Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH nf-next,v2] netfilter: nf_tables: add last expression, (continued)
- [PATCH nftables] rule: rework CMD_OBJ_SETELEMS logic, Pablo Neira Ayuso
- [PATCH nft 0/4] nftables: convert single-elem anon sets to compare operation,
Florian Westphal
- [PATCH nf-next v2 0/2] netfilter: new hook nfnl subsystem,
Florian Westphal
- [syzbot] KMSAN: uninit-value in translate_table (2), syzbot
- [PATCH nf] netfilter: nf_tables: initialize set before expression setup, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables: add last expression,
Pablo Neira Ayuso
- [PATCH iptables,v2 0/5] iptables-translation enhancements,
Pablo Neira Ayuso
- [PATCH iptables,v2 1/5] libxtables: extend xlate infrastructure, Pablo Neira Ayuso
- [PATCH iptables,v2 2/5] tests: xlate-test: support multiline expectation, Pablo Neira Ayuso
- [PATCH iptables,v2 3/5] extensions: libxt_connlimit: add translation, Pablo Neira Ayuso
- [PATCH iptables,v2 4/5] extensions: libxt_tcp: rework translation to use flags match representation, Pablo Neira Ayuso
- [PATCH iptables,v2 5/5] extensions: libxt_conntrack: simplify translation using negation, Pablo Neira Ayuso
- [PATCH nf-next 0/3] Control nf flow table timeouts,
Oz Shlomo
- [PATCH iptables] extensions: libxt_conntrack: simplify translation using negation, Pablo Neira Ayuso
- [PATCH iptables] extensions: libxt_tcp: rework translation to use flags match representation, Pablo Neira Ayuso
- [PATCH nft] statement: connlimit: remove extra whitespace in print function, Pablo Neira Ayuso
- [PATCH iptables 1/2] libxtables: extend xlate infrastructure,
Pablo Neira Ayuso
- [PATCH nft] tests: py: update netdev reject test file, Florian Westphal
- [PATCH nft] json: catchall element support, Florian Westphal
- [syzbot] general protection fault in nft_set_elem_expr_alloc,
syzbot
- [syzbot] general protection fault in lock_page_memcg, syzbot
- [iptables PATCH 0/9] Fix a bunch of static analyzer warnings,
Phil Sutter
- [PATCH nft] json: fix parse of flagcmp expression, Florian Westphal
- [PATCH nft] json: fix base chain output, Florian Westphal
- [PATCH nf-next] netfilter: nftables: add nf_ct_pernet() helper function, Pablo Neira Ayuso
- Re: [syzbot] WARNING in idr_get_next,
syzbot
- [PATCH net-next 00/16] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 01/16] netfilter: nft_exthdr: Support SCTP chunks, Pablo Neira Ayuso
- [PATCH net-next 02/16] netfilter: nft_set_pipapo_avx2: Skip LDMXCSR, we don't need a valid MXCSR state, Pablo Neira Ayuso
- [PATCH net-next 03/16] netfilter: add and use nft_set_do_lookup helper, Pablo Neira Ayuso
- [PATCH net-next 05/16] netfilter: Remove leading spaces in Kconfig, Pablo Neira Ayuso
- [PATCH net-next 08/16] netfilter: use nfnetlink_unicast(), Pablo Neira Ayuso
- [PATCH net-next 07/16] netfilter: xt_CT: Remove redundant assignment to ret, Pablo Neira Ayuso
- [PATCH net-next 06/16] netfilter: x_tables: improve limit_mt scalability, Pablo Neira Ayuso
- [PATCH net-next 04/16] netfilter: nf_tables: prefer direct calls for set lookups, Pablo Neira Ayuso
- [PATCH net-next 11/16] netfilter: nf_tables: add and use nft_sk helper, Pablo Neira Ayuso
- [PATCH net-next 10/16] netfilter: reduce size of nf_hook_state on 32bit platforms, Pablo Neira Ayuso
