Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH nf-next 1/3] netfilter: nf_nat: don't try nat source port reallocation for reverse dir clash, (continued)
- [PATCH net-next v3 1/1] netfilter: conntrack: Guard possible unused functions,
Andy Shevchenko
- [PATCH] netfilter: nf_tables: replace deprecated strncpy with strscpy_pad,
Justin Stitt
- [PATCH nft] tests: shell: add test case for timeout updates, Florian Westphal
- [PATCH nft] tests: shell: extend vmap test with updates, Florian Westphal
- [PATCH net-next v2 1/1] netfilter: conntrack: Guard possible unused functions,
Andy Shevchenko
- [PATCH] selftests: netfilter: nft_tproxy.sh: add tcp tests, Antonio Ojea
- [PATCH nft 1/2] tests: shell: stabilize packetpath/payload,
Pablo Neira Ayuso
- [PATCH nf-next v5 0/2] netfilter: Make IP_NF_IPTABLES_LEGACY selectable,
Breno Leitao
- [PATCH libmnl] doc: Address warnings emitted by doxygen 1.12.0, Duncan Roe
- [PATCH net v1 1/1] netfilter: nf_reject: Fix build error when CONFIG_BRIDGE_NETFILTER=n,
Andy Shevchenko
- [PATCH net v1 1/1] netfilter: conntrack: Guard possoble unused functions,
Andy Shevchenko
- [PATCH net-next 00/12] Unmask upper DSCP bits - part 4 (last),
Ido Schimmel
- [PATCH net-next 01/12] netfilter: br_netfilter: Unmask upper DSCP bits in br_nf_pre_routing_finish(), Ido Schimmel
- [PATCH net-next 02/12] ipv4: ip_gre: Unmask upper DSCP bits in ipgre_open(), Ido Schimmel
- [PATCH net-next 03/12] bpf: lwtunnel: Unmask upper DSCP bits in bpf_lwt_xmit_reroute(), Ido Schimmel
- [PATCH net-next 04/12] ipv4: icmp: Unmask upper DSCP bits in icmp_reply(), Ido Schimmel
- [PATCH net-next 05/12] ipv4: ip_tunnel: Unmask upper DSCP bits in ip_tunnel_bind_dev(), Ido Schimmel
- [PATCH net-next 06/12] ipv4: ip_tunnel: Unmask upper DSCP bits in ip_md_tunnel_xmit(), Ido Schimmel
- [PATCH net-next 07/12] ipv4: ip_tunnel: Unmask upper DSCP bits in ip_tunnel_xmit(), Ido Schimmel
- [PATCH net-next 08/12] ipv4: netfilter: Unmask upper DSCP bits in ip_route_me_harder(), Ido Schimmel
- [PATCH net-next 09/12] netfilter: nft_flow_offload: Unmask upper DSCP bits in nft_flow_route(), Ido Schimmel
- [PATCH net-next 10/12] netfilter: nf_dup4: Unmask upper DSCP bits in nf_dup_ipv4_route(), Ido Schimmel
- [PATCH net-next 11/12] ipv4: udp_tunnel: Unmask upper DSCP bits in udp_tunnel_dst_lookup(), Ido Schimmel
- [PATCH net-next 12/12] sctp: Unmask upper DSCP bits in sctp_v4_get_dst(), Ido Schimmel
- Re: [PATCH net-next 00/12] Unmask upper DSCP bits - part 4 (last), David Ahern
- Re: [PATCH net-next 00/12] Unmask upper DSCP bits - part 4 (last), patchwork-bot+netdevbpf
- [PATCH nf 1/2] netfilter: nft_socket: fix sk refcount leaks,
Florian Westphal
- [PATCH] netfilter: tproxy: Add RCU protection in nf_tproxy_laddr4,
Jiawei Ye
- [RFC PATCH v3 00/19] Support socket access-control,
Mikhail Ivanov
- [RFC PATCH v3 01/19] landlock: Support socket access-control, Mikhail Ivanov
- [RFC PATCH v3 02/19] landlock: Add hook on socket creation, Mikhail Ivanov
- [RFC PATCH v3 03/19] selftests/landlock: Test basic socket restriction, Mikhail Ivanov
- [RFC PATCH v3 04/19] selftests/landlock: Test adding a rule with each supported access, Mikhail Ivanov
- [RFC PATCH v3 05/19] selftests/landlock: Test adding a rule for each unknown access, Mikhail Ivanov
- [RFC PATCH v3 06/19] selftests/landlock: Test adding a rule for unhandled access, Mikhail Ivanov
