Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: {PATCH nf] x_tables: Allow REJECT targets in PREROUTING chains, (continued)
- [RFC PATCH] doc: use symbolic names for chain priorities,
Simon Ruderich
- [PATCH 0/3] Minor documentation improvements,
Simon Ruderich
- [PATCH net 0/9] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH net 7/9] netfilter: nftables: disallow updates on table ownership, Pablo Neira Ayuso
- [PATCH net 1/9] uapi: nfnetlink_cthelper.h: fix userspace compilation error, Pablo Neira Ayuso
- [PATCH net 6/9] netfilter: x_tables: gpf inside xt_find_revision(), Pablo Neira Ayuso
- [PATCH net 9/9] netfilter: nftables: bogus check for netlink portID with table owner, Pablo Neira Ayuso
- [PATCH net 3/9] netfilter: nf_nat: undo erroneous tcp edemux lookup, Pablo Neira Ayuso
- [PATCH net 5/9] selftests: netfilter: test nat port clash resolution interaction with tcp early demux, Pablo Neira Ayuso
- [PATCH net 2/9] netfilter: conntrack: Remove a double space in a log message, Pablo Neira Ayuso
- [PATCH net 8/9] netfilter: nftables: fix possible double hook unregistration with table owner, Pablo Neira Ayuso
- [PATCH net 4/9] netfilter: conntrack: avoid misleading 'invalid' in log message, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/9] netfilter fixes for net, Florian Westphal
- [PATCH net 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH nft] expression: memleak in verdict_expr_parse_udata(), Pablo Neira Ayuso
- Kernel Error FLOW OFFLOAD on nftables,
Максим
- [PATCH RESEND][next] netfilter: Fix fall-through warnings for Clang,
Gustavo A. R. Silva
- [PATCH nft,v2] mnl: remove nft_mnl_socket_reopen(), Pablo Neira Ayuso
- [PATCH][nft,v2] conntrack: Fix gre tunneling over ipv6,
Ludovic Senecaux
- [PATCH nf 1/2,v2] netfilter: nftables: fix possible double hook unregistration with table owner,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nftables: fix possible double hook unregistration with table owner, Pablo Neira Ayuso
- [PATCH 0/3] Don't use RCU for x_tables synchronization,
Mark Tomlinson
- [PATCH nft 1/3] parser: squash duplicated spec/specid rules,
Florian Westphal
- [PATCH nf-next] netfilter: flowtable: separate replace, destroy and stats to different workqueues,
Oz Shlomo
- [PATCH] netfilter: Fix GRE over IPv6 with conntrack module,
linuxludo
- [iptables PATCH 1/2] xtables-translate: Fix translation of odd netmasks,
Phil Sutter
- [nf:master 7/7] net/netfilter/nf_tables_api.c:920:15: warning: converting the enum constant to a boolean,
kernel test robot
- [PATCH nft] mnl: remove nft_mnl_socket_reopen(),
Pablo Neira Ayuso
- [PATCH nft] table: support for the table owner flag, Pablo Neira Ayuso
- [PATCH libnftnl] table: add table owner support, Pablo Neira Ayuso
- [PATCH nf] netfilter: nftables: disallow updates on table ownership, Pablo Neira Ayuso
- [PATCH] netfilter: gpf inside xt_find_revision(),
Vasily Averin
- [PATCH nf 0/3] netfilter: nat: fix ancient dnat+edemux bug,
Florian Westphal
- [PATCH iptables-nft] iptables-nft: fix -Z option,
Florian Westphal
- [PATCH] uapi: nfnetlink_cthelper.h: fix userspace compilation error,
Dmitry V. Levin
- [PATCH nft] table: rework flags printing, Pablo Neira Ayuso
- increasing ip_list_tot in net/netfilter/xt_recent.c for a non-modular kernel,
Toralf Förster
- [PATCH nft] src: allow use of 'verdict' in typeof definitions, Florian Westphal
- [nft PATCH 1/2] main: fix nft --help output fallout from 719e4427,
Štěpán Němec
