Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH 43/51] netfilter: ipt_ULOG: add net namespace support for ipt_ULOG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 27/51] ipvs: convert wrr scheduler to rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 47/51] netfilter: remove unneeded variable proc_net_netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 50/51] netfilter: ipv6: propagate routing errors from ip6_route_me_harder()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 51/51] netfilter: nat: propagate errors from xfrm_me_harder()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 46/51] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 49/51] netfilter: ipv4: propagate routing errors from ip_route_me_harder()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 48/51] netfilter: implement RFC3168 5.3 (ecn protection) for ipv6 fragmentation handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 38/51] netfilter: make /proc/net/netfilter pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 17/51] ipvs: add ip_vs_dest_hold and ip_vs_dest_put
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 29/51] ipvs: do not expect result from done_service
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 22/51] ipvs: convert nq scheduler to rcu
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 11/51] ipvs: convert locks used in persistence engines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 12/51] ipvs: convert connection locking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 01/51] ipvs: avoid routing by TOS for real server
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 08/51] ipvs: optimize dst usage for real server
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 02/51] ipvs: prefer NETDEV_DOWN event to free cached dsts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 00/51] netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack_sip: don't drop packets with offsets pointing outside the packet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] netfilter: propagate routing and XFRM errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Update copyright time range in license header
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables manpage: Fix missing space for recent match --mask option
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: Update copyright time range in license header
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables manpage: Fix missing space for recent match --mask option
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- [PATCH] xtables: Update copyright time range in license header
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- [PATCH] iptables: Update copyright time range in license header
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- [PATCH] iptables manpage: Fix missing space for recent match --mask option
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- Re: iptables nfacct match question
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't reset nf_trace in nf_reset()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH RFC 0/2] icmpv6: match any ICMPv6 error/informational type
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't reset nf_trace in nf_reset()
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: don't reset nf_trace in nf_reset()
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 10/10] netfilter: remove useless variable proc_net_netfilter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: don't reset nf_trace in nf_reset()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next v2 09/10] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 08/10] netfilter: nf_log: enable nflog in un-init net namespace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 07/10] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 05/10] netfilter: ebt_ulog: add net namesapce support for ebt_ulog
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 04/10] netfilter: xt_LOG: add net namespace support for xt_LOG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 03/10] netfilter: ebt_log: add net namespace support for ebt_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v2 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack_sip: don't drop packets with offsets pointing outside the packet
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH nf-next v2 01/10] netfilter: make /proc/net/netfilter pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3] netfilter: nat: propagate errors from xfrm_me_harder()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 1/3] netfilter: ipv4: propagate routing errors from ip_route_me_harder()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 2/3] netfilter: ipv6: propagate routing errors from ip6_route_me_harder()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 0/3] netfilter: propagate routing and XFRM errors
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [Ulog2 PATCH] Exec libmnl config check only if nfacct is enabled
- From: Victor Julien <victor@xxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 2/3] Lower libnfnetlink requirement to 1.0.0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC 0/2] icmpv6: match any ICMPv6 error/informational type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 2/3] Lower libnfnetlink requirement to 1.0.0
- From: Victor Julien <lists@xxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 1/3] Remove configure check for libmnl, it is not used
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 1/3] Remove configure check for libmnl, it is not used
- From: Victor Julien <lists@xxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 2/3] Lower libnfnetlink requirement to 1.0.0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 3/3] Lower libnetfilter_conntrack requirement to 0.9.1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 1/3] Remove configure check for libmnl, it is not used
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Ulogd2 PATCH 3/3] Lower libnetfilter_conntrack requirement to 0.9.1
- From: Victor Julien <victor@xxxxxxxxxxxx>
- [Ulogd2 PATCH 2/3] Lower libnfnetlink requirement to 1.0.0
- From: Victor Julien <victor@xxxxxxxxxxxx>
- [Ulogd2 PATCH 1/3] Remove configure check for libmnl, it is not used
- From: Victor Julien <victor@xxxxxxxxxxxx>
- [ulogd2] lower netfilter library requirements
- From: Victor Julien <victor@xxxxxxxxxxxx>
- Re: [libnftables PATCH] Basic support for printing nft_data_reg in XML format.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] Basic support for printing nft_data_reg in XML format.
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: iptables nfacct match question
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/5] netfilter updates for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- [PATCH 2/5] netfilter: nfnetlink_queue: fix error return code in nfnetlink_queue_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/5] netfilter: reset nf_trace in nf_reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/5] netfilter: nfnetlink_acct: return -EINVAL if object name is empty
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 0/5] netfilter updates for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 4/5] netfilter: nf_conntrack: fix error return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] utils: bpf_compile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] utils: bpf_compile
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- [PATCH RFC 2/2] icmp6: match on errors and informational messages
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH RFC 1/2] icmp6: match on errors and informational types
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH RFC 0/2] icmpv6: match any ICMPv6 error/informational type
- From: holger@xxxxxxxxxxxxxxxx
- Re: [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCHv2] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to modify conntrack accounting?
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: [PATCHv2] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths
- From: Matthias Schiffer <mschiffer@xxxxxxxxxxxxxxxxxxxx>
- [PATCH iptables v2] nfnl_osf: use the right nfnetlink lib
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: How to modify conntrack accounting?