- [PATCH net-next 09/16] netfilter: x_tables: reduce xt_action_param by 8 byte, Pablo Neira Ayuso
- [PATCH net-next 12/16] netfilter: nf_tables: add and use nft_thoff helper, Pablo Neira Ayuso
- [PATCH net-next 13/16] netfilter: nf_tables: remove unused arg in nft_set_pktinfo_unspec(), Pablo Neira Ayuso
- [PATCH net-next 15/16] netfilter: nft_set_pipapo_avx2: fix up description warnings, Pablo Neira Ayuso
- [PATCH net-next 14/16] netfilter: nf_tables: remove xt_action_param from nft_pktinfo, Pablo Neira Ayuso
- [PATCH net-next 16/16] netfilter: fix clang-12 fmt string warnings, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net-next 00/16] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH net-next 01/16] netfilter: ctnetlink: support CTA_FILTER for flush, Pablo Neira Ayuso
- [PATCH net-next 02/16] netfilter: nft_counter: Use u64_stats_t for statistic., Pablo Neira Ayuso
- [PATCH net-next 03/16] netfilter: Use kmemdup_array instead of kmemdup for multiple allocation, Pablo Neira Ayuso
- [PATCH net-next 06/16] netfilter: nf_tables: Correct spelling in nf_tables.h, Pablo Neira Ayuso
- [PATCH net-next 04/16] netfilter: conntrack: Convert to use ERR_CAST(), Pablo Neira Ayuso
- [PATCH net-next 08/16] netfilter: nf_tables: elements with timeout below CONFIG_HZ never expire, Pablo Neira Ayuso
- [PATCH net-next 07/16] netfilter: nf_tables: Add missing Kernel doc, Pablo Neira Ayuso
- [PATCH net-next 05/16] netfilter: nf_tables: drop unused 3rd argument from validate callback ops, Pablo Neira Ayuso
- [PATCH net-next 09/16] netfilter: nf_tables: reject element expiration with no timeout, Pablo Neira Ayuso
- [PATCH net-next 10/16] netfilter: nf_tables: reject expiration higher than timeout, Pablo Neira Ayuso
- [PATCH net-next 11/16] netfilter: nf_tables: remove annotation to access set timeout while holding lock, Pablo Neira Ayuso
- [PATCH net-next 12/16] netfilter: nft_dynset: annotate data-races around set timeout, Pablo Neira Ayuso
- [PATCH net-next 13/16] netfilter: nf_tables: annotate data-races around element expiration, Pablo Neira Ayuso
- [PATCH net-next 14/16] netfilter: nf_tables: consolidate timeout extension for elements, Pablo Neira Ayuso
- [PATCH net-next 15/16] netfilter: nf_tables: zero timeout means element never times out, Pablo Neira Ayuso
- [PATCH net-next 16/16] netfilter: nf_tables: set element timeout update support, Pablo Neira Ayuso
- [PATCH nf-next 0/2] netfilter: new hook nfnl subsystem,
Florian Westphal
- [PATCH ipset,v2] add ipset to nftables translation infrastructure, Pablo Neira Ayuso
- [PATCH ipset 1/3] lib: split parser from command execution,
Pablo Neira Ayuso
- [PATCH nf-next 1/3,v3] netfilter: nfnetlink: add struct nfgenmsg to struct nfnl_info and use it,
Pablo Neira Ayuso
- [PATCH nf-next,v2 1/3] netfilter: nfnetlink: add struct nfgenmsg to struct nfnl_info and use it,
Pablo Neira Ayuso
- [PATCH nf-next 1/3] netfilter: nfnetlink: add struct nfgenmsg to struct nfnl_info and use it,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: fix clang-12 fmt string warnings, Florian Westphal
- [PATCH nf-next] netfilter: nft_set_pipapo_avx2: fix up description warnings, Florian Westphal
- [PATCH nf-next] netfilter: nft_compat: fix bridge family target evaluation,
Florian Westphal
- [PATCH] netfilter: conntrack: remove the repeated declaration,