- [RFC PATCH v3 07/19] selftests/landlock: Test adding a rule for empty access, Mikhail Ivanov
- [RFC PATCH v3 08/19] selftests/landlock: Test overlapped restriction, Mikhail Ivanov
- [RFC PATCH v3 09/19] selftests/landlock: Test creating a ruleset with unknown access, Mikhail Ivanov
- [RFC PATCH v3 10/19] selftests/landlock: Test adding a rule with family and type outside the range, Mikhail Ivanov
- [RFC PATCH v3 11/19] selftests/landlock: Test unsupported protocol restriction, Mikhail Ivanov
- [RFC PATCH v3 12/19] selftests/landlock: Test that kernel space sockets are not restricted, Mikhail Ivanov
- [RFC PATCH v3 13/19] selftests/landlock: Test packet protocol alias, Mikhail Ivanov
- [RFC PATCH v3 14/19] selftests/landlock: Test socketpair(2) restriction, Mikhail Ivanov
- [RFC PATCH v3 15/19] selftests/landlock: Test SCTP peeloff restriction, Mikhail Ivanov
- [RFC PATCH v3 16/19] selftests/landlock: Test that accept(2) is not restricted, Mikhail Ivanov
- [RFC PATCH v3 17/19] samples/landlock: Replace atoi() with strtoull() in populate_ruleset_net(), Mikhail Ivanov
- [RFC PATCH v3 18/19] samples/landlock: Support socket protocol restrictions, Mikhail Ivanov
- [RFC PATCH v3 19/19] landlock: Document socket rule type support, Mikhail Ivanov
- [PATCH net-next v2 0/5] make use of the helper macro LIST_HEAD(),
Hongbo Li
- [PATCH net-next v1] netlink: specs: nftables: allow decode of tailscale ruleset,
Donald Hunter
- [nft PATCH] libnftables: Zero ctx->vars after freeing it,
Phil Sutter
- [PATCH nf-next,v3 6/9] netfilter: nf_tables: annotate data-races around element expiration,
Pablo Neira Ayuso
- [PATCH nf-next,v3 1/9] netfilter: nf_tables: elements with timeout below CONFIG_HZ never expire,
Pablo Neira Ayuso
- [PATCH nft] libnftables: set variable array to NULL after release, Pablo Neira Ayuso
- [PATCH] conntrack: -L doesn't take a value, so don't discard one (same for -IUDGEFA),
Ahelenia Ziemiańska
- [PATCH nft,v2] src: support for timeout never in elements, Pablo Neira Ayuso
- [PATCH nf-next,v2 1/9] netfilter: nf_tables: elements with timeout below CONFIG_HZ never expire,
Pablo Neira Ayuso
- [PATCH nf-next,v2 6/9] netfilter: nf_tables: annotate data-races around element expiration, Pablo Neira Ayuso
- [PATCH nf-next,v2 7/9] netfilter: nf_tables: consolidate timeout extension for elements, Pablo Neira Ayuso
- [PATCH nf-next,v2 9/9] netfilter: nf_tables: set element timeout update support, Pablo Neira Ayuso
- [PATCH nf-next,v2 8/9] netfilter: nf_tables: zero timeout means element never times out, Pablo Neira Ayuso
- [PATCH nf-next,v2 5/9] netfilter: nft_dynset: annotate data-races around set timeout, Pablo Neira Ayuso
- [PATCH nf-next,v2 4/9] netfilter: nf_tables: remove annotation to access set timeout while holding lock, Pablo Neira Ayuso
- [PATCH nf-next,v2 3/9] netfilter: nf_tables: reject expiration higher than timeout, Pablo Neira Ayuso
- [PATCH nf-next,v2 2/9] netfilter: nf_tables: reject element expiration with no timeout, Pablo Neira Ayuso
- [PATCH v2 net-next] netlink: specs: nftables: allow decode of default firewalld ruleset,
Florian Westphal
- [PATCH 1/1] asn: fix missing quiet checks in xt_asn_build, Philip Prindeville
- [PATCH net-next] netlink: specs: nftables: allow decode of default firewalld ruleset,
Florian Westphal
- Request for comments,
Duncan Roe
- [PATCH] ksleftest nfqueue race with dnat,
Antonio Ojea
