Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH net-next v3 2/7] netfilter: flowtable: fixup UDP timeout depending on ct state, (continued)
- [PATCH net-next] netfilter: nf_tables: fix wrong pointer passed to PTR_ERR(),
Yang Yingliang
- [PATCH nf,v4 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection,
Pablo Neira Ayuso
- [PATCH net-next 0/9] Netfilter updates for net-next,
Florian Westphal
- [PATCH net-next 2/9] netfilter: conntrack: remove pr_debug calls, Florian Westphal
- [PATCH net-next 6/9] netfilter: nf_tables: add static key to skip retpoline workarounds, Florian Westphal
- [PATCH net-next 3/9] netfilter: conntrack: avoid reload of ct->status, Florian Westphal
- [PATCH net-next 4/9] netfilter: conntrack: move rcu read lock to nf_conntrack_find_get, Florian Westphal
- [PATCH net-next 5/9] netfilter: ip_tables: remove clusterip target, Florian Westphal
- [PATCH net-next 1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets, Florian Westphal
- [PATCH net-next 7/9] netfilter: nf_tables: avoid retpoline overhead for objref calls, Florian Westphal
- [PATCH net-next 8/9] netfilter: nf_tables: avoid retpoline overhead for some ct expression calls, Florian Westphal
- [PATCH net-next 9/9] netfilter: nf_tables: add support to destroy operation, Florian Westphal
- <Possible follow-ups>
- [PATCH net-next 0/9] Netfilter updates for net-next, Florian Westphal
- [PATCH net-next 0/9] Netfilter updates for net-next, Florian Westphal
- [PATCH net-next 0/9] Netfilter updates for net-next, Florian Westphal
- [PATCH net-next 0/9] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH v3 0/4] sctp conntrack fixes,
Sriram Yagnaraman
- [PATCH v2 0/4] sctp conntrack fixes,
Sriram Yagnaraman
- [PATCH 1/2 nf,v3] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection,
Pablo Neira Ayuso
- [PATCH net 0/1] Netfilter fixes for net,
Pablo Neira Ayuso
- [nft PATCH v4] Implement 'reset rule' and 'reset rules' commands,
Phil Sutter
- [iptables PATCH] etc: Drop xtables.conf,
Phil Sutter
- [PATCH v2 6.1] netfilter: Null pointer dereference in nf_tables_updobj,
Alok Tiwari
- [nft PATCH v3] Implement 'reset rule' and 'reset rules' commands, Phil Sutter
- [PATCH 6.1] netfilter: Null pointer dereference in nf_tables_updobj,
Alok Tiwari
- [PATCH nf,v2 1/2] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection,
Pablo Neira Ayuso
- Proposal: Set nf_conn->tuplehash[IP_CT_DIR_REPLY] to the inverted address of packet when it is confirmed, Christian Worm Mortensen
- [PATCH 0/3] sctp conntrack fixes,
Sriram Yagnaraman
- [PATCH v9 00/12] Network support for Landlock,
Konstantin Meskhidze
- [PATCH v9 02/12] landlock: Allow filesystem layout changes for domains without such rule type, Konstantin Meskhidze
- [PATCH v9 01/12] landlock: Make ruleset's access masks more generic, Konstantin Meskhidze
- [PATCH v9 09/12] selftests/landlock: Share enforce_ruleset(), Konstantin Meskhidze
- [PATCH v9 07/12] landlock: Refactor landlock_add_rule() syscall, Konstantin Meskhidze
- [PATCH v9 04/12] landlock: Refactor merge/inherit_ruleset functions, Konstantin Meskhidze
- [PATCH v9 11/12] samples/landlock: Add network demo, Konstantin Meskhidze
- [PATCH v9 03/12] landlock: Refactor landlock_find_rule/insert_rule, Konstantin Meskhidze
- [PATCH v9 10/12] selftests/landlock: Add 10 new test suites dedicated to network, Konstantin Meskhidze
