Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH net-next 1/3] netfilter: flowtable: Support GRE, (continued)
- [PATCH] netfilter: nat: limit port clash resolution attempts,
Vimal Agrawal
- [PATCH v32 18/28] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- [PATCH v32 16/28] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v32 15/28] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH v32 09/28] LSM: Use lsmblob in security_secid_to_secctx, Casey Schaufler
- [PATCH v32 08/28] LSM: Use lsmblob in security_secctx_to_secid, Casey Schaufler
- commit a504b703bb1da526a01593da0e4be2af9d9f5fa8 missing from 4.x LTS,
Vimal Agrawal
- [PATCH nf] netfilter: ctnetlink: disable helper autoassign,
Florian Westphal
- [PATCH nf-next] netfilter: nft_compat: suppress comment match,
Florian Westphal
- Re: PROBLEM: Injected conntrack lost helper,
Florian Westphal
- [PATCH nf] MAINTAINERS: netfilter: update git links, Florian Westphal
- [PATCH nf 1/2] netfilter: conntrack: move synack init code to helper,
Florian Westphal
- [PATCH nf] netfilter: nft_payload: don't allow th access for fragments,
Florian Westphal
- new iptables release?, First Mate Rummey
- [iptables PATCH 1/2] nft: Use verbose flag to toggle debug output,
Phil Sutter
- [PATCH nf] netfilter: conntrack: don't refresh sctp entries in closed state,
Florian Westphal
- [PATCH v2 nf-next] netfilter: exthdr: add support for tcp option removal,
Florian Westphal
- [PATCH 4.19.y] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments,
Florian Westphal
- [PATCH v3 net-next 0/7] net: use kfree_skb_reason() for ip/udp packet receive,
menglong8 . dong
- [PATCH nftables,v2] iface: handle EINTR case when creating the cache,
Pablo Neira Ayuso
- [PATCH nftables] iface: handle EINTR case when creating the cache, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: remove assignment with no effect in chain blob builder, Pablo Neira Ayuso
- [PATCH v2 net-next 0/8] net: use kfree_skb_reason() for ip/udp packet receive,
menglong8 . dong
- [conntrack-tools PATCH] Merge nfct tool into conntrackd, Phil Sutter
- [PATCH nftables 0/4] optimization updates,
Pablo Neira Ayuso
- [PATCH nf] selftests: nft_concat_range: add test for reload with no element add/del,
Florian Westphal
- [PATCH nf] netfilter: nft_byteorder: track register operations, Pablo Neira Ayuso
- [nf PATCH] netfilter: nft_reject_bridge: Fix for missing reply from prerouting,
Phil Sutter
- [PATCH iptables-nft 0/7] iptables: prefer native expressions for udp and tcp matches,
Florian Westphal
- [PATCH nf] selftests: netfilter: check stateless nat udp checksum fixup, Florian Westphal
- [PATCH net-next 0/6] net: use kfree_skb_reason() for ip/udp packet receive,
menglong8 . dong
- [ANNOUNCE] Settlement with Patrick McHardy, Pablo Neira Ayuso
- [PATCH] net: fix duplicate logs of iptables TRACE target,
kai zhang
- [PATCH nf] selftests: netfilter: reduce zone stress test running time,
Florian Westphal
- [PATCH nf] netfilter: nft_ct: fix use after free when attaching zone template,
Florian Westphal
- [PATCH] netfilter: Remove flowtable relics,
Geert Uytterhoeven
- [PATCH 28/31] net: netfilter: changing LED_* from enum led_brightness to actual value, Luiz Sampaio
- [PATCH nf-next] netfilter: conntrack: pptp: use single option structure, Florian Westphal
- [PATCH nf-next 0/4] netfilter: conntrack: remove extension register api,
Florian Westphal
- [iptables PATCH] extensions: libxt_NFLOG: fix typo,
Jeremy Sowden
- [iptables PATCH] xshared: Fix response to unprivileged users,
Phil Sutter
- [PATCH libnftnl 0/3] add description infrastructure,
Pablo Neira Ayuso
- [PATCH nft] parser_bison: missing synproxy support in map declarations, Pablo Neira Ayuso
- [PATCH conntrack-tools] conntrack: add --reliable option, Florian Westphal
- [PATCH nf-next] nfqueue: enable to get skb->priority,
Nicolas Dichtel
- [PATCH conntrack-tools] conntrack: fix compiler warnings,
Florian Westphal