- [PATCH] xtables-addons 3.15 doesn't compile on 32-bit x86,
andy
- [PATCH] netfilter: Remove a double space in a log message,
Klemen Košir
- [ANNOUNCE] ipset 7.11 released, Jozsef Kadlecsik
- [iptables PATCH] nft: Fix bitwise expression avoidance detection, Phil Sutter
- [PATCH nft] json: init parser state for every new buffer/file,
Eric Garver
- [ebtables PATCH] Open the lockfile with O_CLOEXEC,
Ondrej Mosnacek
- [libnftnl PATCH 2/2] Avoid out of bounds read from data,
Maya Rashish
- [libnftnl PATCH 1/2] Avoid out of bound reads in tests.,
Maya Rashish
- [PATCH net-next 0/3] Netfilter updates for net-next,
Pablo Neira Ayuso
- [nft PATCH] monitor: Don't print newgen message with JSON output, Phil Sutter
- [iptables PATCH] include: Drop libipulog.h,
Phil Sutter
- traffic shaping with tc on Linux 5.4.x, Lars Noodén
- [PATCH nf-next,v3 1/3] netfilter: nftables: allow to release one table,
Pablo Neira Ayuso
- [PATCH nf-next,v2] netfilter: nftables: introduce table ownership, Pablo Neira Ayuso
- Question about using NFT_GOTO in kernel module, Bob @ gmail
- [PATCH libnetfilter_queue v3] src: fix IPv6 header handling,
Etan Kissling
- [PATCH net 0/2] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH net 1/2] netfilter: conntrack: skip identical origin tuple in same zone only, Pablo Neira Ayuso
- [PATCH net 2/2] netfilter: nftables: relax check for stateful expressions in set definition, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/2] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH libnetfilter_queue v2] src: fix IPv6 header handling, Etan Kissling
- [PATCH] evaluate: incorrect usage of stmt_binary_error() in reject, Pablo Neira Ayuso
- [PATCH nf,v3] netfilter: nftables: relax check for stateful expressions in set definition, Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nftables: relax check for stateful expressions in set definition, Pablo Neira Ayuso
- Re: Unable to create a chain called "trace",
Florian Westphal
- [PATCH nft] trace: do not remove icmp type from packet dump, Florian Westphal
- [PATCH nf] netfilter: nftables: relax check for stateful expressions in set definition, Pablo Neira Ayuso
- [PATCH net-next 0/7] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: skip identical origin tuple in same zone only,
Florian Westphal
- [RFC conntrack-tools PATCH] conntrack-tools: introduce conntrackdctl,
Arturo Borrero Gonzalez
- [PATCH nft,v2] src: add negation match on singleton bitmask value, Pablo Neira Ayuso
- [nft PATCH 1/2] tests/py: Write dissenting payload into the right file,
Phil Sutter
- [PATCH nft 0/3] evaluate: fix crash on empty set restore,
Florian Westphal
- [PATCH nft 0/3] nft: fix ct zone handling in sets and maps,
Florian Westphal
- [PATCH net-next v2 0/4] Fix W=1 compilation warnings in net/* folder,
Leon Romanovsky
- [PATCH net-next v1 0/4] Fix W=1 compilation warnings in net/* folder,
Leon Romanovsky
- [nft PATCH] json: Do not abbreviate reject statement object, Phil Sutter
- [PATCH] netfilter: flowtable: fix tcp and udp header checksum update,
sven . auhagen
- [PATCH nf] netfilter: nftables: fix possible UAF over chains from packet path in netns, Pablo Neira Ayuso
- [PATCH net 0/4] Fix W=1 compilation warnings in net/* folder,
Leon Romanovsky
- [PATCH nft 1/2] tests: add icmp/6 test where dependency should be left alone,
Florian Westphal
- [PATCH nft] src: add negation match on singleton bitmask value, Pablo Neira Ayuso