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH iptables] nfnl_osf: use the right nfnetlink lib
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: How to modify conntrack accounting?
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: How to modify conntrack accounting?
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- How to modify conntrack accounting?
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Re: [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables] git repository
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables] nfnl_osf: use the right nfnetlink lib
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [libnftables] git repository
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] src: get and set NFT_*_ATTR_FAMILY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] expr: match: fix typo in function name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [nf-next] netfilter: fix struct ip6t_frag field description
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: nf_tables: rework atomic transaction updates
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [RFC v2] nf_tables: Transaction API proposal
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [nf-next] netfilter: fix struct ip6t_frag field description
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH 01/34] net: add skb_dst_set_noref_force
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v2 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 2/3] NFQUEUE: coalesce IPv4 and IPv6 hashing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/3] NFQUEUE: introduce CPU fanout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: TRACE: use IS_ENABLE to replace if defined
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/34] net: add skb_dst_set_noref_force
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf-next] IPVS optimisations for v3.10
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] utils: bpf_compile
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH next] extensions: add libxt_bpf extension
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/34] net: add skb_dst_set_noref_force
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 01/34] net: add skb_dst_set_noref_force
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -next] netfilter: nf_conntrack_standalone: fix error return code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ip[6]tables: show --protocol instead of --proto in usage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] src: get and set NFT_*_ATTR_FAMILY
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCHv2] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths
- From: Matthias Schiffer <mschiffer@xxxxxxxxxxxxxxxxxxxx>
- [PATCH] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths
- From: Matthias Schiffer <mschiffer@xxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 06/34] ipvs: no need to reroute anymore on DNAT over loopback
- From: Julian Anastasov <ja@xxxxxx>
- [libnftables PATCH 2/2] Basic support for printing nft_data_reg in XML format.
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 1/2] Fix a typo in src/expr/match
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH 0/2]
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH iptables] nfnl_osf: use the right nfnetlink lib
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 06/34] ipvs: no need to reroute anymore on DNAT over loopback
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- [PATCH iptables] nfnl_osf: use the right nfnetlink lib
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH] ip[6]tables: show --protocol instead of --proto in usage
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- [PATCH 05/34] ipvs: rename functions related to dst_cache reset
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 06/34] ipvs: no need to reroute anymore on DNAT over loopback
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 07/34] ipvs: do not use skb_share_check
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 11/34] ipvs: remove rs_lock by using RCU
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 12/34] ipvs: convert locks used in persistence engines
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 09/34] ipvs: optimize dst usage for real server
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 10/34] ipvs: convert app locks
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 01/34] net: add skb_dst_set_noref_force
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 15/34] ipvs: avoid kmem_cache_zalloc in ip_vs_conn_new
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 22/34] ipvs: convert lc scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 13/34] ipvs: convert connection locking
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 08/34] ipvs: consolidate all dst checks on transmit in one place
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 14/34] ipvs: reorder keys in connection structure
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS optimisations for v3.10
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 02/34] ipvs: avoid routing by TOS for real server
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 23/34] ipvs: convert nq scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 18/34] ipvs: add ip_vs_dest_hold and ip_vs_dest_put
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 16/34] ipvs: change ip_vs_sched_lock to mutex
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 24/34] ipvs: convert rr scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 27/34] ipvs: convert wlc scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 25/34] ipvs: convert sed scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 17/34] ipvs: preparations for using rcu in schedulers
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 20/34] ipvs: convert lblc scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 19/34] ipvs: convert dh scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 04/34] ipvs: convert the IP_VS_XMIT macros to functions
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 21/34] ipvs: convert lblcr scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 28/34] ipvs: convert wrr scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 26/34] ipvs: convert sh scheduler to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 34/34] ipvs: do not disable bh for long time
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 33/34] ipvs: convert services to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 30/34] ipvs: do not expect result from done_service
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 29/34] ipvs: reorganize dest trash
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 32/34] ipvs: convert dests to rcu
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 31/34] ipvs: convert sched_lock to spin lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 03/34] ipvs: prefer NETDEV_DOWN event to free cached dsts
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nf_tables: set NLM_F_DUMP_INTR if dump is invalid