Shaokun Zhang
- [nf-next:master 14/14] net/netfilter/nft_compat.c:113:10: warning: address of 'xt.hotdrop' will always evaluate to 'true', kernel test robot
- [nf-next:master 4/14] net/netfilter/nft_set_pipapo.c:412:6: error: static declaration of 'nft_pipapo_lookup' follows non-static declaration,
kernel test robot
- [PATCH conntrackd] cthelper: fix overlapping queue numbers in example file, Pablo Neira Ayuso
- [PATCH nf] netfilter: nfnetlink_cthelper: hit EBUSY on updates if size mismatches, Pablo Neira Ayuso
- [PATCH conntrackd,v2 1/2] cthelper: Set up userspace helpers when daemon starts,
Pablo Neira Ayuso
- [PATCH nf-next 0/6] netfilter: reduce size of core data structures,
Florian Westphal
- [PATCH nf] MAINTAINERS: netfilter: add irc channel,
Nicolas Dichtel
- [PATCH conntrackd] cthelper: Set up userspace helpers when daemon starts,
Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nft_ct: skip expectations for confirmed conntrack, Pablo Neira Ayuso
- [PATCH nf-next,v3] netfilter: use nfnetlink_unicast(), Pablo Neira Ayuso
- [PATCH net 0/5] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH nft 0/6] nftables: add --optimize support,
Florian Westphal
- [PATCH nf-next,v2] netfilter: use nfnetlink_unicast(), Pablo Neira Ayuso
- [PATCH-v2] netfilter: conntrack: add new sysctl to disable RST check, Ali Abdallah
- [PATCH] netfilter: conntrack: add new sysctl to disable RST check,
Ali Abdallah
- [ANNOUNCE] nftables 0.9.9 release, Pablo Neira Ayuso
- [PATCH nf-next v2 0/4] netfilter: add hook dump feature,
Florian Westphal
- [ANNOUNCE] libnftnl 1.2.0 release, Pablo Neira Ayuso
- [ulogd2 PATCH] ulogd: printpkt: print pkt mark like kernel,
Cole Dishington
- [PATCH nftables] evaluate: allow == and != in the new shortcut syntax to match for flags,
Pablo Neira Ayuso
- [PATCH net] ipvs: ignore IP_VS_SVC_F_HASHED flag when adding service,
Julian Anastasov
- [PATCH nf] netfilter: nf_tables: fix table flag updates, Pablo Neira Ayuso
- [syzbot] memory leak in ip_vs_add_service,
syzbot
- [nftables PATCH] files: improve secmark.nft example,
Dominick Grift
- [PATCH nft 0/3] hook dump support,
Florian Westphal
- [PATCH nf-next 0/4] netfilter: add hook dump feature,
Florian Westphal
- [PATCH] Disable RST seq number check when tcp_be_liberal is greater 1,
Ali Abdallah
- Re: mmotm 2021-05-19-23-58 uploaded (net/netfilter/nft_set_pipapo_avx2.c),
Randy Dunlap
- [PATCH nf] netfilter: nft_ct: skip unconfirmed helper extension for unconfirmed conntrack, Pablo Neira Ayuso
- [nft PATCH] expr_postprocess: Avoid an unintended fall through, Phil Sutter
- [PATCH nf] netfilter: conntrack: improve RST handling when tuple is re-used,
Florian Westphal
- [PATCH nf] netfilter: nf_tables: extended netlink error reporting for chain type, Pablo Neira Ayuso
- [PATCH nftables] rule: skip exact matches on fuzzy lookup, Pablo Neira Ayuso
- [PATCH nftables] cmd: typo in chain fuzzy lookup, Pablo Neira Ayuso
- [PATCH] libnftables: location-based error reporting for chain type, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: missing error reporting for not selected expressions, Pablo Neira Ayuso
- [nft PATCH] doc: nft.8: Extend monitor description by trace, Phil Sutter
- [PATCH nf,v2] netfilter: nftables: accept all dummy chain when table is dormant,
Pablo Neira Ayuso
