Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH mm] mm: fix BUG with kvzalloc+GFP_ATOMIC, (continued)
- [iptables PATCH] tests: shell: Test delinearization of native nftables expressions,
Phil Sutter
- [PATCH iptables-nft] nft: un-break among match with concatenation, Florian Westphal
- [PATCH] doc, src: make some spelling and grammatical improvements, Jeremy Sowden
- Bug Report Flowtable NFT with kernel 5.19.9,
Martin Zaharinov
- [PATCH v3 bpf-next 0/3] Introduce bpf_ct_set_nat_info kfunc helper,
Lorenzo Bianconi
- [nf PATCH v2] netfilter: nft_fib: Fix for rpath check with VRF devices, Phil Sutter
- [PATCH net-next 0/4] netfilter patches for net-next,
Florian Westphal
- [PATCH net 0/5] netfilter: bugfixes for net,
Florian Westphal
- [nf PATCH] netfilter: nft_fib: Fix for rpath check with VRF devices,
Phil Sutter
- [PATCH nf] netfilter: nf_ct_ftp: fix deadlock when nat rewrite is needed, Florian Westphal
- [PATCH bpf-next v3 0/3] bpf: Small nf_conn cleanups,
Daniel Xu
- Question for table netdev set list,
Martin Zaharinov
- [PATCH nft] evaluate: un-break rule insert with intervals,
Florian Westphal
- [syzbot] memory leak in do_replace,
syzbot
- [PATCH iptables-nft] iptables-nft: must withdraw PAYLOAD flag after parsing,
Florian Westphal
- [PATCH bpf-next v2 0/3] bpf: Small nf_conn cleanups,
Daniel Xu
- ox16: First Workshop, Mini Netfilter workshop, Jamal Hadi Salim
- [PATCH nft 0/2] Fix listing of sets containing unclosed address prefix intervals,
Jeremy Sowden
- [PATCH nft] tests: py: fix payloads for sets with user data,
Jeremy Sowden
- [syzbot] WARNING: locking bug in tee_netdev_event,
syzbot
- [PATCH nft,RFC] src: add vxlan matching support, Pablo Neira Ayuso
- [PATCH libnftnl,RFC] expr: add inner support, Pablo Neira Ayuso
- [PATCH nf-next,RFC 0/1] nf_tables inner match support,
Pablo Neira Ayuso
- [PATCH nf 0/2] netfilter: conntrack: fix the gc rescheduling delay,
Antoine Tenart
- [PATCH] netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain(),
Tetsuo Handa
- [PATCH] netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain(),
Tetsuo Handa
- [PATCH 1/3 nft] py: extend python API to support libnftables API,
Fernando Fernandez Mancera
- [PATCH iptables-nft 1/2] nft: support ttl/hoplimit dissection,
Florian Westphal
- [PATCH bpf-next] bpf: Move nf_conn extern declarations to filter.h,
Daniel Xu
- [PATCH] headers: Remove some left-over license text in include/uapi/linux/netfilter/, Christophe JAILLET
- [PATCH nft] json: add stateful object comment support,
Fernando Fernandez Mancera
- [PATCH nft] json: add secmark object reference support,
Fernando Fernandez Mancera
- removing conntrack helper toggle to enable auto-assignment [was Re: b118509076b3 (probably) breaks my firewall],
Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: remove nf_conntrack_helper documentation, Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: remove nf_conntrack_helper, Pablo Neira Ayuso
- [PATCH net-next] netfilter: rpfilter: Remove unused variable 'ret'., Guillaume Nault
- [PATCH iptables-nft 0/3] nft: prefer meta pkttype to libxt_pkttype,
Florian Westphal
- [PATCH net 0/4] netfilter: bugfixes for net,
Florian Westphal
- [PATCH v2 bpf-next] selftests/bpf: fix ct status check in bpf_nf selftests,
Lorenzo Bianconi
- [PATCH bpf-next v5 0/6] Support direct writes to nf_conn:mark,
Daniel Xu
- [PATCH net-next 0/8] netfilter: patches for net-next,
Florian Westphal
- [PATCH bpf-next] selftests/bpf: fix ct status check in bpf_nf selftests,
Lorenzo Bianconi
- [PATCH nf] netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find(), Pablo Neira Ayuso
- [PATCH nf-next 0/2] netfilter: nat: avoid long-running loops,
Florian Westphal
- [PATCH nf] selftests: nft_concat_range: add socat support, Florian Westphal
- [PATCH v2 nf] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers, Florian Westphal
- [PATCH v2 bpf-next 0/4] Introduce bpf_ct_set_nat_info kfunc helper,
Lorenzo Bianconi
- [PATCH net-next 0/2] netlink: add range checks for network byte integers,
