Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges,
Stefano Brivio
- [PATCH nf-next v2 1/8] netfilter: nf_tables: Support for subkeys, set with multiple ranged fields, Stefano Brivio
- [PATCH nf-next v2 2/8] bitmap: Introduce bitmap_cut(): cut bits and shift remaining, Stefano Brivio
- [PATCH nf-next v2 3/8] nf_tables: Add set type for arbitrary concatenation of ranges, Stefano Brivio
- [PATCH nf-next v2 5/8] nft_set_pipapo: Provide unrolled lookup loops for common field sizes, Stefano Brivio
- [PATCH nf-next v2 4/8] selftests: netfilter: Introduce tests for sets with range concatenation, Stefano Brivio
- [PATCH nf-next v2 6/8] nft_set_pipapo: Prepare for vectorised implementation: alignment, Stefano Brivio
- [PATCH nf-next v2 7/8] nft_set_pipapo: Prepare for vectorised implementation: helpers, Stefano Brivio
- [PATCH nf-next v2 8/8] nft_set_pipapo: Introduce AVX2-based lookup implementation, Stefano Brivio
- Re: [PATCH nf-next v2 0/8] nftables: Set implementation for arbitrary concatenation of ranges, Pablo Neira Ayuso
- [PATCH AUTOSEL 4.19 088/219] netfilter: nf_nat_sip: fix RTP/RTCP source port translations, Sasha Levin
- [PATCH AUTOSEL 4.19 158/219] netfilter: nf_tables: fix a missing check of nla_put_failure, Sasha Levin
- [iptables PATCH v4 00/12] Implement among match support,
Phil Sutter
- [iptables PATCH v4 07/12] nft: Introduce NFT_CL_SETS cache level, Phil Sutter
- [iptables PATCH v4 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup(), Phil Sutter
- [iptables PATCH v4 10/12] nft: Embed rule's table name in nft_xt_ctx, Phil Sutter
- [iptables PATCH v4 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback, Phil Sutter
- [iptables PATCH v4 11/12] nft: Support parsing lookup expression, Phil Sutter
- [iptables PATCH v4 09/12] nft: Bore up nft_parse_payload(), Phil Sutter
- [iptables PATCH v4 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback, Phil Sutter
- [iptables PATCH v4 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback, Phil Sutter
- [iptables PATCH v4 05/12] nft: Keep nft_handle pointer in nft_xt_ctx, Phil Sutter
- [iptables PATCH v4 08/12] nft: Support NFT_COMPAT_SET_ADD, Phil Sutter
- [iptables PATCH v4 12/12] nft: bridge: Rudimental among extension support, Phil Sutter
- [iptables PATCH v4 01/12] nft: family_ops: Pass nft_handle to 'add' callback, Phil Sutter
- Re: [iptables PATCH v4 00/12] Implement among match support, Pablo Neira Ayuso
- [PATCH libnftnl v2] set: Add support for NFTA_SET_SUBKEY attributes,
Stefano Brivio
- [PATCH nft v2 0/3] Introduce support for concatenated ranges,
Stefano Brivio
- [PATCH] net: Fix Kconfig indentation, continued,
Krzysztof Kozlowski
- [PATCH nft] mnl: Fix -Wimplicit-function-declaration warnings,
Michal Rostecki
- [libnftnl PATCH] utils: Define __visible even if not supported by compiler,
Phil Sutter
- [arptables PATCH 0/3] Some minor fixes,
Phil Sutter
- [nft PATCH] segtree: Fix add and delete of element in same batch,
Phil Sutter
- [PATCH nf-next v2 0/4] netfilter: nf_flow_table_offload: support tunnel offload,
wenxu
- [RFC 1/4] statement: make secmark statements idempotent,
Christian Göttsche
- [PATCH nf-next 0/7] nf_tables encapsulation/decapsulation support,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: Document ingress hook,
Lukas Wunner
- [PATCH nf-next] netfilter: Clean up unnecessary #ifdef,
Lukas Wunner
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix block_cb tc_setup_type as TC_SETUP_CLSFLOWER,
wenxu