- [PATCH nf-next 0/2] netfilter: Add missing Kernel doc to headers,
Simon Horman
- [PATCH] ipset: Fix implicit declaration of function basename,
mpagano
- [PATCH net-next] selftests: netfilter: nft_queue.sh: fix spurious timeout on debug kernel,
Florian Westphal
- [PATCH libnetfilter_conntrack v2] conntrack: Add zone filtering for conntrack events,
Priyankar Jain
[PATCH libnetfilter_conntrack v1] conntrack: Add zone filtering for conntrack events, Priyankar Jain
[PATCH nf-next v4 0/2] netfilter: Make IP_NF_IPTABLES_LEGACY selectable,
Breno Leitao
[PATCH v2 0/2] netfilter: nf_tables: Fix percpu address space issues in nf_tables_api.c,
Uros Bizjak
[PATCH nft 1/5] cache: assert filter when calling nft_cache_evaluate(),
Pablo Neira Ayuso
BUG: general protection fault in arpt_do_table, Xingyu Li
[PATCH] netfilter: nf_tables: Correct spelling in nf_tables.h, Simon Horman
Re: Stateless NAT ICMP Payload Mismatch,
Pablo Neira Ayuso
[PATCH iptables 0/1] configure: Determine if musl is used for build,
Joshua Lant
[PATCH net-next v2 0/6] replace deprecated strcpy with strscpy,
Hongbo Li
[PATCH v1] netfilter: conntrack: Convert to use ERR_CAST(),
Shen Lichuan
[PATCH nf-next] netfilter: nf_tables: drop unused 3rd argument from validate callback ops,
Florian Westphal
[PATCH -next 0/5] net: Use kmemdup_array() instead of kmemdup() for multiple allocation,
Jinjie Ruan
[no subject], Unknown
[PATCH nf] netfilter: nf_tables_ipv6: consider network offset in netdev/egress validation, Pablo Neira Ayuso
[PATCH nf-next v3 0/2] netfilter: Make IP_NF_IPTABLES_LEGACY selectable,
Breno Leitao
[PATCH net-next 0/6] replace deprecated strcpy with strscpy,
Hongbo Li
[PATCH net-next 0/5] make use of the helper macro LIST_HEAD(),
Hongbo Li
[PATCH nft] tests: shell: extend coverage for meta l4proto netdev/egress matching,
Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: restore IP sanity checks for netdev/egress,
Pablo Neira Ayuso
[PATCH nft,v2 0/7] cache updates,
Pablo Neira Ayuso
- [PATCH nft,v2 2/7] cache: accumulate flags in batch, Pablo Neira Ayuso
- [PATCH nft,v2 4/7] cache: only dump rules for the given table, Pablo Neira Ayuso
- [PATCH nft,v2 1/7] cache: reset filter for each command, Pablo Neira Ayuso
- [PATCH nft,v2 3/7] cache: add filtering support for objects, Pablo Neira Ayuso
- [PATCH nft,v2 7/7] tests: shell: cover reset command with counter and quota, Pablo Neira Ayuso
- [PATCH nft,v2 6/7] tests: shell: cover anonymous set with reset command, Pablo Neira Ayuso
- [PATCH nft,v2 5/7] cache: consolidate reset command, Pablo Neira Ayuso
- Re: [PATCH nft,v2 0/7] cache updates, Eric Garver
[PATCH net-next v1] netfilter: Use kmemdup_array instead of kmemdup for multiple allocation,
Yan Zhen
[PATCH nft 0/5] cache updates,
Pablo Neira Ayuso
[PATCH nf-next v2 2/2] netfilter: Make IP6_NF_IPTABLES_LEGACY selectable, Breno Leitao
[PATCH nf-next v2 1/2] netfilter: Make IP_NF_IPTABLES_LEGACY selectable, Breno Leitao
[PATCH] iptables: align xt_CONNMARK with current kernel headers,
Joshua Lant
[PATCH nf-next 1/2] netfilter: Make IP_NF_IPTABLES_LEGACY selectable,
Breno Leitao
[kernel PATCH] nf_tables_ipv4: fix transport header offset comparison, Jorge Ortiz
[PATCH net,v2 0/3] Netfilter fixes for net,
Pablo Neira Ayuso
netfilter: Kconfig: IP6_NF_IPTABLES_LEGACY old =y behaviour question,
Breno Leitao
[syzbot] [netfilter?] inconsistent lock state in gfs2_fill_super, syzbot
