Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH xtables-addons] doc: fix quoted string in libxt_DNETMAP man-page., (continued)
- [PATCH nft] rule: missing map command expansion, Pablo Neira Ayuso
- [PATCH nft,v2] rule: flush set cache before flush command, Pablo Neira Ayuso
- [PATCH nft] rule: flush set cache after flush command, Pablo Neira Ayuso
- [PATCH v4 14/24] netfilter: conntrack: Use sequence counter with associated spinlock, Ahmed S. Darwish
- [PATCH v4 15/24] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock, Ahmed S. Darwish
- [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet,
Michael Zhou
- get rid of the address_space override in setsockopt,
Christoph Hellwig
- [PATCH 08/24] net/xfrm: switch xfrm_user_policy to sockptr_t, Christoph Hellwig
- [PATCH 13/24] net/ipv4: switch ip_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t, Christoph Hellwig
- [PATCH 22/24] net/tcp: switch ->md5_parse to sockptr_t, Christoph Hellwig
- [PATCH 24/24] net: pass a sockptr_t into ->setsockopt, Christoph Hellwig
- [PATCH 20/24] net/ipv6: switch do_ipv6_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 23/24] net/tcp: switch do_tcp_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 19/24] net/ipv6: factor out a ipv6_set_opt_hdr helper, Christoph Hellwig
- [PATCH 21/24] net/udp: switch udp_lib_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 17/24] net/ipv6: split up ipv6_flowlabel_opt, Christoph Hellwig
- [PATCH 18/24] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t, Christoph Hellwig
- [PATCH 16/24] net/ipv6: switch ip6_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 15/24] net/ipv4: switch do_ip_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 14/24] net/ipv4: merge ip_options_get and ip_options_get_from_user, Christoph Hellwig
- [PATCH 11/24] netfilter: switch nf_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 10/24] netfilter: switch xt_copy_counters to sockptr_t, Christoph Hellwig
- [PATCH 09/24] netfilter: remove the unused user argument to do_update_counters, Christoph Hellwig
- [PATCH 07/24] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 04/24] net: switch copy_bpf_fprog_from_user to sockptr_t, Christoph Hellwig
- [PATCH 03/24] net: add a new sockptr_t type, Christoph Hellwig
- [PATCH 06/24] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 05/24] net: switch sock_setbindtodevice to sockptr_t, Christoph Hellwig
- [PATCH 02/24] bpfilter: fix up a sparse annotation, Christoph Hellwig
- [PATCH 01/24] bpfilter: reject kernel addresses, Christoph Hellwig
- Re: get rid of the address_space override in setsockopt, Eric Biggers
- Re: get rid of the address_space override in setsockopt, Alexei Starovoitov
- RE: get rid of the address_space override in setsockopt, David Laight
- RE: get rid of the address_space override in setsockopt, David Laight
- [PATCH for v5.9] netfilter: xtables: Replace HTTP links with HTTPS ones, Alexander A. Klimov
- [PATCH for v5.9] netfilter: Replace HTTP links with HTTPS ones,
Alexander A. Klimov
- [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member,
Phil Sutter
- [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled,
Andrew Sy Kim
- [PATCH net-next] ipvs: missing unlock in ip_vs_expire_nodest_conn_flush(), Dan Carpenter
- [iptables PATCH v3] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- sockopt cleanups,
Christoph Hellwig
- [PATCH 03/22] net: streamline __sys_getsockopt, Christoph Hellwig
- [PATCH 06/22] net: remove compat_sys_{get,set}sockopt, Christoph Hellwig
- [PATCH 07/22] netfilter/arp_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 12/22] netfilter: remove the compat argument to xt_copy_counters_from_user, Christoph Hellwig
- [PATCH 21/22] net/ipv6: remove compat_ipv6_{get,set}sockopt, Christoph Hellwig
