Linux TCP/IP Netfilter Devel
Thread Index
[
Prev Page
][
Next Page
]
[iptables-nftables - RFC PATCH 01/15] xtables: Add support for injecting xtables target into nft rule
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - RFC PATCH 00/15] Xtables extensions: full support (pure nft or compat layer)
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [nftables PATCH] Add support for insertion inside rule list
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH conntrack-tools] conntrack: introduce -l option to filter by labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: net-next is now OPEN
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: net-next is now OPEN
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: net-next is now OPEN
From
: Eliezer Tamir <eliezer.tamir@xxxxxxxxxxxxxxx>
Re: [PATCHv5] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 4/4] rule: change type of function to use const
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/4] rule: display position in default printf
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/4] examples: add insert rule example
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/4] rule: add support for position attribute
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[iptables-nftables - PATCH] nft: A non valid if index should not be handled
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [nftables PATCH] Add support for insertion inside rule list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] chain: json: fix family and table error
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
net-next is now OPEN
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: Packet loss when using NFQUEUE and nf_conntrack_ipv4
From
: Florian Westphal <fw@xxxxxxxxx>
Packet loss when using NFQUEUE and nf_conntrack_ipv4
From
: Daniel Collins <daniel.collins@xxxxxxxxxxxxxx>
[PATCHv5] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH] chain: json: fix family and table error
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Regarding Nat-reservation and tproxy feature in latest netfilter code
From
: SaRaVanAn <saravanan.nagarajan87@xxxxxxxxx>
RE: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Alexey Perevalov <alexey.perevalov@xxxxxxxxxxx>
Re: [iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Conntrack vs. TCP-stack timout differences: quickfix howto
From
: Fiedler Roman <Roman.Fiedler@xxxxxxxxx>
[iptables-nftables - PATCH 1/2] nft: Optimize chain listing if only one is looked for
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 2/2] nft: Fix code style issues
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 0/2] fixes
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 9/9] nft: Fix small memory leaks
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 5/9] nft: Une one unique function to test for a builtin chain
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 4/9] xtables: Remove useless parameter to nft_chain_list_find
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 2/9] nft: Handle error on adding rule expressions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables - PATCH 1/9] nft: Set the rule family when creating a new one
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH net] ipv4: set transport header earlier
From
: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 9/9] nft: Fix small memory leaks
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 8/9] xtables-save: Print chains in right order
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 6/9] nft: Print chains in right order when listing rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 7/9] nft: Print chains in right order when saving rules
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 5/9] nft: Une one unique function to test for a builtin chain
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 4/9] xtables: Remove useless parameter to nft_chain_list_find
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 1/9] nft: Set the rule family when creating a new one
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 2/9] nft: Handle error on adding rule expressions
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 3/9] nft: Refactor and optimize nft_rule_list
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables - PATCH 0/9] Various fixes
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH net] ipv4: set transport header earlier
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 11/29] add variable width and on-the-fly formatting
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 10/29] add *_BONLY template to show bytes-only
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 nfacct 7/29] code-refactoring changes to the "command menu"
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 4/29] bugfix: correct (plain) name parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 libnetfilter_acct 3/29] bugfix: correct xml name parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] chain: json: use string to identify policy
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] set: json: fix incomplete output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] chain: json: use string to identify policy
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] set: json: fix incomplete output
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH] netfilter: xt_socket: fix broken v0 support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH V2 iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [0/29] nfacct changes and additions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: xt_pkttype: IPv6 has no broadcast
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables-nftables PATCH v2] src: display rule by number
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] src: add nft_*_list_is_empty() functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCHv4] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 4/4] doc: merge ip6table man pages into ipv4 ones
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 3/4] doc: add libnetfilter_queue pointer to libxt_NFQUEUE.man
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/4] extensions: libipt_ULOG: man page should mention NFLOG
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH iptables next 1/4] extensions: libxt_socket: update man page
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [iptables-nftables PATCH v2] src: display rule by number
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[iptables-nftables PATCH v2] src: display rule by number
