Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [nf PATCH 1/2] netfilter: nf_tables: Audit log setelem reset, (continued)
- [PATCH nft] evaluate: do not remove anonymous set with protocol flags and single element, Pablo Neira Ayuso
- [nft PATCH 1/4] tests: monitor: Fix monitor JSON output for insert command,
Phil Sutter
- [PATCH] doc: fix example of xt_cpu,
Victor Julien
- [PATCH nft v2 0/8] fix compiler warnings with clang,
Thomas Haller
- [syzbot] Monthly netfilter report (Aug 2023), syzbot
- [syzbot] [netfilter?] INFO: rcu detected stall in tcp_setsockopt, syzbot
- [PATCH nf] netfilter/xt_sctp: validate the flag_info count,
Wander Lairson Costa
- [nft PATCH] evaluate: place byteorder conversion after numgen for IP address datatypes,
Jorge Ortiz
- [PATCH nft 0/8] fix compiler warnings with clang,
Thomas Haller
- [PATCH nf] netfilter/xt_u32: validate user space input,
Wander Lairson Costa
- [syzbot] [arm?] [netfilter?] KASAN: slab-out-of-bounds Read in do_csum,
syzbot
- Fwd: Since 6.1: flow_dissector.c __skb_flow_dissect+0xa91/0x1cd0 raises WARNING in specific circumstances, Bagas Sanjaya
- Re: [Networking] ERSPAN decapsulation drops DHCP unicast packets,
Bagas Sanjaya
- [PATCH conntrack-tools 0/4] Fixes for yacc parser compilation warnings,
Jeremy Sowden
- [PATCH v4.19.y] netfilter: nf_queue: fix socket leak, Vamsi Krishna Brahmajosyula
- [PATCH nft 0/4] add operation cache for timestamp,
Thomas Haller
- [nft PATCH] evaluate: Drop dead code from expr_evaluate_mapping(),
Phil Sutter
- [PATCH nft v2 0/6] cleanup base includes and add <nft.h> header,
Thomas Haller
- [PATCH nft 0/6] no recursive make,
Thomas Haller
- [PATCH nf v2] netfilter: nft_exthdr: Fix non-linear header modification,
Xiao Liang
- [PATCH nf] netfilter: nft_exthdr: Fix non-linear header modification,
Xiao Liang
- [PATCH nft] tests: 30s-stress: add failslab and abort phase tests, Florian Westphal
- [PATCH conntrack-tools] conntrack, nfct: fix some typo's,
Jeremy Sowden
- [PATCH -stable,4.14.y,4.19.y 0/1] ipvs: backport 1b90af292e71 and 5310760af1d4,
Julian Anastasov
- [PATCH nft 0/6] cleanup base includes and add <nftdefault.h> header,
Thomas Haller
- [nft PATCH] tests: shell: Stabilize sets/0043concatenated_ranges_0 test,
Phil Sutter
- [PATCH net 0/6] netfilter updates for net,
Florian Westphal
- [PATCH nft] tests: shell: use minutes granularity in sets/0036add_set_element_expiration_0,
Pablo Neira Ayuso
- [PATCH nft] evaluate: error out on meter overlap with an existing set/map declaration, Pablo Neira Ayuso
- [nft PATCH] tests: shell: Stabilize sets/reset_command_0 test,
Phil Sutter
- [PATCH nf] netfilter: nf_tables: defer gc run if previous batch is still pending,
Florian Westphal
- [PATCH nf] netfilter: nft_set_pipapo: fix out of memory error handling,
Florian Westphal
- [nft PATCH] clang-format: add clang-format configuration file from Linux kernel,
Thomas Haller
- [nft PATCH] gitignore: ignore cscope files,
Thomas Haller
- [PATCH nf-next] netfilter: nf_tables: missing extended netlink error in lookup functions, Pablo Neira Ayuso
- [PATCH nft] cache: chain listing implicitly sets on terse option, Pablo Neira Ayuso
- [nft PATCH 1/2] meta: don't assume time_t is 64 bit in date_type_print(),
Thomas Haller
- [PATCH conntrack] tests/conntrack: add initial stress test for conntrack, Pablo Neira Ayuso
- [PATCH ulogd2 v3 00/11] Fixes for handling and output of IP addresses,
Jeremy Sowden