- [nft PATCH v2 0/5] Store multiple payload dependencies,
Jeremy Sowden
- [PATCH nft] nft-shared: support native tcp port delinearize,
Florian Westphal
- [PATCH 0/1] UDP traceroute packets with no checksum,
Kevin Mitchell
- [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers,
Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 01/10] bpf: Fix UAF due to race between btf_try_get_module and load_module, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 02/10] bpf: Populate kfunc BTF ID sets in struct btf, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 03/10] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 04/10] bpf: Introduce mem, size argument pair support for kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 05/10] bpf: Add reference tracking support to kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 06/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 07/10] selftests/bpf: Add test for unstable CT lookup API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 08/10] selftests/bpf: Add test_verifier support to fixup kfunc call insns, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 09/10] selftests/bpf: Extend kfunc selftests, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v8 10/10] selftests/bpf: Add test for race in btf_try_get_module, Kumar Kartikeya Dwivedi
- Re: [PATCH bpf-next v8 00/10] Introduce unstable CT lookup helpers, Alexander Egorenkov
- [PATCH nf] netfilter: conntrack: don't increment invalid counter on NF_REPEAT,
Florian Westphal
- [PATCH nf] netfilter: nft_connlimit: memleak if nf_ct_netns_get() fails, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: set last expression in register tracking area, Pablo Neira Ayuso
- [bug report] netfilter: nf_tables: add register tracking infrastructure,
Dan Carpenter
- [PATCH nft 0/4] fix list chain x y with anonymous chains,
Pablo Neira Ayuso
- [PATCH bpf-next v7 00/10] Introduce unstable CT lookup helpers,
Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 04/10] bpf: Introduce mem, size argument pair support for kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 01/10] bpf: Fix UAF due to race between btf_try_get_module and load_module, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 02/10] bpf: Populate kfunc BTF ID sets in struct btf, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 03/10] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 05/10] bpf: Add reference tracking support to kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 06/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 08/10] selftests/bpf: Add test_verifier support to fixup kfunc call insns, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 07/10] selftests/bpf: Add test for unstable CT lookup API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 10/10] selftests/bpf: Add test for race in btf_try_get_module, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v7 09/10] selftests/bpf: Extend kfunc selftests, Kumar Kartikeya Dwivedi
- [iptables PATCH v2 00/11] Share do_parse() between nft and legacy,
Phil Sutter
- [iptables PATCH v2 11/11] ip6tables: Use the shared do_parse, too, Phil Sutter
- [iptables PATCH v2 05/11] xtables: Pass xtables_args to check_inverse(), Phil Sutter
- [iptables PATCH v2 03/11] xtables: Move struct nft_xt_cmd_parse to xshared.h, Phil Sutter
- [iptables PATCH v2 09/11] nft: Move proto_parse and post_parse callbacks to xshared, Phil Sutter
- [iptables PATCH v2 10/11] iptables: Use xtables' do_parse() function, Phil Sutter
- [iptables PATCH v2 02/11] xtables: Pull table validity check out of do_parse(), Phil Sutter
- [iptables PATCH v2 08/11] xshared: Store parsed wait and wait_interval in xtables_args, Phil Sutter
- [iptables PATCH v2 01/11] xtables: Drop xtables' family on demand feature, Phil Sutter
- [iptables PATCH v2 06/11] xtables: Do not pass nft_handle to do_parse(), Phil Sutter