[PATCH] netfilter: Don't track counter updates of do_add_counters(),
takakura
[PATCH nf,v2] netfilter: flowtable: validate vlan header, Pablo Neira Ayuso
nftables build warning, parser_bison.y:206.1-19: warning: deprecated directive: ‘%name-prefix "nft_"’, pgnd
[PATCH net-next 00/12] Unmask upper DSCP bits - part 1,
Ido Schimmel
- [PATCH net-next 01/12] bpf: Unmask upper DSCP bits in bpf_fib_lookup() helper, Ido Schimmel
- [PATCH net-next 02/12] ipv4: Unmask upper DSCP bits in NETLINK_FIB_LOOKUP family, Ido Schimmel
- [PATCH net-next 03/12] ipv4: Unmask upper DSCP bits when constructing the Record Route option, Ido Schimmel
- [PATCH net-next 04/12] netfilter: rpfilter: Unmask upper DSCP bits, Ido Schimmel
- [PATCH net-next 05/12] netfilter: nft_fib: Unmask upper DSCP bits, Ido Schimmel
- [PATCH net-next 07/12] ipv4: Unmask upper DSCP bits in fib_compute_spec_dst(), Ido Schimmel
- [PATCH net-next 08/12] ipv4: Unmask upper DSCP bits in input route lookup, Ido Schimmel
- [PATCH net-next 06/12] ipv4: ipmr: Unmask upper DSCP bits in ipmr_rt_fib_lookup(), Ido Schimmel
- [PATCH net-next 10/12] ipv4: icmp: Pass full DS field to ip_route_input(), Ido Schimmel
- [PATCH net-next 09/12] ipv4: Unmask upper DSCP bits in RTM_GETROUTE input route lookup, Ido Schimmel
- [PATCH net-next 11/12] ipv4: udp: Unmask upper DSCP bits during early demux, Ido Schimmel
- [PATCH net-next 12/12] ipv4: Unmask upper DSCP bits when using hints, Ido Schimmel
- Re: [PATCH net-next 00/12] Unmask upper DSCP bits - part 1, Florian Westphal
- Re: [PATCH net-next 00/12] Unmask upper DSCP bits - part 1, David Ahern
- Re: [PATCH net-next 00/12] Unmask upper DSCP bits - part 1, patchwork-bot+netdevbpf
[PATCH 0/2 nft] mnl: query netdevices for in/egress hooks,
Florian Westphal
[PATCH nf-next 0/3] netfilter: nf_tables: reject loads from,
Florian Westphal
[nft PATCH] doc: Update outdated info,
谢致邦 (XIE Zhibang)
[PATCH net 0/3] netfilter: nft_counter: Statistics fixes/ optimisation.,
Sebastian Andrzej Siewior
[PATCH bpf-next] bpf: use kfunc hooks instead of program types,
Matteo Croce
[PATCH nft 0/4] fixes for json parser,
Pablo Neira Ayuso
[PATCH nft 1/2] src: remove DTYPE_F_PREFIX,
Pablo Neira Ayuso
[syzbot] [netfilter?] inconsistent lock state in valid_state (4),
syzbot
[ANNOUNCE] Security evaluation by ANSSI of nftables, Pablo Neira Ayuso
[RFC PATCH v1 0/4] Implement performance impact measurement tool,
Mikhail Ivanov
Fwd: correct nft v1.1.0 usage for flowtable h/w offload? `flags offload` &/or `devices=`,
pgnd
[PATCH nft] cache: revisit reset command flags, Pablo Neira Ayuso
[PATCH 5.10 342/352] netfilter: nf_tables: prefer nft_chain_validate, Greg Kroah-Hartman
[PATCH 5.10 341/352] netfilter: nf_tables: allow clone callbacks to sleep, Greg Kroah-Hartman
[PATCH 5.10 340/352] netfilter: nf_tables: use timestamp to check for set element timeout, Greg Kroah-Hartman
[PATCH 5.10 339/352] netfilter: nf_tables: set element extended ACK reporting support, Greg Kroah-Hartman
[PATCH 5.4 253/259] netfilter: nf_tables: prefer nft_chain_validate, Greg Kroah-Hartman
[PATCH 5.4 252/259] netfilter: nf_tables: use timestamp to check for set element timeout, Greg Kroah-Hartman
[PATCH 5.4 251/259] netfilter: nf_tables: set element extended ACK reporting support, Greg Kroah-Hartman
[PATCH 5.15 470/484] netfilter: nf_tables: prefer nft_chain_validate, Greg Kroah-Hartman