- [PATCH ulogd2 v3 01/11] src: record length of integer key values, Jeremy Sowden
- [PATCH ulogd2 v3 03/11] printpkt, raw2packet_BASE: keep gateway address in NBO, Jeremy Sowden
- [PATCH ulogd2 v3 02/11] printpkt: fix statement punctuator, Jeremy Sowden
- [PATCH ulogd2 v3 04/11] raw2packet_BASE: store ARP address values as integers, Jeremy Sowden
- [PATCH ulogd2 v3 05/11] ip2hbin: store ipv6 address as integer, Jeremy Sowden
- [PATCH ulogd2 v3 06/11] ipfix: skip non-ipv4 addresses, Jeremy Sowden
- [PATCH ulogd2 v3 09/11] sqlite3: correct binding of ipv4 addresses and 64-bit integers, Jeremy Sowden
- [PATCH ulogd2 v3 08/11] gprint, oprint: add support for printing ipv6 addresses, Jeremy Sowden
- [PATCH ulogd2 v3 07/11] gprint, oprint: use inet_ntop to format ip addresses, Jeremy Sowden
- [PATCH ulogd2 v3 10/11] sqlite3: insert ipv6 addresses as null rather than garbage, Jeremy Sowden
- [PATCH ulogd2 v3 11/11] db: insert ipv6 addresses in the same format as ip2bin, Jeremy Sowden
- [PATCH nf-next] netfilter: nf_tables: allow loop termination for pending fatal signal, Florian Westphal
- [PATCH nft] tests/shell: expand vmap test case to also cause batch abort, Florian Westphal
- [PATCH nft] parser: permit gc-interval in map declarations, Florian Westphal
- Re: [Cluster-devel] I have been given the guide with full network diagram on configuring High Availability (HA) Cluster and SD-WAN for Fortigate firewalls by my boss on 10 May 2023 Wed,
Bagas Sanjaya
- [PATCH nf] netfilter: nf_tables: use correct lock to protect gc_list,
Pablo Neira Ayuso
- [PATCH conntrack] conntrack: do not set on NLM_F_ACK in IPCTNL_MSG_CT_GET requests, Pablo Neira Ayuso
- [PATCH nft,v2] INSTALL: provide examples to install python bindings,
Pablo Neira Ayuso
- [PATCH conntrack] conntrack: skip ENOENT when -U/-D finds a stale conntrack entry, Pablo Neira Ayuso
- [PATCH conntrack] conntrack: unbreak -U command, use correct family, Pablo Neira Ayuso
- [PATCH nft] INSTALL: provide examples to install python bindings,
Pablo Neira Ayuso
- libnetfilter_queue patch ping,
Duncan Roe
- [PATCH] json: use strtok_r() instead of strtok(),
Thomas Haller
- [PATCH xtables-addons] doc: fix version number in xtables-addons.8,
Jeremy Sowden
- [nft PATCH v3 0/3] src: use reentrant getprotobyname_r()/getprotobynumber_r()/getservbyport_r(),
Thomas Haller
- [PATCH xtables-addons 0/5] Autoools silent-rules fixes,
Jeremy Sowden
- [nft PATCH v5 0/6] add input flags and "no-dns"/"json" flags,
Thomas Haller
- [PATCH nf] netfilter: nf_tables: GC transaction race with abort path,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: flush pending destroy work before netlink notifier, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: validate all pending tables, Florian Westphal
- Re: [PATCH v4] Bluetooth: Fix for ACL disconnect when pairing fails, Muhammad Usama Anjum
- [PATCH net-next v2] netfilter: ebtables: replace zero-length array members,
GONG, Ruiqi
- [PATCH net-next v4] netfilter: ebtables: fix fortify warnings in size_entry_mwt(), GONG, Ruiqi
- [PATCHv2 nf] netfilter: set default timeout to 3 secs for sctp shutdown send and recv state,
Xin Long
- [PATCH RFC net-next 00/14] ipvs: per-net tables and optimizations,
Julian Anastasov
- [PATCH RFC net-next 01/14] rculist_bl: add hlist_bl_for_each_entry_continue_rcu, Julian Anastasov
- [PATCH RFC net-next 02/14] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns, Julian Anastasov
- [PATCH RFC net-next 04/14] ipvs: use single svc table, Julian Anastasov
