Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH 4/6] IPVS: rename of netns init and cleanup functions., (continued)
- [PATCH] netfilter: ctnetlink: fix timestamp support for new conntracks,
Pablo Neira Ayuso
- net-next-2.6.git merged, Patrick McHardy
- [PATCH 1/3] IPVS: Change of socket usage to enable name space exit.,
Hans Schillstrom
- [PATCH 0/3] netfilter: netfilter fixes for 2.6.39-rc4,
kaber
- [PATCH 0/3] netfilter: netfilter update,
kaber
- [ANNOUNCE] ipset 6.4 released,
Jozsef Kadlecsik
- [PATCH 1/1] netfilter: ipset: Fix the order of listing of sets,
Jozsef Kadlecsik
- Patches: don't call modprobe, ipv4/ipv6 flag support, xtables-multi unification.,
Maciej Żenczykowski
- [PATCH 1/5] Don't load ip6?_tables module when already loaded., Maciej Żenczykowski
- [PATCH 2/5] Add --ipv4/-4 and --ipv6/-6 support to ip6?tables{,-restore}., Maciej Żenczykowski
- [PATCH 3/5] Move common parts of libext{4,6}.a into libext.a, Maciej Żenczykowski
- [PATCH 4/5] combine ip6?tables-multi into xtables-multi, Maciej Żenczykowski
- [PATCH 5/5] add xtables-multi{32,64} recognition, Maciej Żenczykowski
- Re: Patches: don't call modprobe, ipv4/ipv6 flag support, xtables-multi unification., Maciej Żenczykowski
- netfilter: xt_CT: provide info on why a rule was rejected,
Jan Engelhardt
- [PATCH] libnetfilter_conntrack: Add nfct_destroy() to all examples in utils,
Andrew Beverley
- Defining and parsing SNAT and DNAT options, Terry Moës
- Re: BUG: unable to handle kernel NULL pointer dereference at 000002c0 / IP: [<c04c70f2>] in6_dev_finish_destroy+0x35/0x8c,
Eric Dumazet
- SNAT in NF_INET_PRE_ROUTING not working on kernel 2.6.35, Janis Dzerve
- [PATCH] Move common parts of libext{4,6}.a into libext.a, Maciej Żenczykowski
- [PATCH] Add --ipv4/-4 and --ipv6/-6 support to ip6?tables{,-restore}., Maciej Żenczykowski
- [PATCH 0/5] netfilter: ipset patches,
Jozsef Kadlecsik
- guided option parser, run 3,
Jan Engelhardt
- [PATCH 01/26] libxtables: XTTYPE_MARKMASK32 support, Jan Engelhardt
- [PATCH 05/26] libxt_quota: use guided option parser, Jan Engelhardt
- [PATCH 06/26] libxtables: linked-list name<->id map, Jan Engelhardt
- [PATCH 04/26] libxtables: XTTYPE_UINT64 support, Jan Engelhardt
- [PATCH 08/26] libipt_realm: use guided option parser, Jan Engelhardt
- [PATCH 09/26] libxtables: XTTYPE_UINT16RC support, Jan Engelhardt
- [PATCH 07/26] libxt_devgroup: use guided option parser, Jan Engelhardt
- [PATCH 12/26] libxtables: XTTYPE_UINT8RC support, Jan Engelhardt
- [PATCH 10/26] libxt_length: use guided option parser, Jan Engelhardt
- [PATCH 13/26] libxtables: XTTYPE_UINT64RC support, Jan Engelhardt
- [PATCH 15/26] libxtables: XTTYPE_UINT16 support, Jan Engelhardt
- [PATCH 16/26] libxt_CT: use guided option parser, Jan Engelhardt
- [PATCH 17/26] libxt_NFQUEUE: use guided option parser, Jan Engelhardt
- [PATCH 18/26] libxt_TCPMSS: use guided option parser, Jan Engelhardt
- [PATCH 19/26] libxtables: pass struct xt_entry_{match,target} to x6 parser, Jan Engelhardt
- [PATCH 21/26] libxtables: XTTYPE_SYSLOGLEVEL support, Jan Engelhardt
- [PATCH 20/26] libxt_string: use guided option parser, Jan Engelhardt
