Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- Re: [PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH lnf-ct] src: callback: fix memory leak when ct has dynamically allocated attr
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftables PATCH] expr: Fix header inclusion for integer types
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] expr: Fix header inclusion for integer types
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH] iptables: Sort table names in ip[6]tables-save
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH -stable-3.9 15/15] netfilter: ctnetlink: send event when conntrack label was modified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 14/15] netfilter: nf_nat_sip: fix mangling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 13/15] ipvs: SCTP ports should be writable in ICMP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 12/15] netfilter: xt_TCPMSS: Fix IPv6 default MSS too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 11/15] netfilter: xt_TCPMSS: Fix missing fragmentation handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 10/15] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 09/15] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 08/15] netfilter: nfnetlink_acct: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 07/15] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 06/15] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 05/15] netfilter: xt_LOG: fix mark logging for IPv6 packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 04/15] ipvs: Fix reuse connection if real server is dead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 03/15] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 02/15] netfilter: ipt_ULOG: fix non-null terminated string in the nf_log path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable-3.9 01/15] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add xt compat support
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] iptables: Sort table names in ip[6]tables-save
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] iptables: Sort table names in ip[6]tables-save
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: iptables doesn't function properly with x32.
- From: Kyle Sanderson <kyle.leet@xxxxxxxxx>
- Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
- Re: [PATCH nft] src: add xt compat support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- merge window is CLOSED
- From: David Miller <davem@xxxxxxxxxxxxx>
- iptables doesn't function properly with x32.
- From: Kyle Sanderson <kyle.leet@xxxxxxxxx>
- RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
- Re: ebtables-restore 2.0.10-4 IPv6 rule loading bug
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: C++ compile errors
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: iptables upgrade: NOT operator parser trouble
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: Issue with latest nftables
- From: Eric Leblond <eric@xxxxxxxxx>
- ebtables-restore 2.0.10-4 IPv6 rule loading bug
- From: Luis Fernando <tdthp@xxxxxxxxxxxx>
- Re: [PATCH nft] src: add xt compat support
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [RFC PATCHv2] netfilter: nf_tables: add insert operation
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: Issue with latest nftables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 00/12] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 04/12] ipvs: provide iph to schedulers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: nf_conntrack: avoid large timeout for mid-stream pickup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] ipvs: drop SCTP connections depending on state
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] ipvs: SH fallback and L4 hashing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] ipvs: replace the SCTP state machine
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] ipvs: add sync_persist_mode flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netns: exclude ipvs from struct net when IPVS disabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] kernel: remove unnecessary head file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] ipvs: sloppy TCP and SCTP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: check return code from nla_parse_tested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] conntrack: add connlabel format attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnf-ct] conntrack: api: add nfct_snprintf_labels
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] conntrack: add connlabel format attribute
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntracktools] conntrackd: support replication of connlabels
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-ct] conntrack: api: add nfct_snprintf_labels
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: C++ compile errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: add xt compat support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- C++ compile errors
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- [PATCH v3 5/5] iptables (userspace): add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v3 4/5] iptables: add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v3 3/5] ipset: add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v3 2/5] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v3 1/5] iptables: bugfix - prevent wrong syntax being accepted by the set match
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v3 0/5] ipset: add "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] fix filenames typo in print_usage and file header
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCHv2] netfilter: nf_tables: add insert operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL 0/8] IPVS updates for v3.11 #2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_tables: remove the duplicate NF_INET_LOCAL_OUT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] Add function for exporting rule to JSON format and Order the switch values in the right order
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Issue with latest nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: allow service names in [DS]NAT targets
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [RFC PATCHv2] netfilter: nf_tables: add insert operation
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: iptables upgrade: NOT operator parser trouble
- From: Florian Westphal <fw@xxxxxxxxx>
- Issue with latest nftables
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: xt_ipvs match does not translate source address for ipvs
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- iptables upgrade: NOT operator parser trouble
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Checksum of an IPv6 UDP packet is mandatory
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: Checksum of an IPv6 UDP packet is mandatory
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- ipt_netflow