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH] netfilter: xt_socket: fix broken v0 support
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH] ipvs: fixed style errors and warnings in ip_vs_conn
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] ipvs: fixed style error in ip_vs_sched
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] ipvs: fixed style errors in ip_vs_dh
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
[PATCH] netfilter: xt_addrtype: fix trivial typo
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] netfilter: xt_pkttype: IPv6 has no broadcast
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[libnftables PATCH] src: add nft_*_list_is_empty() functions
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH] ipvs: fixed spacing at for statements
From
: Dragos Foianu <dragos.foianu@xxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH v3 nfacct 29/29] change man page to describe all new features
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 28/29] add "show marks" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 27/29] add *_MONLY template support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 26/29] add setmark and clrmark to "get" and "list" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 25/29] add packets/bytes mark capability support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 24/29] add packets and bytes mark capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 23/29] add "show extended" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 22/29] add *_EXTENDED template support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 21/29] add byte threshold capabilities to nfacct objects
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 20/29] add byte threshold capability support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 19/29] add byte threshold capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 18/29] add permanent number formatting to nfacct objects
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 17/29] add *permanent* number formatting support
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 16/29] add permanent byte/packet format capability to nfacct
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 15/29] add "show bytes" option to "list" and "get" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 14/29] add sort option to the "list" command
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 13/29] add new "save" and correct existing "restore" commands
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 12/29] add variable width and on-the-fly number formatting
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 11/29] add variable width and on-the-fly formatting
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 10/29] add *_BONLY template to show bytes-only
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 9/29] add *_SAVE template allowing save/restore
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 8/29] add 2 new options: "replace" and "flush"
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 7/29] code-refactoring changes to the "command menu"
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 6/29] bugfix: prevent 0-sized nfacct name being accepted
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 nfacct 5/29] bugfix: prevent 0-sized parameter being accepted
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 4/29] bugfix: correct (plain) name parsing
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 libnetfilter_acct 3/29] bugfix: correct xml name parsing
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 2/29] bugfix: restore pkts/bytes counters in NLM_F_REPLACE
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 kernel 1/29] bugfix: pkts/bytes need to be specified simultaneously
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
[PATCH v3 0/29] nfacct changes and additions
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
From
: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[libnftables PATCH] examples: give credits to Pablo Neira Ayuso
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH iptables] extensions: libxt_connlabel: use libnetfilter_conntrack
From
: Florian Westphal <fw@xxxxxxxxx>
Re: nfnetlink_queue question
From
: Florian Westphal <fw@xxxxxxxxx>
nfnetlink_queue question
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[nftables PATCH] rule: honor flag argument during rule creation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv4] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv4 nftables insert operation 0/1]
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] ip{6}tables-restore: fix breakage due to new locking approach
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [libnftables PATCH] bitwise: xml: export len node
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2] iptables: allow service names in [DS]NAT targets
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[libnftables PATCH] bitwise: xml: export len node
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [PATCH v4 0/2] ipset: add "inner" flag version support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[no subject]
From
: Unknown
Re: [PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: allow service names in [DS]NAT targets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] extensions: libxt_dccp/libxt_sctp: enable debug tracing by DEBUG define
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] ip6tables: don't print out /128
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[nftables PATCH] Add support for insertion inside rule list
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 4/4] rule: change type of function to use const
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 3/4] rule: display position in default printf
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 2/4] examples: add insert rule example
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 1/4] rule: add support for position attribute
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCHv3 nftables insert operation]
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [libnftables PATCH] set: add xml output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Scott Baillie <scott.a.baillie@xxxxxxxxx>
Re: ip6tables-save LOG target output is different to iptables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
ip6tables-save LOG target output is different to iptables-save
From
: Scott Baillie <scott.a.baillie@xxxxxxxxx>
[libnftables PATCH] set: add xml output
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