[PATCH 5.15 469/484] netfilter: nf_tables: allow clone callbacks to sleep, Greg Kroah-Hartman
[PATCH 5.15 468/484] netfilter: nf_tables: bail out if stateful expression provides no .clone, Greg Kroah-Hartman
[PATCH 5.15 467/484] netfilter: nf_tables: use timestamp to check for set element timeout, Greg Kroah-Hartman
[PATCH 5.15 466/484] netfilter: nf_tables: set element extended ACK reporting support, Greg Kroah-Hartman
[PATCH 4.19 191/196] netfilter: nf_tables: prefer nft_chain_validate, Greg Kroah-Hartman
[PATCH 4.19 190/196] netfilter: nf_tables: use timestamp to check for set element timeout, Greg Kroah-Hartman
[PATCH 4.19 189/196] netfilter: nf_tables: set element extended ACK reporting support, Greg Kroah-Hartman
[PATCH nft] parser_bison: allow 0 burst in limit rate byte mode, Pablo Neira Ayuso
[PATCH nft 0/5] relax cache requirements, speed up incremental updates,
Pablo Neira Ayuso
[PATCH nft] tests: shell: add a few tests for nft -i, Pablo Neira Ayuso
[PATCH] netfilter: nfnetlink: fix uninitialized local variable,
icejl
Please comment on my libnetfilter_queue build speedup patch,
Duncan Roe
[PATCH nft] cache: populate chains on demand from error path, Pablo Neira Ayuso
[PATCH net-next v2 0/3] Preparations for FIB rule DSCP selector,
Ido Schimmel
[PATCH nft,v2 1/2] datatype: reject rate in quota statement,
Pablo Neira Ayuso
[PATCH nft 1/2] datatype: replace strncmp() by strcmp() in unit parser,
Pablo Neira Ayuso
[PATCH] tests: shell: skip vlan mangling testcase if egress is not support, Pablo Neira Ayuso
[RFC PATCH v2 0/9] Support TCP listen access-control,
Mikhail Ivanov
- [RFC PATCH v2 2/9] landlock: Support TCP listen access-control, Mikhail Ivanov
- [RFC PATCH v2 4/9] selftests/landlock: Test listening restriction, Mikhail Ivanov
- [RFC PATCH v2 3/9] selftests/landlock: Support LANDLOCK_ACCESS_NET_LISTEN_TCP, Mikhail Ivanov
- [RFC PATCH v2 1/9] landlock: Refactor current_check_access_socket() access right check, Mikhail Ivanov
- [RFC PATCH v2 5/9] selftests/landlock: Test listen on connected socket, Mikhail Ivanov
- [RFC PATCH v2 6/9] selftests/landlock: Test listening without explicit bind restriction, Mikhail Ivanov
- [RFC PATCH v2 7/9] selftests/landlock: Test listen on ULP socket without clone method, Mikhail Ivanov
- [RFC PATCH v2 8/9] selftests/landlock: Test changing socket backlog with listen(2), Mikhail Ivanov
- [RFC PATCH v2 9/9] samples/landlock: Support LANDLOCK_ACCESS_NET_LISTEN, Mikhail Ivanov
- Re: [RFC PATCH v2 0/9] Support TCP listen access-control, Günther Noack
[nft PATCH] tests: shell: Extend table persist flag test a bit,
Phil Sutter
[Q] The usage of xt_recseq.,
Sebastian Andrzej Siewior
[PATCH nf] netfilter: flowtable: validate vlan header, Pablo Neira Ayuso
[PATCH 6.1 148/150] netfilter: nf_tables: prefer nft_chain_validate, Greg Kroah-Hartman
[PATCH 6.1 146/150] netfilter: nf_tables: bail out if stateful expression provides no .clone, Greg Kroah-Hartman
[PATCH 6.1 147/150] netfilter: nf_tables: allow clone callbacks to sleep, Greg Kroah-Hartman
[PATCH -stable,4.19.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
[PATCH -stable,5.4.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
[PATCH -stable,5.10.x 0/4] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH -stable,5.10.x 1/4] netfilter: nf_tables: set element extended ACK reporting support, Pablo Neira Ayuso