Florian Westphal
- [PATCH nft v2] json: fix empty statement list output in sets and maps,
Fernando Fernandez Mancera
- [PATCH nft] json: fix empty statement list output in sets and maps, Fernando Fernandez Mancera
- CPE-ID?,
Nick
- [PATCH v4] netlink: Bounds-check struct nlmsgerr creation,
Kees Cook
- [PATCH nft] json: fix json schema version verification,
Fernando Fernandez Mancera
- [PATCH nft] json: add table map statement support,
Fernando Fernandez Mancera
- [PATCH bpf-next 0/4] Introduce bpf_ct_set_nat_info kfunc helper,
Lorenzo Bianconi
- [PATCH nftables] rule: check address family in set collapse,
Derek Hageman
- [PATCH nft v2] json: add set statement list support,
Fernando Fernandez Mancera
- [PATCH v3] netlink: Bounds-check struct nlmsgerr creation,
Kees Cook
- [PATCH net 0/4] netfilter: bug fixes for net,
Florian Westphal
- [PATCH v2] netlink: Bounds-check struct nlmsgerr creation,
Kees Cook
- [PATCH 0/2] netlink: Bounds-check struct nlmsgerr creation,
Kees Cook
- [ANNOUNCE] 17th Netfilter Workshop in Seville, Spain,
Pablo Neira Ayuso
- [PATCH nft] tests/py: missing userdata in netlink payload, Pablo Neira Ayuso
- [PATCH libnftnl] rule, set_elem: remove trailing \n in userdata snprintf, Pablo Neira Ayuso
- [PATCH nft] json: add set statement list support,
Fernando Fernandez Mancera
- [PATCH nf] netfilter: nf_tables: clean up hook list when offload flags check fails, Pablo Neira Ayuso
- [conntrack-tools PATCH] local: Avoid sockaddr_un::sun_path buffer overflow, Phil Sutter
- [PATCH nf-next] netfilter: nf_tables: add ebpf expression,
Florian Westphal
- [PATCH bridge, v3] br_netfilter: Drop dst references before setting.,
Harsh Modi
- [PATCH AUTOSEL 5.15 15/23] netfilter: conntrack: work around exceeded receive window, Sasha Levin
- [PATCH AUTOSEL 5.19 21/33] netfilter: conntrack: work around exceeded receive window, Sasha Levin
- [PATCH nft] src: allow burst 0 for byte ratelimit and use it as default,
Pablo Neira Ayuso
- [PATCH nf,v3] netfilter: remove nf_conntrack_helper sysctl and modparam toggles, Pablo Neira Ayuso
- [nft PATCH] doc: nft.8: Add missing '-T' in synopsis, Phil Sutter
- [nft PATCH] erec: Dump locations' expressions only if set, Phil Sutter
- [PATCH nf,v2] netfilter: remove nf_conntrack_helper sysctl and modparam toggles, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: check offload flags before splicing hook list, Pablo Neira Ayuso
- [syzbot] memory leak in nft_chain_parse_hook, syzbot
- [PATCH v7 00/18] Network support for Landlock,
Konstantin Meskhidze
- [PATCH v7 02/18] landlock: refactor landlock_find_rule/insert_rule, Konstantin Meskhidze
- [PATCH v7 03/18] landlock: refactor merge/inherit_ruleset functions, Konstantin Meskhidze
- [PATCH v7 07/18] landlock: user space API network support, Konstantin Meskhidze
- [PATCH v7 06/18] landlock: refactor landlock_add_rule syscall, Konstantin Meskhidze
- [PATCH v7 01/18] landlock: rename access mask, Konstantin Meskhidze
- [PATCH v7 05/18] landlock: refactor helper functions, Konstantin Meskhidze
- [PATCH v7 04/18] landlock: move helper functions, Konstantin Meskhidze
- [PATCH v7 09/18] landlock: implement TCP network hooks, Konstantin Meskhidze
- [PATCH v7 10/18] seltests/landlock: move helper function, Konstantin Meskhidze
- [PATCH v7 11/18] seltests/landlock: add tests for bind() hooks, Konstantin Meskhidze
- [PATCH v7 14/18] seltests/landlock: add rules overlapping test, Konstantin Meskhidze
- [PATCH v7 13/18] seltests/landlock: add AF_UNSPEC family test, Konstantin Meskhidze
- [PATCH v7 12/18] seltests/landlock: add tests for connect() hooks, Konstantin Meskhidze
- [PATCH v7 08/18] landlock: add network rules support, Konstantin Meskhidze
- [PATCH v7 18/18] landlock: Document Landlock's network support, Konstantin Meskhidze
- [PATCH v7 17/18] samples/landlock: add network demo, Konstantin Meskhidze
- [PATCH v7 15/18] seltests/landlock: add ruleset expanding test, Konstantin Meskhidze
