Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH] netfilter: nf_conntrack_sip: fix parsing error, (continued)
- iptables: undefined symbol xtables_fini, Amiq Nahas
- [PATCH nf] netfilter: nft_set_rbtree: revisit partial overlap detection,
Pablo Neira Ayuso
- [PATCH 2/2 nf] selftests: netfilter: exit on invalid parameters,
Fabian Frederick
- [PATCH 1/2 nf] selftests: netfilter: fix header example, Fabian Frederick
- KMSAN: uninit-value in __skb_checksum_complete (5),
syzbot
- [PATCH nf] netfilter: nftables: permit any priority for nat hooks, Florian Westphal
- [PATCH nf] netfilter: conntrack: allow sctp hearbeat after connection re-use, Florian Westphal
- [PATCH lnf-conntrack] conntrack: sctp: update states,
Florian Westphal
- [PATCH lnf-conntrack] conntrack: dccp print function should use dccp state,
Florian Westphal
- iptables memory leak,
Maciej Żenczykowski
- [PATCH nf] netfilter: free chain context when BINDING flag is missing,
Florian Westphal
- KASAN: wild-memory-access Read in do_ebt_set_ctl, syzbot
- memory leak in nf_tables_addchain, syzbot
- general protection fault in ip6t_do_table (2), syzbot
- [PATCH libnftnl] udata: add NFTNL_UDATA_SET_COMMENT,
Jose M. Guisado Gomez
- [Linux-kernel-mentees] [PATCH net] ipvs: Fix uninit-value in do_ip_vs_set_ctl(),
Peilin Ye
- [PATCH nf] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency,
Florian Westphal
- [PATCH nf] netfilter: nft_compat: remove flush counter optimization,
Florian Westphal
- [PATCH 3/3 linux-next] selftests: netfilter: kill running process only,
Fabian Frederick
- [PATCH 2/3 linux-next] selftests: netfilter: add MTU arguments to flowtables,
Fabian Frederick
- [PATCH 1/3 linux-next] selftests: netfilter: add checktool function,
Fabian Frederick
- [iptables PATCH] xtables-monitor: Fix ip6tables rule printing,
Phil Sutter
- [iptables PATCH v2 1/2] nft: Fix command name in ip6tables error message,
Phil Sutter
- WARNING in compat_do_ebt_get_ctl,
syzbot
- [PATCH v2] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet,
Michael Zhou
- [PATCH nft] src: cache gets out of sync in interactive mode, Pablo Neira Ayuso
- [iptables PATCH] tests: shell: Merge and extend return codes test, Phil Sutter
- xtables-addon official website changed from sourceforge to inai.de?,
Amish
- Re: WARNING: refcount bug in l2cap_global_chan_by_psm, syzbot
- [PATCH nft] segtree: memleaks in interval_map_decompose(), Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian,
Stephen Suryaputra
- [PATCH nft] src: add cookie support for rules,
Pablo Neira Ayuso
- [PATCH libnftnl] udata: add cookie support, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian,
Stephen Suryaputra
- Re: KASAN: use-after-free Read in hci_chan_del, syzbot
- [PATCH nft] tests: 0043concatenated_ranges_0: Fix checks for add/delete failures,
Stefano Brivio
- [PATCH nft v2] tests: 0044interval_overlap_0: Repeat insertion tests with timeout,
Stefano Brivio
- Re: KASAN: use-after-free Write in __sco_sock_close,
syzbot
- [PATCH nf-next 0/2] improve error reporting,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_meta: fix iifgroup matching,
Florian Westphal
- [PATCH nf] selftests: netfilter: add meta iif/oif match test, Florian Westphal
- Re: WARNING in hci_conn_timeout,
syzbot
- [PATCH nft] src: fix obj list output when reset command,
Jose M. Guisado Gomez
- Re: WARNING: ODEBUG bug in cancel_delayed_work, syzbot
- [PATCH nft] evaluate: disregard ct address matching without family, Pablo Neira Ayuso
- Re: [PATCH nf] netfilter: nft_compat: make sure xtables destructors have run, Pablo Neira Ayuso
- KASAN: null-ptr-deref Write in amp_read_loc_assoc_final_data, syzbot
- [iptables PATCH] nft: Fix for ruleset flush while restoring,
Phil Sutter
- [PATCH nft] src: enable output with "nft --echo --json" and nftables syntax,
Jose M. Guisado Gomez