- [PATCH nftables] doc: document cgroupv2, Pablo Neira Ayuso
- [PATCH nf] netfilter: nftables: accept all dummy chain when table is dormant,
Pablo Neira Ayuso
- [ebtables PATCH 1/2] ebtables.h: restore KERNEL_64_USERSPACE_32 checks,
Thomas De Schampheleire
- warning splat in nftables ct expect,
Pablo Neira Ayuso
- [PATCH nftables,v2] datatype: skip cgroupv2 rootfs in listing, Pablo Neira Ayuso
- [PATCH nftables 1/2] src: use PRIu64 format,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: use nfnetlink_unicast(), Pablo Neira Ayuso
- [PATCH] netfilter: Remove leading spaces in Kconfig,
Juerg Haefliger
- [PATCH] treewide: Remove leading spaces in Kconfig files,
Juerg Haefliger
- [PATCH nftables,v3] parser_bison: add shortcut syntax for matching flags without binary operations, Pablo Neira Ayuso
- [PATCH nftables,v2] parser_bison: add shortcut syntax for matching flags without binary operations, Pablo Neira Ayuso
- [PATCH nf 0/2] Netfilter fixes for net,
Pablo Neira Ayuso
- [pablo@xxxxxxxxxxxxx: Re: [PATCH net 1/1] netfilter: flowtable: Remove redundant hw refresh bit], Pablo Neira Ayuso
- [PATCH nf-next 0/2] nf_tables: avoid retpoline overhead on set lookups,
Florian Westphal
- [PATCH v26 18/25] LSM: security_secid_to_secctx in netlink netfilter,
Casey Schaufler
- [PATCH v26 16/25] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v26 15/25] LSM: Ensure the correct LSM context releaser,
Casey Schaufler
- [PATCH v26 08/25] LSM: Use lsmblob in security_secid_to_secctx,
Casey Schaufler
- [PATCH v26 07/25] LSM: Use lsmblob in security_secctx_to_secid,
Casey Schaufler
- [nftables PATCH] cache: check errno before invoking cache_release(),
Marco Oliverio
- [PATCH nftables] parser_bison: add shortcut syntax for matching flags without binary operations, Pablo Neira Ayuso
- [PATCH nftables] netlink_delinearize: fix binary operation postprocessing with sets, Pablo Neira Ayuso
- netfilter: iptables-restore: setsockopt(3, SOL_IP, IPT_SO_SET_REPLACE, "security...", ...) return -EAGAIN,
Dexuan Cui
- [PATCH nftables,v3 2/2] src: add set element catch-all support,
Pablo Neira Ayuso
- [PATCH nftables,v2 2/2] src: add set element catch-all support,
Pablo Neira Ayuso
- [PATCH nftables] evaluate: don't crash on set definition with incorrect datatype, Pablo Neira Ayuso
- [PATCH nftables 2/2] src: add set element catch-all support, Pablo Neira Ayuso
- [PATCH nftables 1/2] parser_bison: add set_elem_key_expr rule,
Pablo Neira Ayuso
- [PATCH nf-next] nft_set_pipapo_avx2: Skip LDMXCSR, we don't need a valid MXCSR state,
Stefano Brivio
- [PATCH nf] nft_set_pipapo_avx2: Add irq_fpu_usable() check, fallback to non-AVX2 version,
Stefano Brivio
- [PATCH net 0/8] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH net 2/8] netfilter: arptables: use pernet ops struct during unregister, Pablo Neira Ayuso
- [PATCH net 1/8] netfilter: xt_SECMARK: add new revision to fix structure layout, Pablo Neira Ayuso
- [PATCH net 3/8] netfilter: nfnetlink: add a missing rcu_read_unlock(), Pablo Neira Ayuso
- [PATCH net 4/8] netfilter: nfnetlink_osf: Fix a missing skb_header_pointer() NULL check, Pablo Neira Ayuso
- [PATCH net 5/8] netfilter: remove BUG_ON() after skb_header_pointer(), Pablo Neira Ayuso
- [PATCH net 6/8] netfilter: nftables: Fix a memleak from userdata error path in new objects, Pablo Neira Ayuso