[PATCH v4 2/2] ipset (userspace): add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v4 1/2] ipset (kernel): add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [libnftables PATCH] src: consolidate XMl parsing of data_reg via nft_mxml_data_reg_parse
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v4 0/2] ipset: add "inner" flag version support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] examples: nft-table-get different families options
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] set: add Json Export Support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: [PATCH v3 0/5] ipset: add "inner" flag support
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[libnftables PATCH] src: consolidate XMl parsing of data_reg via nft_mxml_data_reg_parse
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 2/2] examples: nft-table-get different families options
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] set: add Json Export Support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series Add Json Support
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [libnftables PATCH] src: improving default text output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
Re: conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Florian Westphal <fw@xxxxxxxxx>
[libnftables PATCH] src: improving default text output
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
conntrackd segfault on EPSV IPv6 ftp command when using ftp ExpectationSync
From
: Bill Fink <billfink@xxxxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH cttools V3] conntrack: add connlabel format attribute
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Luis Henriques <luis.henriques@xxxxxxxxxxxxx>
[PATCH cttools V3] conntrack: add connlabel format attribute
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH lnf-ct V3] conntrack: api: add nfct_snprintf_labels
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/2] extensions: libxt_dccp/libxt_sctp: enable debug tracing by DEBUG define
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 1/2] Clarify DEBUG usage macro
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH 0/2] minor debugging fixes
From
: Alexey Perevalov <a.perevalov@xxxxxxxxxxx>
[PATCH] iptables: set errno correctly in iptcc_chain_index_alloc
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH v2] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH lnf-ct V3] conntrack: api: add nfct_snprintf_labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [libnftables PATCH] expr: Fix header inclusion for integer types
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH] expr: Fix header inclusion for integer types
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Bart De Schuymer <bdschuym@xxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
[PATCH -stable-3.9 15/15] netfilter: ctnetlink: send event when conntrack label was modified
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 14/15] netfilter: nf_nat_sip: fix mangling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 13/15] ipvs: SCTP ports should be writable in ICMP packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 12/15] netfilter: xt_TCPMSS: Fix IPv6 default MSS too
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 11/15] netfilter: xt_TCPMSS: Fix missing fragmentation handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 10/15] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 09/15] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 08/15] netfilter: nfnetlink_acct: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 07/15] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 06/15] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 05/15] netfilter: xt_LOG: fix mark logging for IPv6 packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 04/15] ipvs: Fix reuse connection if real server is dead
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 03/15] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 02/15] netfilter: ipt_ULOG: fix non-null terminated string in the nf_log path
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH] iptables: Sort table names in ip[6]tables-save
From
: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
Re: iptables doesn't function properly with x32.
From
: Kyle Sanderson <kyle.leet@xxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: tdthp@xxxxxxxxxxxx
Re: [PATCH nft] src: add xt compat support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
merge window is CLOSED
From
: David Miller <davem@xxxxxxxxxxxxx>
iptables doesn't function properly with x32.
From
: Kyle Sanderson <kyle.leet@xxxxxxxxx>
RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: C++ compile errors
From
: Amos Jeffries <squid3@xxxxxxxxxxxxx>
Re: iptables upgrade: NOT operator parser trouble
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: Issue with latest nftables
From
: Eric Leblond <eric@xxxxxxxxx>
ebtables-restore 2.0.10-4 IPv6 rule loading bug
From
: Luis Fernando <tdthp@xxxxxxxxxxxx>
Re: [PATCH nft] src: add xt compat support
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [RFC PATCHv2] netfilter: nf_tables: add insert operation
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: Issue with latest nftables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH 00/12] netfilter updates for net-next
From
: David Miller <davem@xxxxxxxxxxxxx>
[PATCH 04/12] ipvs: provide iph to schedulers
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 02/12] netfilter: nf_conntrack: avoid large timeout for mid-stream pickup
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 07/12] ipvs: drop SCTP connections depending on state
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 08/12] ipvs: SH fallback and L4 hashing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 06/12] ipvs: replace the SCTP state machine
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 03/12] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 09/12] ipvs: add sync_persist_mode flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 12/12] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 11/12] netns: exclude ipvs from struct net when IPVS disabled
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 10/12] kernel: remove unnecessary head file
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 05/12] ipvs: sloppy TCP and SCTP
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 01/12] netfilter: check return code from nla_parse_tested
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 00/12] netfilter updates for net-next
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] conntrack: add connlabel format attribute