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: remove the duplicate NF_INET_LOCAL_OUT
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: xt_ipvs match does not translate source address for ipvs
- From: Julian Anastasov <ja@xxxxxx>
- Re: xt_ipvs match does not translate source address for ipvs
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- Re: xt_ipvs match does not translate source address for ipvs
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- xt_ipvs match does not translate source address for ipvs
- From: Vincent Li <vincent.mc.li@xxxxxxxxx>
- RE: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH] iptables: Sort table names in ip[6]tables-save
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [libnftables PATCH 1/2] Add function for exporting rule to JSON format and Order the switch values in the right order
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 0/2] Series to add JSON output support for rules
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [libnftables PATCH v2] test: add testbench for XML
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v2] test: add testbench for XML
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [libnftables PATCH v2] src: xml: convert family values to string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] chain: add hooknum2str
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 00/21] Small fixes for XML
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v2] src: xml: convert family values to string
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH v2] chain: add hooknum2str
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftables PATCH 14/21] data_reg: xml: fix bytes movements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 13/21] data_reg: xml: len node shows byte length
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 12/21] chain: xml: use string for policy
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 20/21] nat: xml: rename node type to nat_type
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 18/21] meta: xml: use string to represent key attribute
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 19/21] nat: snprintf: fix buffer offset
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 21/21] exthdr: xml: rename type node to exthdr_type
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 17/21] exthdr: xml: use string for type node
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 16/21] payload: xml: use string for base attribute
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 15/21] target&match: xml: don't print rev number
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 09/21] ct: xml: add extra dir check
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 11/21] exthdr: xml: fix mandatory elements
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 07/21] nat: xml: change IP range node names
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 10/21] ct: xml: use key's name string instead of numbers
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 06/21] nat: xml: change nat types string to dnat/snat
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 08/21] byteorder: xml: op as string
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 02/21] src: xml: convert family values to string
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 04/21] bitwise: xml: mask and xor use same number of data registers
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 03/21] rule: xml: conditional compat info
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 05/21] expr: xml: validate registers < NFT_REG_MAX
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 00/21] Small fixes for XML
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 01/21] chain: add hooknum2str
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/8] ipvs: sloppy TCP and SCTP
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/8] ipvs: replace the SCTP state machine
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/8] ipvs: provide iph to schedulers
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL 0/8] IPVS updates for v3.11 #2
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 6/8] ipvs: add sync_persist_mode flag
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 4/8] ipvs: drop SCTP connections depending on state
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 7/8] kernel: remove unnecessary head file
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/8] ipvs: SH fallback and L4 hashing
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 8/8] netns: exclude ipvs from struct net when IPVS disabled
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] nft: mem leak in nft_rule_list_cb
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] nft: print counter issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] nft: mem leak in nft_rule_list_cb
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH 1/2] nft: print counter issues
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: v3.10-rc7 oops soon after boot
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH iptables] xt_socket: add --nowildcard flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: v3.10-rc7 oops soon after boot
- From: Borislav Petkov <bp@xxxxxxxxx>
- Re: v3.10-rc7 oops soon after boot
- From: "George Spelvin" <linux@xxxxxxxxxxx>
- Re: [PATCH 0/5] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: v3.10-rc7 oops soon after boot
- From: Borislav Petkov <bp@xxxxxxxxx>
- [PATCH 4/5] netfilter: ctnetlink: send event when conntrack label was modified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: ipt_ULOG: fix incorrect setting of ulog timer
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] ipvs: SCTP ports should be writable in ICMP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: nf_nat_sip: fix mangling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: v3.10-rc7 oops soon after boot
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ctnetlink: send event when conntrack label was modified
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] Netfilter/IPVS fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH conntrack-tools 2/2] conntrack: add connlabel format attribute
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools 1/2] conntrackd: support replication of connlabels
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH V2 lnf-ct 2/2] conntrack: snprintf: add connlabel format specifier
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-ct 1/2] conntrack: labels: skip labels with non-alnum characters
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Bridge-nf and iptables SNAT
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCHv2] nft: netlink: fix network address prefix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft] netlink: fix network address prefix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
- [PATCH ] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization
- From: gapsf <gapsf@xxxxxxxxx>
- Re: [libnftables PATCH] test: add testbench for XML
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ip6tables: don't print out /128
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [libnftables PATCH] test: add testbench for XML
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] iptables: iptables-xml: Fix various parsing bugs
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ctnetlink: send event when conntrack label was modified
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 5/5] src: use libnftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] meta: replace rtnl_tc_handle2str and rtnl_tc_str2handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] rule: family field in struct handle is unsigned
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] meta: use if_nametoindex and if_indextoname
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/2] ipvs: SCTP ports should be writable in ICMP packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/2] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftables PATCH] test: add testbench for XML
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH iptables] xt_socket: add --nowildcard flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] nft: loop optimization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] netfilter: prevent harmless integer overflow
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [patch] netfilter: prevent harmless integer overflow
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [GIT PULL nf] IPVS fix for v3.10
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] nft: loop optimization
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [RFC PATCH 0/1] add insert after to nf_tables
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [libnftables PATCH] examples: add insert rule example
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH] netfilter: nf_tables: add insert operation
- From: Eric Leblond <eric@xxxxxxxxx>
- [RFC PATCH 0/1] add insert after to nf_tables
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH] fix filenames typo in print_usage and file header
- From: gapsf <gapsf@xxxxxxxxx>
- [GIT PULL nf] IPVS fix for v3.10
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf] ipvs: SCTP ports should be writable in ICMP packets
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [libnftables PATCH] test: add testbench for XML
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 2/2] conntrack: snprintf: add connlabel format specifier
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default
- From: Florian Westphal <fw@xxxxxxxxx>
- Bridge-nf and iptables SNAT
- From: Tsachi <tsachi.kimel@xxxxxxxxx>
- [patch] netfilter: prevent harmless integer overflow
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH v3] iptables-nftables: function nft_chain_zero_counters added.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH v3] iptables-nftables: function nft_chain_zero_counters added.
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH 3/3] netfilter: xt_TCPMSS: Fix missing fragmentation handling
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 1/3] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 2/3] netfilter: xt_TCPMSS: Fix IPv6 default MSS too
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: xt_TCPMSS: Fix missing fragmentation handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/3] netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/3] rule: xml: delete trailing space
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/3] nat: xml: fix non-mandatory element
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/3] nat: xml: fix xml_snprintf buffer offset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] expr: bitwise: xml_parse: fix casting
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH v3 2/2] xtables: function zero_entries removed
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [PATCH v2 5/5] iptables (userspace): add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v2 4/5] iptables: add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v2 3/5] ipset: add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v2 2/5] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v2 1/5] iptables: bugfix: prevent wrong syntax being accepted by the set match
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH v2 0/5] ipset: add "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- libnetfilter_queue: Another Valgrind complaint with nfq_set_mode
- From: Tamas Lengyel <tamas.k.lengyel@xxxxxxxxx>
- [libnftables PATCH 3/3] rule: xml: delete trailing space
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/3] nat: xml: fix non-mandatory element
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/3] nat: xml: fix xml_snprintf buffer offset
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] expr: bitwise: xml_parse: fix casting
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_TCPMSS: Add safe fragmentation handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_TCPMSS: Add IPv6 default MSS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH 2/2] Add code for testing the new functions for exporting rules to JSON Format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] Add function for exporting rule to JSON format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 0/2] Series to add JSON output support for rules
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Huge timeout with loose=1 pickup tcp connections
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Huge timeout with loose=1 pickup tcp connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Huge timeout with loose=1 pickup tcp connections
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [ANNOUNCE] Linux Security Summit 2013 - CFP
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 06/12] sched: add cond_resched_rcu() helper
- From: "Paul E. McKenney" <paulmck@xxxxxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables PATCH 2/2] counter: fix restoration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH 1/2] rule: display hook info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Fix connlabel.conf install location
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: xt_TCPMSS: Add IPv6 default MSS
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: John Heffner <johnwheffner@xxxxxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Rick Jones <rick.jones2@xxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Jeff Haran <Jeff.Haran@xxxxxxxxxx>
- [PATCH] iptables: Fix connlabel.conf install location
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: "David Laight" <David.Laight@xxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: "David Laight" <David.Laight@xxxxxxxxxx>
- Re: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v4] xtables: Add locking to prevent concurrent instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: "David Laight" <David.Laight@xxxxxxxxxx>