- [PATCH -stable,5.10.x 2/4] netfilter: nf_tables: use timestamp to check for set element timeout, Pablo Neira Ayuso
- [PATCH -stable,5.10.x 3/4] netfilter: nf_tables: allow clone callbacks to sleep, Pablo Neira Ayuso
- [PATCH -stable,5.10.x 4/4] netfilter: nf_tables: prefer nft_chain_validate, Pablo Neira Ayuso
- Re: [PATCH -stable,5.10.x 0/4] Netfilter fixes for -stable, Greg KH
[PATCH -stable,5.15.x 0/5] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH -stable,5.15.x 2/5] netfilter: nf_tables: use timestamp to check for set element timeout, Pablo Neira Ayuso
- [PATCH -stable,5.15.x 1/5] netfilter: nf_tables: set element extended ACK reporting support, Pablo Neira Ayuso
- [PATCH -stable,5.15.x 3/5] netfilter: nf_tables: bail out if stateful expression provides no .clone, Pablo Neira Ayuso
- [PATCH -stable,5.15.x 4/5] netfilter: nf_tables: allow clone callbacks to sleep, Pablo Neira Ayuso
- [PATCH -stable,5.15.x 5/5] netfilter: nf_tables: prefer nft_chain_validate, Pablo Neira Ayuso
- Re: [PATCH -stable,5.15.x 0/5] Netfilter fixes for -stable, Greg KH
[PATCH -stable,6.1.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
[PATCH -stable,6.6.x 0/1] Netfilter fixes for -stable,
Pablo Neira Ayuso
[PATCH libnftnl] set: export nftnl_set_clone,
chayleaf
[syzbot] [netfilter?] KMSAN: uninit-value in nf_flow_offload_inet_hook, syzbot
[nf PATCH v4 0/3] Add locking for NFT_MSG_GETOBJ_RESET requests,
Phil Sutter
[PATCH] netfilter: nfnetlink_log: remove unnecessary check in __build_packet_message(),
Roman Smirnov
[PATCH nft] optimize: compare meta inner_desc pointers too, Florian Westphal
[PATCH nf 0/2] netfilter: disable support for queueing cloned conntrack entries,
Florian Westphal
iptables: compiling with kernel headers,
josh lant
[PATCH nft] src: add never expires marker for element timeout, Pablo Neira Ayuso
[PATCH nf-next 0/8] nf_tables: support for updating set element timeout,
Pablo Neira Ayuso
Re: CVE-2024-39503: netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type,
Siddh Raman Pant
[PATCH nf v1] netfilter: flowtable: initialise extack before use,
Donald Hunter
[PATCH nf v1] netfilter: nfnetlink: Initialise extack before use in ACKs,
Donald Hunter
[PATCH] netfilter: allow ipv6 fragments to arrive on different devices,
Tom Hughes
[PATCH] netfilter: nf_tables: Add __percpu annotation to *stats pointer in nf_tables_updchain(),
Uros Bizjak
[syzbot] Monthly netfilter report (Aug 2024), syzbot
[iptables PATCH 0/8] nft: Implement forward compat for future binaries,
Phil Sutter
- [iptables PATCH 2/8] ebtables: Introduce nft_bridge_init_cs(), Phil Sutter
- [iptables PATCH 1/8] ebtables: Zero freed pointers in ebt_cs_clean(), Phil Sutter
- [iptables PATCH 6/8] nft: __add_{match,target}() can't fail, Phil Sutter
- [iptables PATCH 3/8] nft: Reduce overhead in nft_rule_find(), Phil Sutter
- [iptables RFC PATCH 8/8] nft: Support compat extensions in rule userdata, Phil Sutter
- [iptables PATCH 7/8] nft: Introduce UDATA_TYPE_COMPAT_EXT, Phil Sutter
- [iptables PATCH 5/8] nft: ruleparse: Introduce nft_parse_rule_expr(), Phil Sutter
- [iptables PATCH 4/8] nft: ruleparse: Drop 'iter' variable in nft_rule_to_iptables_command_state, Phil Sutter
- Re: [iptables PATCH 0/8] nft: Implement forward compat for future binaries, Phil Sutter
[PATCH nft v2 0/5] src: mnl: rework list hooks infra,
Florian Westphal
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]