- [iptables PATCH] nft: Eliminate table list from cache,
Phil Sutter
- [PATCH nft] netlink_delinearize: transform binary operation to prefix only with values,
Pablo Neira Ayuso
- [nft PATCH] json: Expect refcount increment by json_array_extend(), Phil Sutter
- KASAN: vmalloc-out-of-bounds Read in get_counters, syzbot
- [PATCH 1/1] Improve detecting the kernel version logic, Philip Prindeville
- [PATCH nft 1/3] evaluate: flush set cache from the evaluation phase,
Pablo Neira Ayuso
- [PATCH nft 1/3] parser_bison: memleak symbol redefinition,
Pablo Neira Ayuso
- [PATCH 0/1] Netfilter OOB memory access security patch,
Will McVicker
- [PATCH nft] nft: rearrange help output to group related options together, Pablo Neira Ayuso
- [PATCH libnftnl] examples: add support for NF_PROTO_INET family,
Jose M. Guisado Gomez
- [PATCH iptables] iptables: replace libnftnl table list by linux list, Pablo Neira Ayuso
- [nft PATCH 2] nft: rearrange help output to group related options together, Arturo Borrero Gonzalez
- [nft PATCH] nft: rearrange help output to group related options together,
Arturo Borrero Gonzalez
- get rid of the address_space override in setsockopt v2,
Christoph Hellwig
- [PATCH 14/26] net/ipv4: switch ip_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 19/26] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t, Christoph Hellwig
- [PATCH 26/26] net: optimize the sockptr_t for unified kernel/user address spaces, Christoph Hellwig
- [PATCH 25/26] net: pass a sockptr_t into ->setsockopt, Christoph Hellwig
- [PATCH 18/26] net/ipv6: split up ipv6_flowlabel_opt, Christoph Hellwig
- [PATCH 17/26] net/ipv6: switch ip6_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 24/26] net/tcp: switch do_tcp_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 16/26] net/ipv4: switch do_ip_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 15/26] net/ipv4: merge ip_options_get and ip_options_get_from_user, Christoph Hellwig
- [PATCH 23/26] net/tcp: switch ->md5_parse to sockptr_t, Christoph Hellwig
- [PATCH 22/26] net/udp: switch udp_lib_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 21/26] net/ipv6: switch do_ipv6_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 20/26] net/ipv6: factor out a ipv6_set_opt_hdr helper, Christoph Hellwig
- [PATCH 10/26] netfilter: remove the unused user argument to do_update_counters, Christoph Hellwig
- [PATCH 13/26] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t, Christoph Hellwig
- [PATCH 12/26] netfilter: switch nf_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 11/26] netfilter: switch xt_copy_counters to sockptr_t, Christoph Hellwig
- [PATCH 06/26] net: switch sock_setbindtodevice to sockptr_t, Christoph Hellwig
- [PATCH 02/26] net/bpfilter: split __bpfilter_process_sockopt, Christoph Hellwig
- [PATCH 09/26] net/xfrm: switch xfrm_user_policy to sockptr_t, Christoph Hellwig
- [PATCH 01/26] bpfilter: fix up a sparse annotation, Christoph Hellwig
- [PATCH 07/26] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 08/26] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 04/26] net: add a new sockptr_t type, Christoph Hellwig
- [PATCH 05/26] net: switch copy_bpf_fprog_from_user to sockptr_t, Christoph Hellwig
- [PATCH 03/26] bpfilter: reject kernel addresses, Christoph Hellwig
- Re: get rid of the address_space override in setsockopt v2, David Miller
- LPC 2020 Networking and BPF Track CFP (Reminder), David Miller
- [PATCH nft] evaluate: bail out with concatenations and singleton values, Pablo Neira Ayuso
- Netdev conf 0x14 update and logistics, Jamal Hadi Salim
- [PATCH nft 1/2] netlink: fix concat range expansion in map case,
Florian Westphal
- [PATCH iptables] extensions: libxt_conntrack: provide translation for DNAT and SNAT --ctstate, Pablo Neira Ayuso
- [PATCH nft] evaluate: permit get element on maps, Florian Westphal