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH lnf-ct] conntrack: api: add nfct_snprintf_labels
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/2] conntrack: add connlabel format attribute
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH conntracktools] conntrackd: support replication of connlabels
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH lnf-ct] conntrack: api: add nfct_snprintf_labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: C++ compile errors
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH nft] src: add xt compat support
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
C++ compile errors
From
: Amos Jeffries <squid3@xxxxxxxxxxxxx>
[PATCH v3 5/5] iptables (userspace): add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v3 4/5] iptables: add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v3 3/5] ipset: add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v3 2/5] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v3 1/5] iptables: bugfix - prevent wrong syntax being accepted by the set match
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v3 0/5] ipset: add "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: [PATCH] fix filenames typo in print_usage and file header
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [RFC PATCHv2] netfilter: nf_tables: add insert operation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [GIT PULL 0/8] IPVS updates for v3.11 #2
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_tables: remove the duplicate NF_INET_LOCAL_OUT
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] Add function for exporting rule to JSON format and Order the switch values in the right order
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: Issue with latest nftables
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] iptables: allow service names in [DS]NAT targets
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[RFC PATCHv2] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
Re: iptables upgrade: NOT operator parser trouble
From
: Florian Westphal <fw@xxxxxxxxx>
Issue with latest nftables
From
: Eric Leblond <eric@xxxxxxxxx>
Re: xt_ipvs match does not translate source address for ipvs
From
: Vincent Li <vincent.mc.li@xxxxxxxxx>
iptables upgrade: NOT operator parser trouble
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: Checksum of an IPv6 UDP packet is mandatory
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] netfilter: Checksum of an IPv6 UDP packet is mandatory
From
: Changli Gao <xiaosuo@xxxxxxxxx>
ipt_netflow
From
: Stephen Clark <sclark46@xxxxxxxxxxxxx>
Re: [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[PATCH] netfilter: nf_tables: remove the duplicate NF_INET_LOCAL_OUT
From
: Changli Gao <xiaosuo@xxxxxxxxx>
Re: xt_ipvs match does not translate source address for ipvs
From
: Julian Anastasov <ja@xxxxxx>
Re: xt_ipvs match does not translate source address for ipvs
From
: Vincent Li <vincent.mc.li@xxxxxxxxx>
Re: xt_ipvs match does not translate source address for ipvs
From
: Vincent Li <vincent.mc.li@xxxxxxxxx>
xt_ipvs match does not translate source address for ipvs
From
: Vincent Li <vincent.mc.li@xxxxxxxxx>
RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH] iptables: Sort table names in ip[6]tables-save
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[libnftables PATCH 1/2] Add function for exporting rule to JSON format and Order the switch values in the right order
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series to add JSON output support for rules
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [libnftables PATCH v2] test: add testbench for XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH v2] test: add testbench for XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [libnftables PATCH v2] src: xml: convert family values to string
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH v2] chain: add hooknum2str
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 00/21] Small fixes for XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH v2] src: xml: convert family values to string
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH v2] chain: add hooknum2str
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[libnftables PATCH 14/21] data_reg: xml: fix bytes movements
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 13/21] data_reg: xml: len node shows byte length
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 12/21] chain: xml: use string for policy
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 20/21] nat: xml: rename node type to nat_type
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 18/21] meta: xml: use string to represent key attribute
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 19/21] nat: snprintf: fix buffer offset
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 21/21] exthdr: xml: rename type node to exthdr_type
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 17/21] exthdr: xml: use string for type node
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 16/21] payload: xml: use string for base attribute
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 15/21] target&match: xml: don't print rev number
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 09/21] ct: xml: add extra dir check
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 11/21] exthdr: xml: fix mandatory elements
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 07/21] nat: xml: change IP range node names
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 10/21] ct: xml: use key's name string instead of numbers
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 06/21] nat: xml: change nat types string to dnat/snat
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 08/21] byteorder: xml: op as string
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 02/21] src: xml: convert family values to string
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 04/21] bitwise: xml: mask and xor use same number of data registers
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 03/21] rule: xml: conditional compat info
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 05/21] expr: xml: validate registers < NFT_REG_MAX
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 00/21] Small fixes for XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 01/21] chain: add hooknum2str
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH 2/8] ipvs: sloppy TCP and SCTP
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 3/8] ipvs: replace the SCTP state machine
