Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH linux-5.9 1/1] net: netfilter: fix KASAN: slab-out-of-bounds Read in nft_flow_rule_create, (continued)
- [PATCH nft 1/2] rule: larger number of error locations,
Pablo Neira Ayuso
- [PATCH libnftnl] expr: add nftnl_rule_del_expr(), Pablo Neira Ayuso
- [PATCH] conntrack: fix zone sync issue,
yang_y_yi
- [PATCH AUTOSEL 5.8 086/101] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 5.4 69/80] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 4.19 50/56] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 4.14 46/52] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 4.4 29/33] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 4.9 37/41] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH AUTOSEL 5.9 092/111] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Sasha Levin
- [PATCH] docs: nf_flowtable: fix typo.,
Jeremy Sowden
- [PATCH libnfnl] expr: expose nftnl_expr_build_payload(), Pablo Neira Ayuso
- [bugreport] [5.10] warning at net/netfilter/nf_tables_api.c:622,
Mikhail Gavrilov
- [nft] Bug 1444 - Segfault, Gopal Yadav
- Re: bpf-next test error: BUG: program execution failed: executor 0: exit status 67,
Dmitry Vyukov
- [PATCH net-next] netfilter: nftables: allow re-computing sctp CRC-32C in 'payload' statements,
Pablo Neira Ayuso
- [PATCH net-next,v2 0/9] netfilter: flowtable bridge and vlan enhancements,
Pablo Neira Ayuso
- [PATCH net-next,v2 1/9] netfilter: flowtable: add xmit path types, Pablo Neira Ayuso
- [PATCH net-next,v2 3/9] net: 8021q: resolve forwarding path for vlan devices, Pablo Neira Ayuso
- [PATCH net-next,v2 2/9] net: resolve forwarding path from virtual netdevice and HW destination address, Pablo Neira Ayuso
- [PATCH net-next,v2 4/9] bridge: resolve forwarding path for bridge devices, Pablo Neira Ayuso
- [PATCH net-next,v2 8/9] netfilter: flowtable: bridge port support, Pablo Neira Ayuso
- [PATCH net-next,v2 9/9] netfilter: flowtable: add vlan support, Pablo Neira Ayuso
- [PATCH net-next,v2 5/9] netfilter: flowtable: use dev_fill_forward_path() to obtain ingress device, Pablo Neira Ayuso
- [PATCH net-next,v2 6/9] netfilter: flowtable: use dev_fill_forward_path() to obtain egress device, Pablo Neira Ayuso
- [PATCH net-next,v2 7/9] netfilter: flowtable: add direct xmit path, Pablo Neira Ayuso
- Re: [PATCH net-next,v2 0/9] netfilter: flowtable bridge and vlan enhancements, Jakub Kicinski
- [PATCH nf-next] netfilter: nftables: allow re-computing sctp CRC-32C in 'payload' statements,
Florian Westphal
- [PATCH nft] segtree: copy expr data to closing element, Florian Westphal
- [PATCH] netfilter: conntrack: Fix kmemleak false positive reports,
Kavana Ravindra
- [PATCH net-next 0/9] netfilter: flowtable bridge and vlan enhancements,
Pablo Neira Ayuso
- [PATCH net-next] netfilter: restore NF_INET_NUMHOOKS,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: restore NF_INET_NUMHOOKS,
Pablo Neira Ayuso
- iptables userspace API broken due to added value in nf_inet_hooks,
Jason A. Donenfeld
- [PATCH] Fixes dropping of small packets in bridge nat,
timothee.cocault
- selftests: netfilter: nft_nat.sh: /dev/stdin:2:9-15: Error: syntax error, unexpected counter,
Naresh Kamboju
- Bug: ebtables snat drops small packets,
timothee.cocault
- WARNING: at net/netfilter/nf_tables_api.c:622 lockdep_nfnl_nft_mutex_not_held+0x28/0x38 [nf_tables],
Naresh Kamboju
- [PATCH net V2] netfilter: Drop fragmented ndisc packets assembled in netfilter,
Georg Kohmann
- [PATCH nft] src: ingress inet support,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_log: missing vlan offload tag and proto,
Pablo Neira Ayuso
- [PATCH v21 16/23] LSM: security_secid_to_secctx in netlink netfilter, Casey Schaufler
- Re: [PATCH net] netfilter: Drop fragmented ndisc packets assembled in netfilter,
Pablo Neira Ayuso