- [PATCH nft 1/2] evaluate: replace variable expression by the value expression,
Pablo Neira Ayuso
- [PATCH xtables-addons v2] doc: fix quoted string in libxt_DNETMAP man-page.,
Jeremy Sowden
- [PATCH xtables-addons] doc: fix quoted string in libxt_DNETMAP man-page.,
Jeremy Sowden
- [PATCH nft] rule: missing map command expansion, Pablo Neira Ayuso
- [PATCH nft,v2] rule: flush set cache before flush command, Pablo Neira Ayuso
- [PATCH nft] rule: flush set cache after flush command, Pablo Neira Ayuso
- [PATCH v4 14/24] netfilter: conntrack: Use sequence counter with associated spinlock, Ahmed S. Darwish
- [PATCH v4 15/24] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock, Ahmed S. Darwish
- [PATCH] net/ipv6/netfilter/ip6t_NPT: rewrite addresses in ICMPv6 original packet,
Michael Zhou
- get rid of the address_space override in setsockopt,
Christoph Hellwig
- [PATCH 08/24] net/xfrm: switch xfrm_user_policy to sockptr_t, Christoph Hellwig
- [PATCH 13/24] net/ipv4: switch ip_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 12/24] bpfilter: switch bpfilter_ip_set_sockopt to sockptr_t, Christoph Hellwig
- [PATCH 22/24] net/tcp: switch ->md5_parse to sockptr_t, Christoph Hellwig
- [PATCH 24/24] net: pass a sockptr_t into ->setsockopt, Christoph Hellwig
- [PATCH 20/24] net/ipv6: switch do_ipv6_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 23/24] net/tcp: switch do_tcp_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 19/24] net/ipv6: factor out a ipv6_set_opt_hdr helper, Christoph Hellwig
- [PATCH 21/24] net/udp: switch udp_lib_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 17/24] net/ipv6: split up ipv6_flowlabel_opt, Christoph Hellwig
- [PATCH 18/24] net/ipv6: switch ipv6_flowlabel_opt to sockptr_t, Christoph Hellwig
- [PATCH 16/24] net/ipv6: switch ip6_mroute_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 15/24] net/ipv4: switch do_ip_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 14/24] net/ipv4: merge ip_options_get and ip_options_get_from_user, Christoph Hellwig
- [PATCH 11/24] netfilter: switch nf_setsockopt to sockptr_t, Christoph Hellwig
- [PATCH 10/24] netfilter: switch xt_copy_counters to sockptr_t, Christoph Hellwig
- [PATCH 09/24] netfilter: remove the unused user argument to do_update_counters, Christoph Hellwig
- [PATCH 07/24] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 04/24] net: switch copy_bpf_fprog_from_user to sockptr_t, Christoph Hellwig
- [PATCH 03/24] net: add a new sockptr_t type, Christoph Hellwig
- [PATCH 06/24] net: switch sock_set_timeout to sockptr_t, Christoph Hellwig
- [PATCH 05/24] net: switch sock_setbindtodevice to sockptr_t, Christoph Hellwig
- [PATCH 02/24] bpfilter: fix up a sparse annotation, Christoph Hellwig
- [PATCH 01/24] bpfilter: reject kernel addresses, Christoph Hellwig
- Re: get rid of the address_space override in setsockopt, Eric Biggers
- Re: get rid of the address_space override in setsockopt, Alexei Starovoitov
- RE: get rid of the address_space override in setsockopt, David Laight
- RE: get rid of the address_space override in setsockopt, David Laight
- [PATCH for v5.9] netfilter: xtables: Replace HTTP links with HTTPS ones, Alexander A. Klimov
- [PATCH for v5.9] netfilter: Replace HTTP links with HTTPS ones,
Alexander A. Klimov
- [nf-next PATCH v2] netfilter: include: uapi: Use C99 flexible array member,
Phil Sutter
- [PATCH] ipvs: add missing struct name in ip_vs_enqueue_expire_nodest_conns when CONFIG_SYSCTL is disabled,
Andrew Sy Kim
- [PATCH net-next] ipvs: missing unlock in ip_vs_expire_nodest_conn_flush(), Dan Carpenter
- [iptables PATCH v3] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- sockopt cleanups,
Christoph Hellwig
- [PATCH 03/22] net: streamline __sys_getsockopt, Christoph Hellwig
- [PATCH 06/22] net: remove compat_sys_{get,set}sockopt, Christoph Hellwig