- [PATCH net 7/8] netfilter: nftables: avoid overflows in nft_hash_buckets(), Pablo Neira Ayuso
- [PATCH net 8/8] netfilter: nftables: avoid potential overflows on 32bit arches, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net 0/8] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/8] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/8] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/8] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/8] Netfilter fixes for net, Pablo Neira Ayuso
- nft_pipapo_avx2_lookup backtrace in linux 5.10,
Arturo Borrero Gonzalez
- [PATCH net 2/2] netfilter: nf_tables: avoid potential overflows on 32bit arches,
Eric Dumazet
- [PATCH net 1/2] netfilter: nf_tables: avoid overflows in nft_hash_buckets(),
Eric Dumazet
- [nft PATCH] doc: Reduce size of NAT statement synopsis, Phil Sutter
- [PATCH nft 0/2] Fix display of < 64 bits IPv6 masks in concatenated elements,
Stefano Brivio
- [PATCH nf,v2] netfilter: remove BUG_ON() after skb_header_pointer(), Pablo Neira Ayuso
- [PATCH nf] netfilter: nftables: Fix a memleak from userdata error path in new objects, Pablo Neira Ayuso
- [PATCH nf] netfilter: remove BUG_ON() after skb_header_pointer(), Pablo Neira Ayuso
- [PATCH nf] netfilter: nfnetlink_osf: Fix a missing skb_header_pointer() NULL check, Pablo Neira Ayuso
- [PATCH] ipv6: netfilter.c: fix missing line after declaration,
Pallavi Prabhu
- [PATCH net] netfilter: nfnetlink: add a missing rcu_read_unlock(),
Eric Dumazet
- [iptables PATCH 1/2] extensions: sctp: Fix nftables translation,
Phil Sutter
- [nft PATCH 1/3] scanner: sctp: Move to own scope,
Phil Sutter
- [net-next PATCH] net: netfilter: nft_exthdr: Support SCTP chunks,
Phil Sutter
- [PATCH nf] netfilter: conntrack: unregister ipv4 sockopts on error unwind, Florian Westphal
- [PATCH RFC libnetfilter_queue 0/1] Eliminate packet copy when constructing struct pkt_buff,
Duncan Roe
- Re: conntrackd inverted NAT address, endianness issue?, Pablo Neira Ayuso
- [PATCH conntrack-tools] conntrack: release options after parsing, Pablo Neira Ayuso
- [syzbot] bpf test error: WARNING in __nf_unregister_net_hook,
syzbot
- [syzbot] net test error: WARNING in __nf_unregister_net_hook,
syzbot
- [syzbot] memory leak in nf_hook_entries_grow (2),
syzbot
- [syzbot] upstream test error: WARNING in __nf_unregister_net_hook,
syzbot
- [PATCH nf] netfilter: arptables: use pernet ops struct during unregister,
Florian Westphal
- [syzbot] bpf-next test error: WARNING in __nf_unregister_net_hook,
syzbot
- [syzbot] linux-next test error: WARNING in __nf_unregister_net_hook,
syzbot
- [iptables PATCH v2] extensions: SECMARK: Implement revision 1, Phil Sutter
- [net-next PATCH v2] netfilter: xt_SECMARK: add new revision to fix structure layout,
Phil Sutter
- [PATCH] Avoid potentially erroneos RST drop.,
Ali Abdallah
- [PATCH] netfilter: Remove redundant assignment to ret,
Yang Li
- [PATCH nft 00/18] cache updates,v2,
Pablo Neira Ayuso
- [PATCH nft 01/18] tests: shell: remove missing modules, Pablo Neira Ayuso
- [PATCH nft 02/18] src: unbreak deletion by table handle, Pablo Neira Ayuso
- [PATCH nft 03/18] rule: skip fuzzy lookup for unexisting 64-bit handle, Pablo Neira Ayuso
- [PATCH nft 04/18] src: pass chain name to chain_cache_find(), Pablo Neira Ayuso