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] netfilter: nf_tables: rework atomic transaction updates
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/2] nf_tables: atomic transactional updates (v2)
- From: pablo@xxxxxxxxxxxxx
- Re: [RFC v2] nf_tables: Transaction API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [RFC v2] nf_tables: Transaction API proposal
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] nf_tables: Transaction API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/15 v3] IPVS optimizations (repost)
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] nf_tables: Transaction API proposal
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH 02/15] ipvs: avoid routing by TOS for real server
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 04/15] ipvs: convert the IP_VS_XMIT macros to functions
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 06/15] ipvs: no need to reroute anymore on DNAT over loopback
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 05/15] ipvs: rename functions related to dst_cache reset
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 01/15] net: add skb_dst_set_noref_force
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 09/15] ipvs: optimize dst usage for real server
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 08/15] ipvs: consolidate all dst checks on transmit in one place
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 07/15] ipvs: do not use skb_share_check
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 10/15] ipvs: convert app locks
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 00/15 v3] IPVS optimizations (repost)
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 15/15] ipvs: avoid kmem_cache_zalloc in ip_vs_conn_new
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 11/15] ipvs: remove rs_lock by using RCU
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 12/15] ipvs: convert locks used in persistence engines
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 13/15] ipvs: convert connection locking
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 14/15] ipvs: reorder keys in connection structure
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 03/15] ipvs: prefer NETDEV_DOWN event to free cached dsts
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Fernando Luis Vazquez Cao <fernando_b1@xxxxxxxxxxxxx>
- Re: [PATCH v2] net: add ETH_P_802_3_MIN
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH v2] net: add ETH_P_802_3_MIN
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH v2] net: add ETH_P_802_3_MIN
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Fernando Luis Vazquez Cao <fernando_b1@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_tables: Transaction API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nf_tables: Transaction API proposal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -next] netfilter: nf_conntrack_standalone: fix error return code
- From: Wei Yongjun <weiyj.lk@xxxxxxxxx>
- Re: [PATCH] libmnl: Add filtering support to library as a convienience
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- Re: [PATCH] libmnl: Add filtering support to library as a convienience
- From: Florian Weimer <fweimer@xxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Fernando Luis Vazquez Cao <fernando_b1@xxxxxxxxxxxxx>
- Re: [PATCH] libmnl: Add filtering support to library as a convienience
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 3/3 nfacct] user space executable changes and additions
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Question about xt_ipp2p module
- From: Dmitry Korzhevin <dmitry.korzhevin@xxxxxxxxxx>
- Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- [PATCH] libmnl: Add filtering support to library as a convienience
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- Re: Android netfilter patches (xt_IDLETIMER) [2/3]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Android netfilter patches (xt_IDLETIMER) [3/3]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Android netfilter patches (xt_IDLETIMER) [1/3]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nf_tables: Transaction API proposal
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [RFC] Atomic rule manipulation part of transactions
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Fernando Luis Vazquez Cao <fernando_b1@xxxxxxxxxxxxx>
- Android netfilter patches (xt_IDLETIMER) [3/3]
- From: dmitry pervushin <dpervushin@xxxxxxxxx>
- Android netfilter patches (xt_IDLETIMER) [2/3]
- From: dmitry pervushin <dpervushin@xxxxxxxxx>
- Android netfilter patches (xt_IDLETIMER) [1/3]
- From: dmitry pervushin <dpervushin@xxxxxxxxx>
- Android netfilter patches (xt_IDLETIMER) [0/3]
- From: dmitry pervushin <dpervushin@xxxxxxxxx>
- Re: [PATCH -next] netfilter: nfnetlink_queue: fix error return code in nfnetlink_queue_init()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: reset nf_trace in nf_reset
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/12] Netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [nftables] Git location for User space utilities
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: nfnetlink_queue: use xor hash function to distribute instances
- From: pablo@xxxxxxxxxxxxx
- [PATCH 05/12] netfilter: ebt_ulog: remove unnecessary spin lock protection
- From: pablo@xxxxxxxxxxxxx
- [PATCH 11/12] netfilter: nf_conntrack: add include to fix sparse warning
- From: pablo@xxxxxxxxxxxxx
- [PATCH 12/12] netfilter: nf_conntrack: speed up module removal path if netns in use
- From: pablo@xxxxxxxxxxxxx
- [PATCH 10/12] netfilter: nfnetlink_queue: zero copy support
- From: pablo@xxxxxxxxxxxxx
- [PATCH 09/12] netfilter: ctnetlink: allow to dump expectation per master conntrack
- From: pablo@xxxxxxxxxxxxx
- [PATCH 07/12] ipvs: fix hashing in ip_vs_svc_hashkey
- From: pablo@xxxxxxxxxxxxx
- [PATCH 08/12] ipvs: fix some sparse warnings
- From: pablo@xxxxxxxxxxxxx
- [PATCH 04/12] netfilter: nf_ct_ipv6: use ipv6_iface_scope_id in conntrack to return scope id
- From: pablo@xxxxxxxxxxxxx
- [PATCH 03/12] bridge: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: pablo@xxxxxxxxxxxxx
- [PATCH 02/12] ipv4: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: pablo@xxxxxxxxxxxxx
- [PATCH 00/12] Netfilter updates for net-next
- From: pablo@xxxxxxxxxxxxx
- [PATCH 01/12] netfilter: ip6t_NPT: Use csum_partial()
- From: pablo@xxxxxxxxxxxxx
- [PATCH nf-next v2 09/10] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 10/10] netfilter: remove useless variable proc_net_netfilter
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 08/10] netfilter: nf_log: enable nflog in un-init net namespace
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 07/10] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 01/10] netfilter: make /proc/net/netfilter pernet
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 04/10] netfilter: xt_LOG: add net namespace support for xt_LOG