- [PATCH 22/26] libip[6]t_LOG: use guided option parser, Jan Engelhardt
- [PATCH 24/26] libxtables: XTTYPE_PORT support, Jan Engelhardt
- [PATCH 23/26] libxtables: XTTYPE_ONEHOST support, Jan Engelhardt
- [PATCH 26/26] libipt_ULOG: use guided option parser, Jan Engelhardt
- [PATCH 25/26] libxt_TPROXY: use guided option parser, Jan Engelhardt
- [PATCH 11/26] libxt_tcpmss: use guided option parser, Jan Engelhardt
- [PATCH 14/26] libxt_connbytes: use guided option parser, Jan Engelhardt
- [PATCH 03/26] libxt_CONNMARK: use guided option parser, Jan Engelhardt
- [PATCH 02/26] libxt_MARK: use guided option parser, Jan Engelhardt
- Re: guided option parser, run 3, Patrick McHardy
- [PATCH 0/2] rework of userspace expectation support,
Pablo Neira Ayuso
- Netfilter Hook and Multiqueue?,
Justin Yaple
- guided option parser, run 2,
Jan Engelhardt
- [PATCH 01/28] libxtables: XTTYPE_UINT8 support, Jan Engelhardt
- [PATCH 02/28] libip[6]t_HL: use guided option parser, Jan Engelhardt
- [PATCH 03/28] libip[6]t_hl: use guided option parser, Jan Engelhardt
- [PATCH 04/28] libxtables: XTTYPE_UINT32RC support, Jan Engelhardt
- [PATCH 05/28] libip[6]t_ah: use guided option parser, Jan Engelhardt
- [PATCH 06/28] libip6t_frag: use guided option parser, Jan Engelhardt
- [PATCH 07/28] libxt_esp: use guided option parser, Jan Engelhardt
- [PATCH 08/28] libxtables: XTTYPE_STRING support, Jan Engelhardt
- [PATCH 09/28] libip[6]t_REJECT: use guided option parser, Jan Engelhardt
- [PATCH 10/28] libip6t_dst: use guided option parser, Jan Engelhardt
- [PATCH 11/28] libip6t_hbh: use guided option parser, Jan Engelhardt
- [PATCH 12/28] libip[6]t_icmp: use guided option parser, Jan Engelhardt
- [PATCH 13/28] libip6t_ipv6header: use guided option parser, Jan Engelhardt
- [PATCH 14/28] libipt_ECN: use guided option parser, Jan Engelhardt
- [PATCH 15/28] libipt_addrtype: use guided option parser, Jan Engelhardt
- [PATCH 16/28] libxt_AUDIT: use guided option parser, Jan Engelhardt
- [PATCH 17/28] libxt_CLASSIFY: use guided option parser, Jan Engelhardt
- [PATCH 19/28] libxt_LED: use guided option parser, Jan Engelhardt
- [PATCH 18/28] libxt_DSCP: use guided option parser, Jan Engelhardt
- [PATCH 20/28] libxt_SECMARK: use guided option parser, Jan Engelhardt
- [PATCH 21/28] libxt_TCPOPTSTRIP: use guided option parser, Jan Engelhardt
- [PATCH 22/28] libxt_comment: use guided option parser, Jan Engelhardt
- [PATCH 23/28] libxt_helper: use guided option parser, Jan Engelhardt
- [PATCH 26/28] libxt_state: use guided option parser, Jan Engelhardt
- [PATCH 24/28] libxt_physdev: use guided option parser, Jan Engelhardt
- [PATCH 25/28] libxt_pkttype: use guided option parser, Jan Engelhardt
- [PATCH 27/28] libxt_time: use guided option parser, Jan Engelhardt
- [PATCH 28/28] libxt_u32: use guided option parser, Jan Engelhardt
- Re: guided option parser, run 2, Patrick McHardy
- ipset-6.3 unexpected htable order,
Jan Engelhardt
- [ANNOUNCE] ipset 6.3 released, Jozsef Kadlecsik
- [PATCH 0/3] netfilter: ipset: fixes,
Jozsef Kadlecsik
- ipset issues in 2.6.39-rc2,
Lennert Buytenhek
- Performance issue due to constant "modprobes",