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 1/8] ipvs: provide iph to schedulers
From
: Simon Horman <horms@xxxxxxxxxxxx>
[GIT PULL 0/8] IPVS updates for v3.11 #2
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 6/8] ipvs: add sync_persist_mode flag
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 4/8] ipvs: drop SCTP connections depending on state
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 7/8] kernel: remove unnecessary head file
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 5/8] ipvs: SH fallback and L4 hashing
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH 8/8] netns: exclude ipvs from struct net when IPVS disabled
From
: Simon Horman <horms@xxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] nft: mem leak in nft_rule_list_cb
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/2] nft: print counter issues
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/2] nft: mem leak in nft_rule_list_cb
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[PATCH 1/2] nft: print counter issues
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: v3.10-rc7 oops soon after boot
From
: Gao feng <gaofeng@xxxxxxxxxxxxxx>
Re: [PATCH iptables] xt_socket: add --nowildcard flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2 nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: v3.10-rc7 oops soon after boot
From
: Borislav Petkov <bp@xxxxxxxxx>
Re: v3.10-rc7 oops soon after boot
From
: "George Spelvin" <linux@xxxxxxxxxxx>
Re: [PATCH 0/5] Netfilter/IPVS fixes for net
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: v3.10-rc7 oops soon after boot
From
: Borislav Petkov <bp@xxxxxxxxx>
[PATCH 4/5] netfilter: ctnetlink: send event when conntrack label was modified
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/5] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 5/5] netfilter: ipt_ULOG: fix incorrect setting of ulog timer
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/5] ipvs: SCTP ports should be writable in ICMP packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 3/5] netfilter: nf_nat_sip: fix mangling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/5] Netfilter/IPVS fixes for net
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: v3.10-rc7 oops soon after boot
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/1] netfilter: ctnetlink: send event when conntrack label was modified
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/2] Netfilter/IPVS fixes for net
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/2] Netfilter/IPVS fixes for net
From
: David Miller <davem@xxxxxxxxxxxxx>
[PATCH conntrack-tools 2/2] conntrack: add connlabel format attribute
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH conntrack-tools 1/2] conntrackd: support replication of connlabels
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH lnf-ct 1/2] conntrack: labels: skip labels with non-alnum characters
From
: Florian Westphal <fw@xxxxxxxxx>
Re: Bridge-nf and iptables SNAT
From
: Bart De Schuymer <bdschuym@xxxxxxxxxx>
[PATCHv2] nft: netlink: fix network address prefix
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[nft] netlink: fix network address prefix
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
From
: gapsf@xxxxxxxxx
[PATCH ] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
From
: gapsf <gapsf@xxxxxxxxx>
Re: [libnftables PATCH] test: add testbench for XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] ip6tables: don't print out /128
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [libnftables PATCH] test: add testbench for XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH] iptables: iptables-xml: Fix various parsing bugs
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH 1/1] netfilter: ctnetlink: send event when conntrack label was modified
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 5/5] src: use libnftables
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 4/5] meta: replace rtnl_tc_handle2str and rtnl_tc_str2handle
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/5] rule: family field in struct handle is unsigned
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 3/5] meta: use if_nametoindex and if_indextoname
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Jan Engelhardt <jengelh@xxxxxxx>
[PATCH 1/2] ipvs: SCTP ports should be writable in ICMP packets
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/2] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/2] Netfilter/IPVS fixes for net
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [libnftables PATCH] test: add testbench for XML
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH iptables] xt_socket: add --nowildcard flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[PATCH v2 nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH] nft: loop optimization
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [patch] netfilter: prevent harmless integer overflow
From
: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Patrick McHardy <kaber@xxxxxxxxx>
Re: [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [patch] netfilter: prevent harmless integer overflow
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
From
: Daniel Borkmann <dborkman@xxxxxxxxxx>
Re: [GIT PULL nf] IPVS fix for v3.10
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] nft: loop optimization
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [RFC PATCH 0/1] add insert after to nf_tables
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[libnftables PATCH] examples: add insert rule example
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] netfilter: nf_tables: add insert operation
From
: Eric Leblond <eric@xxxxxxxxx>
[RFC PATCH 0/1] add insert after to nf_tables
From
: Eric Leblond <eric@xxxxxxxxx>
[PATCH] fix filenames typo in print_usage and file header
From
: gapsf <gapsf@xxxxxxxxx>
[GIT PULL nf] IPVS fix for v3.10
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH nf] ipvs: SCTP ports should be writable in ICMP packets
From
: Simon Horman <horms@xxxxxxxxxxxx>
[libnftables PATCH] test: add testbench for XML
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[PATCH 2/2] conntrack: snprintf: add connlabel format specifier
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
From
: Florian Westphal <fw@xxxxxxxxx>
Bridge-nf and iptables SNAT
From
: Tsachi <tsachi.kimel@xxxxxxxxx>
[patch] netfilter: prevent harmless integer overflow
From
: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH v3] iptables-nftables: function nft_chain_zero_counters added.