- [PATCH nf-next] netfilter: nf_flow_table_offload: Fix setup block as TC_SETUP_FT cmd,
wenxu
- [PATCH net-next 0/4] nf_tables_offload: vlan matching support,
Pablo Neira Ayuso
- Choosing best API-way to full dump/restore nftables,
Alexander Mikhalitsyn
- Mysql has problem with synproxy,
İbrahim Ercan
- [PATCH libnftnl] set: Add support for NFTA_SET_SUBKEY attributes,
Stefano Brivio
- [PATCH nft 0/3] Introduce support for concatenated ranges,
Stefano Brivio
- [PATCH nf-next 0/8] nftables: Set implementation for arbitrary concatenation of ranges,
Stefano Brivio
- [PATCH nft] tests: shell: set reference from variable definition,
Pablo Neira Ayuso
- [PATCH nft,v2] parser_bison: Avoid set references in odd places,
Pablo Neira Ayuso
- [PATCH libnetfilter_queue 1/2] src: doc: Major re-work of user packet buffer documentation,
Duncan Roe
- [nft PATCH] tests/py: Set a fixed timezone in nft-test.py,
Phil Sutter
- [nft PATCH] parser_bison: Avoid set references in odd places, Phil Sutter
- [PATCH nf-next v2 0/4] netfilter: nft_tunnel: support tunnel match expr offload,
wenxu
- [PATCH libnetfilter_queue] src: Fix IPv4 checksum calculation in AF_BRIDGE packet buffer,
Duncan Roe
- [PATCH libnftnl] flowtable: remove NFTA_FLOWTABLE_SIZE,
Pablo Neira Ayuso
- [nft PATCH] scanner: Introduce numberstring,
Phil Sutter
- libnftnl: NFTA_FLOWTABLE_SIZE missing from kernel uapi headers,
Eric Garver
- [PATCH nf-next 0/4] netfilter: nf_flow_table_offload: support tunnel match,
wenxu
- [PATCH nf] netfilter: ctnetlink: netns exit must wait for callbacks,
Florian Westphal
- [PATCH nf-next] netfilter: nf_tables: check the bind callback failed and unbind callback if hook register failed,
wenxu
- [PATCH nf-next] netfilter: nf_tables: add nft_unregister_flowtable_hook(), Pablo Neira Ayuso
- [iptables PATCH 0/2] Restore rule counter zeroing,
Phil Sutter
- [net-next 1/1] netfilter: nf_tables_offload: Fix dangling extack pointer,
Saeed Mahameed
- [nft PATCH] cache: Reduce caching for get command,
Phil Sutter
- [nft PATCH] segtree: Fix get element for little endian ranges,
Phil Sutter
- [PATCH nf-next 1/3] netfilter: nf_tables_offload: remove reference to flow rule from deletion path,
Pablo Neira Ayuso
- Re: ipset bitmap:port question,
İbrahim Ercan
- [PATCH libnetfilter_queue] src: Make sure pktb_alloc() works for IPv6 over AF_BRIDGE,
Duncan Roe
- libnetfilter_queue git pull has stopped working, Duncan Roe
- [PATCH nf-next 1/2] netfilter: nf_flow_table_offload: add flow_action_entry_next() and use it,
Pablo Neira Ayuso
- [PATCH][v2] netfilter: only call csum_tcpudp_magic for TCP/UDP packets,
Li RongQing
- [PATCH net-next 0/4] netfilter: flow_table_offload something fixes,
wenxu
- [PATCH nf] netfilter: nf_tables_offload: Fix check the NETDEV_UNREGISTER in netdev event,
wenxu
- [PATCH AUTOSEL 4.19 195/209] netfilter: nft_compat: do not dump private area, Sasha Levin
- [PATCH AUTOSEL 4.14 105/115] netfilter: nft_compat: do not dump private area, Sasha Levin
- [nft PATCH] segtree: Check ranges when deleting elements,
Phil Sutter
- [nft PATCH] meta: Rewrite hour_type_print(),
Phil Sutter
- [nf-next PATCH] net: netfilter: Support iif matches in POSTROUTING,
Phil Sutter
- [PATCH mlx5-next 0/7] netfilter flowtable hardware offload support,
Pablo Neira Ayuso
- [PATCH net-next 0/6] netfilter flowtable hardware offload,
Pablo Neira Ayuso
- UAF in ip6_do_table on 4.19 kernel,
stranche
- [conntrack-tools PATCH] helpers: Fix for warning when compiling against libtirpc,
Phil Sutter