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 05/10] netfilter: ebt_ulog: add net namesapce support for ebt_ulog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next v2 03/10] netfilter: ebt_log: add net namespace support for ebt_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [nftables] Git location for User space utilities
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- [PATCH net-next] netfilter: implement RFC3168 5.3 (ecn protection) for ipv6 fragmentation handling
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- ethernet filtering
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: osf bug report [was Re: [PATCH 3/3 nfacct] user space executable changes and additions]
- From: Bourne Without <blackhole@xxxxxxxxxxx>
- osf bug report [was Re: [PATCH 3/3 nfacct] user space executable changes and additions]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: xt_osf: fix inversion
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/2] libxt_osf: fix bad location for location in --genre
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] libxt_osf: fix missing --ttl and --log in save output
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 3/3 nfacct] user space executable changes and additions
- From: Bourne Without <blackhole@xxxxxxxxxxx>
- Re: [PATCH RFC 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH v2 2/3] NFQUEUE: coalesce IPv4 and IPv6 hashing
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH v2 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH v2 1/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH v2 0/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH] netfilter: nfnetlink_acct: return -EINVAL if object name is empty
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 3/3 nfacct] user space executable changes and additions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 3/3 nfacct] user space executable changes and additions
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- [PATCH 2/3 libnetfilter_acct] numerous changes and improvements in the user space library
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- [nftables] Git location for User space utilities
- From: Vidya Chowdary <vidya.chowdary@xxxxxxxxx>
- Re: [PATCH 1/2] iptables (userspace): add secmark match
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] ulogd2: raw2packet_BASE changes
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH -next] netfilter: nfnetlink_queue: fix error return code in nfnetlink_queue_init()
- From: Wei Yongjun <weiyj.lk@xxxxxxxxx>
- [PATCH 2/2] netfilter: TRACE: use IS_ENABLE to replace if defined
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: reset nf_trace in nf_reset
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH] expr: match: fix typo in function name
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: Drop a packet while keeping the conntrack alive
- From: Nicolas Maître <nimai@xxxxxxxxx>
- Re: Drop a packet while keeping the conntrack alive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [BUG NFQUEUE] NFQUEUE readers get -PERM from sys_sendto() if !root
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: Drop a packet while keeping the conntrack alive
- From: Nicolas Maître <nimai@xxxxxxxxx>
- [BUG NFQUEUE] NFQUEUE readers get -PERM from sys_sendto() if !root
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- [PATCH 2/2] libip6t_DNPT: add manpage
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] libip6t_SNPT: add manpage
- From: pablo@xxxxxxxxxxxxx
- [announce] - Bash programmable completion for ip[6]tables
- From: Bourne Without <blackhole@xxxxxxxxxxx>
- Re: [PATCH 2/2] man/send(2): document a long standing bug that can cause spurious EPERM errors
- From: Fernando Luis Vazquez Cao <fernando_b1@xxxxxxxxxxxxx>
- Re: Drop a packet while keeping the conntrack alive
- From: Jorge Dávila <jorgedavilalopez@xxxxxxxxx>
- Re: Drop a packet while keeping the conntrack alive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Drop a packet while keeping the conntrack alive
- From: Nicolas Maître <nimai@xxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: Daniel Baluta <dbaluta@xxxxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: conntrackd: fix IPv6 address pattern
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] netfilter fixes for 3.9-rc
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] ip[6]tables: show --protocol instead of --proto in usage
- From: Mart Frauenlob <mart.frauenlob@xxxxxxxxx>
- Re: [PATCH 2/7] netfilter: nfnetlink_queue: fix incorrect initialization of copy range field
- From: Sergei Shtylyov <sergei.shtylyov@xxxxxxxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: nfnetlink_queue: fix incorrect initialization of copy range field
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/7] ipvs: fix sctp chunk length order
- From: pablo@xxxxxxxxxxxxx
- [PATCH 7/7] netfilter: remove unused "config IP_NF_QUEUE"
- From: pablo@xxxxxxxxxxxxx
- [PATCH 5/7] ipvs: add backup_only flag to avoid loops
- From: pablo@xxxxxxxxxxxxx
- [PATCH 6/7] ipvs: remove extra rcu lock
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/7] netfilter: ip6t_NPT: restrict to mangle table
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/7] netfilter: nf_conntrack: register pernet subsystem before register L4 proto
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/7] netfilter fixes for 3.9-rc
- From: pablo@xxxxxxxxxxxxx
- Re: Can we rely on ethernet header padding?
- From: Michal Kubecek <mkubecek@xxxxxxx>
- [PATCH 2/2] Revert "build: resolve link failure for ip6t_NETMAP"
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] libip6t_NETMAP: Use xtables_ip6mask_to_cidr and get rid of libip6tc dependency
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 1/6] build: also use libtool for install stage
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/2] iptables (userspace): add secmark match
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: remove unused "config IP_NF_QUEUE"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: remove unused "config IP_NF_QUEUE"
- From: Paul Bolle <pebolle@xxxxxxxxxx>
- Re: [PATCH] nf_conntrack: add include to fix sparse warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: Batch cleanup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: Julian Calaby <julian.calaby@xxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: Daniel Baluta <daniel.baluta@xxxxxxxxx>
- Re: [PATCH] net: Add socket() system call self test.
- From: Julian Calaby <julian.calaby@xxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: Can we rely on ethernet header padding?
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net: Add socket() system call self test.
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH RFC 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: Can we rely on ethernet header padding?
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [GIT PULL nf-next] IPVS changes for v3.10
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf v2] IPVS fixes for v3.9
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Can we rely on ethernet header padding?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Can we rely on ethernet header padding?