- [PATCH RFC net-next 03/14] ipvs: some service readers can use RCU, Julian Anastasov
- [PATCH RFC net-next 14/14] ipvs: add conn_lfactor and svc_lfactor sysctl vars, Julian Anastasov
- [PATCH RFC net-next 10/14] ipvs: show the current conn_tab size to users, Julian Anastasov
- [PATCH RFC net-next 05/14] ipvs: do not keep dest_dst after dest is removed, Julian Anastasov
- [PATCH RFC net-next 11/14] ipvs: no_cport and dropentry counters can be per-net, Julian Anastasov
- [PATCH RFC net-next 07/14] ipvs: add resizable hash tables, Julian Anastasov
- [PATCH RFC net-next 06/14] ipvs: use more counters to avoid service lookups, Julian Anastasov
- [PATCH RFC net-next 13/14] ipvs: add ip_vs_status info, Julian Anastasov
- [PATCH RFC net-next 12/14] ipvs: use more keys for connection hashing, Julian Anastasov
- [PATCH RFC net-next 08/14] ipvs: use resizable hash table for services, Julian Anastasov
- [PATCH RFC net-next 09/14] ipvs: switch to per-net connection table, Julian Anastasov
- [iptables PATCH] Revert --compat option related commits,
Phil Sutter
- [PATCH nf 1/3] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path,
Pablo Neira Ayuso
- [PATCH nft] tests: add transaction stress test with parallel delete/add/flush and netns deletion, Florian Westphal
- [PATCH nf 0/2] netfilter: nf_nat: fix yet another bizarre early demux corner case,
Florian Westphal
- [PATCH 5.4 32/39] netfilter: nf_tables: report use refcount overflow, Greg Kroah-Hartman
- [PATCH 5.10 59/68] netfilter: nf_tables: report use refcount overflow, Greg Kroah-Hartman
- [PATCH 5.15 76/89] netfilter: nf_tables: report use refcount overflow, Greg Kroah-Hartman
- [PATCH 4.19 25/33] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush, Greg Kroah-Hartman
- [PATCH 4.19 26/33] netfilter: nf_tables: report use refcount overflow, Greg Kroah-Hartman
- [PATCH 4.14 20/26] netfilter: nf_tables: report use refcount overflow, Greg Kroah-Hartman
- [PATCH nf] netfilter: set default timeout to 3 secs for sctp shutdown send and recv state,
Xin Long
- [PATCH -stable,4.14 0/1] netfilter stable fix for 4.14,
Pablo Neira Ayuso
- [PATCH -stable,4.19 0/2] netfilter stable fixes for 4.19,
Pablo Neira Ayuso
- [PATCH -stable,5.4 0/1] netfilter stable fix for 5.4,
Pablo Neira Ayuso
- [PATCH -stable,5.10 0/1] netfilter stable fix for 5.10,
Pablo Neira Ayuso
- [PATCH -stable,5.15 0/1] netfilter stable fix for 5.15,
Pablo Neira Ayuso
- [PATCH -stable,6.1 0/1] netfilter stable fix for 6.1,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: don't fail inserts if duplicate has expired, Florian Westphal
- Re: [PATCH] ipvs: fix racy memcpy in proc_do_sync_threshold,
Simon Horman
- [PATCH nf] netfilter: nf_tables: deactivate catchall elements in next generation, Florian Westphal
- [PATCH nf] netfilter: nf_tables: fix kdoc warnings after gc rework, Florian Westphal
- [PATCH nft] tests: add test with concatenation, vmap and timeout, Florian Westphal
- [iptables PATCH v2 0/4] Implement a best-effort forward compat solution,
Phil Sutter
- Fwd: kernel: WARNING: CPU: 0 PID: 16269 at net/netfilter/nf_conntrack_core.c:1210,
Bagas Sanjaya
- [nft PATCH] src: use reentrant getprotobyname_r()/getprotobynumber_r()/getservbyport_r(),
Thomas Haller
- [iptables PATCH] tests: iptables-test: Fix command segfault reports,
Phil Sutter
- [iptables PATCH] Use SOCK_CLOEXEC/O_CLOEXEC where available,
Phil Sutter
- [iptables PATCH v2 0/3] Chain counter fixes here and there,