- [PATCH 0/6] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: flowtable: reduce calls to pskb_may_pull(), Pablo Neira Ayuso
- [PATCH nft 0/3] tests: py: fixes for failing JSON tests,
Jeremy Sowden
- [ulogd2] Problem while running, Amiq Nahas
- [PATCH net] ipvs: clear skb->tstamp in forwarding path,
Julian Anastasov
- 0x14: Videos posted, Jamal Hadi Salim
- [PATCH nf v2] selftests: netfilter: extend nfqueue test case,
Florian Westphal
- [PATCH] netfilter: nf_conntrack_sip: Fix inconsistent of format with argument type in nf_nat_sip.,
Ye Bin
- [nft PATCH] json: Fix memleak in set_dtype_json(),
Phil Sutter
- [PATCH nf] selftests: netfilter: extend nfqueue test case,
Florian Westphal
- [iptables PATCH] libiptc: Avoid gcc-10 zero-length array warning,
Phil Sutter
- [PATCH nf-next 0/4] Add nf_tables ingress hook for the inet family,
Pablo Neira Ayuso
- [PATCH nf v2] netfilter: conntrack: connection timeout after re-register,
Francesco Ruggeri
- [PATCH v2] Solves Bug 1462 - `nft -j list set` does not show counters,
Gopal Yadav
- [iptables PATCH] extensions: libipt_icmp: Fix translation of type 'any',
Phil Sutter
- [PATCH] Solves Bug 1462 - `nft -j list set` does not show counters, Gopal Yadav
- Re: WARNING in ieee80211_check_rate_mask, syzbot
- INFO: task hung in hub_port_init,
syzbot
- INFO: task hung in usb_get_descriptor,
syzbot
- [PATCH nf] netfilter: conntrack: connection timeout after re-register, Francesco Ruggeri
- [PATCH v8 net-next] ipvs: inspect reply packets from DR/TUN real servers,
Julian Anastasov
- [iptables PATCH 0/3] nft: Fix transaction refreshing,
Phil Sutter
- [PATCH 00/11] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 03/11] ipvs: Remove unused macros, Pablo Neira Ayuso
- [PATCH 04/11] netfilter: nf_tables: fix userdata memleak, Pablo Neira Ayuso
- [PATCH 07/11] netfilter: nf_tables_offload: Remove unused macro FLOW_SETUP_BLOCK, Pablo Neira Ayuso
- [PATCH 08/11] netfilter: ipset: enable memory accounting for ipset allocations, Pablo Neira Ayuso
- [PATCH 06/11] netfilter: nf_tables: add userdata attributes to nft_chain, Pablo Neira Ayuso
- [PATCH 05/11] netfilter: nf_tables: use nla_memdup to copy udata, Pablo Neira Ayuso
- [PATCH 01/11] netfilter: conntrack: proc: rename stat column, Pablo Neira Ayuso
- [PATCH 02/11] netfilter: nf_tables: Remove ununsed function nft_data_debug, Pablo Neira Ayuso
- [PATCH 11/11] netfilter: nf_tables: Implement fast bitwise expression, Pablo Neira Ayuso
- [PATCH 09/11] netfilter: nfnetlink: place subsys mutexes in distinct lockdep classes, Pablo Neira Ayuso
- [PATCH 10/11] netfilter: nf_tables: Enable fast nft_cmp for inverted matches, Pablo Neira Ayuso
- Re: [PATCH 00/11] Netfilter updates for net-next, David Miller
- [PATCH 1/1] Solves Bug 1462 - `nft -j list set` does not show counters,
Gopal Yadav
- [PATCH nf-next] netfilter: nfnetlink: place subsys mutexes in distinct lockdep classes,
Florian Westphal
- [iptables PATCH] iptables-nft: fix basechain policy configuration,
Arturo Borrero Gonzalez
- [iptables PATCH] nft: Optimize class-based IP prefix matches,
Phil Sutter
- [net-next PATCH 0/2] netfilter: Improve inverted IP prefix matches,
Phil Sutter
- [PATCH] nft: migrate man page examples with `meter` directive to sets,
Devin Bayer
- iptables-nft-restore issue,
Arturo Borrero Gonzalez
- [PATCH libnetfilter_queue] doc: build: Reduce size of doxygen.cfg and doxygen build o/p, Duncan Roe
- [PATCH libnetfilter_queue] src: doc: Fix doxygen warning, Duncan Roe
- nftables bug?? Maybe, Evgeniy Yakubov
- [PATCH] ipvs: Add traffic statistic up even it is VS/DR or VS/TUN mode,
longguang.yue
- Re: general protection fault in strncasecmp, syzbot
- [iptables PATCH] nft: Fix for broken address mask match detection,
Phil Sutter
- [PATCH v4 nf-next] netfilter: nf_tables: add userdata attributes to nft_chain,
Jose M. Guisado Gomez