- [PATCH 22/22] net: make ->{get,set}sockopt in proto_ops optional, Christoph Hellwig
- [PATCH 19/22] net/ipv6: factor out MCAST_MSFILTER setsockopt helpers, Christoph Hellwig
- [PATCH 20/22] net/ipv6: factor out mcast join/leave setsockopt helpers, Christoph Hellwig
- [PATCH 18/22] net/ipv6: factor out MCAST_MSFILTER getsockopt helpers, Christoph Hellwig
- [PATCH 17/22] net/ipv4: remove compat_ip_{get,set}sockopt, Christoph Hellwig
- [PATCH 16/22] net/ipv4: factor out mcast join/leave setsockopt helpers, Christoph Hellwig
- [PATCH 15/22] net/ipv4: factor out MCAST_MSFILTER setsockopt helpers, Christoph Hellwig
- [PATCH 14/22] net/ipv4: factor out MCAST_MSFILTER getsockopt helpers, Christoph Hellwig
- [PATCH 11/22] netfilter: remove the compat_{get,set} methods, Christoph Hellwig
- [PATCH 13/22] netfilter: split nf_sockopt, Christoph Hellwig
- [PATCH 10/22] netfilter/ebtables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 09/22] netfilter/ip6_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 08/22] netfilter/ip_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 05/22] net: remove compat_sock_common_{get,set}sockopt, Christoph Hellwig
- [PATCH 01/22] net/atm: remove the atmdev_ops {get,set}sockopt methods, Christoph Hellwig
- [PATCH 02/22] net: streamline __sys_setsockopt, Christoph Hellwig
- [PATCH 04/22] net: simplify cBPF setsockopt compat handling, Christoph Hellwig
- Re: sockopt cleanups, David Miller
- [PATCH nft 1/4] tests: shell: chmod 755 testcases/chains/0030create_0,
Pablo Neira Ayuso
- [PATCH net-next] ipvs: ensure RCU read unlock when connection flushing and ipvs is disabled,
Andrew Sy Kim
- [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit,
kernel test robot
- [PATCH,v2] ipvs: fix the connection sync failed in some cases,
guodeqing
- [PATCH] ipvs: fix the connection sync failed in some cases,
guodeqing
- [iptables PATCH v2] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- [PATCH nft 1/2] monitor: print "dormant" flag in monitor mode,
Florian Westphal
- [PATCH] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- [PATCH nf] netfilter: nf_tables: fix nat hook table deletion,
Florian Westphal
- [PATCH] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy(),
Dan Carpenter
- WARNING in __nf_unregister_net_hook (2), syzbot
- [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member,
Phil Sutter
- [iptables PATCH 00/18] nft: Sorted chain listing et al.,
Phil Sutter
- [iptables PATCH 14/18] nft: cache: Introduce nft_cache_add_chain(), Phil Sutter
- [iptables PATCH 12/18] nft: Fold nftnl_rule_list_chain_save() into caller, Phil Sutter
- [iptables PATCH 07/18] nft: Reorder enum nft_table_type, Phil Sutter
- [iptables PATCH 03/18] nft: cache: Drop duplicate chain check, Phil Sutter
- [iptables PATCH 01/18] nft: Make table creation purely implicit, Phil Sutter
- [iptables PATCH 09/18] nft: Use nftnl_chain_list_foreach in nft_rule_list{,_save}, Phil Sutter
- [iptables PATCH 06/18] nft: Use nft_chain_find() in two more places, Phil Sutter
- [iptables PATCH 08/18] nft: cache: Fetch only interesting tables from kernel, Phil Sutter
- [iptables PATCH 13/18] nft: Implement nft_chain_foreach(), Phil Sutter
- [iptables PATCH 04/18] nft: Drop pointless nft_xt_builtin_init() call, Phil Sutter
- [iptables PATCH 10/18] nft: Use nftnl_chain_list_foreach in nft_rule_flush, Phil Sutter
- [iptables PATCH 11/18] nft: Use nftnl_chain_foreach in nft_rule_save, Phil Sutter
- [iptables PATCH 15/18] nft: Introduce a dedicated base chain array, Phil Sutter
- [iptables PATCH 17/18] tests: shell: Drop any dump sorting in place, Phil Sutter
- [iptables PATCH 16/18] nft: cache: Sort custom chains by name, Phil Sutter