- [PATCH v7 16/18] seltests/landlock: add invalid input data test, Konstantin Meskhidze
- [PATCH nft,v2] optimize: expand implicit set element when merging into concatenation, Pablo Neira Ayuso
- [PATCH 1/4] net-next: frags: move inetpeer from ip4 to inet, Richard Gobert
- [PATCH 4/4] net-next: frags: dynamic timeout under load,
Richard Gobert
- [PATCH 3/4] net-next: frags: add inetpeer frag_mem tracking,
Richard Gobert
- [PATCH 2/4] net-next: ip6: fetch inetpeer in ip6frag_init,
Richard Gobert
- [PATCH 0/4] net-next: frags: add adaptive per-peer timeout under load, Richard Gobert
- [PATCH libnftnl] rule, set_elem: fix printing of user data,
Jeremy Sowden
- [iptables PATCH] nft: Expand extended error reporting to nft_cmd, too, Phil Sutter
- [PATCH v2 nf-next 0/4] netfilter: conntrack: ignore overly delayed tcp packets,
Florian Westphal
- [nft PATCH] doc: nft.8: Extend limit statement's burst value info,
Phil Sutter
- [PATCH nf] netfilter: remove nf_conntrack_helper sysctl toggle,
Pablo Neira Ayuso
- [PATCH 1/2] netfilter: nf_conntrack_irc: Tighten matching on DCC message,
David Leadbeater
- [iptables PATCH] xtables-restore: Extend failure error message, Phil Sutter
- [PATCH AUTOSEL 4.14 3/4] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 4.9 2/3] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 4.19 4/5] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 5.4 6/8] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 5.10 09/11] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 5.15 15/20] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH AUTOSEL 5.19 31/38] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Sasha Levin
- [PATCH net-next] genetlink: start to validate reserved header bytes,
Jakub Kicinski
- [PATCH net 00/14] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH net 01/14] netfilter: ebtables: reject blobs that don't provide all entry points, Pablo Neira Ayuso
- [PATCH net 02/14] netfilter: conntrack: work around exceeded receive window, Pablo Neira Ayuso
- [PATCH net 03/14] netfilter: nft_tproxy: restrict to prerouting hook, Pablo Neira Ayuso
- [PATCH net 06/14] netfilter: nft_payload: report ERANGE for too long offset and length, Pablo Neira Ayuso
- [PATCH net 05/14] netfilter: nf_tables: make table handle allocation per-netns friendly, Pablo Neira Ayuso
- [PATCH net 07/14] netfilter: nft_payload: do not truncate csum_offset and csum_type, Pablo Neira Ayuso
- [PATCH net 10/14] netfilter: nft_tunnel: restrict it to netdev family, Pablo Neira Ayuso
- [PATCH net 14/14] netfilter: nf_defrag_ipv6: allow nf_conntrack_frag6_high_thresh increases, Pablo Neira Ayuso
- [PATCH net 08/14] netfilter: nf_tables: do not leave chain stats enabled on error, Pablo Neira Ayuso
- [PATCH net 11/14] netfilter: nf_tables: disallow binding to already bound chain, Pablo Neira Ayuso
- [PATCH net 09/14] netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families, Pablo Neira Ayuso
- [PATCH net 04/14] netfilter: nf_tables: disallow updates of implicit chain, Pablo Neira Ayuso
- [PATCH net 13/14] netfilter: flowtable: fix stuck flows on cleanup due to pending work, Pablo Neira Ayuso
- [PATCH net 12/14] netfilter: flowtable: add function to invoke garbage collection immediately, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net 00/14] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 01/14] netfilter: nf_tables: reject invalid set policy, Pablo Neira Ayuso
- [PATCH net 02/14] netfilter: nf_tables: validate .maxattr at expression registration, Pablo Neira Ayuso
- [PATCH net 03/14] netfilter: nf_tables: bail out if stateful expression provides no .clone, Pablo Neira Ayuso
- [PATCH net 04/14] netfilter: nft_limit: do not ignore unsupported flags, Pablo Neira Ayuso
- [PATCH net 06/14] netfilter: nf_queue: remove excess nf_bridge variable, Pablo Neira Ayuso
- [PATCH net 05/14] netfilter: nfnetlink_log: use proper helper for fetching physinif, Pablo Neira Ayuso