Ed W
- ipset-6.2 testsuite failure,
Jan Engelhardt
- [PATCH 0/2] netfilter: ipset: new features,
Jozsef Kadlecsik
- [PATCH 1/1] netfilter: ebtables: only call xt_compat_add_offset once per rule,
Florian Westphal
- Guided option parser,
Jan Engelhardt
- [PATCH 01/10] extensions: add missing checks for specific flags (2), Jan Engelhardt
- [PATCH 02/10] libxtables: guided option parser, Jan Engelhardt
- [PATCH 03/10] libxt_CHECKSUM: use guided option parser, Jan Engelhardt
- [PATCH 04/10] libxt_socket: use guided option parser, Jan Engelhardt
- [PATCH 05/10] libxtables: provide better final_check, Jan Engelhardt
- [PATCH 06/10] libxt_CONNSECMARK: use guided option parser, Jan Engelhardt
- [PATCH 07/10] libxtables: XTTYPE_UINT32 support, Jan Engelhardt
- [PATCH 08/10] libxt_cpu: use guided option parser, Jan Engelhardt
- [PATCH 09/10] libxtables: min-max option support, Jan Engelhardt
- [PATCH 10/10] libxt_cluster: use guided option parser, Jan Engelhardt
- Re: Guided option parser, Patrick McHardy
- One documentation fix,
Jan Engelhardt
- [PATCH 0/8] netfilter: netfilter fixes for 2.6.39-rc1,
kaber
- [PATCH] RFC - introduce xtables-multi,
Maciej Żenczykowski
- [PATCH] convert ip6?tables-multi to actually use their own header files,
Maciej Żenczykowski
- [PATCH] move 'int line' definition from ip6?tables.c into xtables.c,
Maciej Żenczykowski
- [Announce] New IPVS GIT trees, Simon Horman
- Re: shutdown oops in xt_compat_calc_jump,
Patrick McHardy
- [PATCH] netfilter: xt_conntrack: fix inverted conntrack direction test,
Florian Westphal
- Re: [PATCH] netfilter: h323: bug in parsing of ASN1 SEQOF field, Patrick McHardy
- [ANN] Linux Security Summit 2011 - Announcement and CFP,
James Morris
- Writing a mangle TARGET for iptables, questions about fragments, checksums,
Brian G
- How to get access to NAT info from userland,
Brian G
A small series of iptables userspace cleanups,
Maciej Żenczykowski
- [PATCH 01/17] man pages: allow underscores in match and target names, Maciej Żenczykowski
- [PATCH 02/17] mark newly opened fds as FD_CLOEXEC (close on exec), Maciej Żenczykowski
- [PATCH 03/17] xtables_ip6addr_to_numeric: fix typo in comment, Maciej Żenczykowski
- [PATCH 04/17] Delay (statically built) match/target initialization, Maciej Żenczykowski
- [PATCH 05/17] v4: rename init_extensions() to init_extensions4(), Maciej Żenczykowski
- [PATCH 07/17] xtables.h: init_extensions() no longer exists., Maciej Żenczykowski
- [PATCH 08/17] v4: rename for_each_chain() to for_each_chain4(), Maciej Żenczykowski
- [PATCH 09/17] v6: rename for_each_chain() to for_each_chain6(), Maciej Żenczykowski
- [PATCH 10/17] v4: rename flush_entries() to flush_entries4(), Maciej Żenczykowski
- [PATCH 11/17] v6: rename flush_entries() to flush_entries6(), Maciej Żenczykowski
- [PATCH 12/17] v4: rename delete_chain() to delete_chain4(), Maciej Żenczykowski
- [PATCH 13/17] v6: rename delete_chain() to delete_chain6(), Maciej Żenczykowski
- [PATCH 14/17] v4: rename print_rule() to print_rule4(), Maciej Żenczykowski
- [PATCH 15/17] v6: rename print_rule() to print_rule6(), Maciej Żenczykowski