- [iptables PATCH 18/18] nft: Avoid pointless table/chain creation, Phil Sutter
- [iptables PATCH 02/18] nft: Be lazy when flushing, Phil Sutter
- [iptables PATCH 05/18] nft: Turn nft_chain_save() into a foreach-callback, Phil Sutter
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al., Pablo Neira Ayuso
- [libnftnl PATCH] chain: Implement chain list sorting, Phil Sutter
- [PATCH v2][next] netfilter: Use fallthrough pseudo-keyword,
Gustavo A. R. Silva
- [PATCH nft 1/2] src: use expression to store the log prefix,
Pablo Neira Ayuso
- [PATCH][next] netfilter: nf_tables: Use fallthrough pseudo-keyword,
Gustavo A. R. Silva
- [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear,
wenxu
- [PATCH] Replace HTTP links with HTTPS ones: IPv*,
Alexander A. Klimov
- [PATCH nft] segtree: zap element statement when decomposing interval, Pablo Neira Ayuso
- [iptables PATCH] tests: shell: Add help output to run-tests.sh, Phil Sutter
- [PATCH net-next 0/3] make nf_ct_frag/6_gather elide the skb CB clear,
wenxu
- [PATCH nf-next] netfilter: nf_tables: reject unsupported chain flags, Pablo Neira Ayuso
- [PATCH nft,v2 1/2] datatype: convert chain name from gmp value to string,
Pablo Neira Ayuso
- [PATCH nf-next,v3 1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute,
Pablo Neira Ayuso
- [PATCH nf-next,v3 2/6] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v3 3/6] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v3 4/6] netfilter: nf_tables: expose enum nft_chain_flags through UAPI, Pablo Neira Ayuso
- [PATCH nf-next,v3 5/6] netfilter: nf_tables: add nft_chain_add(), Pablo Neira Ayuso
- [PATCH nf-next,v3 6/6] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH] audit: use the proper gfp flags in the audit_log_nfcfg() calls,
Paul Moore
- [PATCH nft] src: Allow for empty set variable definition, Pablo Neira Ayuso
- Moving from ipset to nftables: Sets not ready for prime time yet?,
Timo Sigurdsson
- [PATCH nft] src: support for implicit chain bindings, Pablo Neira Ayuso
- [PATCH nf-next,v2 1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute,
Pablo Neira Ayuso
- [PATCH nf-next,v2 2/6] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v2 3/6] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v2 4/6] netfilter: nf_tables: expose enum nft_chain_flags through UAPI, Pablo Neira Ayuso
- [PATCH nf-next,v2 5/6] netfilter: nf_tables: add nft_chain_add(), Pablo Neira Ayuso
- [PATCH nf-next,v2 6/6] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH nf-next 6/6,v2] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH net-next] ipvs: allow connection reuse for unconfirmed conntrack,
Julian Anastasov
- [PATCH nf] netfilter: nf_conntrack: refetch conntrack after nf_conntrack_update(), Pablo Neira Ayuso
- LPC 2020 Networking and BPF Track CFP, David Miller
- [PATCH v3 11/20] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock, Ahmed S. Darwish
- [PATCH v3 10/20] netfilter: conntrack: Use sequence counter with associated spinlock, Ahmed S. Darwish
- [PATCH net] netfilter: ipset: call ip_set_free() instead of kfree(),
Eric Dumazet
- [PATCH nft WIP] src: support for implicit chain bindings, Pablo Neira Ayuso
- [PATCH nf-next 0/5,v2] nftables: support for implicit chains binding,
Pablo Neira Ayuso
- [PATCH ghak124 v3fix] audit: add gfp parameter to audit_log_nfcfg,
Richard Guy Briggs
- mDNS helper fails to add expectations if host joined 224.0.0.251 multicast group, Andrei Borzenkov
- [PATCH ghak90 V9 00/13] audit: implement container identifier,
Richard Guy Briggs
- [PATCH ghak90 V9 01/13] audit: collect audit task parameters, Richard Guy Briggs
- [PATCH ghak90 V9 03/13] audit: read container ID of a process, Richard Guy Briggs
- [PATCH ghak90 V9 04/13] audit: log drop of contid on exit of last task, Richard Guy Briggs