- [PATCH net 09/14] netfilter: nf_tables: check if catch-all set element is active in next generation, Pablo Neira Ayuso
- [PATCH net 10/14] netfilter: nf_tables: do not allow mismatch field size and set key length, Pablo Neira Ayuso
- [PATCH net 07/14] netfilter: propagate net to nf_bridge_get_physindev, Pablo Neira Ayuso
- [PATCH net 08/14] netfilter: bridge: replace physindev with physinif in nf_bridge_info, Pablo Neira Ayuso
- [PATCH net 12/14] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description, Pablo Neira Ayuso
- [PATCH net 11/14] netfilter: nf_tables: skip dead set elements in netlink dump, Pablo Neira Ayuso
- [PATCH net 14/14] netfilter: ipset: fix performance regression in swap operation, Pablo Neira Ayuso
- [PATCH net 13/14] ipvs: avoid stat macros calls from preemptible context, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_defrag_ipv6: allow nf_conntrack_frag6_high_thresh increases,
Eric Dumazet
- [PATCH nft] expr: update EXPR_MAX and add missing comments, Florian Westphal
- [PATCH] br_netfilter: Drop dst references before setting.,
Harsh Modi
- [PATCH nf 1/2] netfilter: flowtable: add function to invoke garbage collection immediately,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: disallow binding to already bound chain, Pablo Neira Ayuso
- [PATCH bpf-next v4 0/5] Support direct writes to nf_conn:mark,
Daniel Xu
- [PATCH nf-next] netfilter: remove NFPROTO_DECNET,
Florian Westphal
- [PATCH nf,v3 2/2] netfilter: nft_payload: do not truncate csum_offset and csum_type, Pablo Neira Ayuso
- [PATCH nf 1/3] netfilter: nft_dup: validate family and chains,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: do not leave chain stats enabled on error, Pablo Neira Ayuso
- [PATCH nf,v2 1/2] netfilter: nft_payload: report ERANGE for too long offset and length,
Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nft_dup: validate family and chains, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_dup: validate family and chains,
Pablo Neira Ayuso
- [PATCH nf 1/2] netfilter: nft_payload: report ERANGE for too long offset and length,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: make table handle allocation per-netns friendly,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: disallow updates of implicit chain, Pablo Neira Ayuso
- [BUG] nft_tproxy: Null pointer dereference on local-send UDP,
Shell Chen
[PATCH] netfilter: ebtables: fix a NULL pointer dereference in ebt_do_table(),
Harshit Mogalapalli
[PATCH bpf-next v3 0/5] Support direct writes to nf_conn:mark,
Daniel Xu
[PATCH 5.10 283/545] netfilter: xtables: Bring SPDX identifier back, Greg Kroah-Hartman
Re: data-race in nf_tables_newtable / nf_tables_newtable,
Florian Westphal
Re: Raw payload matching beyond 2040 bits, Florian Westphal
[PATCH nft v3] src: Don't parse string as verdict in map, Xiao Liang
[PATCH nft v2] src: Don't parse string as verdict in map, Xiao Liang
[PATCH nf] netfilter: conntrack: work around exceeded receive window, Florian Westphal
[PATCH] netfilter: move from strlcpy with unused retval to strscpy,
Wolfram Sang
[PATCH] bridge: move from strlcpy with unused retval to strscpy,
Wolfram Sang
[PATCH nft] src: Don't parse string as verdict in map,
Xiao Liang
[PATCH net 1/1] netfilter: flowtable: Fix use after free after freeing flow table,
Paul Blakey
[PATCH net-next] Remove DECnet support from kernel,
Stephen Hemminger
[PATCH bpf-next v2 4/4] selftests/bpf: Add tests for writing to nf_conn:mark,
Daniel Xu
[PATCH bpf-next v2 2/4] bpf: Add stub for btf_struct_access(),
Daniel Xu
[PATCH bpf-next v2 1/4] bpf: Remove duplicate PTR_TO_BTF_ID RO check,
Daniel Xu
[PATCH bpf-next v2 3/4] bpf: Add support for writing to nf_conn:mark,
Daniel Xu
[PATCH bpf-next v2 0/4] Support direct writes to nf_conn:mark, Daniel Xu
[PATCH net 00/17] netfilter: conntrack and nf_tables bug fixes,
Florian Westphal
- [PATCH net 03/17] netfilter: nf_tables: possible module reference underflow in error path, Florian Westphal
- [PATCH net 05/17] netfilter: nf_ct_h323: cap packet size at 64k, Florian Westphal