Phil Sutter
- [PATCH nf 1/5] netfilter: nf_tables: don't skip expired elements during walk,
Pablo Neira Ayuso
- [PATCH 4.19 133/323] netfilter: nf_tables: fix scheduling-while-atomic splat, Greg Kroah-Hartman
- [PATCH 4.19 132/323] netfilter: nf_tables: unbind non-anonymous set if rule construction fails, Greg Kroah-Hartman
- [PATCH 4.19 131/323] netfilter: nf_tables: reject unbound anonymous set before commit phase, Greg Kroah-Hartman
- [PATCH 4.19 130/323] netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain, Greg Kroah-Hartman
- [PATCH 4.19 129/323] netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE, Greg Kroah-Hartman
- [PATCH 4.19 128/323] netfilter: nf_tables: use net_generic infra for transaction data, Greg Kroah-Hartman
- [PATCH 4.19 127/323] netfilter: add helper function to set up the nfnetlink header and use it, Greg Kroah-Hartman
- [PATCH 4.19 126/323] netfilter: nftables: add helper function to set the base sequence number, Greg Kroah-Hartman
- [PATCH 4.19 125/323] netfilter: nf_tables: add rescheduling points during loop detection walks, Greg Kroah-Hartman
- [PATCH 4.19 124/323] netfilter: nf_tables: fix nat hook table deletion, Greg Kroah-Hartman
- [PATCH 4.14 088/204] netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain, Greg Kroah-Hartman
- [PATCH 4.14 089/204] netfilter: nf_tables: unbind non-anonymous set if rule construction fails, Greg Kroah-Hartman
- [PATCH 4.14 087/204] netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE, Greg Kroah-Hartman
- [PATCH v3 00/14] sysctl: Add a size argument to register functions in sysctl,
Joel Granados
- [PATCH v3 01/14] sysctl: Prefer ctl_table_header in proc_sysctl, Joel Granados
- [PATCH v3 02/14] sysctl: Use ctl_table_header in list_for_each_table_entry, Joel Granados
- [PATCH v3 06/14] sysctl: Add size to register_sysctl, Joel Granados
- [PATCH v3 05/14] sysctl: Add a size arg to __register_sysctl_table, Joel Granados
- [PATCH v3 07/14] sysctl: Add size arg to __register_sysctl_init, Joel Granados
- [PATCH v3 09/14] ax.25: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v3 08/14] sysctl: Add size to register_net_sysctl function, Joel Granados
- [PATCH v3 03/14] sysctl: Add ctl_table_size to ctl_table_header, Joel Granados
- [PATCH v3 04/14] sysctl: Add size argument to init_header, Joel Granados
- [PATCH v3 10/14] netfilter: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v3 11/14] networking: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v3 13/14] sysctl: SIZE_MAX->ARRAY_SIZE in register_net_sysctl, Joel Granados
- [PATCH v3 12/14] vrf: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v3 14/14] sysctl: Use ctl_table_size as stopping criteria for list macro, Joel Granados
- Re: [PATCH v3 00/14] sysctl: Add a size argument to register functions in sysctl, Luis Chamberlain
- [PATCH] netfilter: ebtables: replace zero-length array members,
GONG, Ruiqi
- [PATCH v3] netfilter: ebtables: fix fortify warnings in size_entry_mwt(),
GONG, Ruiqi
- [PATCH v2 0/7] netfilter: refactor deprecated strncpy,
Justin Stitt
- [PATCH 0/7] netfilter: refactor deprecated strncpy,
Justin Stitt
- [PATCH v2] netfilter: ebtables: fix fortify warnings,
GONG, Ruiqi
- [PATCH nf] netfilter: nf_tables: fix false-positive lockdep splat, Florian Westphal
- [PATCH] netfilter: ebtables: fix fortify warnings,
GONG, Ruiqi
- [PATCH net-next] netfilter: h323: Remove unused function declarations, Yue Haibing
- [PATCH nft 0/2] doc: fix cleaning of man-pages,