- [PATCH ghak90 V9 07/13] audit: add support for non-syscall auxiliary records, Richard Guy Briggs
- [PATCH ghak90 V9 06/13] audit: add contid support for signalling the audit daemon, Richard Guy Briggs
- [PATCH ghak90 V9 08/13] audit: add containerid support for user records, Richard Guy Briggs
- [PATCH ghak90 V9 05/13] audit: log container info of syscalls, Richard Guy Briggs
- [PATCH ghak90 V9 02/13] audit: add container id, Richard Guy Briggs
- [PATCH ghak90 V9 11/13] audit: contid check descendancy and nesting, Richard Guy Briggs
- [PATCH ghak90 V9 12/13] audit: track container nesting, Richard Guy Briggs
- [PATCH ghak90 V9 13/13] audit: add capcontid to set contid outside init_user_ns, Richard Guy Briggs
- [PATCH ghak90 V9 09/13] audit: add containerid filtering, Richard Guy Briggs
- [PATCH ghak90 V9 10/13] audit: add support for containerid to network namespaces, Richard Guy Briggs
- [bug report] audit: log nftables configuration change events,
Dan Carpenter
- [PATCH nf-next 0/5] support for anonymous non-base chains in nftables,
Pablo Neira Ayuso
- [PATCH] [net/ipv6] Remove redundant null check in rt_mt6, Gaurav Singh
- [PATCH] [net/ipv6] Remove redundant null check in hbh_mt6, Gaurav Singh
- [PATCH] [net/ipv6] remove redundant null check in frag_mt6, Gaurav Singh
- [PATCH] [net/ipv6] Remove redundant null check in ah_mt6,
Gaurav Singh
- clean up kernel_{read,write} & friends v5,
Christoph Hellwig
- [PATCH 01/14] cachefiles: switch to kernel_write, Christoph Hellwig
- [PATCH 12/14] fs: remove __vfs_read, Christoph Hellwig
- [PATCH 13/14] fs: implement default_file_splice_read using __kernel_read, Christoph Hellwig
- [PATCH 14/14] fs: don't change the address limit for ->read_iter in __kernel_read, Christoph Hellwig
- [PATCH 09/14] fs: add a __kernel_read helper, Christoph Hellwig
- [PATCH 11/14] fs: implement kernel_read using __kernel_read, Christoph Hellwig
- [PATCH 08/14] fs: don't change the address limit for ->write_iter in __kernel_write, Christoph Hellwig
- [PATCH 10/14] integrity/ima: switch to using __kernel_read, Christoph Hellwig
- [PATCH 03/14] bpfilter: switch to kernel_write, Christoph Hellwig
- [PATCH 02/14] autofs: switch to kernel_write, Christoph Hellwig
- [PATCH 07/14] fs: remove __vfs_write, Christoph Hellwig
- [PATCH 06/14] fs: implement kernel_write using __kernel_write, Christoph Hellwig
- [PATCH 04/14] fs: unexport __kernel_write, Christoph Hellwig
- [PATCH 05/14] fs: check FMODE_WRITE in __kernel_write, Christoph Hellwig
- [libnf_ct PATCH v2 1/9] Handle negative snprintf return values properly,
Daniel Gröber
- [PATCH iptables] libxtables/xtables.c - compiler warning fixes for NO_SHARED_LIBS,
Maciej Żenczykowski
- Various memory-safety related fixes,
Daniel Gröber
- [PATCH v1 0/4] iptables: Module unload causing NULL pointer reference.,
David Wilder
- KMSAN: uninit-value in hash_net6_add, syzbot
- [nft PATCH] doc: Document notrack statement,
Phil Sutter
- [PATCH nft] doc: revisit meta/rt primary expressions and ct statement, Florian Westphal
- [PATCH nf 1/1] selftests: netfilter: add test case for conntrack helper assignment,
Florian Westphal
- [PATCH net-next] ipvs: register hooks only with services,
Julian Anastasov
- [PATCH v3] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- [PATCH v2] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- [PATCH net-next] ipvs: avoid expiring many connections from timer,
Julian Anastasov
- [PATCH] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- Allow dynamic loading of extentions in ebtables (-m option),
Eugene Crosser
- iptables user space performance benchmarks published,
Phil Sutter
- [PATCH] linux++, this: rename "struct notifier_block *this",
Alexey Dobriyan
- KMSAN: uninit-value in hash_ip6_add, syzbot