- [PATCH net 01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access, Florian Westphal
- [PATCH net 04/17] netfilter: nf_ct_sane: remove pseudo skb linearization, Florian Westphal
- [PATCH net 02/17] netfilter: nf_tables: disallow NFTA_SET_ELEM_KEY_END with NFT_SET_ELEM_INTERVAL_END flag, Florian Westphal
- [PATCH net 08/17] netfilter: nf_tables: fix scheduling-while-atomic splat, Florian Westphal
- [PATCH net 09/17] netfilter: nfnetlink: re-enable conntrack expectation events, Florian Westphal
- [PATCH net 10/17] netfilter: nf_tables: really skip inactive sets when allocating name, Florian Westphal
- [PATCH net 07/17] netfilter: nf_ct_irc: cap packet search space to 4k, Florian Westphal
- [PATCH net 06/17] netfilter: nf_ct_ftp: prefer skb_linearize, Florian Westphal
- [PATCH net 11/17] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag, Florian Westphal
- [PATCH net 12/17] netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags, Florian Westphal
- [PATCH net 13/17] netfilter: nf_tables: disallow NFT_SET_ELEM_CATCHALL and NFT_SET_ELEM_INTERVAL_END, Florian Westphal
- [PATCH net 14/17] netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified, Florian Westphal
- [PATCH net 15/17] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y, Florian Westphal
- [PATCH net 17/17] testing: selftests: nft_flowtable.sh: rework test to detect offload failure, Florian Westphal
- [PATCH net 16/17] testing: selftests: nft_flowtable.sh: use random netns names, Florian Westphal
[PATCH nf 0/2] testing: selftests: nft_flowtable.sh: unbreak test script,
Florian Westphal
[PATCH 5.19 0617/1157] netfilter: xtables: Bring SPDX identifier back, Greg Kroah-Hartman
[PATCH 5.18 0573/1095] netfilter: xtables: Bring SPDX identifier back, Greg Kroah-Hartman
[PATCH bpf-next 0/3] Support direct writes to nf_conn:mark,
Daniel Xu
[PATCH 5.15 418/779] netfilter: xtables: Bring SPDX identifier back, Greg Kroah-Hartman
[PATCH nf,v2] netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified, Pablo Neira Ayuso
[PATCH nf,v4 2/2] netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags, Pablo Neira Ayuso
[PATCH] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y,
Geert Uytterhoeven
[PATCH nf,v3 2/2] netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: disallow NFT_SET_ELEM_CATCHALL and NFT_SET_ELEM_INTERVAL_END, Pablo Neira Ayuso
[PATCH nf,v2 2/2] netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags, Pablo Neira Ayuso
Re: [PATCH net 1/3] netfilter: nf_conntrack_tcp: re-init for syn packets only,
Thomas Backlund
[PATCH nf 1/2] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag,
Pablo Neira Ayuso
[RFC PATCH nf-next] netfilter: ipvs: Divide estimators into groups,
Jiri Wiesner
[PATCH bpf-next v4 0/3] Add more bpf_*_ct_lookup() selftests,
Daniel Xu
[PATCH] ipset-translate: allow invoking with a path name,
Quentin Armitage
[PATCH nf] netfilter: nf_tables: fix scheduling-while-atomic splat,
Florian Westphal
[PATCH nft] tests: shell: check for a tainted kernel, Florian Westphal
Re: Upgrading iptables firewall on Red Hat Enterprise Linux 9.0,
Phil Sutter
[PATCH nft] evaluate: allow implicit ether -> vlan dep, Florian Westphal
Re: [PATCH bpf-next v3 0/3] Add more bpf_*_ct_lookup() selftests,
Kumar Kartikeya Dwivedi
[PATCH nft 0/2] --optimize fixes,
Pablo Neira Ayuso
[ANNOUNCE] nftables 1.0.5 release,
Pablo Neira Ayuso
[ANNOUNCE] libnftnl 1.2.3 release, Pablo Neira Ayuso
[PATCH 1/3] netfilter: nf_tables: do not allow SET_ID to refer to another table,
Thadeu Lima de Souza Cascardo
[PATCH nf] netfilter: nf_tables: fix null deref due to zeroed list head,
Florian Westphal
[PATCH] netfilter: nf_tables: possible module reference underflow in error path,
Pablo Neira Ayuso
[PATCH nf 0/4] netfilter: conntrack: remove 64kb max size assumptions,
Florian Westphal
[PATCH nf] netfilter: nf_tables: disallow NFTA_SET_ELEM_KEY_END with NFT_SET_ELEM_INTERVAL_END flag, Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]