- [PATCH 16/17] v4: rename do_command() to do_command4(), Maciej Żenczykowski
- [PATCH 17/17] v6: rename do_command() to do_command6(), Maciej Żenczykowski
- [PATCH 06/17] v6: rename init_extensions() to init_extensions6(), Maciej Żenczykowski
[PATCH] IPVS Bug, Null ptr in ip_vs_ctl.c ip_vs_genl_dump_daemons().,
Hans Schillstrom
Re: [PATCH] netfilter: Fix build failure when ipv6 but xt_tproxy is built in,
David Miller
[PATCH] iptables: documentation for iptables and ip6tables "security" tables,
Mark Montague
Re: ctnetlink kernel dump while running multiple libnfct clients,
Pablo Neira Ayuso
[ANNOUNCE] ipset 6.2 released,
Jozsef Kadlecsik
Re: [PATCH] ip_fragment:kernel may panic when replay big packet with RST flag,
Changli Gao
Problem getting IPv6 port numbers,
Mark Montague
[PATCH 0/2] netfilter:ipset fixes: list:set and refcounting,
Jozsef Kadlecsik
[PATCH v2 1/3] netfilter: af_info: add network namespace parameter to route hook,
Florian Westphal
is assert() an appropriate substitute for return -1?,
Sam Roberts
can expectations be marked persistent, so they can match repeatedly until they timeout?,
Sam Roberts
hardware specific extension to netfilter, xilinx microblaze, how to start, Jan Viktorin
ipt_owner pid match can be fixed, aletum
Problem sending skb built from scratch with IPv6,
Pierre Rondou
Any suggestions for getting a pcap of traffic over netlink?,
Sam Roberts
[PATCH 1/3] netfilter: af_info: add network namespace parameter to route hook,
Florian Westphal
iptables release plans,
Patrick McHardy
questions about variable-sized data in match rules, Mark Montague
[ANNOUNCE] ipset-6.1 released, Jozsef Kadlecsik
[PATCH] netfilter:ipset fix revision reporting,
Jozsef Kadlecsik
[PATCH 0/2] netfilter:ipset fixes,
Jozsef Kadlecsik
[PATCH 2/2] netfilter: get rid of atomic ops in fast path,
Eric Dumazet
[PATCH 1/2] netfilter: xtables: fix reentrancy,
Eric Dumazet
[PATCH 36/36] net,rcu: convert call_rcu(xt_osf_finger_free_rcu) to kfree_rcu(),
Lai Jiangshan
[PATCH 25/36] net,rcu: convert call_rcu(__nf_ct_ext_free_rcu) to kfree_rcu(),
Lai Jiangshan
Poll about irqsafe_cpu_add and others,
Eric Dumazet
[RFC] netfilter: get rid of atomic ops in fast path,
Eric Dumazet
[PATCH 00/01] netfilter: netfilter fix for net-next,
kaber
[PATCH] ebtables: Clone xt_AUDIT to ebt_audit to return EBT_CONTINUE,
Thomas Graf
[PATCH] iptables: add manual page section for AUDIT target,
Thomas Graf
net-next-2.6 status...,
David Miller
[PATCH 00/37] netfilter: netfilter update,
kaber
- [PATCH 05/37] ipvs: avoid lookup for fwmark 0, kaber
- [PATCH 30/37] netfilter: xt_connlimit: use kmalloc() instead of kzalloc(), kaber
- [PATCH 29/37] netfilter: xt_connlimit: fix daddr connlimit in SNAT scenario, kaber
- [PATCH 37/37] netfilter: xt_addrtype: ipv6 support, kaber
- [PATCH 36/37] netfilter: ipt_addrtype: rename to xt_addrtype, kaber
- [PATCH 35/37] ipv6: netfilter: ip6_tables: fix infoleak to userspace, kaber
- [PATCH 26/37] IPVS: Conditionally define and use ip_vs_lblc{r}_table, kaber
- [PATCH 33/37] netfilter: arp_tables: fix infoleak to userspace, kaber
- [PATCH 32/37] netfilter: xt_connlimit: remove connlimit_rnd_inited, kaber