- ipset restore for bitmap:port terrible slow,
Reindl Harald
- ebtables: load-on-demand extensions,
Eugene Crosser
- [iptables PATCH] xtables-translate: Use proper clear_cs function, Phil Sutter
- [iptables PATCH] xtables-translate: don't fail if help was requested,
Arturo Borrero Gonzalez
- [ANNOUNCE] nftables 0.9.6 release, Pablo Neira Ayuso
- KMSAN: uninit-value in hash_ip6_del, syzbot
- [PATCH] ipvs: avoid drop first packet by reusing conntrack,
YangYuxi
- clean up kernel_{read,write} & friends v4,
Christoph Hellwig
- [PATCH 06/13] fs: implement kernel_write using __kernel_write, Christoph Hellwig
- [PATCH 11/13] fs: implement kernel_read using __kernel_read, Christoph Hellwig
- [PATCH 13/13] fs: don't change the address limit for ->read_iter in __kernel_read, Christoph Hellwig
- [PATCH 12/13] fs: remove __vfs_read, Christoph Hellwig
- [PATCH 10/13] integrity/ima: switch to using __kernel_read, Christoph Hellwig
- [PATCH 09/13] fs: add a __kernel_read helper, Christoph Hellwig
- [PATCH 07/13] fs: remove __vfs_write, Christoph Hellwig
- [PATCH 08/13] fs: don't change the address limit for ->write_iter in __kernel_write, Christoph Hellwig
- [PATCH 05/13] fs: check FMODE_WRITE in __kernel_write, Christoph Hellwig
- [PATCH 04/13] fs: unexport __kernel_write, Christoph Hellwig
- [PATCH 03/13] bpfilter: switch to kernel_write, Christoph Hellwig
- [PATCH 02/13] autofs: switch to kernel_write, Christoph Hellwig
- [PATCH 01/13] cachefiles: switch to kernel_write, Christoph Hellwig
- [PATCH nf-next] nft_set_pipapo: Drop useless assignment of scratch map index on insert,
Stefano Brivio
- [PATCH nft] tests: Run in separate network namespace, don't break connectivity,
Stefano Brivio
- [PATCH nft] tests: shell: Drop redefinition of DIFF variable,
Stefano Brivio
- [PATCH nft] tests: shell: Allow wrappers to be passed as nft command,
Stefano Brivio
- Good idea to rename files in include/uapi/ ?,
Alexander A. Klimov
- Vim Syntax for NFTABLES -- Beta, SBCGlobal.Net
- [PATCH nf,v2] netfilter: nf_tables: hook list memleak in flowtable deletion, Pablo Neira Ayuso
- [ANNOUNCE] libnetfilter_queue 1.0.5 release,
Florian Westphal
- [PATCH] ipvs: avoid drop first packet to reuse conntrack,
YangYuxi
- [PATCH nf] netfilter: ctnetlink: memleak in filter initialization error path,
Pablo Neira Ayuso
- [PATCH -next] netfilter: ctnetlink: Fix memleak in ctnetlink_alloc_filter, Zheng Bin
- [PATCH] netfiler: ipset: fix unaligned atomic access,
Russell King
- memory leak in ctnetlink_del_conntrack, syzbot
- memory leak in nf_tables_parse_netdev_hooks (3),
syzbot
- memory leak in ctnetlink_start,
syzbot
- [PATCH] net: flow_offload: remove indirect flow_block declarations leftover,
Pablo Neira Ayuso
- [iptables PATCH] build: Fix for failing 'make uninstall',
Phil Sutter
- [PATCH v4.10] netfilter: nf_conntrack_h323: lost .data_len definition for Q.931/ipv6,
Vasily Averin
- [PATCH AUTOSEL 5.7 124/274] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH AUTOSEL 5.4 082/175] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH AUTOSEL 4.19 043/106] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH AUTOSEL 4.14 34/72] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH AUTOSEL 4.9 23/50] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH AUTOSEL 4.4 17/37] netfilter: nft_nat: return EOPNOTSUPP if type or flags are not supported, Sasha Levin
- [PATCH libnetfilter_queue] configure: disable doxygen by default,
Pablo Neira Ayuso
- nf_defrag_ipv6 / ip6_udp_tunnel on pure ipv4 setups, Reindl Harald
- [PATCH nf-next 2/2] netfilter: nft: add support of reject verdict from ingress,
Laura Garcia Liebana
- [PATCH nf-next 1/2] netfilter: nft: refactor reject verdict source code, Laura Garcia Liebana
- Extensions for ICMP[6] with sport, dport,