- [iptables PATCH v2 04/11] xtables: Pass xtables_args to check_empty_interface(), Phil Sutter
- [iptables PATCH v2 07/11] xshared: Move do_parse to shared space, Phil Sutter
- Re: [iptables PATCH v2 00/11] Share do_parse() between nft and legacy, Pablo Neira Ayuso
- [PATCH nft] evaluate: attempt to set_eval flag if dynamic updates requested,
Florian Westphal
- [PATCH v2] netfilter: nft_connlimit: fix nft clone() functions,
Dan Carpenter
- [PATCH net-next] netfilter: nft_connlimit: fix nft_connlimit_clone(),
Dan Carpenter
- [PATCH net-next] netfilter: nf_tables: typo NULL check in _clone() function,
Pablo Neira Ayuso
- [iptables PATCH] extensions: *NAT: Kill multiple IPv4 range support,
Phil Sutter
- nft -f fails to restore ruleset listing with cetain dynamic set types,
Florian Westphal
- [PATCH net-next] netfilter: nf_tables: fix compile warnings,
Pablo Neira Ayuso
- [syzbot] WARNING: suspicious RCU usage in __dev_queue_xmit,
syzbot
- [PATCH net-next 00/32] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 01/32] netfilter: nfnetlink: add netns refcount tracker to struct nfulnl_instance, Pablo Neira Ayuso
- [PATCH net-next 05/32] netfilter: nf_tables: consolidate rule verdict trace call, Pablo Neira Ayuso
- [PATCH net-next 04/32] netfilter: nft_payload: WARN_ON_ONCE instead of BUG, Pablo Neira Ayuso
- [PATCH net-next 02/32] netfilter: nf_nat_masquerade: add netns refcount tracker to masq_dev_work, Pablo Neira Ayuso
- [PATCH net-next 06/32] netfilter: nf_tables: replace WARN_ON by WARN_ON_ONCE for unknown verdicts, Pablo Neira Ayuso
- [PATCH net-next 03/32] netfilter: nf_tables: remove rcu read-size lock, Pablo Neira Ayuso
- [PATCH net-next 11/32] netfilter: nft_set_pipapo_avx2: remove redundant pointer lt, Pablo Neira Ayuso
- [PATCH net-next 07/32] netfilter: nf_tables: make counter support built-in, Pablo Neira Ayuso
- [PATCH net-next 08/32] netfilter: conntrack: tag conntracks picked up in local out hook, Pablo Neira Ayuso
- [PATCH net-next 10/32] netfilter: flowtable: remove ipv4/ipv6 modules, Pablo Neira Ayuso
- [PATCH net-next 09/32] netfilter: nat: force port remap to prevent shadowing well-known ports, Pablo Neira Ayuso
- [PATCH net-next 14/32] netfilter: core: move ip_ct_attach indirection to struct nf_ct_hook, Pablo Neira Ayuso
- [PATCH net-next 12/32] netfilter: conntrack: Use max() instead of doing it manually, Pablo Neira Ayuso
- [PATCH net-next 16/32] netfilter: conntrack: avoid useless indirection during conntrack destruction, Pablo Neira Ayuso
- [PATCH net-next 15/32] netfilter: make function op structures const, Pablo Neira Ayuso
- [PATCH net-next 13/32] netfilter: conntrack: convert to refcount_t api, Pablo Neira Ayuso
- [PATCH net-next 18/32] netfilter: egress: avoid a lockdep splat, Pablo Neira Ayuso
- [PATCH net-next 17/32] net: prefer nf_ct_put instead of nf_conntrack_put, Pablo Neira Ayuso
- [PATCH net-next 19/32] netfilter: nft_connlimit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH net-next 21/32] netfilter: nft_quota: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH net-next 20/32] netfilter: nft_last: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH net-next 22/32] netfilter: nft_numgen: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH net-next 25/32] netfilter: nf_tables: add rule blob layout, Pablo Neira Ayuso
- [PATCH net-next 28/32] netfilter: nft_payload: track register operations, Pablo Neira Ayuso
- [PATCH net-next 31/32] netfilter: nft_payload: cancel register tracking after payload update, Pablo Neira Ayuso
- [PATCH net-next 30/32] netfilter: nft_bitwise: track register operations, Pablo Neira Ayuso
- [PATCH net-next 32/32] netfilter: nft_meta: cancel register tracking after meta update, Pablo Neira Ayuso
- [PATCH net-next 29/32] netfilter: nft_meta: track register operations, Pablo Neira Ayuso
- [PATCH net-next 26/32] netfilter: nf_tables: add NFT_REG32_NUM, Pablo Neira Ayuso