- [PATCH conntrack-tools] tests: conntrackd: move basic netns scenario setup to shell script,
Pablo Neira Ayuso
- [PATCH 1/1 nf] selftests: netfilter: fix current year, Fabian Frederick
- [PATCH v3 0/8] conntrack: save output format,
Mikhail Sennikovsky
- [PATCH] netfilter: Fix attempt to update deleted entry in xt_recent,
Jozsef Kadlecsik
- [PATCH] netfilter: nf_tables: remove redundant assignment of variable err,
Colin King
- [iptables PATCH] ebtables: Exit gracefully on invalid table names, Phil Sutter
- [PATCH] tests: monitor: use correct $nft value in EXIT trap,
Štěpán Němec
- https://bugzilla.kernel.org/show_bug.cgi?id=207773,
Reindl Harald
- [PATCH v24 07/25] LSM: Use lsmblob in security_secctx_to_secid, Casey Schaufler
- [PATCH v24 08/25] LSM: Use lsmblob in security_secid_to_secctx, Casey Schaufler
- [nft PATCH] erec: Sanitize erec location indesc,
Phil Sutter
- [nft PATCH] json: limit: Always include burst value, Phil Sutter
- [PATCH nf-next] netfilter: nftables: introduce table ownership,
Pablo Neira Ayuso
- [nft PATCH 1/2] reject: Fix for missing dependencies in netdev family,
Phil Sutter
- [PATCH v24 18/25] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- [PATCH v24 16/25] LSM: Use lsmcontext in security_secid_to_secctx, Casey Schaufler
- [PATCH v24 15/25] LSM: Ensure the correct LSM context releaser, Casey Schaufler
- [PATCH nft] src: evaluate: reset context maxlen value before prio evaluation, Florian Westphal
- [PATCH nf-next 2/2,v2] netfilter: nftables: add nft_parse_register_store(), Pablo Neira Ayuso
- [PATCH nf-next,v4 1/3] netfilter: nftables: add nft_parse_register_load() and use it,
Pablo Neira Ayuso
- [PATCH nf-next 3/2] netfilter: nftables: statify nft_parse_register(), Pablo Neira Ayuso
- [PATCH nf-next 2/2,v3] netfilter: nftables: add nft_parse_register_store(), Pablo Neira Ayuso
- [PATCH nf-next 1/2] netfilter: nftables: add nft_parse_register_load() and use it,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: flowtable: add hash offset field to tuple, Pablo Neira Ayuso
- [PATCH nft v4] src: Support netdev egress hook,
Lukas Wunner
- [conntrack-tools PATCH 1/3] tests: introduce new python-based framework for running tests,
Arturo Borrero Gonzalez
- Re: KASAN: use-after-free Read in dump_schedule,
syzbot
- [PATCH nf-next v4 0/5] Netfilter egress hook,
Lukas Wunner
- [PATCH nft] json: icmp: move expected parts to json.output, Florian Westphal
- [PATCH nft] evaluate: disallow ct original {s,d}ddr from concatenations, Pablo Neira Ayuso
- [PATCH nft] exthdr: remove tcp dependency for tcp option matching,
Florian Westphal
- [PATCH nft 0/4] json test case fixups,
Florian Westphal
- [PATCH nf-next v2] netfilter: ctnetlink: remove get_ct indirection,
Florian Westphal
- [conntrack-tools PATCH] conntrackd: introduce yes & no config values,
Arturo Borrero Gonzalez
- [PATCH nf-next] netfilter: ctnetlink: remove get_ct indirection,
Florian Westphal
- [PATCH] ipset: fix print format warning,
Neutron Soutmun
- [PATCH nf] netfilter: nft_dynset: dump expressions when set definition contains no expressions, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_dynset: add timeout extension to template, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_dynset: honor stateful expressions in set definition, Pablo Neira Ayuso
- [ANNOUNCE] iptables 1.8.7 release, Phil Sutter
- [ANNOUNCE] nftables 0.9.8 release, Pablo Neira Ayuso
- [iptables PATCH] tests/shell: Fix nft-only/0009-needless-bitwise_0, Phil Sutter