- [PATCH 07/22] netfilter/arp_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 12/22] netfilter: remove the compat argument to xt_copy_counters_from_user, Christoph Hellwig
- [PATCH 21/22] net/ipv6: remove compat_ipv6_{get,set}sockopt, Christoph Hellwig
- [PATCH 22/22] net: make ->{get,set}sockopt in proto_ops optional, Christoph Hellwig
- [PATCH 19/22] net/ipv6: factor out MCAST_MSFILTER setsockopt helpers, Christoph Hellwig
- [PATCH 20/22] net/ipv6: factor out mcast join/leave setsockopt helpers, Christoph Hellwig
- [PATCH 18/22] net/ipv6: factor out MCAST_MSFILTER getsockopt helpers, Christoph Hellwig
- [PATCH 17/22] net/ipv4: remove compat_ip_{get,set}sockopt, Christoph Hellwig
- [PATCH 16/22] net/ipv4: factor out mcast join/leave setsockopt helpers, Christoph Hellwig
- [PATCH 15/22] net/ipv4: factor out MCAST_MSFILTER setsockopt helpers, Christoph Hellwig
- [PATCH 14/22] net/ipv4: factor out MCAST_MSFILTER getsockopt helpers, Christoph Hellwig
- [PATCH 11/22] netfilter: remove the compat_{get,set} methods, Christoph Hellwig
- [PATCH 13/22] netfilter: split nf_sockopt, Christoph Hellwig
- [PATCH 10/22] netfilter/ebtables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 09/22] netfilter/ip6_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 08/22] netfilter/ip_tables: clean up compat {get,set}sockopt handling, Christoph Hellwig
- [PATCH 05/22] net: remove compat_sock_common_{get,set}sockopt, Christoph Hellwig
- [PATCH 01/22] net/atm: remove the atmdev_ops {get,set}sockopt methods, Christoph Hellwig
- [PATCH 02/22] net: streamline __sys_setsockopt, Christoph Hellwig
- [PATCH 04/22] net: simplify cBPF setsockopt compat handling, Christoph Hellwig
- Re: sockopt cleanups, David Miller
- [PATCH nft 1/4] tests: shell: chmod 755 testcases/chains/0030create_0,
Pablo Neira Ayuso
- [PATCH net-next] ipvs: ensure RCU read unlock when connection flushing and ipvs is disabled,
Andrew Sy Kim
- [nf-next:master 2/3] net/netfilter/ipvs/ip_vs_conn.c:1394:6: sparse: sparse: context imbalance in 'ip_vs_expire_nodest_conn_flush' - wrong count at exit,
kernel test robot
- [PATCH,v2] ipvs: fix the connection sync failed in some cases,
guodeqing
- [PATCH] ipvs: fix the connection sync failed in some cases,
guodeqing
- [iptables PATCH v2] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- [PATCH nft 1/2] monitor: print "dormant" flag in monitor mode,
Florian Westphal
- [PATCH] iptables: accept lock file name at runtime,
Giuseppe Scrivano
- [PATCH nf] netfilter: nf_tables: fix nat hook table deletion,
Florian Westphal
- [PATCH] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy(),
Dan Carpenter
- WARNING in __nf_unregister_net_hook (2), syzbot
- [nf-next PATCH] netfilter: include: uapi: Use C99 flexible array member,
Phil Sutter
- [iptables PATCH 00/18] nft: Sorted chain listing et al.,
Phil Sutter
- [iptables PATCH 14/18] nft: cache: Introduce nft_cache_add_chain(), Phil Sutter
- [iptables PATCH 12/18] nft: Fold nftnl_rule_list_chain_save() into caller, Phil Sutter
- [iptables PATCH 07/18] nft: Reorder enum nft_table_type, Phil Sutter
- [iptables PATCH 03/18] nft: cache: Drop duplicate chain check, Phil Sutter
- [iptables PATCH 01/18] nft: Make table creation purely implicit, Phil Sutter
- [iptables PATCH 09/18] nft: Use nftnl_chain_list_foreach in nft_rule_list{,_save}, Phil Sutter
- [iptables PATCH 06/18] nft: Use nft_chain_find() in two more places, Phil Sutter
- [iptables PATCH 08/18] nft: cache: Fetch only interesting tables from kernel, Phil Sutter
- [iptables PATCH 13/18] nft: Implement nft_chain_foreach(), Phil Sutter
- [iptables PATCH 04/18] nft: Drop pointless nft_xt_builtin_init() call, Phil Sutter
- [iptables PATCH 10/18] nft: Use nftnl_chain_list_foreach in nft_rule_flush, Phil Sutter
- [iptables PATCH 11/18] nft: Use nftnl_chain_foreach in nft_rule_save, Phil Sutter
- [iptables PATCH 15/18] nft: Introduce a dedicated base chain array, Phil Sutter