- [PATCH net-next 24/32] netfilter: nft_limit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH net-next 27/32] netfilter: nf_tables: add register tracking infrastructure, Pablo Neira Ayuso
- [PATCH net-next 23/32] netfilter: nft_limit: rename stateful structure, Pablo Neira Ayuso
- [PATCH nf-next,v3 00/14] nf_tables datapath ruleset blob and register tracking,
Pablo Neira Ayuso
- [PATCH 01/14] netfilter: nft_connlimit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH 02/14] netfilter: nft_last: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH 03/14] netfilter: nft_quota: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH 04/14] netfilter: nft_numgen: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH 08/14] netfilter: nf_tables: add NFT_REG32_NUM, Pablo Neira Ayuso
- [PATCH 05/14] netfilter: nft_limit: rename stateful structure, Pablo Neira Ayuso
- [PATCH 06/14] netfilter: nft_limit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH 11/14] netfilter: nft_meta: track register operations, Pablo Neira Ayuso
- [PATCH 07/14] netfilter: nf_tables: add rule blob layout, Pablo Neira Ayuso
- [PATCH 13/14] netfilter: nft_payload: cancel register tracking after payload update, Pablo Neira Ayuso
- [PATCH 10/14] netfilter: nft_payload: track register operations, Pablo Neira Ayuso
- [PATCH 09/14] netfilter: nf_tables: add register tracking infrastructure, Pablo Neira Ayuso
- [PATCH 12/14] netfilter: nft_bitwise: track register operations, Pablo Neira Ayuso
- [PATCH 14/14] netfilter: nft_meta: cancel register tracking after meta update, Pablo Neira Ayuso
- [PATCH libnetfilter_queue v3 0/5] Speed-up,
Duncan Roe
- [PATCH nf-next,v2 00/14] nf_tables datapath ruleset blob and register tracking,
Pablo Neira Ayuso
- [PATCH nf-next,v2 01/14] netfilter: nft_connlimit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH nf-next,v2 02/14] netfilter: nft_last: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH nf-next,v2 03/14] netfilter: nft_quota: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH nf-next,v2 05/14] netfilter: nft_limit: rename stateful structure, Pablo Neira Ayuso
- [PATCH nf-next,v2 04/14] netfilter: nft_numgen: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH nf-next,v2 07/14] netfilter: nf_tables: add rule blob layout, Pablo Neira Ayuso
- [PATCH nf-next,v2 08/14] netfilter: nf_tables: add NFT_REG32_NUM, Pablo Neira Ayuso
- [PATCH nf-next,v2 06/14] netfilter: nft_limit: move stateful fields out of expression data, Pablo Neira Ayuso
- [PATCH nf-next,v2 10/14] netfilter: nft_payload: track register operations, Pablo Neira Ayuso
- [PATCH nf-next,v2 09/14] netfilter: nf_tables: add register tracking infrastructure, Pablo Neira Ayuso
- [PATCH nf-next,v2 14/14] netfilter: nft_meta: cancel register tracking after meta update, Pablo Neira Ayuso
- [PATCH nf-next,v2 12/14] netfilter: nft_bitwise: track register operations, Pablo Neira Ayuso
- [PATCH nf-next,v2 13/14] netfilter: nft_payload: cancel register tracking after payload update, Pablo Neira Ayuso
- [PATCH nf-next,v2 11/14] netfilter: nft_meta: track register operations, Pablo Neira Ayuso
- [conntrack-tools PATCH] conntrackd: cthelper: ssdp: Fix parsing of IPv6 M-SEARCH requests.,
Aaron Thompson
- [syzbot] KMSAN: uninit-value in nf_nat_setup_info (2),
syzbot
- [PATCH nf] netfilter: nf_conntrack_netbios_ns: fix helper module alias,
Florian Westphal
- [PATCH nf-next] netfilter: egress: avoid a lockdep splat,
Florian Westphal
- [PATCH nf-next 0/5] netfilter: conntrack related cleanups,
Florian Westphal
- [ulogd2 PATCH 00/10] Add pkg-config support,
Jeremy Sowden
- [ulogd2 PATCH 04/10] build: use pkg-config or pcap-config for libpcap, Jeremy Sowden
- [ulogd2 PATCH 01/10] build: use `--enable-blah` flags for output plugins, Jeremy Sowden
- [ulogd2 PATCH 02/10] build: use pkg-config for libdbi, Jeremy Sowden
- [ulogd2 PATCH 03/10] build: use pkg-config or upstream M4 for mysql, Jeremy Sowden