- [PATCH nft 05/18] src: consolidate nft_cache infrastructure, Pablo Neira Ayuso
- [PATCH nft 06/18] src: consolidate object cache infrastructure, Pablo Neira Ayuso
- [PATCH nft 09/18] cache: add set_cache_del() and use it, Pablo Neira Ayuso
- [PATCH nft 07/18] cache: add hashtable cache for object, Pablo Neira Ayuso
- [PATCH nft 08/18] cache: add hashtable cache for flowtable, Pablo Neira Ayuso
- [PATCH nft 10/18] evaluate: add set to the cache, Pablo Neira Ayuso
- [PATCH nft 11/18] evaluate: add flowtable to the cache, Pablo Neira Ayuso
- [PATCH nft 12/18] cache: missing table cache for several policy objects, Pablo Neira Ayuso
- [PATCH nft 13/18] evaluate: add object to the cache, Pablo Neira Ayuso
- [PATCH nft 14/18] cache: add hashtable cache for table, Pablo Neira Ayuso
- [PATCH nft 15/18] evaluate: remove chain from cache on delete chain command, Pablo Neira Ayuso
- [PATCH nft 17/18] evaluate: remove flowtable from cache on delete flowtable command, Pablo Neira Ayuso
- [PATCH nft 16/18] evaluate: remove set from cache on delete set command, Pablo Neira Ayuso
- [PATCH nft 18/18] evaluate: remove object from cache on delete object command, Pablo Neira Ayuso
- [PATCH net-next] netfilter: x_tables: improve limit_mt scalability,
Jason Baron
- [iptables PATCH] extensions: SECMARK: Implement revision 1, Phil Sutter
- [net-next PATCH] netfilter: xt_SECMARK: add new revision to fix structure layout,
Phil Sutter
- [iptables PATCH] extensions: sctp: Explain match types in man page, Phil Sutter
- [iptables PATCH 0/5] Merge some common code,
Phil Sutter
- [PATCH] Avoid potentially erroneos RST check,
Ali Abdallah
- [PATCH] Don't drop out of segments RST if tcp_be_liberal is set, Ali Abdallah
- [PATCH net-next 0/7] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 1/2] netfilter: nft_socket: fix an unused variable warning,
Arnd Bergmann
- [PATCH nf-next 1/5, v2] netfilter: nftables: rename set element data activation/deactivation functions,
Pablo Neira Ayuso
- [iptables PATCH 0/2] Drop use of some obsolete functions,
Phil Sutter
- [PATCH net-next 00/22] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 01/22] netfilter: nat: move nf_xfrm_me_harder to where it is used, Pablo Neira Ayuso
- [PATCH net-next 02/22] netfilter: nft_socket: add support for cgroupsv2, Pablo Neira Ayuso
- [PATCH net-next 03/22] netfilter: disable defrag once its no longer needed, Pablo Neira Ayuso
- [PATCH net-next 04/22] netfilter: ebtables: remove the 3 ebtables pointers from struct net, Pablo Neira Ayuso
- [PATCH net-next 05/22] netfilter: x_tables: remove ipt_unregister_table, Pablo Neira Ayuso
- [PATCH net-next 06/22] netfilter: x_tables: add xt_find_table, Pablo Neira Ayuso
- [PATCH net-next 07/22] netfilter: iptables: unregister the tables by name, Pablo Neira Ayuso
- [PATCH net-next 08/22] netfilter: ip6tables: unregister the tables by name, Pablo Neira Ayuso
- [PATCH net-next 09/22] netfilter: arptables: unregister the tables by name, Pablo Neira Ayuso
- [PATCH net-next 10/22] netfilter: x_tables: remove paranoia tests, Pablo Neira Ayuso
- [PATCH net-next 11/22] netfilter: xt_nat: pass table to hookfn, Pablo Neira Ayuso
- [PATCH net-next 21/22] netfilter: nfnetlink: consolidate callback types, Pablo Neira Ayuso