Jeremy Sowden
- [iptables PATCH v2 1/2] nft-ruleparse: Introduce nft_create_target(),
Phil Sutter
- [PATCH net-next] netfilter: conntrack: Remove unused function declarations,
Yue Haibing
- [nft PATCH v4 0/6] add input flags and "no-dns"/"json" flags,
Thomas Haller
- [PATCH iptables] nft-ruleparse: parse meta mark set as MARK target,
Florian Westphal
- Solution Bugzilla Issue 1659 - iptables-nft v1.8.9 Error: meta sreg key not supported,
Robert
- [iptables PATCH] Revert "libiptc: fix wrong maptype of base chain counters on restore", Phil Sutter
- [iptables PATCH] extensions: libip6t_icmp: Add names for mld-listener types,
Phil Sutter
- [iptables PATCH] nft: move processing logic out of asserts,
Phil Sutter
- [nft PATCH v2] tests: shell: Review test-cases for destroy command,
Phil Sutter
- [nft PATCH] doc: document add chain device parameter,
Brennan Paciorek
- [iptables PATCH v2 00/15] Man pages review,
Phil Sutter
- [iptables PATCH v2 07/15] man: iptables-restore.8: Fix --modprobe description, Phil Sutter
- [iptables PATCH v2 11/15] man: iptables-restore.8: Start paragraphs in upper-case, Phil Sutter
- [iptables PATCH v2 12/15] man: Trivial: Missing space after comma, Phil Sutter
- [iptables PATCH v2 14/15] man: iptables-save.8: Fix --modprobe description, Phil Sutter
- [iptables PATCH v2 02/15] man: iptables.8: Trivial spelling fixes, Phil Sutter
- [iptables PATCH v2 10/15] man: iptables-restore.8: Put 'file' in italics in synopsis, Phil Sutter
- [iptables PATCH v2 09/15] man: iptables-restore.8: Drop -W option from synopsis, Phil Sutter
- [iptables PATCH v2 03/15] man: iptables.8: Fix intra page reference, Phil Sutter
- [iptables PATCH v2 01/15] man: iptables.8: Extend exit code description, Phil Sutter
- [iptables PATCH v2 05/15] man: Use HTTPS for links to netfilter.org, Phil Sutter
- [iptables PATCH v2 08/15] man: iptables-restore.8: Consistently document -w option, Phil Sutter
- [iptables PATCH v2 04/15] man: iptables.8: Clarify --goto description, Phil Sutter
- [iptables PATCH v2 13/15] man: iptables-save.8: Clarify 'available tables', Phil Sutter
- [iptables PATCH v2 15/15] man: iptables-save.8: Start paragraphs in upper-case, Phil Sutter
- [iptables PATCH v2 06/15] man: iptables.8: Trivial font fixes, Phil Sutter
- Re: [iptables PATCH v2 00/15] Man pages review, Phil Sutter
- [PATCH nft] parser: deduplicate map with data interval, Florian Westphal
- [PATCH nft] parser: allow ct timeouts to use time_spec values, Florian Westphal
- [PATCH nft] tests: fix inet nat prio tests, Florian Westphal
- [PATCH nft] tests: add dynmap datapath add/delete test case, Florian Westphal
- [PATCH net-next] netfilter: helper: Remove unused function declarations,
Yue Haibing
- [PATCH net-next] netfilter: gre: Remove unused function declaration nf_ct_gre_keymap_flush(), Yue Haibing
- [iptables PATCH 1/3] extensions: libipt_icmp: Fix confusion between 255/255 and any,
Phil Sutter
- [iptables PATCH 00/16] Man pages review,
Phil Sutter
- [iptables PATCH 06/16] man: iptables.8: Trivial font fixes, Phil Sutter
- [iptables PATCH 03/16] man: iptables.8: Fix intra page reference, Phil Sutter
- [iptables PATCH 01/16] man: iptables.8: Extend exit code description, Phil Sutter
- [iptables PATCH 10/16] man: iptables-restore.8: Put 'file' in italics in synopsis, Phil Sutter
- [iptables PATCH 16/16] man: iptables-save.8: Trivial: Missing space in enumeration, Phil Sutter