- [PATCH v9 06/12] landlock: Refactor _unmask_layers() and _init_layer_masks(), Konstantin Meskhidze
- [PATCH v9 12/12] landlock: Document Landlock's network support, Konstantin Meskhidze
- [PATCH v9 08/12] landlock: Add network rules and TCP hooks support, Konstantin Meskhidze
- [PATCH v9 05/12] landlock: Move and rename umask_layers() and init_layer_masks(), Konstantin Meskhidze
- Re: [PATCH v9 00/12] Network support for Landlock, Günther Noack
- [PATCH nft] tests: shell: extend runtime set element automerge to cover partial deletions, Pablo Neira Ayuso
- [PATCH nf 0/2] nf_tables rbtree fixes,
Pablo Neira Ayuso
- [iptables PATCH] iptables-test.py: make explicit use of python3, Arturo Borrero Gonzalez
- [PATCH libnetfilter_queue] build: doc: Fix doxygen obsolete option warning, Duncan Roe
- [PATCH libnetfilter_log] build: doc: Fix doxygen obsolete option warning, Duncan Roe
- [PATCH net-next v2 0/7] Allow offloading of UDP NEW connections via act_ct,
Vlad Buslov
- 6.1: possible bug with netfilter conntrack?,
Russell King (Oracle)
- [PATCH] build: put xtables.conf in EXTRA_DIST,
Jan Engelhardt
- [PATCH nft] intervals: restrict check missing elements fix to sets with no auto-merge, Pablo Neira Ayuso
- [nft PATCH 0/5] Fix some covscan findings,
Phil Sutter
- [nft PATCH v2] Implement 'reset rule' and 'reset rules' commands,
Phil Sutter
- [iptables PATCH] extensions: NAT: Fix for -Werror=format-security,
Phil Sutter
- [ANNOUNCE] iptables 1.8.9 release,
Phil Sutter
- [PATCH net] uapi: linux: restore IPPROTO_MAX to 256,
Pablo Neira Ayuso
- [PATCH libnetfilter_conntrack] conntrack: add sanity check to netlink socket filter API, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_payload: incorrect arithmetics when rebuiling VLAN header, Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: handle tcp challenge acks during connection reuse, Florian Westphal
- [PATCH v4] netfilter: conntrack: simplify sctp state machine,
Sriram Yagnaraman
- build failure since commit 'xt: Rewrite unsupported compat expression dumping',
Neels Hofmeyr
- [iptables PATCH] Makefile: Replace brace expansion,
Phil Sutter
- [PATCH net-next v1 0/7] Allow offloading of UDP NEW connections via act_ct,
Vlad Buslov
- [RFC PATCH v3] netfilter: conntrack: simplify sctp state machine,
Sriram Yagnaraman
- [no subject], Gavrilov Ilia
- [PATCH] netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.,
Gavrilov Ilia
- [PATCH libnetfilter_conntrack 1/1] conntrack: Allow setting of netlink buffer size,
William Blough
- [nft] src: allow for updating devices on existing netdev chain - Test result,
Martin Zaharinov
- [PATCH nft] src: allow for updating devices on existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v2 1/4] netfilter: nf_tables: rename function to destroy hook list,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: remove clusterip target, Florian Westphal
- [RFC PATCH v2] netfilter: conntrack: simplify sctp state machine,
Sriram Yagnaraman
- [PATCH nf] selftests: netfilter: fix transaction test script timeout handling,
Florian Westphal
- [RFC PATCH] netfilter: conntrack: simplify sctp state machine,
Sriram Yagnaraman
- [PATCH nft] optimize: payload expression requires inner_desc comparison, Pablo Neira Ayuso
- [PATCH net-next 04/14] netlink: add macro for checking dump ctx size,