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/3] netfilter fixes for net
From
: David Miller <davem@xxxxxxxxxxxxx>
[PATCH v3] iptables-nftables: function nft_chain_zero_counters added.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH 3/3] netfilter: xt_TCPMSS: Fix missing fragmentation handling
From
: Julian Anastasov <ja@xxxxxx>
Re: [PATCH 1/3] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
From
: Julian Anastasov <ja@xxxxxx>
[PATCH 2/3] netfilter: xt_TCPMSS: Fix IPv6 default MSS too
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 3/3] netfilter: xt_TCPMSS: Fix missing fragmentation handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/3] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/3] netfilter fixes for net
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/3] rule: xml: delete trailing space
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/3] nat: xml: fix non-mandatory element
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/3] nat: xml: fix xml_snprintf buffer offset
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] expr: bitwise: xml_parse: fix casting
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
[PATCH v3 2/2] xtables: function zero_entries removed
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
[PATCH v2 5/5] iptables (userspace): add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v2 4/5] iptables: add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v2 3/5] ipset: add set match "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v2 2/5] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v2 1/5] iptables: bugfix: prevent wrong syntax being accepted by the set match
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[PATCH v2 0/5] ipset: add "inner" flag support
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
libnetfilter_queue: Another Valgrind complaint with nfq_set_mode
From
: Tamas Lengyel <tamas.k.lengyel@xxxxxxxxx>
[libnftables PATCH 3/3] rule: xml: delete trailing space
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 2/3] nat: xml: fix non-mandatory element
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 1/3] nat: xml: fix xml_snprintf buffer offset
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH] expr: bitwise: xml_parse: fix casting
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
Re: [PATCH] netfilter: xt_TCPMSS: Add safe fragmentation handling
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] netfilter: xt_TCPMSS: Add IPv6 default MSS
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] Add function for exporting rule to JSON format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series to add JSON output support for rules
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
From
: Florian Westphal <fw@xxxxxxxxx>
Re: Huge timeout with loose=1 pickup tcp connections
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
Re: Huge timeout with loose=1 pickup tcp connections
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Huge timeout with loose=1 pickup tcp connections
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [ANNOUNCE] Linux Security Summit 2013 - CFP
From
: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
Re: [PATCH 06/12] sched: add cond_resched_rcu() helper
From
: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
[PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
From
: Daniel Borkmann <dborkman@xxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [nftables PATCH 2/2] counter: fix restoration
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [nftables PATCH 1/2] rule: display hook info
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH] iptables: Fix connlabel.conf install location
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH] netfilter: xt_TCPMSS: Add IPv6 default MSS
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: John Heffner <johnwheffner@xxxxxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Rick Jones <rick.jones2@xxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
[PATCH] iptables: Fix connlabel.conf install location
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: "David Laight" <David.Laight@xxxxxxxxxx>
Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Phil Oester <kernel@xxxxxxxxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: "David Laight" <David.Laight@xxxxxxxxxx>
Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH v4] xtables: Add locking to prevent concurrent instances
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: "David Laight" <David.Laight@xxxxxxxxxx>
[PATCH] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 0/5] netfilter fixes for 3.10-rc5
From
: David Miller <davem@xxxxxxxxxxxxx>
Re: [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] netfilter: xt_TCPMSS: Add safe fragmentation handling
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
From
: Phil Oester <kernel@xxxxxxxxxxxx>
[PATCH 1/5] netfilter: nfnetlink_acct: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 2/5] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 5/5] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 4/5] netfilter: nfnetlink_queue: fix missing HW protocol
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 0/5] netfilter fixes for 3.10-rc5
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Simon Horman <horms@xxxxxxxxxxxx>
Re: [PATCH 2/4] ipset: add "inner" flag implementation
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[nftables PATCH 2/2] counter: fix restoration
From
: Eric Leblond <eric@xxxxxxxxx>
[nftables PATCH 1/2] rule: display hook info
From