Rick van Rein
- [PATCH nf] nft_set_pipapo: Disable preemption before getting per-CPU pointer,
Stefano Brivio
- [PATCH v2 08/18] netfilter: conntrack: Use sequence counter with associated spinlock, Ahmed S. Darwish
- [PATCH v2 09/18] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock, Ahmed S. Darwish
- [PATCH nftables] src/main.c: fix build with gcc <= 4.8,
Fabrice Fontaine
- [PATCH nft] cmd: add misspelling suggestions for rule commands, Pablo Neira Ayuso
- [PATCH nft 1/2] segtree: fix asan runtime error,
Pablo Neira Ayuso
- [PATCH nft] evaluate: remove superfluous check in set_evaluate(),
Pablo Neira Ayuso
- [PATCH nft,v2] evaluate: missing datatype definition in implicit_set_declaration(),
Pablo Neira Ayuso
- [PATCH nft] evaluate: missing datatype definition in implicit_set_declaration(), Pablo Neira Ayuso
- Expressive limitation: (daddr,dport) <--> (daddr',dport'),
Rick van Rein
- [PATCH lnf-queue] configure: add --with/without-doxygen switch, Florian Westphal
- [ANNOUNCE] nftables 0.9.5 release, Pablo Neira Ayuso
- [PATCH libnetfilter_queue 0/1] URGENT: libnetfilter_queue-1.0.4 fails to build,
Duncan Roe
- [ANNOUNCE] libnftnl 1.1.7 release, Pablo Neira Ayuso
- [ANNOUNCE] libnetfilter_queue 1.0.4 release, Florian Westphal
- [PATCH ghak124 v3] audit: log nftables configuration change events,
Richard Guy Briggs
- [(RFC) PATCH ] NULL pointer dereference on rmmod iptable_mangle.,
David Wilder
- [PATCH] build: resolve iptables-apply not getting installed,
Jan Engelhardt
- [PATCH] doc: document danger of applying REJECT to INVALID CTs,
Jan Engelhardt
- [ANNOUNCE] iptables 1.8.5 release, Phil Sutter
- [MAINTENANCE] Shutting down FTP services at netfilter.org,
Pablo Neira Ayuso
- [iptables PATCH] build: bump dependency on libnftnl, Phil Sutter
- [PATCH RFC libnetfilter_queue 0/1] Avoid packet copy in nfq_nlmsg_verdict_put_pkt,
Duncan Roe
- [PATCH nft] tests: 0044interval_overlap_0: Repeat insertion tests with timeout,
Stefano Brivio
- [PATCH nf] nft_set_rbtree: Don't account for expired elements on insertion,
Stefano Brivio
- [PATCH 1/1 v2] netfilter: Restore the CT mark in Flow Offload,
Sven Auhagen
- [PATCH v3 nf-next] netfilter: introduce support for reject at prerouting stage,
Laura Garcia Liebana
- Re: [PATCH] checkpatch/coding-style: Allow 100 column lines, Markus Elfring
- [iptables PATCH] include: Avoid undefined left-shift in xt_sctp.h,
Phil Sutter
- [iptables PATCH] tests: shell: Fix syntax in ipt-restore/0010-noflush-new-chain_0, Phil Sutter
- [PATCH v2 nf-next] netfilter: introduce support for reject at prerouting stage,
Laura Garcia Liebana
- [PATCH ghak124 v2] audit: log nftables configuration change events,
Richard Guy Briggs
- [PATCH net-next 0/8] the indirect flow_block infrastructure, revisited,
Pablo Neira Ayuso
- [PATCH net-next 5/8] mlx5: update indirect block support, Pablo Neira Ayuso
- [PATCH net-next 8/8] net: remove indirect block netdev event registration, Pablo Neira Ayuso
- [PATCH net-next 7/8] bnxt_tc: update indirect block support, Pablo Neira Ayuso
- [PATCH net-next 4/8] net: use flow_indr_dev_setup_offload(), Pablo Neira Ayuso
- [PATCH net-next 6/8] nfp: update indirect block support, Pablo Neira Ayuso
- [PATCH net-next 1/8] netfilter: nf_flowtable: expose nf_flow_table_gc_cleanup(), Pablo Neira Ayuso
- [PATCH net-next 3/8] net: cls_api: add tcf_block_offload_init(), Pablo Neira Ayuso
- [PATCH net-next 2/8] net: flow_offload: consolidate indirect flow_block infrastructure, Pablo Neira Ayuso
- Re: [PATCH net-next 0/8] the indirect flow_block infrastructure, revisited, David Miller
- [PATCH nf-next] netfilter: introduce support for reject at prerouting stage,
Laura Garcia Liebana
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]