- [iptables PATCH 07/16] man: iptables-restore.8: Fix --modprobe description, Phil Sutter
- [iptables PATCH 11/16] man: iptables-restore.8: Start paragraphs in upper-case, Phil Sutter
- [iptables PATCH 09/16] man: iptables-restore.8: Drop -W option from synopsis, Phil Sutter
- [iptables PATCH 15/16] man: iptables-save.8: Start paragraphs in upper-case, Phil Sutter
- [iptables PATCH 13/16] man: iptables-save.8: Clarify 'available tables', Phil Sutter
- [iptables PATCH 14/16] man: iptables-save.8: Fix --modprobe description, Phil Sutter
- [iptables PATCH 05/16] man: Use HTTPS for links to netfilter.org, Phil Sutter
- [iptables PATCH 04/16] man: iptables.8: Clarify --goto description, Phil Sutter
- [iptables PATCH 08/16] man: iptables-restore.8: Consistently document -w option, Phil Sutter
- [iptables PATCH 12/16] man: iptables-restore.8: Trivial: Missing space after comma, Phil Sutter
- [iptables PATCH 02/16] man: iptables.8: Trivial spelling fixes, Phil Sutter
- [iptables PATCH] Makefile: Support 'make tags' and 'make cscope',
Phil Sutter
- [iptables PATCH 1/2] iptables-restore: Drop dead code,
Phil Sutter
- [PATCH] netfilter: bpf_link: avoid unused-function warning,
Arnd Bergmann
- [nft PATCH] tests: shell: Review test-cases for destroy command,
Phil Sutter
- [PATCH] netfilter: bpf: Only define get_proto_defrag_hook() if necessary,
Daniel Xu
- [PATCH nft 0/3] Python Build Modernization,
Jeremy Sowden
- [PATCH nft] libnftables: Drop cache in -c/--check mode, Pablo Neira Ayuso
- [PATCH v2 00/14] sysctl: Add a size argument to register functions in sysctl,
Joel Granados
- [PATCH v2 01/14] sysctl: Prefer ctl_table_header in proc_sysctl, Joel Granados
- [PATCH v2 08/14] sysctl: Add size to register_net_sysctl function, Joel Granados
- [PATCH v2 10/14] netfilter: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v2 07/14] sysctl: Add size arg to __register_sysctl_init, Joel Granados
- [PATCH v2 03/14] sysctl: Add ctl_table_size to ctl_table_header, Joel Granados
- [PATCH v2 11/14] networking: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v2 05/14] sysctl: Add a size arg to __register_sysctl_table, Joel Granados
- [PATCH v2 12/14] vrf: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v2 02/14] sysctl: Use ctl_table_header in list_for_each_table_entry, Joel Granados
- [PATCH v2 06/14] sysctl: Add size to register_sysctl, Joel Granados
- [PATCH v2 04/14] sysctl: Add size argument to init_header, Joel Granados
- [PATCH v2 09/14] ax.25: Update to register_net_sysctl_sz, Joel Granados
- [PATCH v2 14/14] sysctl: Use ctl_table_size as stopping criteria for list macro, Joel Granados
- [PATCH v2 13/14] sysctl: SIZE_MAX->ARRAY_SIZE in register_net_sysctl, Joel Granados
- Re: [PATCH v2 00/14] sysctl: Add a size argument to register functions in sysctl, Luis Chamberlain
- Re: [PATCH v2 00/14] sysctl: Add a size argument to register functions in sysctl, Luis Chamberlain
[PATCH v3 net-next] net: flow_dissector: Use 64bits for used_keys,
Ratheesh Kannoth
nftables: syntax ambiguity with objref map and ct helper objects,
Florian Westphal
[PATCH nft] ct expectation: fix 'list object x' vs. 'list objects in table' confusion, Florian Westphal
[PATCH nft] rule: allow src/dstnat prios in input and output, Florian Westphal
[iptables PATCH 1/4] *tables-restore: Enforce correct counters syntax if present,
Phil Sutter
[PATCH v2 net-next] dissector: Use 64bits for used_keys,
Ratheesh Kannoth
[syzbot] [netfilter?] WARNING in __nf_conntrack_confirm, syzbot