: Eric Leblond <eric@xxxxxxxxx>
[nftables PATCH 0/2] work on restoration
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCH] fix leak of iter in nft_rule_list
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] Implementation for to test the function for exporting chains to JSON format
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] Add function for exporting chain to JSON Format
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] data_reg: xml: delete unreachable code in _veredict_xml_parse()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH] data_reg: xml: delete unreachable code in _veredict_xml_parse()
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[PATCH] fix leak of iter in nft_rule_list
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH 2/5] include: use C++ headers in C++ mode
From
: Jan Engelhardt <jengelh@xxxxxxx>
[libnftables PATCH 2/2] Implementation for to test the function for exporting chains to JSON format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] Add function for exporting chain to JSON Format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series short description
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH] datatype: concat expression only releases dynamically allocated datatype
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH v2] nft: fix leak of iterators
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH v2] nft: fix leak of iterators
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: ulog: ulogd.conf.5 man page
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [PATCH] datatype: concat expression only releases dynamically allocated datatype
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [nftables PATCH 0/5] misc fixes
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH] src: xml: implement helper function nft_strtol
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[PATCH] netfilter: nfnetlink_queue: fix missing HW protocol
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH v3] src: add _unset functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH v3] src: add _unset functions
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH v3] src: add _unset functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/2] Add implementation for to proof the JSON export function
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] Add functions for exporting tables to JSON format
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH v3] src: add _unset functions
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 2/2] Add implementation for to proof the JSON export function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/2] Add functions for exporting tables to JSON format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/2] Series short description
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [PATCH 2/5] include: use C++ headers in C++ mode
From
: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
Re: [PATCH 2/4] ipset: add "inner" flag implementation
From
: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
[libnftables PATCH v2] src: add _unset functions
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH 3/4] Add JSON Constant for to use the Json export function
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables PATCH 4/4] Add a constant for to put the JSON Version
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 3/4] Add JSON Constant for to use the Json export function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 2/4] Add implementation for to proof the JSON export function
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 1/4] Add functions for to export tables to JSON format
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
[libnftables PATCH 0/4] Series short description
From
: Alvaro Neira <alvaroneay@xxxxxxxxx>
Re: [nftables PATCH 0/5] misc fixes
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] src: add _unset functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [nftables PATCH 0/5] misc fixes
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH] datatype: concat expression only releases dynamically allocated datatype
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] src: add _unset functions
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Re: [libnftables PATCH v3] src: xml: add versioning
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/2] src: add _unset functions
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 00/12] Netfilter/IPVS updates for net-next
From
: David Miller <davem@xxxxxxxxxxxxx>
[libnftables PATCH 2/2] examples: unset chain & rule handle
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 1/2] src: add _unset functions
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[PATCH 02/12] netfilter: xt_socket: use IP early demux
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 03/12] bridge: netfilter: using strlcpy() instead of strncpy()
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 04/12] netfilter: don't panic on error while walking through the init path
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 10/12] netfilter: Implement RFC 1123 for FTP conntrack
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 07/12] ipvs: use cond_resched_rcu() helper when walking connections
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 09/12] netfilter: nfnetlink_queue: avoid peer_portid test
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 11/12] netfilter: nfnetlink_queue: cleanup copy_range usage