- [ANNOUNCE] libnftnl 1.1.9 release, Pablo Neira Ayuso
- [PATCH nft] evaluate: disallow ct original {s,d}ddr from maps, Pablo Neira Ayuso
- [PATCH conntrack-tools 0/3] preparing support for command batch,
Pablo Neira Ayuso
- KMSAN: uninit-value in nf_conntrack_udplite_packet (2), syzbot
- [PATCH libnetfilter_queue] src: fix header handling in nfq_ip6_set_transport_header, Etan Kissling
- [PATCH libnetfilter_queue] src: fix IPv6 header handling,
Etan Kissling
- [PATCH libnetfilter_queue] src: add pkt_buff function for ICMP,
Etan Kissling
- [PATCH ghak90 v11 00/11] audit: implement container identifier,
Richard Guy Briggs
- [PATCH ghak90 v11 01/11] audit: collect audit task parameters, Richard Guy Briggs
- [PATCH ghak90 v11 02/11] audit: add container id, Richard Guy Briggs
- [PATCH ghak90 v11 03/11] audit: log container info of syscalls, Richard Guy Briggs
- [PATCH ghak90 v11 04/11] audit: add contid support for signalling the audit daemon, Richard Guy Briggs
- [PATCH ghak90 v11 05/11] audit: add support for non-syscall auxiliary records, Richard Guy Briggs
- [PATCH ghak90 v11 06/11] audit: add containerid support for user records, Richard Guy Briggs
- [PATCH ghak90 v11 07/11] audit: add containerid filtering, Richard Guy Briggs
- [PATCH ghak90 v11 09/11] audit: contid check descendancy and nesting, Richard Guy Briggs
- [PATCH ghak90 v11 10/11] audit: track container nesting, Richard Guy Briggs
- [PATCH ghak90 v11 11/11] audit: add capcontid to set contid outside init_user_ns, Richard Guy Briggs
- [PATCH ghak90 v11 08/11] audit: add support for containerid to network namespaces, Richard Guy Briggs
- [PATCH AUTOSEL 5.10 08/51] netfilter: ipset: fixes possible oops in mtype_resize, Sasha Levin
- [PATCH AUTOSEL 5.4 05/28] netfilter: ipset: fixes possible oops in mtype_resize, Sasha Levin
- [PATCH] netfilter: Fix memleak in nf_nat_init,
Dinghao Liu
- [PATCH net] netfilter: conntrack: fix reading nf_conntrack_buckets,
Jesper Dangaard Brouer
- [PATCH] netfilter: Reverse nft_set_lookup_byid list traversal,
Jan-Philipp Litza
- Re: [PATCH v6] ipvs: add weighted random twos choice algorithm,
Julian Anastasov
- [PATCH nft] segtree: honor set element expiration, Pablo Neira Ayuso
- [PATCH nft 0/2] libedit support followup,
Pablo Neira Ayuso
- [PATCH nft 0/2] follow up work on the libedit support,
Pablo Neira Ayuso
- [PATCH net 0/3] net: fix netfilter defrag/ip tunnel pmtu blackhole,
Florian Westphal
- [PATCH nft] cli: add libedit support, Pablo Neira Ayuso
- [PATCH nft] src: set on flags to request multi-statement support, Pablo Neira Ayuso
- Potential licensing issue with libreadline,
Arturo Borrero Gonzalez
- [PATCH net 0/3] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH net 1/3] netfilter: xt_RATEEST: reject non-null terminated string from userspace, Pablo Neira Ayuso
- [PATCH net 2/3] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature, Pablo Neira Ayuso
- [PATCH net 3/3] netfilter: nftables: add set expression flags, Pablo Neira Ayuso
- Re: [PATCH net 0/3] Netfilter fixes for net, Jakub Kicinski
- <Possible follow-ups>
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] netfilter fixes for net, Florian Westphal
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] Netfilter fixes for net, Florian Westphal
- [PATCH net 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH net 0/3] netfilter fixes for net, Florian Westphal
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]