- [PATCH 27/37] IPVS: Add __ip_vs_control_{init,cleanup}_sysctl(), kaber
- [PATCH 28/37] IPVS: Conditionally include sysctl members of struct netns_ipvs, kaber
- [PATCH 31/37] netfilter: xt_connlimit: use hlist instead, kaber
- [PATCH 34/37] netfilter: ip_tables: fix infoleak to userspace, kaber
- [PATCH 22/37] IPVS: Conditinally use sysctl_lblc{r}_expiration, kaber
- [PATCH 23/37] IPVS: ip_vs_todrop() becomes a noop when CONFIG_SYSCTL is undefined, kaber
- [PATCH 25/37] IPVS: Minimise ip_vs_leave when CONFIG_SYSCTL is undefined, kaber
- [PATCH 24/37] IPVS: Conditional ip_vs_conntrack_enabled(), kaber
- [PATCH 18/37] IPVS: Add {sysctl_sync_threshold,period}(), kaber
- [PATCH 17/37] IPVS: Add sysctl_nat_icmp_send(), kaber
- [PATCH 20/37] IPVS: Add sysctl_expire_nodest_conn(), kaber
- [PATCH 21/37] IPVS: Add expire_quiescent_template(), kaber
- [PATCH 19/37] IPVS: Add sysctl_sync_ver(), kaber
- [PATCH 15/37] IPVS: Add ip_vs_route_me_harder(), kaber
- [PATCH 04/37] netfilter: nf_conntrack: fix sysctl memory leak, kaber
- [PATCH 16/37] IPVS: Add sysctl_snat_reroute(), kaber
- [PATCH 14/37] ipvs: rename estimator functions, kaber
- [PATCH 10/37] ipvs: reorganize tot_stats, kaber
- [PATCH 09/37] ipvs: move struct netns_ipvs, kaber
- [PATCH 11/37] ipvs: properly zero stats and rates, kaber
- [PATCH 13/37] ipvs: optimize rates reading, kaber
- [PATCH 12/37] ipvs: remove unused seqcount stats, kaber
- [PATCH 08/37] IPVS: Fix variable assignment in ip_vs_notrack, kaber
- [PATCH 07/37] netfilter:ipvs: use kmemdup, kaber
- [PATCH 06/37] ipvs: remove _bh from percpu stats reading, kaber
- [PATCH 02/37] netfilter: x_tables: misuse of try_then_request_module, kaber
- [PATCH 01/37] netfilter: ipset: fix the compile warning in ip_set_create, kaber
- [PATCH 03/37] netfilter: x_tables: return -ENOENT for non-existant matches/targets, kaber
- Re: [PATCH 00/37] netfilter: netfilter update, David Miller
[PATCH v3 1/2] netfilter: ipt_addrtype: rename to xt_addrtype,
Florian Westphal
[PATCH 1/4] netfilter: xt_connlimit: fix daddr connlimit in SNAT scenario,
Changli Gao
[PATCH] iptables: fix the dead loop when meeting unknown options,
Changli Gao
[patch v3 00/20] IPVS: Proposed Changes,
Simon Horman
- [PATCH 01/20] ipvs: move struct netns_ipvs, Simon Horman
- [PATCH 02/20] ipvs: reorganize tot_stats, Simon Horman
- [PATCH 03/20] ipvs: properly zero stats and rates, Simon Horman
- [PATCH 07/20] IPVS: Add ip_vs_route_me_harder(), Simon Horman
- [PATCH 06/20] ipvs: rename estimator functions, Simon Horman
- [PATCH 05/20] ipvs: optimize rates reading, Simon Horman
- [PATCH 08/20] IPVS: Add sysctl_snat_reroute(), Simon Horman
- [PATCH 15/20] IPVS: ip_vs_todrop() becomes a noop when CONFIG_SYSCTL is undefined, Simon Horman
- [PATCH 19/20] IPVS: Add __ip_vs_control_{init,cleanup}_sysctl(), Simon Horman
- [PATCH 16/20] IPVS: Conditional ip_vs_conntrack_enabled(), Simon Horman
- [PATCH 17/20] IPVS: Minimise ip_vs_leave when CONFIG_SYSCTL is undefined, Simon Horman
- [PATCH 20/20] IPVS: Conditionally include sysctl members of struct netns_ipvs, Simon Horman