- [iptables PATCH 17/18] tests: shell: Drop any dump sorting in place, Phil Sutter
- [iptables PATCH 16/18] nft: cache: Sort custom chains by name, Phil Sutter
- [iptables PATCH 18/18] nft: Avoid pointless table/chain creation, Phil Sutter
- [iptables PATCH 02/18] nft: Be lazy when flushing, Phil Sutter
- [iptables PATCH 05/18] nft: Turn nft_chain_save() into a foreach-callback, Phil Sutter
- Re: [iptables PATCH 00/18] nft: Sorted chain listing et al., Pablo Neira Ayuso
- [libnftnl PATCH] chain: Implement chain list sorting, Phil Sutter
- [PATCH v2][next] netfilter: Use fallthrough pseudo-keyword,
Gustavo A. R. Silva
- [PATCH nft 1/2] src: use expression to store the log prefix,
Pablo Neira Ayuso
- [PATCH][next] netfilter: nf_tables: Use fallthrough pseudo-keyword,
Gustavo A. R. Silva
- [PATCH net-next v2 0/3] make nf_ct_frag/6_gather elide the skb CB clear,
wenxu
- [PATCH] Replace HTTP links with HTTPS ones: IPv*,
Alexander A. Klimov
- [PATCH nft] segtree: zap element statement when decomposing interval, Pablo Neira Ayuso
- [iptables PATCH] tests: shell: Add help output to run-tests.sh, Phil Sutter
- [PATCH net-next 0/3] make nf_ct_frag/6_gather elide the skb CB clear,
wenxu
- [PATCH nf-next] netfilter: nf_tables: reject unsupported chain flags, Pablo Neira Ayuso
- [PATCH nft,v2 1/2] datatype: convert chain name from gmp value to string,
Pablo Neira Ayuso
- [PATCH nf-next,v3 1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute,
Pablo Neira Ayuso
- [PATCH nf-next,v3 2/6] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v3 3/6] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v3 4/6] netfilter: nf_tables: expose enum nft_chain_flags through UAPI, Pablo Neira Ayuso
- [PATCH nf-next,v3 5/6] netfilter: nf_tables: add nft_chain_add(), Pablo Neira Ayuso
- [PATCH nf-next,v3 6/6] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH] audit: use the proper gfp flags in the audit_log_nfcfg() calls,
Paul Moore
- [PATCH nft] src: Allow for empty set variable definition, Pablo Neira Ayuso
- Moving from ipset to nftables: Sets not ready for prime time yet?,
Timo Sigurdsson
- [PATCH nft] src: support for implicit chain bindings, Pablo Neira Ayuso
- [PATCH nf-next,v2 1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute,
Pablo Neira Ayuso
- [PATCH nf-next,v2 2/6] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v2 3/6] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH nf-next,v2 4/6] netfilter: nf_tables: expose enum nft_chain_flags through UAPI, Pablo Neira Ayuso
- [PATCH nf-next,v2 5/6] netfilter: nf_tables: add nft_chain_add(), Pablo Neira Ayuso
- [PATCH nf-next,v2 6/6] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH nf-next 6/6,v2] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH net-next] ipvs: allow connection reuse for unconfirmed conntrack,
Julian Anastasov
- [PATCH nf] netfilter: nf_conntrack: refetch conntrack after nf_conntrack_update(), Pablo Neira Ayuso
- LPC 2020 Networking and BPF Track CFP, David Miller
- [PATCH v3 11/20] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock, Ahmed S. Darwish
- [PATCH v3 10/20] netfilter: conntrack: Use sequence counter with associated spinlock, Ahmed S. Darwish
- [PATCH net] netfilter: ipset: call ip_set_free() instead of kfree(),
Eric Dumazet
- [PATCH nft WIP] src: support for implicit chain bindings, Pablo Neira Ayuso
- [PATCH nf-next 0/5,v2] nftables: support for implicit chains binding,
Pablo Neira Ayuso
- [PATCH ghak124 v3fix] audit: add gfp parameter to audit_log_nfcfg,
Richard Guy Briggs
- mDNS helper fails to add expectations if host joined 224.0.0.251 multicast group, Andrei Borzenkov
- [PATCH ghak90 V9 00/13] audit: implement container identifier,
Richard Guy Briggs
- [PATCH ghak90 V9 01/13] audit: collect audit task parameters, Richard Guy Briggs