Netfilter -stable patches for 6.1.y,
Pablo Neira Ayuso
[PATCH 10/14] netfilter: Update to register_net_sysctl_sz,
Joel Granados
[PATCH -next] nf_conntrack: fix -Wunused-const-variable=,
Zhu Wang
[PATCH nft] netlink: delinearize: copy set keytype if needed, Florian Westphal
ulogd2 patch ping,
Jeremy Sowden
[PATCH 5.4 185/313] netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain, Greg Kroah-Hartman
[PATCH 5.4 188/313] netfilter: nf_tables: fix scheduling-while-atomic splat, Greg Kroah-Hartman
[PATCH 5.4 187/313] netfilter: nf_tables: unbind non-anonymous set if rule construction fails, Greg Kroah-Hartman
[PATCH 5.4 186/313] netfilter: nf_tables: reject unbound anonymous set before commit phase, Greg Kroah-Hartman
[PATCH 5.4 181/313] netfilter: add helper function to set up the nfnetlink header and use it, Greg Kroah-Hartman
[PATCH 5.4 179/313] netfilter: nf_tables: fix nat hook table deletion, Greg Kroah-Hartman
[PATCH 5.4 182/313] netfilter: nf_tables: use net_generic infra for transaction data, Greg Kroah-Hartman
[PATCH 5.4 183/313] netfilter: nf_tables: add rescheduling points during loop detection walks, Greg Kroah-Hartman
[PATCH 5.4 180/313] netfilter: nftables: add helper function to set the base sequence number, Greg Kroah-Hartman
[PATCH 5.4 184/313] netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE, Greg Kroah-Hartman
[PATCH 5.10 315/509] netfilter: nf_tables: fix chain binding transaction logic, Greg Kroah-Hartman
[PATCH 5.10 320/509] netfilter: nf_tables: drop map element references from preparation phase, Greg Kroah-Hartman
[PATCH 5.10 312/509] netfilter: nf_tables: use net_generic infra for transaction data, Greg Kroah-Hartman
[PATCH 5.10 321/509] netfilter: nf_tables: unbind non-anonymous set if rule construction fails, Greg Kroah-Hartman
[PATCH 5.10 317/509] netfilter: nf_tables: reject unbound anonymous set before commit phase, Greg Kroah-Hartman
[PATCH 5.10 322/509] netfilter: nf_tables: fix scheduling-while-atomic splat, Greg Kroah-Hartman
[PATCH 5.10 318/509] netfilter: nf_tables: reject unbound chain set before commit phase, Greg Kroah-Hartman
[PATCH 5.10 319/509] netfilter: nftables: rename set element data activation/deactivation functions, Greg Kroah-Hartman
[PATCH 5.10 316/509] netfilter: nf_tables: add NFT_TRANS_PREPARE_ERROR to deal with bound set/chain, Greg Kroah-Hartman
[PATCH 5.10 313/509] netfilter: nf_tables: add rescheduling points during loop detection walks, Greg Kroah-Hartman
[PATCH 5.10 314/509] netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE, Greg Kroah-Hartman
[PATCH netfilter] netfilter: nfnetlink_log: always add a timestamp,
Maciej Żenczykowski
Re: Kernel oops with 6.4.4 - flow offloads - NULL pointer deref,
Jakub Kicinski
[PATCH v3 net-next] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns,
Dust Li
[PATCH v2 net-next] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns,
Dust Li
[PATCH nf] netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID, Pablo Neira Ayuso
[PATCH nf,v2] netfilter: nf_tables: skip immediate deactivate in _PREPARE_ERROR, Pablo Neira Ayuso
[PATCH ipset] bash-completion: fix syntax error,
Jeremy Sowden
[PATCH bpf-next v6 0/5] Support defragmenting IPv(4|6) packets in BPF,
Daniel Xu
[iptables PATCH 1/2] nft: Special casing for among match in compare_matches(),
Phil Sutter
[PATCH bpf-next v5 0/5] Support defragmenting IPv(4|6) packets in BPF,
Daniel Xu
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]