- [PATCH net-next 22/22] netfilter: allow to turn off xtables compat layer, Pablo Neira Ayuso
- [PATCH net-next 12/22] netfilter: ip_tables: pass table pointer via nf_hook_ops, Pablo Neira Ayuso
- [PATCH net-next 13/22] netfilter: arp_tables: pass table pointer via nf_hook_ops, Pablo Neira Ayuso
- [PATCH net-next 15/22] netfilter: remove all xt_table anchors from struct net, Pablo Neira Ayuso
- [PATCH net-next 16/22] netfilter: nf_log_syslog: Unset bridge logger in pernet exit, Pablo Neira Ayuso
- [PATCH net-next 14/22] netfilter: ip6_tables: pass table pointer via nf_hook_ops, Pablo Neira Ayuso
- [PATCH net-next 17/22] netfilter: nftables: add nft_pernet() helper function, Pablo Neira Ayuso
- [PATCH net-next 18/22] netfilter: nfnetlink: add struct nfnl_info and pass it to callbacks, Pablo Neira Ayuso
- [PATCH net-next 19/22] netfilter: nfnetlink: pass struct nfnl_info to rcu callbacks, Pablo Neira Ayuso
- [PATCH net-next 20/22] netfilter: nfnetlink: pass struct nfnl_info to batch callbacks, Pablo Neira Ayuso
- [nf-next:for-net-next 25/25] net/netfilter/nf_tables_api.c:4448:22: warning: variable 'ext' set but not used, kernel test robot
- [PATCH nf-next] netfilter: allow to turn off xtables compat layer,
Florian Westphal
- [PATCH nf-next 1/4] netfilter: nftables: rename set element data activation/deactivation functions,
Pablo Neira Ayuso
- [PATCH nf-next,v2] netfilter: nftables: add catch-all set element support, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nftables: add catch-all set element support, Pablo Neira Ayuso
- RSTs being marked as invalid because of wrong td_maxack value,
Ali Abdallah
- [PATCH nf-next 0/5] nfnetlink housekeeping,
Pablo Neira Ayuso
- [PATCH] net: netfilter: Add RFC-7597 Section 5.1 PSID support,
Cole Dishington
[PATCH] netfilter: nf_log_syslog: Unset bridge logger in pernet exit,
Phil Sutter
[PATCH nf-next v2 00/12] netfilter: x_tables: remove ipt_unregister_table,
Florian Westphal
- [PATCH nf-next v2 01/12] netfilter: ebtables: remove the 3 ebtables pointers from struct net, Florian Westphal
- [PATCH nf-next v2 02/12] netfilter: x_tables: remove ipt_unregister_table, Florian Westphal
- [PATCH nf-next v2 03/12] netfilter: add xt_find_table, Florian Westphal
- [PATCH nf-next v2 04/12] netfilter: iptables: unregister the tables by name, Florian Westphal
- [PATCH nf-next v2 05/12] netfilter: ip6tables: unregister the tables by name, Florian Westphal
- [PATCH nf-next v2 06/12] netfilter: arptables: unregister the tables by name, Florian Westphal
- [PATCH nf-next v2 08/12] netfilter: xt_nat: pass table to hookfn, Florian Westphal
- [PATCH nf-next v2 07/12] netfilter: x_tables: remove paranoia tests, Florian Westphal
- [PATCH nf-next v2 10/12] netfilter: arp_tables: pass table pointer via nf_hook_ops, Florian Westphal
- [PATCH nf-next v2 09/12] netfilter: ip_tables: pass table pointer via nf_hook_ops, Florian Westphal
- [PATCH nf-next v2 12/12] netfilter: remove all xt_table anchors from struct net, Florian Westphal
- [PATCH nf-next v2 11/12] netfilter: ip6_tables: pass table pointer via nf_hook_ops, Florian Westphal
- Re: [PATCH nf-next v2 00/12] netfilter: x_tables: remove ipt_unregister_table, Pablo Neira Ayuso
[PATCH v2 nf-next] netfilter: disable defrag once its no longer needed,
Florian Westphal
[PATCH nft] src: add cgroupsv2 support, Pablo Neira Ayuso