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [PATCH RFC 2/3] NFQUEUE: coalesce IPv4 and IPv6 hashing
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH RFC 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH RFC 2/3] NFQUEUE: coalesce IPv4 and IPv6 hashing
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH RFC 3/3] NFQUEUE: add --queue-cpu-fanout parameter
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH RFC 2/3] NFQUEUE: coalesce IPv4 and IPv6 hashing
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH RFC 1/3] NFQUEUE: introduce CPU fanout
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH RFC 0/3] NFQUEUE: introduce CPU fanout
- From: holger@xxxxxxxxxxxxxxxx
- [PATCH 1/2] ipvs: fix hashing in ip_vs_svc_hashkey
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/2] ipvs: fix some sparse warnings
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS changes for v3.10
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/3] ipvs: add backup_only flag to avoid loops
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] ipvs: fix sctp chunk length order
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/3] ipvs: remove extra rcu lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf v2] IPVS fixes for v3.9
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS fixes for v3.9
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 2/2] man/send(2): document a long standing bug that can cause spurious EPERM errors
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS fixes for v3.9
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] man/send(2): document a long standing bug that can cause spurious EPERM errors
- From: Fernando Luis Vázquez Cao <fernando_b1@xxxxxxxxxxxxx>
- [PATCH 1/2] man/send(2): add EPERM to the list of possible errors
- From: Fernando Luis Vázquez Cao <fernando_b1@xxxxxxxxxxxxx>
- [PATCH 1/2] ipvs: add backup_only flag to avoid loops
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS enhancements for v3.10
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/2] ipvs: remove extra rcu lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] IPVS fixes for v3.9
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/3] ipvs: fix hashing in ip_vs_svc_hashkey
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] ipvs: fix sctp chunk length order
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/3] ipvs: fix some sparse warnings
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL nf-next] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL nf-next] IPVS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 1/5] ipvs: add backup_only flag to avoid loops
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-next] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/5] ipvs: remove extra rcu lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/5] ipvs: fix some sparse warnings
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 4/5] ipvs: fix hashing in ip_vs_svc_hashkey
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/5] ipvs: fix sctp chunk length order
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: Batch cleanup
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: ctnetlink: allow to dump expectation per master conntrack
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 2/2] netfilter: ipt_ULOG: make spinlock per nlgroup
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [Ulogd PATCH 4/4] db: store data in memory during database downtime
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd PATCH 3/4] sqlite3: add sanity checking
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd PATCH 1/4] postgresql: add sanity checking
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd PATCH 2/4] mysql: add sanity checking
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd PATCH 0/4] Implement event loss prevention for db output
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] ulogd2: raw2packet_BASE changes
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [RFC PATCH net-next (V2, RESENT)] ipv6: Queue fragments per interface for multicast/link-local addresses.
- From: YOSHIFUJI Hideaki <yoshfuji@xxxxxxxxxxxxxx>
- [PATCH] nf_conntrack: add include to fix sparse warning
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH] ulogd2: raw2packet_BASE changes
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_acct: use PRIu64 and remove unnecessary cast
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [RFC PATCH net-next (V2, RESENT)] ipv6: Queue fragments per interface for multicast/link-local addresses.
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- strange result of iptables command under race condition
- From: d tbsky <tbskyd@xxxxxxxxx>
- Re: Unable to get NPTv6 to work with kernel 3.8.2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: register pernet subsystem before register L4 proto
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 2/4] netfilter: ip6t_NPT: Use csum_partial().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: ipt_ULOG: make spinlock per nlgroup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulog: add protection when remove ipt_ULOG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] ipv6: use ipv6_iface_scope_id in conntrack to return scope id
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] bridge: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipv4: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_acct: use PRIu64 and remove unnecessary cast
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: nfnetlink_queue: fix incorrect initialization of copy range field
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] netfilter: nfnetlink_queue: use xor hash function to distribute instances
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH iptables-nftables] iptables: fix compil when lib[mnl|nftables] are not in standard path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nftables v2] nftables: fix compilation when nf-netlink is a module
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libmnl PATCH] doxygen: fix a variable name.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: Batch cleanup
- From: Vladimir Davydov <vdavydov@xxxxxxxxxxxxx>
- Re: a bpf compilation tool for xt_bpf
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re:a bpf compilation tool for xt_bpf
- From: Roman Timofeev <cryptoloop@xxxxxxxxx>
- Need a way to match vlan / pcp fields in 802.1q header - from netfilter list
- From: <ggeorgiev@xxxxxxxxxxx>