Jakub Kicinski
- [PATCH nf-next,v1 1/3] netfilter: nf_tables: rename function to destroy hook list,
Pablo Neira Ayuso
- [PATCH nft,v1] src: allow for updating devices on existing netdev chain, Pablo Neira Ayuso
- [PATCH libnftnl] chain: relax logic to build NFTA_CHAIN_HOOK, Pablo Neira Ayuso
- [PATCH nf-next 0/3] netfilter: nf_tables: extend retpoline workarounds,
Florian Westphal
- [PATCH nf-next v5] netfilter: nf_tables: add support to destroy operation, Fernando Fernandez Mancera
- [PATCH nft v6] src: add support to command "destroy",
Fernando Fernandez Mancera
- [PATCH nf-next v4] netfilter: nf_tables: add support to destroy operation, Fernando Fernandez Mancera
- [PATCH] pcap: prevent crashes when output `FILE *` is null,
Jeremy Sowden
- [PATCH nf-next 0/3] netfilter: conntrack: cleanups,
Florian Westphal
- [ANNOUNCE] ipset 7.17 released, Jozsef Kadlecsik
- [PATCH xtables-addons 0/3] Add Linux 6.2 Support,
Jeremy Sowden
- [PATCH libmnl v2] doc: fix some non-native English usages, Jeremy Sowden
- [PATCH libmnl] doc: fix some non-native English usages,
Jeremy Sowden
- [PATCH libnetfilter_conntrack 1/2] conntrack: fix BPF code for filtering on big-endian architectures,
Jeremy Sowden
- [libnetfilter_conntrack PATCH] conntrack: increase the length of `l4proto_map`,
Jeremy Sowden
- ipset bug (kernel hang),
Марк Коренберг
- "nft list hooks" in older kernels?, Simon Kirby
- [iptables PATCH 1/3] gitignore: Ignore utils/nfsynproxy,
Phil Sutter
- [iptables PATCH] nft: Reject tcp/udp extension without proper protocol match,
Phil Sutter
- [PATCH nft 1/2,v2] evaluate: fix shift exponent underflow in concatenation evaluation,
Pablo Neira Ayuso
- [PATCH nft] evaluate: fix shift exponent underflow in concatenation evaluation, Pablo Neira Ayuso
- [PATCH nf 4/4,v6] netfilter: nf_tables: honor set timeout and garbage collection updates, Pablo Neira Ayuso
- [ANNOUNCE] nftables 1.0.6 release,
Pablo Neira Ayuso
- [PATCH nft] owner: Fix potential array out of bounds access,
Pablo Neira Ayuso
- [PATCH nf,v5 1/4] netfilter: nf_tables: consolidate set description,
Pablo Neira Ayuso
- [nf-next PATCH v2] netfilter: nf_tables: Introduce NFTA_RULE_ACTUAL_EXPR,
Phil Sutter
- [PATCH] treewide: Convert del_timer*() to timer_shutdown*(),
Steven Rostedt
- [PATCH nf,v4 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates, Pablo Neira Ayuso
- [conntrack-tools PATCH 0/4] Fix some minor bugs,
Phil Sutter
- [PATCH nf,v3 4/4] netfilter: nf_tables: honor set timeout and garbage collection updates, Pablo Neira Ayuso
- [PATCH nf,v2 0/4] nf_tables: set updates type check,
Pablo Neira Ayuso
- [PATCH nf,v1] netfilter: nf_tables: perform type checking for existing sets,
Pablo Neira Ayuso
- [PATCH nft] scanner: treat invalid octal strings as strings,
Jeremy Sowden
- repeated nft set add ignores changed parameters, Florian Westphal
- [PATCH nf-next] netfilter: conntrack: move rcu read lock to nf_conntrack_find_get, Florian Westphal
- [nf-next PATCH] netfilter: nf_tables: Introduce NFTA_RULE_ALT_EXPRESSIONS,
Phil Sutter
- [PATCH] ipvs: use div_s64 for signed division,
Arnd Bergmann
- [iptables PATCH 0/4] Make rule parsing strict,
Phil Sutter
- [PATCH nf] netfilter: conntrack: fix ipv6 exthdr error check,
Florian Westphal
- [RFC net-next 05/15] netlink: add macro for checking dump ctx size, Jakub Kicinski