- [PATCH] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter fixes for 3.10-rc5
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: xt_TCPMSS: Add safe fragmentation handling
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH 1/5] netfilter: nfnetlink_acct: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: xt_TCPMSS: Fix violation of RFC879 in absence of MSS option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nfnetlink_queue: fix missing HW protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] netfilter fixes for 3.10-rc5
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 2/4] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [nftables PATCH 2/2] counter: fix restoration
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 1/2] rule: display hook info
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 0/2] work on restoration
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] fix leak of iter in nft_rule_list
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] Implementation for to test the function for exporting chains to JSON format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] Add function for exporting chain to JSON Format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: xml: delete unreachable code in _veredict_xml_parse()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] data_reg: xml: delete unreachable code in _veredict_xml_parse()
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] fix leak of iter in nft_rule_list
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH 2/5] include: use C++ headers in C++ mode
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [libnftables PATCH 2/2] Implementation for to test the function for exporting chains to JSON format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] Add function for exporting chain to JSON Format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 0/2] Series short description
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH] datatype: concat expression only releases dynamically allocated datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] nft: fix leak of iterators
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] nft: fix leak of iterators
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: ulog: ulogd.conf.5 man page
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] datatype: concat expression only releases dynamically allocated datatype
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [nftables PATCH 0/5] misc fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH] src: xml: implement helper function nft_strtol
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: nfnetlink_queue: fix missing HW protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v3] src: add _unset functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v3] src: add _unset functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v3] src: add _unset functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] Add implementation for to proof the JSON export function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] Add functions for exporting tables to JSON format
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH v3] src: add _unset functions
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/2] Add implementation for to proof the JSON export function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/2] Add functions for exporting tables to JSON format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 0/2] Series short description
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [PATCH 2/5] include: use C++ headers in C++ mode
- From: Thomas Jarosch <thomas.jarosch@xxxxxxxxxxxxx>
- Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH 2/4] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [libnftables PATCH v2] src: add _unset functions
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 3/4] Add JSON Constant for to use the Json export function
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH 4/4] Add a constant for to put the JSON Version
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 3/4] Add JSON Constant for to use the Json export function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 2/4] Add implementation for to proof the JSON export function
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 1/4] Add functions for to export tables to JSON format
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- [libnftables PATCH 0/4] Series short description
- From: Alvaro Neira <alvaroneay@xxxxxxxxx>
- Re: [nftables PATCH 0/5] misc fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: add _unset functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH 0/5] misc fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] datatype: concat expression only releases dynamically allocated datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: add _unset functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v3] src: xml: add versioning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: add _unset functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/12] Netfilter/IPVS updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [libnftables PATCH 2/2] examples: unset chain & rule handle
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] src: add _unset functions
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 02/12] netfilter: xt_socket: use IP early demux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 03/12] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: don't panic on error while walking through the init path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: Implement RFC 1123 for FTP conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 07/12] ipvs: use cond_resched_rcu() helper when walking connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: nfnetlink_queue: avoid peer_portid test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: nfnetlink_queue: cleanup copy_range usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/12] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] sched: add cond_resched_rcu() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/12] netfilter: xt_CT: optimize XT_CT_NOTRACK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/12] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] qa: nfct_cmp: verify individual attr comparision
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2] conntrack: nfct_cmp: also compare labels
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
- From: Vijay Tandeker <vijayt@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] nft: fix leak of iterators
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- Re: [PATCH] netfilter: xt_TCPMSS: Avoid violating RFC 879 in absence of MSS option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v3] src: xml: add versioning
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero
- From: Vijay Tandeker <vijayt@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH -next 2/2] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next 1/2] netfilter: nf_queue: cleanup copy_range usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next 2/2] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH -next 1/2] netfilter: nf_queue: cleanup copy_range usage
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] netfilter: nfnetlink_cttimeout: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: nfnetlink_acct: fix incomplete dumping of objects
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/3] expr: fix display of dreg expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/3] nft-events: add newline to output
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/3] examples: delete payload code in nft-chain-add
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: xml: fix invalid veredict validation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 3/5] src: xml: set errno to EINVAL when invalid parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v3] src: xml: add versioning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/5] rule: fix snprintf return value
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: delete unreachable code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: xml: fix using bad temp variable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] include: kill unused PLD_* macros
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] conntrackd: fix compiler warnings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables PATCH] configure: display summary at end of configure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables] nft_*_attr_unset() functions
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: xt_TCPMSS: Avoid violating RFC 879 in absence of MSS option
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: [libnftables PATCH 0/3] small fixes
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 3/3] expr: fix display of dreg expression
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH 1/3] examples: delete payload code in nft-chain-add
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH 2/3] nft-events: add newline to output
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH 0/3] small fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [libnftables PATCH 5/5] examples: get XML ruleset
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 4/5] expr: xml: don't print target&match info
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 3/5] src: xml: set errno to EINVAL when invalid parsing
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/5] data_reg: xml: fix bytes movements
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 2/5] rule: fix snprintf return value
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Julian Anastasov <ja@xxxxxx>
- [libnftables PATCH] data_reg: delete unreachable code
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nf_ct_tcp: extend CLOSE_WAIT timeout
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [libnftables PATCH v3] src: xml: add versioning
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH 1/1] netfilter: nf_ct_tcp: extend CLOSE_WAIT timeout
- From: Zang MingJie <zealot0630@xxxxxxxxx>
- [PATCH] xtables-addons: xt_DHCPMAC: correct mac setting and comparing
- From: Boris Figovsky <boris.figovsky@xxxxxxxxxxxxxxxxxx>
- [PATCH 2/2] include: kill unused PLD_* macros
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2] conntrackd: fix compiler warnings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v3] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- [patch] ipvs: info leak in __ip_vs_get_dest_entries()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH 1/5] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- [nftables PATCH 5/5] cli: reset terminal when CTRL+d is pressed
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 4/5] cli: add quit command
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 3/5] rule: list elements in set in any case
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 2/5] expression: don't free TYPE_INVALID datatype
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 1/5] doc: fix inversion of operator and object.
- From: Eric Leblond <eric@xxxxxxxxx>
- [nftables PATCH 0/5] misc fixes
- From: Eric Leblond <eric@xxxxxxxxx>
- ulog: ulogd.conf.5 man page
- From: Chris Boot <bootc@xxxxxxxxx>
- [PATCH 2/3] conntrack, expect: fix _cmp api with STRICT checking
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 3/3] expect: consider all expect attributes when comparing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH lnf-conntrack 1/3] qa: add api test for nfct_cmp and nfct_exp functions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/4] ipset: add "inner" flag implementation
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_queue: Fix Valgrind errors of unitialized byte(s) during call to nfq_unbind_pf
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v3] netfilter: Correct calculation using skb->tail and skb-network_header
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] libnetfilter_queue: Fix Valgrind errors of unitialized byte(s) during call to nfq_unbind_pf
- From: Tamas Lengyel <tamas.k.lengyel@xxxxxxxxx>
- [PATCH v4] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [nftables PATCH] rule: add flag to display rule handle as comment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables-nftables: Invalid argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] sctp: Correct byte order of access to skb->{network, transport}_header
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables-nftables: Invalid argument
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [PATCH net-next] sctp: Correct byte order of access to skb->{network, transport}_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH net-next v3] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/5] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
- From: Lorenzo Colitti <lorenzo@xxxxxxxxxx>
- [PATCH v2] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] netfilter: Correct calculation using skb->tail and skb-network_header
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter fixes for 3.10-rc3
- From: David Miller <davem@xxxxxxxxxxxxx>
- iptables-nftables: Invalid argument
- From: Giuseppe Longo <giuseppelng@xxxxxxxxx>
- [nftables PATCH] rule: add flag to display rule handle as comment
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [libnftables PATCH v2] src: xml: add versioning
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: xml: fix invalid veredict validation
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: xml: fix using bad temp variable
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH v3] xtables: Add locking to prevent concurrent instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to access conntrack connection expiration in a netfilter module?