- [conntrack-tools PATCH] Makefile.am: Use ${} instead of @...@,
Phil Sutter
- [PATCH] netfilter: xtables: Add snapshot of hardidletimer target,
Manoj Basapathi
- [PATCH libnetfilter_queue 0/2] Miscellaneous fixes,
Duncan Roe
- [PATCH AUTOSEL 4.19 183/191] netfilter: masquerade: don't flush all conntracks if only one address deleted on device, Sasha Levin
- [PATCH AUTOSEL 4.14 105/109] netfilter: masquerade: don't flush all conntracks if only one address deleted on device, Sasha Levin
- [PATCH] netfilter: only call csum_tcpudp_magic for TCP/UDP packets,
Li RongQing
- [PATCH 00/16] drivers: y2038 updates,
Arnd Bergmann
- [PATCH 0/8] y2038: bug fixes from y2038 work,
Arnd Bergmann
- [PATCH AUTOSEL 4.19 203/205] netfilter: nf_tables: avoid BUG_ON usage, Sasha Levin
- KCSAN: data-race in pcpu_alloc / pcpu_free_area (2), syzbot
- [nft PATCH 1/2] files: Drop shebangs from config files,
Phil Sutter
- [PATCH] conntrackd UDP IPv6 destination address not usable (Bug 1378),
Jan-Martin Raemer
- [PATCH v3] [net]: Fix skb->csum update in inet_proto_csum_replace16().,
Praveen Chaudhary
- ipv6 forward rule after prerouting - Howto,
Daniel Huhardeaux
- [PATCH] src: add `set_is_meter` helper.,
Jeremy Sowden
- [nft PATCH] doc: Drop incorrect requirement for nft configs,
Phil Sutter
- [PATCH nft] src: flowtable: add support for delete command by handle,
Eric Jallot
- [PATCH libnftnl] flowtable: add support for handle attribute,
Eric Jallot
- [PATCH nf 1/2] netfilter: nf_tables: bogus EOPNOTSUPP on basechain update,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nft_payload: add C-VLAN support, Pablo Neira Ayuso
- [PATCH libnetfilter_queue] src: doc: Eliminate doxygen warnings from ipv{4,6}.c,
Duncan Roe
- ebtables dnat rule gets system frozen,
Tom Yan
- [PATCH libnetfilter_queue] src: doc: Fix spelling of CTA_LABELS in examples/nf-queue.c,
Duncan Roe
- [PATCH nft] tests: add stateful object update operation test, Fernando Fernandez Mancera
- [PATCH nf] netfilter: nf_tables: fix unexpected EOPNOTSUPP error,
Fernando Fernandez Mancera
- [PATCH nf-next,v2] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup(), Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables_offload: pass extack to nft_flow_cls_offload_setup(),
Pablo Neira Ayuso
- [PATCH libnetfilter_queue 0/2] src: doc: Main Page updates,
Duncan Roe
- "Sets" element cannot update "struct proto_ctx", Ttttabcd
- [PATCH net-next 0/2] icmp: move duplicate code in helper functions,
Matteo Croce
- [PATCH 0/1] ipset patches for nf-next,
Jozsef Kadlecsik
- [ANNOUNCE] ipset 7.4 released, Kadlecsik József
- Nat redirect using map,
Daniel Huhardeaux
- [nft PATCH] evaluate: Reject set references in mapping LHS,
Phil Sutter
- [PATCH nf-next 0/2] Revisit vlan support,
Pablo Neira Ayuso
- [PATCH nft,RFC] src: Support netdev egress hook, Lukas Wunner
- [PATCH nf-next,RFC 0/5] Netfilter egress hook,
Lukas Wunner
- [PATCH nf-next,RFC 1/5] netfilter: Clean up unnecessary #ifdef, Lukas Wunner
- [PATCH nf-next,RFC 2/5] netfilter: Document ingress hook, Lukas Wunner
- [PATCH nf-next,RFC 4/5] netfilter: Generalize ingress hook, Lukas Wunner
- [PATCH nf-next,RFC 3/5] netfilter: Rename ingress hook include file, Lukas Wunner
- [PATCH nf-next,RFC 5/5] netfilter: Introduce egress hook, Lukas Wunner
- Re: [PATCH nf-next,RFC 0/5] Netfilter egress hook, Pablo Neira Ayuso
- [tip: core/rcu] net/netfilter: Replace rcu_swap_protected() with rcu_replace_pointer(), tip-bot2 for Paul E. McKenney
- nft: secmark output not understood by parser, Phil Sutter