- [PATCH net-next] ipv6: use ipv6_iface_scope_id in conntrack to return scope id
- From: Hannes Frederic Sowa <hannes@xxxxxxxxxxxxxxxxxxx>
- [PATCH] bridge: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: Silviu-Mihai Popescu <silviupopescu1990@xxxxxxxxx>
- [PATCH] ipv4: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR
- From: Silviu-Mihai Popescu <silviupopescu1990@xxxxxxxxx>
- [PATCH next] utils: bpf_compile
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re: [PATCH] xtables-addons: build against 3.8.y
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Unable to get NPTv6 to work with kernel 3.8.2
- From: Matthias Schiffer <mschiffer@xxxxxxxxxxxxxxxxxxxx>
- [PATCH] xtables-addons: build against 3.8.y
- From: Holger Eitzenberger <holger@xxxxxxxxxxxxxxxx>
- Re: Unable to get NPTv6 to work with kernel 3.8.2
- From: Florian Westphal <fw@xxxxxxxxx>
- Unable to get NPTv6 to work with kernel 3.8.2
- From: Matthias Schiffer <mschiffer@xxxxxxxxxxxxxxxxxxxx>
- Re: conntrack-tools: dying and unconfirmed list not accessible
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- conntrack-tools: dying and unconfirmed list not accessible
- From: Jan Engelhardt <jengelh@xxxxxxx>
- NAT64 - Netfilter module
- From: Miguel Alejandro González <maggonzz@xxxxxxxxx>
- [PATCH] netfilter: register pernet subsystem before register L4 proto
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: re L4 conntracking netns conversion
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: re L4 conntracking netns conversion
- From: ebiederm@xxxxxxxxxxxx (Eric W. Biederman)
- Re: re L4 conntracking netns conversion
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 1/6] build: also use libtool for install stage
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH 0/3] netfilter fixes for your net tree
- From: David Miller <davem@xxxxxxxxxx>
- re L4 conntracking netns conversion
- From: Alexey Dobriyan <adobriyan@xxxxxxxxx>
- [PATCH 2/3] netfilter: xt_AUDIT: only generate audit log when audit enabled
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/3] netfilter: nfnetlink: silence warning if CONFIG_PROVE_RCU isn't set
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/3] netfilter: nf_ct_helper: Fix logging for dropped packets
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/3] netfilter fixes for your net tree
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH] ulogd2: raw2packet_BASE changes
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH iptables-nftables] iptables: fix compil when lib[mnl|nftables] are not in standard path
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- [PATCH nftables v2] nftables: fix compilation when nf-netlink is a module
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH nftables] nftables: fix compilation when nf-netlink is a module
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: [PATCH 1/6] build: also use libtool for install stage
- From: "Dmitry V. Levin" <ldv@xxxxxxxxxxxx>
- [PATCH nftables] nftables: fix compilation when nf-netlink is a module
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: iptables: build fixes
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: iptables: build fixes
- From: "Dmitry V. Levin" <ldv@xxxxxxxxxxxx>
- Re: [PATCH 1/6] build: also use libtool for install stage
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] libnetfilter_acct: use PRIu64 and remove unnecessary cast
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] nfacct: correct regressions in v1.0.1
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [MAINTENANCE] netfilter.org infrastructure updates
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] nfct: use timestamp of conntrack object.
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [MAINTENANCE] netfilter.org infrastructure updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] nfacct: correct regressions in v1.0.1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] iptables (kernel): add secmark match
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 1/2] iptables (userspace): add secmark match
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 0/2] iptables: add secmark match
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH] ulogd2: raw2packet_BASE changes
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH] nfacct: correct regressions in v1.0.1
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: Extending class handle from 16bit to 32bit
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- [PATCH 5/5] libxtables: constify xtables_option_[mt]fcall argument
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/5] build: do not dereference symlinks on installation
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/5] iptables: fall back to using save function when print is not defined
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/5] libxtables: centralize checking for a .save function
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Save funcs, installation, const
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/5] extensions: eui64: set userspacesize=0
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] iptables 1.4.18 release
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: nfnetlink: silence warning if CONFIG_PROVE_RCU isn't set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_AUDIT: only generate audit log when audit enabled
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_conntrack 1.0.3 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] conntrack-tools 1.4.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] conntrack-tools 1.4.1 release
- From: Gustavo Zacarias <gustavo@xxxxxxxxxxxxxxx>
- Re: [MAINTENANCE] netfilter.org infrastructure updates
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH -v3 19/23] net/netfilter: rename random32() to prandom_u32()
- From: Akinobu Mita <akinobu.mita@xxxxxxxxx>
- [PATCH] netfilter: nfnetlink: silence warning if CONFIG_PROVE_RCU isn't set
- From: Paul Bolle <pebolle@xxxxxxxxxx>
- Re: [PATCH 1/2] netfilter: nf_tables: partially rework commit and abort operation
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: xt_AUDIT: only generate audit log when audit enabled
- From: Thomas Graf <tgraf@xxxxxxx>
- [PATCH] netfilter: xt_AUDIT: only generate audit log when audit enabled
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [ANNOUNCE] ulogd 2.0.2 release
- From: Eric Leblond <eric@xxxxxxxxx>
- [ANNOUNCE] iptables 1.4.18 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] nfct: use timestamp of conntrack object.