- [PATCH net 0/3] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH nft] doc: add/update can be used with maps too, Florian Westphal
- [PATCH net-next] ipvs: fix type warning in do_div() on 32 bit,
Jakub Kicinski
- [PATCH] ipvs: use u64 to silence do_div warnings, Julian Anastasov
- [PATCH] netfilter: conntrack: document sctp timeouts,
Sriram Yagnaraman
- [PATCH nft 0/3] fix map update with concatenation and timeouts,
Florian Westphal
- [PATCH nft] evaluate: fix compilation warning, Pablo Neira Ayuso
- [PATCH ulogd2] build: fix pgsql fall-back configuration of CFLAGS,
Jeremy Sowden
- [PATCH net-next 00/12] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 01/12] netfilter: nft_inner: fix IS_ERR() vs NULL check, Pablo Neira Ayuso
- [PATCH net-next 03/12] netfilter: conntrack: merge ipv4+ipv6 confirm functions, Pablo Neira Ayuso
- [PATCH net-next 02/12] netfilter: conntrack: add sctp DATA_SENT state, Pablo Neira Ayuso
- [PATCH net-next 04/12] netfilter: ipset: Add support for new bitmask parameter, Pablo Neira Ayuso
- [PATCH net-next 06/12] netfilter: flowtable: add a 'default' case to flowtable datapath, Pablo Neira Ayuso
- [PATCH net-next 05/12] netfilter: conntrack: set icmpv6 redirects as RELATED, Pablo Neira Ayuso
- [PATCH net-next 08/12] ipvs: use common functions for stats allocation, Pablo Neira Ayuso
- [PATCH net-next 07/12] ipvs: add rcu protection to stats, Pablo Neira Ayuso
- [PATCH net-next 11/12] ipvs: add est_cpulist and est_nice sysctl vars, Pablo Neira Ayuso
- [PATCH net-next 09/12] ipvs: use u64_stats_t for the per-cpu counters, Pablo Neira Ayuso
- [PATCH net-next 12/12] ipvs: run_estimation should control the kthread tasks, Pablo Neira Ayuso
- [PATCH net-next 10/12] ipvs: use kthreads for stats estimation, Pablo Neira Ayuso
- [PATCH nft] scanner: match full comment line in case of tie, Pablo Neira Ayuso
- [PATCH nft 1/3] netlink: statify __netlink_gen_data(),
Pablo Neira Ayuso
- [PATCH ulogd2 v2] src: keep IPv4 addresses internally in IPv4-in-IPv6 format, Jeremy Sowden
- [iptables PATCH v2 00/11] Support 'make dist' and 'make check',
Phil Sutter
- [iptables PATCH v2 08/11] Makefile: Generate .tar.xz archive with 'make dist', Phil Sutter
- [iptables PATCH v2 07/11] Makefile: Fix for 'make distcheck', Phil Sutter
- [iptables PATCH v2 02/11] Drop libiptc/linux_stddef.h, Phil Sutter
- [iptables PATCH v2 03/11] Makefile: Generate ip6tables man pages on the fly, Phil Sutter
- [iptables PATCH v2 04/11] extensions: Makefile: Merge initext targets, Phil Sutter
- [iptables PATCH v2 05/11] iptables/Makefile: Reorg variable assignments, Phil Sutter
- [iptables PATCH v2 06/11] iptables/Makefile: Split nft-variant man page list, Phil Sutter
- [iptables PATCH v2 10/11] tests: Adjust testsuite return codes to automake guidelines, Phil Sutter
- [iptables PATCH v2 11/11] Makefile.am: Integrate testsuites, Phil Sutter
- [iptables PATCH v2 01/11] Drop INCOMPATIBILITIES file, Phil Sutter
- [iptables PATCH v2 09/11] include/Makefile: xtables-version.h is generated, Phil Sutter
- Re: [iptables PATCH v2 00/11] Support 'make dist' and 'make check', Phil Sutter
- [PATCH net] netfilter: flowtable: really fix NAT IPv6 offload,
Qingfang DENG
- [PATCH nft,v2] scanner: handle files with CRLF line terminators,
Pablo Neira Ayuso