- From: Aidan McGurn <aidan.mcgurn@xxxxxxxxxxxx>
- Re: [PATCH v3] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH] xtables: improve get_modprobe handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: use autoconf to process .in man pages
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/4] ipset: add "inner" flag support
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/5] ipvs: ip_vs_sh: fix build
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: ipt_ULOG: fix non-null terminated string in the nf_log path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: xt_LOG: fix mark logging for IPv6 packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] ipvs: Fix reuse connection if real server is dead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: add nf_ipv6_ops hook to fix xt_addrtype with IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] netfilter fixes for 3.10-rc3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [ANNOUNCE] iptables 1.4.19.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] iptables 1.4.19 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] xtables: Add locking to prevent concurrent instances
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: Add generic interface for parsing: nft_data_reg_parse().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: Delete trailing space in snprintf_xml
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: Fix conditional code in XML parsing functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: conditional XML code for snprintf_xml
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] rule: fix table flag not being set at XML parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_LOG: fix mark logging for IPv6 packets
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: Head up [was Re: [PATCH 0/4] ipset: add "inner" flag support]
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Head up [was Re: [PATCH 0/4] ipset: add "inner" flag support]
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: xt_LOG: fix mark logging for IPv6 packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue: detect when packet has already been checksummed?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed
- From: Florian Westphal <fw@xxxxxxxxx>
- Head up [was Re: [PATCH 0/4] ipset: add "inner" flag support]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: xt_LOG: fix mark logging for IPv6 packets
- From: Michal Kubecek <mkubecek@xxxxxxx>
- [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk"
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 4/4] iptables (userspace): add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 3/4] iptables: add set match "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 2/4] ipset: add "inner" flag implementation
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 1/4] ipset: minor variable-naming corrections
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 0/4] ipset: add "inner" flag support
- From: Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [Ulogd PATCH] pgsql: add var to specify arbitrary conn params
- From: Eric Leblond <eric@xxxxxxxxx>
- [libnftables PATCH] data_reg: Delete trailing space in snprintf_xml
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: Add generic interface for parsing: nft_data_reg_parse().
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: Fix conditional code in XML parsing functions
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] data_reg: conditional XML code for snprintf_xml
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] rule: fix table flag not being set at XML parsing
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [nftables] handle when adding new chain/rule
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Ingo Molnar <mingo@xxxxxxxxxx>
- Re: Some netfilter compile errors when CONFIG_IPV6=m
- From: Cong Wang <amwang@xxxxxxxxxx>
- Re: [PATCH] ipvs: Fix reuse connection if real server is dead
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [libnftables PATCH] data_reg: fix XML operations
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] data_reg: fix XML operations
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH v2] src: xml: add versioning
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] xtables: improve get_modprobe handling
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- [PATCH v3] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] src: xml: add versioning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 1/2] src: chain: delete useless castings
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- Re: Some netfilter compile errors when CONFIG_IPV6=m
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -resend 4/6] netfilter: Implement RFC 1123 for FTP conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next, resend] netfilter: nfnetlink_queue: avoid peer_portid test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next v2] IPVS for v3.11
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: Fix reuse connection if real server is dead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Some netfilter compile errors when CONFIG_IPV6=m
- From: Cong Wang <amwang@xxxxxxxxxx>
- [PATCH] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag
- From: Florian Westphal <fw@xxxxxxxxx>
- nfqueue: detect when packet has already been checksummed?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Negative value in /proc/net/netfilter/nfnetlink_queue
- From: Alex Maltinsky <maltalex@xxxxxxxxx>
- Re: Negative value in /proc/net/netfilter/nfnetlink_queue
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Negative value in /proc/net/netfilter/nfnetlink_queue
- From: Alex Maltinsky <maltalex@xxxxxxxxx>
- Re: Negative value in /proc/net/netfilter/nfnetlink_queue
- From: Florian Westphal <fw@xxxxxxxxx>
- Negative value in /proc/net/netfilter/nfnetlink_queue
- From: Alex Maltinsky <maltalex@xxxxxxxxx>
- [GIT PULL nf-next v2] IPVS for v3.11
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] IPVS fixes for v3.10
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] ipvs: Fix reuse connection if real server is dead
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH -next, resend] netfilter: nfnetlink_queue: avoid peer_portid test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Jesper Dangaard Brouer <jbrouer@xxxxxxxxxx>
- [libnftables PATCH 2/2] src: xml: add versioning
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] src: chain: delete useless castings
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 0/2] small fixes for libnftables XML
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH v4] src: support for XML parsing
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 2/2] ipvs: Fix reuse connection if real server is dead
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v2] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH v2] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- [PATCH v2] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH 2/2] ipvs: Fix reuse connection if real server is dead
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 1/2] sched: add cond_resched_rcu() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 2/2] ipvs: use cond_resched_rcu() helper when walking connections
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v2] examples: XML parsing examples
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH v4] src: support for XML parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: add and use nf_ipv6_ops in xt_addrtype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: don't panic on error while walking through the init path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH resend nf-next] netfilter: xt_CT: optimize XT_CT_NOTRACK
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xt_socket: use IP early demux
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: don't panic on error while walking through the init path
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/3] netfilter: don't panic on error while walking through the init path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH v2] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: xt_socket: use IP early demux
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH resend nf-next] netfilter: xt_CT: optimize XT_CT_NOTRACK
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH net-next] netfilter: xt_socket: use IP early demux
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] xtables: Add locking to prevent concurrent instances
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH] xtables: Add locking to prevent concurrent instances
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 2/2] ipvs: Fix reuse connection if real server is dead
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- [PATCH v2 nf-next] netfilter: conntrack: remove the central spinlock
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH] xtables: Add locking to prevent concurrent instances
- From: Phil Oester <kernel@xxxxxxxxxxxx>
- Re: [nftables PATCH] rule: display rule handle as comment
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nftables PATCH] rule: display rule handle as comment
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- [libnftables PATCH v2] examples: XML parsing examples
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [Ulogd PATCH] Improve pid file handling.