- From: Eric Leblond <eric@xxxxxxxxx>
- [ulogd patch 0/1] use conntrack based timestamp
- From: Eric Leblond <eric@xxxxxxxxx>
- [ANNOUNCE] conntrack-tools 1.4.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nfacct 1.0.1 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_acct 1.0.2 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: fedora plans to replace iptables with firewalld
- From: Asshole kicker <puff3pass1@xxxxxxxxx>
- Re: Extending class handle from 16bit to 32bit
- From: Karel Rericha <karel@xxxxxxxxx>
- [PATCH 2/2] netfilter: nf_tables: don't skip inactive rules and dump generation mask
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] netfilter: nf_tables: partially rework commit and abort operation
- From: pablo@xxxxxxxxxxxxx
- Re: Extending class handle from 16bit to 32bit
- From: Stephen Hemminger <stephen@xxxxxxxxxxxxxxxxxx>
- Re: Help on error message
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Extending class handle from 16bit to 32bit
- From: Karel Rericha <karel@xxxxxxxxx>
- Re: Help on error message
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: Help on error message
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: Help on error message
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [PATCH next v3] iptables: add xt_bpf match
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re: Help on error message
- From: Nicole <nicole@xxxxxxxxxxxxxx>
- Re: Help on error message
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [MAINTENANCE] netfilter.org infrastructure updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Help on error message
- From: Nicole <nicole@xxxxxxxxxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jonh Wendell <jonh.wendell@xxxxxxxxx>
- Re: [PATCH 0/2] netfilter fixes for net
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: iptables nfacct match question
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jonh Wendell <jonh.wendell@xxxxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jonh Wendell <jonh.wendell@xxxxxxxxx>
- Re: [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: iptables nfacct match question
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: timeout values corrupted on set resize
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/2] netfilter: ipset: "Directory not empty" error message
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/2] netfilter fixes for net
- From: pablo@xxxxxxxxxxxxx
- [PATCH] iptables-save: add --chain argument, limits output to a chain
- From: jonh.wendell@xxxxxxxxx
- [PATCH] conntrackd: cthelper: add DHCPv6 support
- From: pablo@xxxxxxxxxxxxx
- Re: iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: iptables nfacct match question
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH stable] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [Ulogd2 PATCH 0/4] preparing 2.0.2 release
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Josh Hunt <johunt@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] arptables: build an libarptc.a archive
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH next v3] iptables: add xt_bpf match
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- iptables nfacct match question
- From: Michael Zintakis <michael.zintakis@xxxxxxxxxxxxxx>
- Re: [iptables-nftables PATCH v2] nft: Split nft core to become family independant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [Ulogd2 PATCH 4/4] Prepare release number to 2.0.2
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd2 PATCH 3/4] Update README
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd2 PATCH 2/4] Update man page.
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd2 PATCH 1/4] Add Changes to extra dist.
- From: Eric Leblond <eric@xxxxxxxxx>
- [Ulogd2 PATCH 0/4] preparing 2.0.2 release
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [ulogd patch] small code cleaning
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] arptables: build an libarptc.a archive
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH] arptables: build an libarptc.a archive
- From: Jonh Wendell <jonh.wendell@xxxxxxxxx>
- [PATCH 1/2] netfilter: ipset: timeout values corrupted on set resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/2] netfilter: ipset: "Directory not empty" error message
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 0/2] ipset patches
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.17 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH stable] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Neil Horman <nhorman@xxxxxxxxxxxxx>
- Re: [PATCH] utils: bpf_compile
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- [PATCH stable] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [GIT PULL nf] IPVS fixes #2
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [PATCH] utils: bpf_compile
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/10] netfilter: make /proc/net/netfilter pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Josh Hunt <johunt@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH] utils: bpf_compile
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [PATCH 01/10] netfilter: make /proc/net/netfilter pernet
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter: nf_tables: complete net namespace support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- netfilter: nf_tables: complete net namespace support
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: Fix logging for dropped packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ipset timeout values corrupt on set resize
- From: Josh Hunt <johunt@xxxxxxxxxx>
- [PATCH] netfilter: ipset: timeout values corrupted on set resize
- From: Josh Hunt <johunt@xxxxxxxxxx>
- ipset timeout values corrupt on set resize
- From: Josh Hunt <johunt@xxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: Fix logging for dropped packets
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 0/7] netfilter updates for net-next
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH nf-next 2/2] netfilter: ipt_ULOG: make spinlock per nlgroup
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH nf-next 1/2] netfilter: ebt_ulog: remove useless spin lock protection
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulog: add protection when remove ipt_ULOG
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 0/7] netfilter updates for net-next
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/7] netfilter: fix missing dependencies for NETFILTER_XT_MATCH_CONNLABEL
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/7] netfilter: xt_CT: merge common code of revision 0 and 1
- From: pablo@xxxxxxxxxxxxx
- [PATCH 5/7] netfilter: nfnetlink: add mutex per subsystem
- From: pablo@xxxxxxxxxxxxx
- [PATCH 7/7] netfilter: nf_ct_helper: better logging for dropped packets
- From: pablo@xxxxxxxxxxxxx
- [PATCH 6/7] netfilter: nf_ct_pptp: Fix comment referring to incorrect RFC
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/7] netfilter: xt_CT: add alias flag
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/7] netfilter: xt_conntrack: Add flag to support aliases
- From: pablo@xxxxxxxxxxxxx
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables 3/9] netfilter: nf_tables: atomic rule updates and dumps
- From: Tomasz Bursztyka <tomasz.bursztyka@xxxxxxxxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [nf-next/nf_tables8] Unable to compile kernel
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulog: add protection when remove ipt_ULOG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next/nf_tables8] Unable to compile kernel
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 5/7] Add handling of too long arguments.
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [RFC PATCH net-next (V2, RESENT)] ipv6: Queue fragments per interface for multicast/link-local addresses.
- From: Erik Hugne <erik.hugne@xxxxxxxxxxxx>
- Re: [PATCH 7/7] conf: error handling for too long line
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 5/7] Add handling of too long arguments.
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH 6/7] logemu: return error if configuration is invalid.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 7/7] conf: error handling for too long line
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 4/7] Fix typo in comments.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 5/7] Add handling of too long arguments.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 3/7] Use access to ensure readability of config gile
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 2/7] Suppress dead FIXME.