- [PATCH nft] evaluate: do not crash on runaway number of concatenation components,
Pablo Neira Ayuso
- [PATCH nft 2/2,v2] netlink: swap byteorder of value component in concatenation of intervals,
Pablo Neira Ayuso
- [iptables PATCH] Makefile: Create LZMA-compressed dist-files,
Phil Sutter
- [ulogd PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [ipset PATCH] Makefile: Create LZMA-compressed dist-files,
Phil Sutter
- [nfacct PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libmnl PATCH] Makefile: Create LZMA-compressed dist-files,
Phil Sutter
- [libnetfilter_cthelper PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [conntrack-tools PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnetfilter_cttimeout PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnetfilter_conntrack PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnetfilter_queue PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnetfilter_log PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnetfilter_acct PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnfnetlink PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [libnftnl PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [nft PATCH] Makefile: Create LZMA-compressed dist-files, Phil Sutter
- [PATCH nft 1/2] tests: py: missing json for different byteorder selector with interval concatenation,
Pablo Neira Ayuso
- [PATCH nft] scanner: handle files with CRLF line terminators, Pablo Neira Ayuso
- [iptables PATCH 00/11] Support 'make dist' and 'make check',
Phil Sutter
- [iptables PATCH 02/11] Drop libiptc/linux_stddef.h, Phil Sutter
- [iptables PATCH 08/11] Makefile: Generate .tar.bz2 archive with 'make dist', Phil Sutter
- [iptables PATCH 10/11] tests: Adjust testsuite return codes to automake guidelines, Phil Sutter
- [iptables PATCH 05/11] iptables/Makefile: Reorg variable assignments, Phil Sutter
- [iptables PATCH 07/11] Makefile: Fix for 'make distcheck', Phil Sutter
- [iptables PATCH 06/11] iptables/Makefile: Split nft-variant man page list, Phil Sutter
- [iptables PATCH 03/11] Makefile: Generate ip6tables man pages on the fly, Phil Sutter
- [iptables PATCH 04/11] extensions: Makefile: Merge initext targets, Phil Sutter
- [iptables PATCH 09/11] include/Makefile: xtables-version.h is generated, Phil Sutter
- [iptables PATCH 01/11] Drop INCOMPATIBILITIES file, Phil Sutter
- [iptables PATCH 11/11] Makefile.am: Integrate testsuites, Phil Sutter
- [PATCH nft] src: Add GPLv2+ header to .c files of recent creation,
Pablo Neira Ayuso
- [PATCH nft,v2] scanner: munch full comment lines, Pablo Neira Ayuso
- [PATCH nft] doc: statements: fwd supports for sending packets via neighbouring layer,
Pablo Neira Ayuso
- [PATCH] doc/payload-expression.txt: Mention that 'ih' exists,
Harald Welte
- [PATCH ulogd2 0/4] Some bug-fixes,
Jeremy Sowden
- [PATCH] netfilter: nfnetlink: check 'skb->dev' pointer in nfulnl_log_packet(),
Li Qiong
- [PATCH] netfilter: initialize 'ret' variable,
Li Qiong
- [PATCH] json: fix 'add flowtable' command,
Alex Forster
- [PATCH] ipvs: initialize 'ret' variable in do_ip_vs_set_ctl(),
Li Qiong
- [linux-next:master] BUILD REGRESSION 2934ceb4e967b9233d0f97732e47175574a11406, kernel test robot
- [iptables PATCH 0/7] tests: xlate: generic.txlate to pass replay test,
Phil Sutter
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]