[PATCH libnftnl] expr: socket: add cgroups v2 support, Pablo Neira Ayuso
[PATCH nf-next] netfilter: nft_socket: add support for cgroupsv2, Pablo Neira Ayuso
[PATCH nf-next] netfilter: disable defrag once its no longer needed,
Florian Westphal
[PATCH nf-next 00/12] netfilter: remove xtables pointers from struct net,
Florian Westphal
- [PATCH nf-next 01/12] netfilter: ebtables: remove the 3 ebtables pointers from struct net, Florian Westphal
- [PATCH nf-next 02/12] netfilter: x_tables: remove ipt_unregister_table, Florian Westphal
- [PATCH nf-next 03/12] netfilter: add xt_find_table, Florian Westphal
- [PATCH nf-next 04/12] netfilter: iptables: unregister the tables by name, Florian Westphal
- [PATCH nf-next 05/12] netfilter: ip6tables: unregister the tables by name, Florian Westphal
- [PATCH nf-next 06/12] netfilter: arptables: unregister the tables by name, Florian Westphal
- [PATCH nf-next 07/12] netfilter: x_tables: remove paranoia tests, Florian Westphal
- [PATCH nf-next 08/12] netfilter: xt_nat: pass table to hookfn, Florian Westphal
- [PATCH nf-next 09/12] netfilter: ip_tables: pass table pointer via nf_hook_ops, Florian Westphal
- [PATCH nf-next 10/12] netfilter: arp_tables: pass table pointer via nf_hook_ops, Florian Westphal
- [PATCH nf-next 11/12] netfilter: ip6_tables: pass table pointer via nf_hook_ops, Florian Westphal
- [PATCH nf-next 12/12] netfilter: remove all xt_table anchors from struct net, Florian Westphal
[PATCH] netfilter: conntrack: Reset the max ACK flag on SYN in ignore state,
Ali Abdallah
Error when using clone option in iptables,
Mohan Das
Now have make distcheck passing with doxygen enabled,
Duncan Roe
[PATCH nf-next] netfilter: nat: move nf_xfrm_me_harder to where it is used,
Florian Westphal
[PATCH nft] parser_bison: missing relational operation on flag list, Pablo Neira Ayuso
[PATCH net-next 00/14] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 01/14] netfilter: flowtable: add vlan match offload support, Pablo Neira Ayuso
- [PATCH net-next 02/14] netfilter: flowtable: add vlan pop action offload support, Pablo Neira Ayuso
- [PATCH net-next 03/14] netfilter: conntrack: move autoassign warning member to net_generic data, Pablo Neira Ayuso
- [PATCH net-next 04/14] netfilter: conntrack: move autoassign_helper sysctl to net_generic data, Pablo Neira Ayuso
- [PATCH net-next 05/14] netfilter: conntrack: move expect counter to net_generic data, Pablo Neira Ayuso
- [PATCH net-next 07/14] netfilter: conntrack: convert sysctls to u8, Pablo Neira Ayuso
- [PATCH net-next 06/14] netfilter: conntrack: move ct counter to net_generic data, Pablo Neira Ayuso
- [PATCH net-next 08/14] netfilter: flowtable: Add FLOW_OFFLOAD_XMIT_UNSPEC xmit type, Pablo Neira Ayuso
- [PATCH net-next 09/14] netfilter: nft_payload: fix C-VLAN offload support, Pablo Neira Ayuso
- [PATCH net-next 10/14] netfilter: nftables_offload: VLAN id needs host byteorder in flow dissector, Pablo Neira Ayuso
- [PATCH net-next 12/14] netfilter: Dissect flow after packet mangling, Pablo Neira Ayuso
- [PATCH net-next 11/14] netfilter: nftables_offload: special ethertype handling for VLAN, Pablo Neira Ayuso
- [PATCH net-next 13/14] selftests: fib_tests: Add test cases for interaction with mangling, Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]