- From: Eric Leblond <eric@xxxxxxxxx>
- [PATCH 1/7] Update TODO.
- From: Eric Leblond <eric@xxxxxxxxx>
- [ulogd patch] small code cleaning
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: [PATCH] ulog: add protection when remove ipt_ULOG
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH next v3] iptables: add xt_bpf match
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- [PATCH] utils: bpf_compile
- From: Willem de Bruijn <willemb@xxxxxxxxxx>
- [RFC]: extend iptables' AUDIT target functionality
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [RFC PATCH net-next (V2, RESENT)] ipv6: Queue fragments per interface for multicast/link-local addresses.
- From: YOSHIFUJI Hideaki <yoshfuji@xxxxxxxxxxxxxx>
- Re: [PATCH 0/3] netfilter fixes for 3.7-rc8
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] change XML output format to element better than attributes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [libnftables PATCH] change XML output format to element better than attributes
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: tcp_use_frto crashes on empty tcp_write_queue
- From: Zoltan Kiss <zoltan.kiss@xxxxxxxxxx>
- tcp_use_frto crashes on empty tcp_write_queue
- From: Zoltan Kiss <zoltan.kiss@xxxxxxxxxx>
- [PATCH 2/3] netfilter: nf_ct_helper: don't discard helper if it is actually the same
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/3] netfilter: nf_ct_reasm: fix per-netns sysctl initialization
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/3] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/3] netfilter fixes for 3.7-rc8
- From: pablo@xxxxxxxxxxxxx
- Re: [GIT PULL nf] IPVS fixes #2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_ct_reasm: fix per-netns sysctl initialization
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: nf_ct_reasm: fix per-netns sysctl initialization
- From: Michal Kubecek <mkubecek@xxxxxxx>
- Re: [libnftables PATCH] Delete unused includes.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: limit the number of source ips connected?
- From: Arturo Borrero Gonzalez <arturo.borrero.glez@xxxxxxxxx>
- [libnftables PATCH] Delete unused includes.
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: nf_ct_helper: don't discard helper if it is actually the same
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftables PATCH] Added examples of functionality to print XML output of nftables rule/chain/table
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- limit the number of source ips connected?
- From: Jose Luis Godoy <joseluis.gms@xxxxxxxxx>
- [PATCH 1/1] netfilter: nf_ct_helper: don't discard helper if it is actually the same
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: team driver MAC NAT
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- team driver MAC NAT
- From: Jiri Pirko <jiri@xxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 1/1] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: ctnetlink: don't permit ct creation with random tuple
- From: Florian Westphal <fw@xxxxxxxxx>
- [libnftables PATCH] Added examples of functionality to print XML output of nftables rule/chain/table
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [libnftables] Examples of XML output
- From: Arturo Borrero <arturo.borrero.glez@xxxxxxxxx>
- [PATCH] netfilter: nf_ct_helper: better logging for dropped packets
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 0/5] Netfilter/IPVS fixes for 3.8-rc7
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 5/5] netfilter: ip6t_NPT: Ensure to check lower part of prefixes are zero
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/5] netfilter: ip6t_NPT: Fix prefix mangling
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/5] netfilter: ip6t_NPT: Fix adjustment calculation
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/5] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/5] ipvs: freeing uninitialized pointer on error
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/5] Netfilter/IPVS fixes for 3.8-rc7
- From: pablo@xxxxxxxxxxxxx
- Re: Assorted fixes v3
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: Assorted fixes v3
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 01/10] netfilter: make /proc/net/netfilter pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ulog: add protection when remove ipt_ULOG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 2/4] netfilter: ip6t_NPT: Use csum_partial().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 4/4] netfilter: ip6t_NPT: Do not mix two prefixes.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 3/4] netfilter ip6t_NPT: Ensure to check lower part of prefixes are zero.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 1/4] netfilter: ip6t_NPT: Fix checksuming.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [GIT PULL nf] IPVS fixes #2
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 05/10] netfilter: ebt_ulog: add net namesapce support for ebt_ulog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 01/10] netfilter: make /proc/net/netfilter pernet
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 02/10] netfilter: nf_log: prepar net namespace support for nf_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 10/10] netfilter: remove useless variable proc_net_netfilter
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 09/10] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 08/10] netfilter: nf_log: enable nflog in un-init net namespace
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 07/10] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 04/10] netfilter: xt_LOG: add net namespace support for xt_LOG
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- [PATCH 03/10] netfilter: ebt_log: add net namespace support for ebt_log
- From: Gao feng <gaofeng@xxxxxxxxxxxxxx>
- Re: [PATCH] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Daniel Borkmann <dborkman@xxxxxxxxxx>
- RE: [PATCH] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: "David Laight" <David.Laight@xxxxxxxxxx>
- [PATCH] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf] IPVS fixes #2
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Assorted fixes v3
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 2/4] libxtables: centralize checking for a .save function
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 1/4] build: bump SONAME for libxtables
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 3/4] extensions: eui64: set userspacesize=0
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH 4/4] iptables: fall back to using save function when print is not defined
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH net] ipvs: sctp: fix checksumming on snat and dnat handlers
- From: Julian Anastasov <ja@xxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]