- [PATCH 18/20] IPVS: Conditionally define and use ip_vs_lblc{r}_table, Simon Horman
- [PATCH 09/20] IPVS: Add sysctl_nat_icmp_send(), Simon Horman
- [PATCH 13/20] IPVS: Add expire_quiescent_template(), Simon Horman
- [PATCH 10/20] IPVS: Add {sysctl_sync_threshold,period}(), Simon Horman
- [PATCH 11/20] IPVS: Add sysctl_sync_ver(), Simon Horman
- [PATCH 12/20] IPVS: Add sysctl_expire_nodest_conn(), Simon Horman
- [PATCH 14/20] IPVS: Conditinally use sysctl_lblc{r}_expiration, Simon Horman
- [PATCH 04/20] ipvs: remove unused seqcount stats, Simon Horman
conntrack -L shows nothing,
Jan Engelhardt
[PATCH] conntrack: fix sysctl memory leak,
Stephen Hemminger
[PATCH] ipv6: netfilter: ip6_tables: fix infoleak to userspace,
Vasiliy Kulikov
[PATCH] ipv4: netfilter: ip_tables: fix infoleak to userspace,
Vasiliy Kulikov
[PATCH] ipv4: netfilter: ipt_CLUSTERIP: fix buffer overflow,
Vasiliy Kulikov
[PATCH] ipv4: netfilter: arp_tables: fix infoleak to userspace,
Vasiliy Kulikov
[RFC] x_tables: misuse of try_then_request_module,
Stephen Hemminger
subcommand consolidation and -C option,
Jan Engelhardt
[PATCH v2 1/2] netfilter: ipt_addrtype: rename to xt_addrtype,
Florian Westphal
XT_CONTINUE/EBT_CONTINUE for universal modules,
Thomas Graf
[PATCH] iptables: add -C to check for existing rules,
Stefan Tomanek
[PATCH 1/2] libipt_addrtype: rename to libxt_addrtype,
Florian Westphal
[PATCH] ip(6)tables-multi: unify subcommand handling,
Stefan Tomanek
[PATCH] xtables-addon: Remove recursive function calls,
Changli Gao
[PATCH net-next] netfilter:ipvs: use kmemdup,
Shan Wei
[patch v2 ] IPVS: Conditionally include sysctl code,
Simon Horman
- [PATCH 04/18] ipvs: remove unused seqcount stats, Simon Horman
- [PATCH 02/18] ipvs: reorganize tot_stats, Simon Horman
- [PATCH 17/18] IPVS: Add __ip_vs_control_{init,cleanup}_sysctl(), Simon Horman
- [PATCH 18/18] IPVS: Conditionally include sysctl members of struct netns_ipvs, Simon Horman
- [PATCH 16/18] IPVS: Conditionally define and use ip_vs_lblc{r}_table, Simon Horman
- [PATCH 15/18] IPVS: Minimise ip_vs_leave when CONFIG_SYSCTL is undefined, Simon Horman
- [PATCH 14/18] IPVS: Conditional ip_vs_conntrack_enabled(), Simon Horman
- [PATCH 08/18] IPVS: Add {sysctl_sync_threshold,period}(), Simon Horman
- [PATCH 05/18] IPVS: Add ip_vs_route_me_harder(), Simon Horman
- [PATCH 07/18] IPVS: Add sysctl_nat_icmp_send(), Simon Horman
- [PATCH 13/18] IPVS: ip_vs_todrop() becomes a noop when CONFIG_SYSCTL is undefined, Simon Horman
- [PATCH 12/18] IPVS: Conditinally use sysctl_lblc{r}_expiration, Simon Horman
- [PATCH 10/18] IPVS: Add sysctl_expire_nodest_conn(), Simon Horman
- [PATCH 11/18] IPVS: Add expire_quiescent_template(), Simon Horman
- [PATCH 03/18] ipvs: zero percpu stats, Simon Horman
- [PATCH 06/18] IPVS: Add sysctl_snat_reroute(), Simon Horman
- [PATCH 09/18] IPVS: Add sysctl_sync_ver(), Simon Horman
- [PATCH 01/18] ipvs: move struct netns_ipvs, Simon Horman
[PATCH 1/2] netfilter: ipt_addrtype: rename to xt_addrtype,
Florian Westphal
libmnl: other OS support,
Jan Engelhardt
libnetfilter_queue: Some accepted packets get lost,
Fabien C.
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]