- [PATCH nf-next] netfilter: nf_tables: use nla_memdup to copy udata,
Jose M. Guisado Gomez
- KASAN: use-after-free Read in tcf_action_init,
syzbot
- [nftables] counter not working on kernel 5.6,
Gopal Yadav
- [PATCH v4] ipvs: adjust the debug info in function set_tcp_state,
longguang.yue
- [PATCH nf-next] netfilter: nf_tables: fix userdata memleak,
Jose M. Guisado Gomez
- BUG: unable to handle kernel paging request in dqput,
syzbot
- [PATCH 0/8] Fast bulk transfers of large sets of ct entries,
Mikhail Sennikovsky
- [nftables] dynamic flag missing from wiki and using counter, Gopal Yadav
- [PATCH] ipset: enable memory accounting for ipset allocations,
Vasily Averin
- [nft PATCH] evaluate: Reject quoted strings containing only wildcard,
Phil Sutter
- [PATCH 1/1 nf] selftests: netfilter: add time counter check,
Fabian Frederick
- [iptables PATCH v2 00/10] nft: Sorted chain listing et al.,
Phil Sutter
- [iptables PATCH v2 09/10] tests: shell: Drop any dump sorting in place, Phil Sutter
- [iptables PATCH v2 03/10] nft: cache: Introduce nft_cache_add_chain(), Phil Sutter
- [iptables PATCH v2 02/10] nft: Implement nft_chain_foreach(), Phil Sutter
- [iptables PATCH v2 10/10] nft: Avoid pointless table/chain creation, Phil Sutter
- [iptables PATCH v2 06/10] nft: Introduce struct nft_chain, Phil Sutter
- [iptables PATCH v2 07/10] nft: Introduce a dedicated base chain array, Phil Sutter
- [iptables PATCH v2 08/10] nft: cache: Sort custom chains by name, Phil Sutter
- [iptables PATCH v2 05/10] nft: cache: Move nft_chain_find() over, Phil Sutter
- [iptables PATCH v2 04/10] nft: Eliminate nft_chain_list_get(), Phil Sutter
- [iptables PATCH v2 01/10] nft: Fix selective chain compatibility checks, Phil Sutter
- [PATCH v2 nf-next] netfilter: nf_tables: add userdata attributes to nft_chain,
Jose M. Guisado Gomez
- [PATCH] ipvs: adjust the debug order of src and dst,
longguang.yue
- [iptables PATCH 0/3] libxtables: Fix for pointless socket() calls,
Phil Sutter
- [PATCH] Solves Bug 1388 - Combining --terse with --json has no effect (with test),
Gopal
- Re: UBSAN: array-index-out-of-bounds in arch_uprobe_analyze_insn,
syzbot
- [PATCH nf] netfilter: nft_immediate: No increment ctx->level for NFT_GOTO, Pablo Neira Ayuso
- KMSAN: uninit-value in gc_worker (3), syzbot
- [PATCH 0/3] add userdata and comment support for chains,
Jose M. Guisado Gomez
- KASAN: vmalloc-out-of-bounds Read in bpf_trace_run2,
syzbot
- 0x14: slides and papers posted, Jamal Hadi Salim
- [PATCH net-next] netfilter: nf_tables_offload: Remove unused macro FLOW_SETUP_BLOCK,
YueHaibing
- [PATCH net-next] ipvs: Remove unused macros,
YueHaibing
- [PATCH AUTOSEL 5.4 215/330] netfilter: nf_tables: silence a RCU-list warning in nft_table_lookup(), Sasha Levin
- [PATCH net-next] netfilter: nf_tables: Remove ununsed function nft_data_debug, YueHaibing
- [PATCH libmnl] doxygen: Fixed link to the git source tree on the website.,
igo95862
- [PATCH nft] tests: py: flush log file output before running each command,
Pablo Neira Ayuso
- [PATCH nft 1/2] mnl: larger receive socket buffer for netlink errors,
Pablo Neira Ayuso
- [PATCH] Solves Bug 1388 - Combining --terse with --json has no effect,
Gopal Yadav
- [iptables] Multiple labels simultaneously, Amiq Nahas
- [PATCH nftables] parser_bison: fail when specifying multiple comments,
Jose M. Guisado Gomez
- [trivial PATCH] treewide: Convert switch/case fallthrough; to break;,
Joe Perches
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Gustavo A. R. Silva
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Keith Busch
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Jason Gunthorpe
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Mauro Carvalho Chehab
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Wolfram Sang
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Nicolas.Ferre