- [PATCH nf] netfilter: nf_tables: Align nft_expr private data to 64-bit,
Lukas Wunner
- [libnftnl PATCH 1/1] flowtable: Fix symbol export for clang,
Marvin Schmidt
- [nft PATCH v2] libnftables: Store top_scope in struct nft_ctx,
Phil Sutter
- [nft PATCH] libnftables: Store top_scope in struct nft_ctx, Phil Sutter
- [PATCH nft] doc: fix missing family in plural forms list command.,
Eric Jallot
- [libnftnl PATCH 1/2] libnftnl.map: Export nftnl_{obj,flowtable}_set_data(),
Phil Sutter
- [iptables PATCH v3 00/12] Implement among match support,
Phil Sutter
- [iptables PATCH v3 01/12] nft: family_ops: Pass nft_handle to 'add' callback, Phil Sutter
- [iptables PATCH v3 12/12] nft: bridge: Rudimental among extension support, Phil Sutter
- [iptables PATCH v3 06/12] nft: Eliminate pointless calls to nft_family_ops_lookup(), Phil Sutter
- [iptables PATCH v3 05/12] nft: Keep nft_handle pointer in nft_xt_ctx, Phil Sutter
- [iptables PATCH v3 10/12] nft: Embed rule's table name in nft_xt_ctx, Phil Sutter
- [iptables PATCH v3 09/12] nft: Bore up nft_parse_payload(), Phil Sutter
- [iptables PATCH v3 03/12] nft: family_ops: Pass nft_handle to 'print_rule' callback, Phil Sutter
- [iptables PATCH v3 04/12] nft: family_ops: Pass nft_handle to 'rule_to_cs' callback, Phil Sutter
- [iptables PATCH v3 02/12] nft: family_ops: Pass nft_handle to 'rule_find' callback, Phil Sutter
- [iptables PATCH v3 08/12] nft: Support NFT_COMPAT_SET_ADD, Phil Sutter
- [iptables PATCH v3 07/12] nft: Introduce NFT_CL_SETS cache level, Phil Sutter
- [iptables PATCH v3 11/12] nft: Support parsing lookup expression, Phil Sutter
- Re: [iptables PATCH v3 00/12] Implement among match support, Pablo Neira Ayuso
- [PATCH nft] src: flowtable: add support for named flowtable listing,
Eric Jallot
- Rearranging expressions in the rule, Serguei Bezverkhi (sbezverk)
- [conntrack-tools PATCH] docs: refresh references to /proc/net/core/rmem_default,
Arturo Borrero Gonzalez
- Documentation question,
Duncan Roe
- Re: Conntrack offload questions, Pablo Neira Ayuso
- ipset make modules_install always fail unless module already loaded?,
Oskar Berggren
- [PATCH v2] [netfilter]: Fix skb->csum calculation when netfilter manipulation for NF_NAT_MANIP_SRC\DST is done on IPV6 packet.,
Praveen Chaudhary
- [nft PATCH] tests/py: Fix test script for Python3 tempfile,
Phil Sutter
- [PATCH nf-next] netfilter: nf_tables_offload: allow ethernet interface type only,
Pablo Neira Ayuso
- libnftnl: Attribute and data length validation for objects, Phil Sutter
- general protection fault in ip6_sublist_rcv,
syzbot
- [nft PATCH] mnl: Replace use of untyped nftnl data setters,
Phil Sutter
- [iptables PATCH v2 00/10] Reduce code size around arptables-nft,
Phil Sutter
- [iptables PATCH v2 04/10] Merge CMD_* defines, Phil Sutter
- [iptables PATCH v2 10/10] nft-arp: Use xtables_print_mac_and_mask(), Phil Sutter
- [iptables PATCH v2 01/10] ip6tables, xtables-arp: Drop unused struct pprot, Phil Sutter
- [iptables PATCH v2 09/10] xtables-arp: Use xtables_parse_interface(), Phil Sutter
- [iptables PATCH v2 07/10] xtables-arp: Integrate OPT_* defines into xshared.h, Phil Sutter
- [iptables PATCH v2 03/10] xshared: Share a common implementation of parse_rulenumber(), Phil Sutter
- [iptables PATCH v2 02/10] xshared: Share a common add_command() implementation, Phil Sutter
- [iptables PATCH v2 08/10] xtables-arp: Drop some unused variables, Phil Sutter
- [iptables PATCH v2 06/10] Replace TRUE/FALSE with true/false, Phil Sutter