- [PATCH ghak90 V9 03/13] audit: read container ID of a process, Richard Guy Briggs
- [PATCH ghak90 V9 04/13] audit: log drop of contid on exit of last task, Richard Guy Briggs
- [PATCH ghak90 V9 07/13] audit: add support for non-syscall auxiliary records, Richard Guy Briggs
- [PATCH ghak90 V9 06/13] audit: add contid support for signalling the audit daemon, Richard Guy Briggs
- [PATCH ghak90 V9 08/13] audit: add containerid support for user records, Richard Guy Briggs
- [PATCH ghak90 V9 05/13] audit: log container info of syscalls, Richard Guy Briggs
- [PATCH ghak90 V9 02/13] audit: add container id, Richard Guy Briggs
- [PATCH ghak90 V9 11/13] audit: contid check descendancy and nesting, Richard Guy Briggs
- [PATCH ghak90 V9 12/13] audit: track container nesting, Richard Guy Briggs
- [PATCH ghak90 V9 13/13] audit: add capcontid to set contid outside init_user_ns, Richard Guy Briggs
- [PATCH ghak90 V9 09/13] audit: add containerid filtering, Richard Guy Briggs
- [PATCH ghak90 V9 10/13] audit: add support for containerid to network namespaces, Richard Guy Briggs
- [bug report] audit: log nftables configuration change events,
Dan Carpenter
- [PATCH nf-next 0/5] support for anonymous non-base chains in nftables,
Pablo Neira Ayuso
- [PATCH] [net/ipv6] Remove redundant null check in rt_mt6, Gaurav Singh
- [PATCH] [net/ipv6] Remove redundant null check in hbh_mt6, Gaurav Singh
- [PATCH] [net/ipv6] remove redundant null check in frag_mt6, Gaurav Singh
- [PATCH] [net/ipv6] Remove redundant null check in ah_mt6,
Gaurav Singh
- clean up kernel_{read,write} & friends v5,
Christoph Hellwig
- [PATCH 01/14] cachefiles: switch to kernel_write, Christoph Hellwig
- [PATCH 12/14] fs: remove __vfs_read, Christoph Hellwig
- [PATCH 13/14] fs: implement default_file_splice_read using __kernel_read, Christoph Hellwig
- [PATCH 14/14] fs: don't change the address limit for ->read_iter in __kernel_read, Christoph Hellwig
- [PATCH 09/14] fs: add a __kernel_read helper, Christoph Hellwig
- [PATCH 11/14] fs: implement kernel_read using __kernel_read, Christoph Hellwig
- [PATCH 08/14] fs: don't change the address limit for ->write_iter in __kernel_write, Christoph Hellwig
- [PATCH 10/14] integrity/ima: switch to using __kernel_read, Christoph Hellwig
- [PATCH 03/14] bpfilter: switch to kernel_write, Christoph Hellwig
- [PATCH 02/14] autofs: switch to kernel_write, Christoph Hellwig
- [PATCH 07/14] fs: remove __vfs_write, Christoph Hellwig
- [PATCH 06/14] fs: implement kernel_write using __kernel_write, Christoph Hellwig
- [PATCH 04/14] fs: unexport __kernel_write, Christoph Hellwig
- [PATCH 05/14] fs: check FMODE_WRITE in __kernel_write, Christoph Hellwig
- [libnf_ct PATCH v2 1/9] Handle negative snprintf return values properly,
Daniel Gröber
- [PATCH iptables] libxtables/xtables.c - compiler warning fixes for NO_SHARED_LIBS,
Maciej Żenczykowski
- Various memory-safety related fixes,
Daniel Gröber
- [PATCH v1 0/4] iptables: Module unload causing NULL pointer reference.,
David Wilder
- KMSAN: uninit-value in hash_net6_add, syzbot
- [nft PATCH] doc: Document notrack statement,
Phil Sutter
- [PATCH nft] doc: revisit meta/rt primary expressions and ct statement, Florian Westphal
- [PATCH nf 1/1] selftests: netfilter: add test case for conntrack helper assignment,
Florian Westphal
- [PATCH net-next] ipvs: register hooks only with services,
Julian Anastasov
- [PATCH v3] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- [PATCH v2] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- [PATCH net-next] ipvs: avoid expiring many connections from timer,
Julian Anastasov
- [PATCH] netfilter: Add MODULE_DESCRIPTION entries to kernel modules,
Rob Gill
- Allow dynamic loading of extentions in ebtables (-m option),
Eugene Crosser
- iptables user space performance benchmarks published,
Phil Sutter
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]