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Felipe Balbi
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Steffen Maier
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Ilya Dryomov
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Matthias Brugger
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Robin Murphy
- Re: [Intel-gfx] [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Jani Nikula
- Re: [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Miquel Raynal
- Re: [oss-drivers] [trivial PATCH] treewide: Convert switch/case fallthrough; to break;, Simon Horman
- [PATCH 3/3 nf] selftests: netfilter: remove unused cnt and simplify command testing, Fabian Frederick
- [PATCH 2/3 nf] selftests: netfilter: fix nft_meta.sh error reporting, Fabian Frederick
- [PATCH 1/3 nf] selftests: netfilter: add cpu counter check,
Fabian Frederick
- [PATCH] net/netfilter: fix a typo for nf_conntrack_proto_dccp.c,
Wang Qing
- [PATCH nf-next] netfilter: conntrack: proc: rename stat column,
Florian Westphal
- [PATCH 00/13] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 12/13] selftests/net: replace obsolete NFT_CHAIN configuration, Pablo Neira Ayuso
- [PATCH 09/13] netfilter: nft_socket: add wildcard support, Pablo Neira Ayuso
- [PATCH 13/13] netfilter: nf_tables: add userdata support for nft_object, Pablo Neira Ayuso
- [PATCH 11/13] netfilter: ebt_stp: Remove unused macro BPDU_TYPE_TCN, Pablo Neira Ayuso
- [PATCH 07/13] netfilter: conntrack: remove unneeded nf_ct_put, Pablo Neira Ayuso
- [PATCH 10/13] ipvs: remove dependency on ip6_tables, Pablo Neira Ayuso
- [PATCH 08/13] netfilter: xt_HMARK: Use ip_is_fragment() helper, Pablo Neira Ayuso
- [PATCH 06/13] netfilter: conntrack: add clash resolution stat counter, Pablo Neira Ayuso
- [PATCH 05/13] netfilter: conntrack: remove ignore stats, Pablo Neira Ayuso
- [PATCH 04/13] netfilter: conntrack: do not increment two error counters at same time, Pablo Neira Ayuso
- [PATCH 03/13] netfilter: nf_tables: add userdata attributes to nft_table, Pablo Neira Ayuso
- [PATCH 01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet, Pablo Neira Ayuso
- [PATCH 02/13] ipvs: Fix uninit-value in do_ip_vs_set_ctl(), Pablo Neira Ayuso
- Re: [PATCH 00/13] Netfilter updates for net-next, David Miller
- [nftables] TODO: Replace yy_switch_to_buffer by yypop_buffer_state and yypush_buffer_state,
Gopal Yadav
- INFO: trying to register non-static key in update_defense_level, syzbot
- Re: [PATCH 1/1 net-next] selftests/net: replace obsolete NFT_CHAIN configuration,
Jakub Kicinski
- [PATCH AUTOSEL 5.8 04/53] netfilter: conntrack: allow sctp hearbeat after connection re-use, Sasha Levin
- [PATCH AUTOSEL 5.8 06/53] netfilter: nft_set_rbtree: Detect partial overlap with start endpoint match, Sasha Levin
- [PATCH AUTOSEL 5.4 03/43] netfilter: conntrack: allow sctp hearbeat after connection re-use, Sasha Levin
- [PATCH AUTOSEL 4.19 03/26] netfilter: conntrack: allow sctp hearbeat after connection re-use, Sasha Levin
- Re: [PATCH net-net] netfilter: conntrack: nf_conncount_init is failing with IPv6 disabled,
Simon Horman
- Can someone please update libnetfilter_queue online documentation,
Duncan Roe
- [PATCH nf] netfilter: nft_meta: use socket user_ns to retrieve skuid and skgid,
Pablo Neira Ayuso
- [PATCH net-next] netfilter: ebt_stp: Remove unused macro BPDU_TYPE_TCN,
Wang Hai
- [PATCH nft,v4] mergesort: find base value expression type via recursion, Pablo Neira Ayuso
- [PATCH nft,v3] mergesort: find base value expression type via recursion, Pablo Neira Ayuso
- [PATCH nft] mergesort: find base value expression type via recursion, Pablo Neira Ayuso
- [PATCH nf,v3] netfilter: nf_tables: coalesce multiple notifications into one skbuff,
Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nf_tables: coalesce multiple notifications into one skbuff,