- [iptables PATCH v2 05/10] xtables-arp: Drop generic_opt_check(), Phil Sutter
- Re: [iptables PATCH v2 00/10] Reduce code size around arptables-nft, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nft_meta: offload support for interface index, Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nf_tables_offload: check for register data length mismatches, Pablo Neira Ayuso
- [PATCH] netfilter: nf_tables_offload: check for register data length mismatches, Pablo Neira Ayuso
- [iptables PATCH 00/10] Reduce code size around arptables-nft,
Phil Sutter
- [iptables PATCH 09/10] xtables-arp: Use xtables_parse_interface(), Phil Sutter
- [iptables PATCH 05/10] xtables-arp: Drop generic_opt_check(), Phil Sutter
- [iptables PATCH 01/10] ip6tables, xtables-arp: Drop unused struct pprot, Phil Sutter
- [iptables PATCH 03/10] xshared: Share a common implementation of parse_rulenumber(), Phil Sutter
- [iptables PATCH 02/10] xshared: Share a common add_command() implementation, Phil Sutter
- [iptables PATCH 08/10] xtables-arp: Drop some unused variables, Phil Sutter
- [iptables PATCH 10/10] nft-arp: Use xtables_print_mac_and_mask(), Phil Sutter
- [iptables PATCH 07/10] xtables-arp: Integrate OPT_* defines into xshared.h, Phil Sutter
- [iptables PATCH 06/10] Replace TRUE/FALSE with true/false, Phil Sutter
- [iptables PATCH 04/10] Merge CMD_* defines, Phil Sutter
- Re: [iptables PATCH 00/10] Reduce code size around arptables-nft, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_cmp: check for register data length mismatches, Pablo Neira Ayuso
- [PATCH libnetfilter_queue] src: doc: Document nfq_nlmsg_verdict_put_mark() and nfq_nlmsg_verdict_put_pkt(),
Duncan Roe
- [PATCH AUTOSEL 5.3 49/99] netfilter: conntrack: avoid possible false sharing, Sasha Levin
- [PATCH 00/31] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/31] netfilter: ipset: add a coding-style fix to ip_set_ext_destroy., Pablo Neira Ayuso
- [PATCH 05/31] netfilter: ipset: make ip_set_put_flags extern., Pablo Neira Ayuso
- [PATCH 03/31] netfilter: ipset: move ip_set_comment functions from ip_set.h to ip_set_core.c., Pablo Neira Ayuso
- [PATCH 07/31] netfilter: ipset: move ip_set_get_ip_port() to ip_set_bitmap_port.c., Pablo Neira Ayuso
- [PATCH 09/31] ipvs: batch __ip_vs_cleanup, Pablo Neira Ayuso
- [PATCH 13/31] selftests: netfilter: add ipvs tunnel test case, Pablo Neira Ayuso
- [PATCH 14/31] netfilter: ecache: document extension area access rules, Pablo Neira Ayuso
- [PATCH 15/31] netfilter: ctnetlink: don't dump ct extensions of unconfirmed conntracks, Pablo Neira Ayuso
- [PATCH 26/31] netfilter: nf_tables_offload: remove rules on unregistered device only, Pablo Neira Ayuso
- [PATCH 28/31] netfilter: ecache: don't look for ecache extension on dying/unconfirmed conntracks, Pablo Neira Ayuso
- [PATCH 18/31] netfilter: nft_tproxy: Fix typo in IPv6 module description., Pablo Neira Ayuso
- [PATCH 17/31] netfilter: add and use nf_hook_slow_list(), Pablo Neira Ayuso
- [PATCH 31/31] netfilter: nf_tables_offload: unbind if multi-device binding fails, Pablo Neira Ayuso
- [PATCH 30/31] netfilter: nf_tables_offload: add nft_flow_block_offload_init(), Pablo Neira Ayuso
- [PATCH 29/31] netfilter: nf_tables_offload: add nft_chain_offload_cmd(), Pablo Neira Ayuso
- [PATCH 27/31] netfilter: nf_tables: support for multiple devices per netdev hook, Pablo Neira Ayuso
- [PATCH 24/31] netfilter: nf_tables_offload: Pass callback list to nft_setup_cb_call(), Pablo Neira Ayuso