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 08/12] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 12/12] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 06/12] sched: add cond_resched_rcu() helper
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 05/12] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 01/12] netfilter: xt_CT: optimize XT_CT_NOTRACK
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 00/12] Netfilter/IPVS updates for net-next
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/3] expect: consider all expect attributes when comparing
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/2] qa: nfct_cmp: verify individual attr comparision
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 1/2] conntrack: nfct_cmp: also compare labels
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH 3/3] expect: consider all expect attributes when comparing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/3] expect: consider all expect attributes when comparing
From
: Florian Westphal <fw@xxxxxxxxx>
Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
From
: Vijay Tandeker <vijayt@xxxxxxxxxxxxxxxxxxxxxxx>
Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[PATCH] nft: fix leak of iterators
From
: Giuseppe Longo <giuseppelng@xxxxxxxxx>
Re: [PATCH] netfilter: xt_TCPMSS: Avoid violating RFC 879 in absence of MSS option
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH v3] src: xml: add versioning
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
From
: Vijay Tandeker <vijayt@xxxxxxxxxxxxxxxxxxxxxxx>
Re: [PATCH -next 2/2] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -next 1/2] netfilter: nf_queue: cleanup copy_range usage
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH -next 2/2] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH -next 1/2] netfilter: nf_queue: cleanup copy_range usage
From
: Florian Westphal <fw@xxxxxxxxx>
Re: [PATCH 3/3] expect: consider all expect attributes when comparing
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH 2/2] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[PATCH 1/2] netfilter: nfnetlink_acct: fix incomplete dumping of objects
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/3] expr: fix display of dreg expression
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/3] nft-events: add newline to output
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 1/3] examples: delete payload code in nft-chain-add
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] data_reg: xml: fix invalid veredict validation
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 3/5] src: xml: set errno to EINVAL when invalid parsing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH v3] src: xml: add versioning
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH 2/5] rule: fix snprintf return value
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] data_reg: delete unreachable code
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [libnftables PATCH] data_reg: xml: fix using bad temp variable
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 3/3] expect: consider all expect attributes when comparing
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 2/2] include: kill unused PLD_* macros
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH 1/2] conntrackd: fix compiler warnings
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [PATCH -next] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
Re: [iptables PATCH] configure: display summary at end of configure
From
: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[libnftables] nft_*_attr_unset() functions
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
From
: Florian Westphal <fw@xxxxxxxxx>
[PATCH] netfilter: xt_TCPMSS: Avoid violating RFC 879 in absence of MSS option
From
: Phil Oester <kernel@xxxxxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
Re: [libnftables PATCH 0/3] small fixes
From
: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 3/3] expr: fix display of dreg expression
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 1/3] examples: delete payload code in nft-chain-add
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 2/3] nft-events: add newline to output
From
: Eric Leblond <eric@xxxxxxxxx>
[libnftables PATCH 0/3] small fixes
From
: Eric Leblond <eric@xxxxxxxxx>
Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Simon Horman <horms@xxxxxxxxxxxx>
[PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
From
: Eric Dumazet <eric.dumazet@xxxxxxxxx>
[libnftables PATCH 5/5] examples: get XML ruleset
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 4/5] expr: xml: don't print target&match info
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 3/5] src: xml: set errno to EINVAL when invalid parsing
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 1/5] data_reg: xml: fix bytes movements
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[libnftables PATCH 2/5] rule: fix snprintf return value
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
From
: Julian Anastasov <ja@xxxxxx>
[libnftables PATCH] data_reg: delete unreachable code
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
Re: [PATCH 1/1] netfilter: nf_ct_tcp: extend CLOSE_WAIT timeout
From
: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[libnftables PATCH v3] src: xml: add versioning
From
: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
[PATCH 1/1] netfilter: nf_ct_tcp: extend CLOSE_WAIT timeout
From
: Zang MingJie <zealot0630@xxxxxxxxx>
[PATCH] xtables-addons: xt_DHCPMAC: correct mac setting and comparing
From
: Boris Figovsky <boris.figovsky@xxxxxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]