table error
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Regarding Nat-reservation and tproxy feature in latest netfilter code
From
: SaRaVanAn <saravanan.nagarajan87@xxxxxxxxx>
RE: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Alexey Perevalov <alexey.perevalov@xxxxxxxxxxx>
Re: [iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Conntrack vs. TCP-stack timout differences: quickfix howto
From
: Fiedler Roman <Roman.Fiedler@xxxxxxxxx>
[iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 0/2] fixes
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 9/9] nft: Fix small memory leaks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 5/9] nft: Une one unique function to test for a builtin chain
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 4/9] xtables: Remove useless parameter to nft_chain_list_find
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 2/9] nft: Handle error on adding rule expressions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/9] nft: Set the rule family when creating a new one
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 9/9] nft: Fix small memory leaks
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 8/9] xtables-save: Print chains in right order
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 7/9] nft: Print chains in right order when saving rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 5/9] nft: Une one unique function to test for a builtin chain
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 4/9] xtables: Remove useless parameter to nft_chain_list_find
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 1/9] nft: Set the rule family when creating a new one
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 2/9] nft: Handle error on adding rule expressions
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 0/9] Various fixes
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH net] ipv4: set transport header earlier
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 11/29] add variable width and on-the-fly formatting
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 10/29] add *_BONLY template to show bytes-only
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 nfacct 7/29] code-refactoring changes to the "command menu"
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 4/29] bugfix: correct (plain) name parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 3/29] bugfix: correct xml name parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] chain: json: use string to identify policy
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] set: json: fix incomplete output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] chain: json: use string to identify policy
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] set: json: fix incomplete output
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH] netfilter: xt_socket: fix broken v0 support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH V2 iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [0/29] nfacct changes and additions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: xt_pkttype: IPv6 has no broadcast
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH v2] src: display rule by number
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] src: add nft_*_list_is_empty() functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 4/4] doc: merge ip6table man pages into ipv4 ones
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 3/4] doc: add libnetfilter_queue pointer to libxt_NFQUEUE.man
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/4] extensions: libipt_ULOG: man page should mention NFLOG
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH iptables next 1/4] extensions: libxt_socket: update man page
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [iptables-nftables PATCH v2] src: display rule by number
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables PATCH v2] src: display rule by number
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH] netfilter: xt_socket: fix broken v0 support
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH] ipvs: fixed style errors and warnings in ip_vs_conn
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] ipvs: fixed style error in ip_vs_sched
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] ipvs: fixed style errors in ip_vs_dh
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] netfilter: xt_addrtype: fix trivial typo
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] netfilter: xt_pkttype: IPv6 has no broadcast
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[libnftables PATCH] src: add nft_*_list_is_empty() functions
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH] ipvs: fixed spacing at for statements
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH v3 nfacct 29/29] change man page to describe all new features
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 28/29] add "show marks" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 27/29] add *_MONLY template support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 26/29] add setmark and clrmark to "get" and "list" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 25/29] add packets/bytes mark capability support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 23/29] add "show extended" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 22/29] add *_EXTENDED template support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 21/29] add byte threshold capabilities to nfacct objects
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 20/29] add byte threshold capability support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 18/29] add permanent number formatting to nfacct objects
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 17/29] add *permanent* number formatting support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 15/29] add "show bytes" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 14/29] add sort option to the "list" command
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 13/29] add new "save" and correct existing "restore" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 12/29] add variable width and on-the-fly number formatting
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 11/29] add variable width and on-the-fly formatting
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 10/29] add *_BONLY template to show bytes-only
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 9/29] add *_SAVE template allowing save/restore
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 8/29] add 2 new options: "replace" and "flush"
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 7/29] code-refactoring changes to the "command menu"
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 6/29] bugfix: prevent 0-sized nfacct name being accepted
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 5/29] bugfix: prevent 0-sized parameter being accepted