- [ulogd2 PATCH 05/10] build: use pkg-config for libpq if available, Jeremy Sowden
- [ulogd2 PATCH 06/10] build: if `--enable-dbi` is `yes` abort if DBI is not found, Jeremy Sowden
- [ulogd2 PATCH 07/10] build: if `--enable-mysql` is `yes` abort if MySQL is not found, Jeremy Sowden
- [ulogd2 PATCH 08/10] build: if `--enable-pcap` is `yes` abort if libpcap is not found, Jeremy Sowden
- [ulogd2 PATCH 09/10] build: if `--enable-pgsql` is `yes` abort if libpq is not found, Jeremy Sowden
- [ulogd2 PATCH 10/10] build: if `--enable-sqlite3` is `yes` abort if libsqlite3 is not found, Jeremy Sowden
- <Possible follow-ups>
- [ulogd2 PATCH 00/10] Add pkg-config support, Jeremy Sowden
- [ulogd2 PATCH v2 02/10] build: use pkg-config for libdbi, Jeremy Sowden
- [ulogd2 PATCH v2 01/10] build: use `--enable-XXX` options for output plugins, Jeremy Sowden
- [ulogd2 PATCH v2 03/10] build: use pkg-config or mysql_config for libmysqlclient, Jeremy Sowden
- [ulogd2 PATCH v2 05/10] build: use pkg-config or pg_config for libpq, Jeremy Sowden
- [ulogd2 PATCH v2 04/10] build: use pkg-config or pcap-config for libpcap, Jeremy Sowden
- [ulogd2 PATCH v2 08/10] build: if `--enable-pcap` is `yes`, abort if libpcap is not found, Jeremy Sowden
- [ulogd2 PATCH v2 07/10] build: if `--enable-mysql` is `yes`, abort if libmysqlclient is not found, Jeremy Sowden
- [ulogd2 PATCH v2 06/10] build: if `--enable-dbi` is `yes`, abort if libdbi is not found, Jeremy Sowden
- [ulogd2 PATCH v2 09/10] build: if `--enable-pgsql` is `yes`, abort if libpq is not found, Jeremy Sowden
- [ulogd2 PATCH v2 10/10] build: if `--enable-sqlite3` is `yes`, abort if libsqlite3 is not found, Jeremy Sowden
- Re: [ulogd2 PATCH 00/10] Add pkg-config support, Pablo Neira Ayuso
- BUG: unable to handle kernel NULL pointer dereference in iptable_nat_table_init, Sabri N. Ferreiro
- [PATCH nf] netfilter: nft_payload: do not update layer 4 checksum when mangling fragments, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone,
Florian Westphal
- Re: nftables >= 0.9.8: atomic update (nft -f ...) of a set not possible any more,
Florian Westphal
- [PATCH ulogd] GPRINT: fix it with NFLOG, Pablo Neira Ayuso
- INFO: task hung in xt_find_match, kvartet
- INFO: task hung in do_ip6t_get_ctl, kvartet
- [PATCH ulogd2 1/2] output: JSON: fix possible truncation of socket path,
Pablo Neira Ayuso
- [PATCH nftables,v2 0/7] ruleset optimization infrastructure,
Pablo Neira Ayuso
- [PATCH nftables,v2 1/7] erec: expose print_location() and line_location(), Pablo Neira Ayuso
- [PATCH nftables,v2 2/7] src: error reporting with -f and read from stdin, Pablo Neira Ayuso
- [PATCH nftables,v2 3/7] src: remove '$' in symbol_expr_print, Pablo Neira Ayuso
- [PATCH nftables,v2 5/7] optimize: merge rules with same selectors into a concatenation, Pablo Neira Ayuso
- [PATCH nftables,v2 4/7] src: add ruleset optimization infrastructure, Pablo Neira Ayuso
- [PATCH nftables,v2 6/7] optimize: merge same selector with different verdict into verdict map, Pablo Neira Ayuso
- [PATCH nftables,v2 7/7] optimize: merge several selectors with different verdict into verdict map, Pablo Neira Ayuso
- Re: [PATCH nftables,v2 0/7] ruleset optimization infrastructure, Pablo Neira Ayuso
- Re: [PATCH nftables,v2 0/7] ruleset optimization infrastructure, Nicolas Dichtel
- Re: [PATCH nftables,v2 0/7] ruleset optimization infrastructure, Pablo Neira Ayuso
- [PATCH bpf-next v6 00/11] Introduce unstable CT lookup helpers,
Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 01/11] kernel: Implement try_module_get_live, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 02/11] bpf: Fix UAF due to race between btf_try_get_module and load_module, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 03/11] bpf: Populate kfunc BTF ID sets in struct btf, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 04/11] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 05/11] bpf: Introduce mem, size argument pair support for kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 06/11] bpf: Add reference tracking support to kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 07/11] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 08/11] selftests/bpf: Add test for unstable CT lookup API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 09/11] selftests/bpf: Add test_verifier support to fixup kfunc call insns, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 10/11] selftests/bpf: Extend kfunc selftests, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v6 11/11] selftests/bpf: Add test for race in btf_try_get_module, Kumar Kartikeya Dwivedi
- [PATCH] ipset: SCTP, UDPLITE support added to the bitmap:port type, Quan Tian
- [PATCH linux] netfilter: Remove unnecessary ret assignment,
cgel . zte
- [PATCH bpf-next v5 0/9] Introduce unstable CT lookup helpers,
Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 1/9] kernel: Add kallsyms_on_each_symbol variant for single module, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 2/9] bpf: Prepare kfunc BTF ID sets when parsing kernel BTF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 3/9] bpf: Remove check_kfunc_call callback and old kfunc BTF ID API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 4/9] bpf: Introduce mem, size argument pair support for kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 5/9] bpf: Add reference tracking support to kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 6/9] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 7/9] selftests/bpf: Add test for unstable CT lookup API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 8/9] selftests/bpf: Add test_verifier support to fixup kfunc call insns, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v5 9/9] selftests/bpf: Extend kfunc selftests, Kumar Kartikeya Dwivedi
- Re: [PATCH bpf-next v5 0/9] Introduce unstable CT lookup helpers, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v2] net: don't include filter.h from net/sock.h,
Jakub Kicinski
- [PATCH bpf-next] net: don't include filter.h from net/sock.h, Jakub Kicinski
- [PATCH nf] selftests/netfilter: switch to socat for tests using -q option,
Hangbin Liu
- [PATCH] netfilter: extend CONFIG_NF_CONNTRACK compile time checks,
trix
- [PATCH] netfilter: conntrack: Use max() instead of doing it manually,
Jiapeng Chong
- [iptables PATCH 00/11] Share do_parse() between nft and legacy,
Phil Sutter
- [iptables PATCH 08/11] xshared: Store parsed wait and wait_interval in xtables_args, Phil Sutter
- [iptables PATCH 11/11] ip6tables: Use the shared do_parse, too, Phil Sutter
- [iptables PATCH 05/11] xtables: Pass xtables_args to check_inverse(), Phil Sutter
- [iptables PATCH 01/11] xtables: Drop xtables' family on demand feature, Phil Sutter
- [iptables PATCH 03/11] xtables: Move struct nft_xt_cmd_parse to xshared.h, Phil Sutter
- [iptables PATCH 02/11] xtables: Pull table validity check out of do_parse(), Phil Sutter
- [iptables PATCH 06/11] xtables: Do not pass nft_handle to do_parse(), Phil Sutter
- [iptables PATCH 09/11] nft: Move proto_parse and post_parse callbacks to xshared, Phil Sutter
- [iptables PATCH 04/11] xtables: Pass xtables_args to check_empty_interface(), Phil Sutter
- [iptables PATCH 10/11] iptables: Use xtables' do_parse() function, Phil Sutter
- [iptables PATCH 07/11] xshared: Move do_parse to shared space, Phil Sutter
- [PATCH conntrack 0/4] more updates to use libmnl,
Pablo Neira Ayuso
- [PATCH] netfilter: seqadj: check seq offset before update,
zhang kai
- [PATCH iptables] xshared: Implement xtables lock timeout using signals,
Jethro Beekman
- [PATCH netfilter] netfilter: xt_owner: use sk->sk_uid for owner lookup,
Maciej Żenczykowski
- [PATCH] netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check(),
Xin Xiong
- [PATCH] netfilter: nft_set_pipapo_avx2: remove redundant pointer lt,
Colin Ian King
- [nft PATCH 00/11] Store multiple payload dependencies,