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] ipvs: Fix reuse connection if real server is dead
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 2/2] ipvs: Fix reuse connection if real server is dead
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/2] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS for v3.11
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH ipvs-next v3 1/2] sched: add cond_resched_rcu() helper
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH ipvs-next v3 2/2] ipvs: use cond_resched_rcu() helper when walking connections
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [nftables PATCH] rule: display rule handle as comment
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nftables PATCH] rule: display rule handle as comment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/11] db: add ring buffer for DB query
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables PATCH] rule: display rule handle as comment
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH next v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC 2/2] netfilter: nf_tables: improvements for the existing transaction approach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC 2/2] netfilter: nf_tables: improvements for the existing transaction approach
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC 1/2] netfilter: nfnetlink: add commit operation to nfnl_subsystems
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] iptables: use autoconf to process .in man pages
- From: Andy Spencer <andy753421@xxxxxxxxx>
- Re: [PATCH] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: Query: No-flush support for ebtables-restore in v2.0.10-4
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [Ulogd PATCH] Improve pid file handling.
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH v2] ulogd: Implement PID file writing
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] doc: mention SNAT in INPUT chain since kernel 2.6.36
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] doc: mention SNAT in INPUT chain since kernel 2.6.36
- From: Michael Roth <mail@xxxxxxxxx>
- [PATCH v2] netfilter: add and use nf_ipv6_ops in xt_addrtype
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/2] ulogd: Perform nice() before giving up root
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] netfilter: log: netns NULL ptr bug when calling from conntrack.
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0'
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- Re: [PATCH 1/2] ulogd: Perform nice() before giving up root
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH] bridge: netfilter: using strlcpy() instead of strncpy()
- From: Chen Gang <gang.chen@xxxxxxxxxxx>
- [PATCH next v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS
- From: Afschin Hormozdiary <Afschin.Hormozdiary@xxxxxxxxxx>
- Re: [PATCH next] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS
- From: Afschin Hormozdiary <Afschin.Hormozdiary@xxxxxxxxxx>
- Re: [PATCH 1/2] ulogd: Perform nice() before giving up root
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: [PATCH v2] ulogd: Implement PID file writing
- From: Chris Boot <bootc@xxxxxxxxx>
- Re: [PATCH 0/4] Netfilter fixes for net (3.10-rc1)
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add and use nf_afinfo in xt_addrtype
- From: Florian Westphal <fw@xxxxxxxxx>
- MSRP Protocol
- From: twear@xxxxxxxxxxxxxx
- Re: [iptables-nftables PATCH 2/6] xtables: destroy list iterator relevantly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 3/6] xtables: policy can be changed only on builtin chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH 1/6] xtables: initialize xtables defaults even on listing rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 0/7] Fixes and features
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: add and use nf_afinfo in xt_addrtype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/4] netfilter: update MAINTAINERS file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/4] Netfilter fixes for net (3.10-rc1)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/4] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/4] netfilter: log: netns NULL ptr bug when calling from conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: nf_{log,queue}: fix compilation without CONFIG_PROC_FS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipset: Fix syntax error of bash completion in Debian environment
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]