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 4/29] bugfix: correct (plain) name parsing
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 3/29] bugfix: correct xml name parsing
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 2/29] bugfix: restore pkts/bytes counters in NLM_F_REPLACE
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 0/29] nfacct changes and additions
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[libnftables PATCH] examples: give credits to Pablo Neira Ayuso
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: nfnetlink_queue question
From
: Florian Westphal <fw@xxxxxxxxx>
nfnetlink_queue question
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[nftables PATCH] rule: honor flag argument during rule creation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv4 nftables insert operation 0/1]
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] ip{6}tables-restore: fix breakage due to new locking approach
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [libnftables PATCH] bitwise: xml: export len node
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2] iptables: allow service names in [DS]NAT targets
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[libnftables PATCH] bitwise: xml: export len node
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[no subject]
From
: Unknown
Re: [PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: allow service names in [DS]NAT targets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] extensions: libxt_dccp/libxt_sctp: enable debug tracing by DEBUG define
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[nftables PATCH] Add support for insertion inside rule list
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 4/4] rule: change type of function to use const
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 3/4] rule: display position in default printf
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 2/4] examples: add insert rule example
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 1/4] rule: add support for position attribute
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv3 nftables insert operation]
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [libnftables PATCH] set: add xml output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Scott Baillie <scott.a.baillie@xxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
ip6tables-save LOG target output is different to iptables-save
From
: Scott Baillie <scott.a.baillie@xxxxxxxxx>
[libnftables PATCH] set: add xml output
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH v4 2/2] ipset (userspace): add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v4 1/2] ipset (kernel): add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [libnftables PATCH] src: consolidate XMl parsing of data_reg via nft_mxml_data_reg_parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v4 0/2] ipset: add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] examples: nft-table-get different families options
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] set: add Json Export Support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[libnftables PATCH] src: consolidate XMl parsing of data_reg via nft_mxml_data_reg_parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 2/2] examples: nft-table-get different families options
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] set: add Json Export Support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series Add Json Support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [libnftables PATCH] src: improving default text output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Florian Westphal <fw@xxxxxxxxx>
[libnftables PATCH] src: improving default text output
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH cttools V3] conntrack: add connlabel format attribute
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
[PATCH cttools V3] conntrack: add connlabel format attribute
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH lnf-ct V3] conntrack: api: add nfct_snprintf_labels
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/2] extensions: libxt_dccp/libxt_sctp: enable debug tracing by DEBUG define
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 1/2] Clarify DEBUG usage macro
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 0/2] minor debugging fixes
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH lnf-ct V3] conntrack: api: add nfct_snprintf_labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [libnftables PATCH] expr: Fix header inclusion for integer types
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH] expr: Fix header inclusion for integer types
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Bart De Schuymer <bdschuym@xxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
[PATCH -stable-3.9 15/15] netfilter: ctnetlink: send event when conntrack label was modified
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 14/15] netfilter: nf_nat_sip: fix mangling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 13/15] ipvs: SCTP ports should be writable in ICMP packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 12/15] netfilter: xt_TCPMSS: Fix IPv6 default MSS too
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 11/15] netfilter: xt_TCPMSS: Fix missing fragmentation handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 10/15] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 09/15] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 08/15] netfilter: nfnetlink_acct: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 07/15] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 06/15] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 05/15] netfilter: xt_LOG: fix mark logging for IPv6 packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 04/15] ipvs: Fix reuse connection if real server is dead
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 03/15] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 02/15] netfilter: ipt_ULOG: fix non-null terminated string in the nf_log path
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
Re: iptables doesn't function properly with x32.
From
: Kyle Sanderson <kyle.leet@xxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: tdthp@xxxxxxxxxxxx
Re: [PATCH nft] src: add xt compat support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
merge window is CLOSED
From
: David Miller <davem@xxxxxxxxxxxxx>
iptables doesn't function properly with x32.
From
: Kyle Sanderson <kyle.leet@xxxxxxxxx>
RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: C++ compile errors
From
: Amos Jeffries <squid3@xxxxxxxxxxxxx>
Re: iptables upgrade: NOT operator parser trouble
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: Issue with latest nftables
From
: Eric Leblond <eric@xxxxxxxxx>
ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Luis Fernando <tdthp@xxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]