Jeremy Sowden
- [nft PATCH 04/11] netlink_delinearize: fix typo, Jeremy Sowden
- [nft PATCH 01/11] tests: py: fix inet/sets.t netdev payload, Jeremy Sowden
- [nft PATCH 02/11] tests: py: fix inet/ip.t payloads, Jeremy Sowden
- [nft PATCH 05/11] src: remove arithmetic on booleans, Jeremy Sowden
- [nft PATCH 03/11] tests: py: fix inet/ip_tcp.t test, Jeremy Sowden
- [nft PATCH 08/11] src: add a helper that returns a payload dependency for a particular base, Jeremy Sowden
- [nft PATCH 06/11] src: reduce indentation, Jeremy Sowden
- [nft PATCH 09/11] src: store more than one payload dependency, Jeremy Sowden
- [nft PATCH 07/11] src: simplify logic governing storing payload dependencies, Jeremy Sowden
- [nft PATCH 11/11] tests: shell: remove redundant payload expressions, Jeremy Sowden
- [nft PATCH 10/11] tests: py: remove redundant payload expressions, Jeremy Sowden
- [PATCH nftables] parser: allow quoted string in flowtable_expr_member,
Stijn Tintel
- [PATCH nf-next] netfilter: exthdr: add support for tcp option removal,
Florian Westphal
- [syzbot] KASAN: use-after-free Read in nf_hook_entries_grow,
syzbot
- netdevconf 0x16, Jamal Hadi Salim
- [PATCH libnetfilter_queue v3] build: doc: Update build_man.sh for doxygen 1.9.2,
Duncan Roe
- [PATCH iptables] nft-shared: set correc register value,
Florian Westphal
- [PATCH nf-next,v3 5/5] netfilter: nf_tables: make counter support built-in, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: flowtable: remove ipv4/ipv6 modules,
Florian Westphal
- [PATCH nf-next,v2 1/5] netfilter: nf_tables: remove rcu read-size lock,
Pablo Neira Ayuso
- [PATCH nf-next v4 0/2] nat: force port remap to prevent shadowing well-known ports,
Florian Westphal
- [PATCH libnetfilter_queue v2] build: doc: Update build_man.sh for doxygen 1.9.2, Duncan Roe
- [PATCH 1/1] graphics/graphviz: Updated for version 2.50,
Duncan Roe
- Re: graphviz.SlackBuild,
Duncan Roe
- [PATCH bpf-next v4 00/10] Introduce unstable CT lookup helpers,
Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 01/10] bpf: Refactor bpf_check_mod_kfunc_call, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 02/10] bpf: Remove DEFINE_KFUNC_BTF_ID_SET, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 03/10] bpf: Extend kfunc with PTR_TO_CTX, PTR_TO_MEM argument support, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 04/10] bpf: Introduce mem, size argument pair support for kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 05/10] bpf: Add reference tracking support to kfunc, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 06/10] bpf: Track provenance for pointers formed from referenced PTR_TO_BTF_ID, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 07/10] net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPF, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 08/10] selftests/bpf: Add test for unstable CT lookup API, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 09/10] selftests/bpf: Add test_verifier support to fixup kfunc call insns, Kumar Kartikeya Dwivedi
- [PATCH bpf-next v4 10/10] selftests/bpf: Extend kfunc selftests, Kumar Kartikeya Dwivedi
- Re: [PATCH bpf-next v4 00/10] Introduce unstable CT lookup helpers, Kumar Kartikeya Dwivedi
- [conntrack-tools PATCH 0/3] bison & flex autotools updates,
Jeremy Sowden
- [nft PATCH] build: remove scanner.c and parser_bison.c with `maintainer-clean`,
Jeremy Sowden
- [PATCH nf v3] netfilter: nat: force port remap to prevent shadowing well-known ports,
Florian Westphal
- [iptables PATCH v3 0/6] Some more code de-duplication,
Phil Sutter
- [PATCH nf-next 0/7] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH nft] proto: revisit short-circuit loops over upper protocols,
Pablo Neira Ayuso
- [PATCH nft 0/3] ruleset optimization infrastructure,
Pablo Neira Ayuso
- [PATCH] build: fix autoconf warnings,
Jeremy Sowden
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]