- [PATCH 20/31] netfilter: nf_tables: dynamically allocate hooks per net_device in flowtables, Pablo Neira Ayuso
- [PATCH 25/31] netfilter: nf_tables_offload: add nft_flow_cls_offload_setup(), Pablo Neira Ayuso
- [PATCH 23/31] netfilter: nf_tables_offload: add nft_flow_block_chain(), Pablo Neira Ayuso
- [PATCH 22/31] netfilter: nf_tables: increase maximum devices number per flowtable, Pablo Neira Ayuso
- [PATCH 21/31] netfilter: nf_tables: allow netdevice to be used only once per flowtable, Pablo Neira Ayuso
- [PATCH 19/31] netfilter: nf_flow_table: move priority to struct nf_flowtable, Pablo Neira Ayuso
- [PATCH 16/31] netfilter: conntrack: free extension area immediately, Pablo Neira Ayuso
- [PATCH 11/31] selftests: netfilter: add ipvs test script, Pablo Neira Ayuso
- [PATCH 12/31] selftests: netfilter: add ipvs nat test case, Pablo Neira Ayuso
- [PATCH 10/31] ipvs: batch __ip_vs_dev_cleanup, Pablo Neira Ayuso
- [PATCH 08/31] ipvs: no need to update skb route entry for local destination packets., Pablo Neira Ayuso
- [PATCH 04/31] netfilter: ipset: move functions to ip_set_core.c., Pablo Neira Ayuso
- [PATCH 02/31] netfilter: ipset: remove inline from static functions in .c files., Pablo Neira Ayuso
- [PATCH 06/31] netfilter: ipset: move function to ip_set_bitmap_ip.c., Pablo Neira Ayuso
- Re: [PATCH 00/31] Netfilter/IPVS updates for net-next, David Miller
- [PATCH nft] mnl: remove artifical cap on 8 devices per flowtable, Pablo Neira Ayuso
- [PATCH nft,v3] src: add multidevice support for netdev chain, Pablo Neira Ayuso
- [PATCH nft,v2] src: add multidevice support for netdev chain,
Pablo Neira Ayuso
- [PATCH libnftnl,v2] chain: multi-device support, Pablo Neira Ayuso
- [PATCH libnftnl,v2] flowtable: device array dynamic allocation, Pablo Neira Ayuso
- [iptables PATCH] xtables-arp: Use xtables_ipparse_multiple(),
Phil Sutter
- [PATCH AUTOSEL 5.3 11/33] netfilter: conntrack: avoid possible false sharing, Sasha Levin
- [PATCH AUTOSEL 5.3 16/33] netfilter: connlabels: prefer static lock initialiser, Sasha Levin
- [GIT PULL] IPVS fixes for v5.4,
Simon Horman
- [PATCH nf-next] netfilter: nf_tables_offload: support offload iif types meta offload,
wenxu
- [iptables PATCH v3 0/7] Improve xtables-restore performance,
Phil Sutter
- [PATCH trivial] net: Fix various misspellings of "connect",
Geert Uytterhoeven
- [PATCH nf-next 0/5] netfilter: nft_tunnel: support tunnel match expr offload,
wenxu
- [PATCH nf-next 1/3] netfilter: nf_tables_offload: add nft_chain_offload_cmd(),
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_payload: fix check the match len for offload to hw,
wenxu
- [PATCH nf-next] netfilter: nf_tables_offload: Fix unbind devices when subsequent device bind failed,
wenxu
- [nft PATCH] Revert "main: Fix for misleading error with negative chain priority", Phil Sutter
- [PATCH net-next] netfilter: nf_conntrack: introduce conntrack limit per-zone,
xiangxia . m . yue
- [PATCH nft 0/4] Output Flag Fixes,
Jeremy Sowden
- [PATCH tip/core/rcu 08/10] net/netfilter: Replace rcu_swap_protected() with rcu_replace(), paulmck
- [PATCH nf-next] netfilter: ecache: don't look for ecache extension on dying/unconfirmed conntracks,
Florian Westphal
- nftables: secmark support,
Christian Göttsche
- [PATCH nf-next,RFC 0/2] nf_tables encapsulation/decapsulation support,
Pablo Neira Ayuso
- KASAN: use-after-free Read in nf_ct_deliver_cached_events,
syzbot
- How to implement transparent proxy in bridge through nftables,
Ttttabcd
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]