Pablo Neira Ayuso
- [PATCH 0/3] add object userdata and comment support,
Jose M. Guisado Gomez
- [PATCH nf] netfilter: ctnetlink: fix mark based dump filtering regression,
Martin Willi
- inserting rule at the top of the chain using libnftnl, JM
- [PATCH 1/2] xt_ACCOUNT: update prototype of `struct nf_sockopt_ops` `.set` call-back.,
Jeremy Sowden
- [PATCH xtables-addons] build: don't hard-code pkg-config.,
Jeremy Sowden
- KMSAN: uninit-value in translate_table, syzbot
- [PATCH xtables-addons] build: clean some extra build artefacts.,
Jeremy Sowden
- [no subject],
Balazs Scheidler
- [PATCH] netfilter: No increment ctx->level for NFT_GOTO, Steve Hill
- [PATCH nf-next] netfilter: nft_socket: add wildcard support,
Pablo Neira Ayuso
- [PATCH] Remove ipvs v6 dependency on iptables,
Lach
- [PATCH] netfilter: nf_tables: coalesce multiple notifications into one skbuff,
Pablo Neira Ayuso
- [PATCH] netfilter: nftables: fix documentation for dup statement,
Quentin Armitage
- [PATCH net-next] netfilter: xt_HMARK: Use ip_is_fragment() helper,
YueHaibing
- [PATCH nf-next v3 0/3] Netfilter egress hook,
Lukas Wunner
- [PATCH lnf-conntrack] include: add CTA_STATS_CLASH_RESOLVE, Florian Westphal
- [PATCH conntrack-tools] conntrack: add support for CLASH_RESOLVED counter, Florian Westphal
- [PATCH nf-next 0/4] netfilter: revisit conntrack statistics,
Florian Westphal
- [PATCH nf] netfilter: conntrack: do not auto-delete clash entries on reply,
Florian Westphal
- [PATCH AUTOSEL 5.8 23/63] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency, Sasha Levin
- [PATCH AUTOSEL 5.7 22/54] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency, Sasha Levin
- [PATCH AUTOSEL 5.4 18/38] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency, Sasha Levin
- [PATCH V2 5/5 nf] selftests: netfilter: add command usage, Fabian Frederick
- [PATCH V2 4/5 nf] selftests: netfilter: simplify command testing, Fabian Frederick
- [PATCH V2 3/5 nf] selftests: netfilter: remove unused variable in make_file(), Fabian Frederick
- [PATCH V2 2/5 nf] selftests: netfilter: exit on invalid parameters, Fabian Frederick
- [PATCH V2 1/5 nf] selftests: netfilter: fix header example,
Fabian Frederick
- [PATCH nf] netfilter: nfnetlink: nfnetlink_unicast() reports EAGAIN instead of ENOBUFS, Pablo Neira Ayuso
- [PATCH] net: netfilter: delete repeated words,
Randy Dunlap
- [PATCH nftables 0/4] socket: add support for "wildcard" key,
Balazs Scheidler
- nfnetlink: Busy-loop in nfnetlink_rcv_msg(),
Phil Sutter
- [PATCH AUTOSEL 5.7 55/61] netfilter: nf_tables: report EEXIST on overlaps, Sasha Levin
- [PATCH AUTOSEL 5.8 56/62] netfilter: nf_tables: report EEXIST on overlaps, Sasha Levin
- [PATCH nft,v2] src: add chain hashtable cache, Pablo Neira Ayuso
- [PATCH nft 1/2] src: add expression handler hashtable,
Pablo Neira Ayuso
- [PATCH nf v2] netfilter: nf_tables: fix destination register zeroing,
Florian Westphal
- [PATCH nf] netfilter: fix destination register zeroing, Florian Westphal
- [PATCH nft v2] nftables: dump raw element info from libnftnl when netlink debugging is on, Florian Westphal
- [PATCH nft] nftables: dump raw element info from libnftnl when netlink debugging is on, Florian Westphal
- bridge firewall "bypass" using VLAN 0 stacking, Etienne Champetier
- [PATCH libnftnl] libnftnl: export nftnl_set_elem_fprintf, Florian Westphal
- [PATCH nf 1/2] netfilter: nf_tables: add NFTA_SET_USERDATA if not null,
Pablo Neira Ayuso
- [PATCH 0/3] Add userdata and comment support for tables,
Jose M. Guisado Gomez
- [PATCH nft] mergesort: unbreak listing with binops, Pablo Neira Ayuso
- [PATCH nft] tests: sets: Check rbtree overlap detection after tree rotations, Stefano Brivio
- [PATCH nf 0/2] nft_set_rbtree: Two fixes for overlap detection on insert,
Stefano Brivio
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]