Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH 1/2 nft v3] src: allow variables in the chain priority specification, (continued)
- [PATCH] meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH v3] netfilter: nft_meta: support for time matching,
Ander Juaristi
- [PATCH v6] meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH] expr: allow export of notrack expr,
Ivan Babrou
- [PATCH nf-next v3 0/9] netfilter: nf_tables_offload: support more expr and obj offload,
wenxu
- [PATCH nf-next v3 3/9] netfilter: nft_fwd_netdev: add fw_netdev action support, wenxu
- [PATCH nf-next v3 2/9] netfilter: nf_tables_offload: add offload_actions callback, wenxu
- [PATCH nf-next v3 8/9] netfilter: nft_objref: add nft_objref_type offload, wenxu
- [PATCH nf-next v3 6/9] netfilter: nft_tunnel: support tunnel meta match offload, wenxu
- [PATCH nf-next v3 4/9] netfilter: nft_payload: add nft_set_payload offload support, wenxu
- [PATCH nf-next v3 5/9] netfilter: nft_tunnel: support NFT_TUNNEL_SRC/DST_IP match, wenxu
- [PATCH nf-next v3 1/9] netfilter: nf_flow_offload: add net in offload_ctx, wenxu
- [PATCH nf-next v3 7/9] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action, wenxu
- [PATCH nf-next v3 9/9] netfilter: nft_tunnel: support nft_tunnel_obj offload, wenxu
- Re: [PATCH nf-next v3 0/9] netfilter: nf_tables_offload: support more expr and obj offload, wenxu
- [PATCH nf-next] netfilter: nf_tables: store data in offload context registers,
Pablo Neira Ayuso
- [iptables PATCH] nft: Drop stale include directive,
Phil Sutter
- [PATCH net 0/2] flow_offload hardware priority fixes,
Pablo Neira Ayuso
- [PATCH net-next v5 0/6] flow_offload: add indr-block in nf_table_offload,
wenxu
- [iptables PATCH 0/5] xtables-monitor enhancements,
Phil Sutter
- [PATCH nf,v2] netfilter: nf_tables: map basechain priority to hardware priority,
Pablo Neira Ayuso
- [PATCH nft,v2] cache: incorrect flush flag for table/chain, Pablo Neira Ayuso
- [PATCH net-next 0/6] flow_offload: add indr-block in nf_table_offload,
wenxu
- [FINAL REMINDER!!] LPC 2019 Networking Track CFP, David Miller
- [RFC 0/2] typeof keyword, alternate patch,
Florian Westphal
- [PATCH nft,RFC,PoC 0/2] typeof support for set / map,
Pablo Neira Ayuso
- [PATCH nft] src: fix flush chain cache flag, Laura Garcia Liebana
- [PATCH nf 1/2] selftests: netfilter: extend flowtable test script for ipsec,
Florian Westphal
- [PATCH nft v2] src: Support maps as left side expressions,
Brett Mastbergen
- [PATCH] bridge:fragmented packets dropped by bridge,
Rundong Ge
- [PATCH nf-next] netfilter: nft_bitwise: add offload support, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: map basechain priority to hardware priority,
Pablo Neira Ayuso
- [PATCH 0/3] ipset patches for the nf tree,
Jozsef Kadlecsik
- [ANNOUNCE] ipset 7.3 released, Jozsef Kadlecsik
- [PATCH nft] src: Support maps as left side expressions,
Brett Mastbergen
- [PATCH] netfilter: nfacct: Fix alignment mismatch in xt_nfacct_match_info,
Juliana Rodrigueiro
- Re: memory leak in bio_copy_user_iov,
syzbot
- [PATCH] netfilter: add include guard to xt_connlabel.h,
Masahiro Yamada
- Re: memory leak in fdb_create,
syzbot
- [PATCH net-next v4 0/3] flow_offload: add indr-block in nf_table_offload,
wenxu
- [PATCH net-next v3 0/3] flow_offload: add indr-block in nf_table_offload,
wenxu
- [PATCH iptables v2]: restore legacy behaviour of iptables-restore when rules start with -4/-6,
Adel Belhouane
- [PATCH net-next v2 0/3] flow_offload: add indr-block in nf_table_offload,
wenxu
- Re: memory leak in dma_buf_ioctl,
syzbot
- [iptables PATCH 1/2] nft: Set errno in nft_rule_flush(),
Phil Sutter
- [PATCH nf-next v2 10/11] netfilter: nft_objref: add nft_objref_type offload,
wenxu
- [PATCH nf-next v2 00/11] netfilter: nf_tables_offload: support more expr and obj offload,
wenxu
- [PATCH nf-next v6 0/8] netfilter: nf_flow_offload: support bridge family offload for both ipv4 and ipv6,
wenxu
- [PATCH nf-next v6 2/8] netfilter:nf_flow_table_core: Separate inet operation to single function, wenxu
- [PATCH nf-next v6 1/8] netfilter:nf_flow_table: Refactor flow_offload_tuple to destination, wenxu
- [PATCH nf-next v6 4/8] bridge: add br_vlan_get_info_rcu(), wenxu
- [PATCH nf-next v6 7/8] netfilter:nft_flow_offload: Support bridge family flow offload, wenxu
- [PATCH nf-next v6 5/8] netfilter:nf_flow_table_core: Support bridge family flow offload, wenxu
- [PATCH nf-next v6 6/8] netfilter:nf_flow_table_ip: Support bridge family flow offload, wenxu
- [PATCH nf-next v6 8/8] netfilter: Support the bridge family in flow table, wenxu
- [PATCH nf-next v6 3/8] netfilter:nf_flow_table_ip: Separate inet operation to single function, wenxu
- Re: [PATCH nf-next v6 0/8] netfilter: nf_flow_offload: support bridge family offload for both ipv4 and ipv6, wenxu
- Re: [PATCH nf-next v6 0/8] netfilter: nf_flow_offload: support bridge family offload for both ipv4 and ipv6, wenxu
- vrf and flowtable problems,
Pablo Neira Ayuso
- [PATCH net-next 1/3] flow_offload: move tc indirect block to flow offload,
wenxu
- [PATCH nf-next v2 0/5] sipport nft_tunnel offload,
wenxu
- [PATCH nft,v1 1/2] src: add tunnel support,
Pablo Neira Ayuso
- [PATCH nf v2] netfilter: nft_tunnel: Fix don't convert tun id to host endian,
wenxu
- [PATCH nf-next 0/5] sipport nft_tunnel offload,
wenxu
- [PATCH iptables]: restore legacy behaviour of iptables-restore when rules start with -4/-6,
Adel Belhouane
- [PATCH] netfilter: trivial: remove extraneous space from message,
Rui Salvaterra
- [PATCH nf] netfilter: nft_tunnel: Fix convert tunnel id to host endian,
wenxu
- [PATCH iptables v2] nfnl_osf: fix snprintf -Wformat-truncation warning,
Fernando Fernandez Mancera
- [PATCH nft] src: Sync comments with current expr definition,
Brett Mastbergen
- [iptables PATCH 1/2] doc: Install nft-variant man pages only if enabled,
Phil Sutter
- Re: ct state vmap (nft noob question), Neal P. Murphy
- [PATCH nft] cache: add NFT_CACHE_UPDATE and NFT_CACHE_FLUSHED flags, Pablo Neira Ayuso
- [PATCH v3 1/2] net: nf_tables: Make nft_meta expression more robust,
Phil Sutter
- [nft PATCH v2 0/2] parser_bison: Get rid of (most) bison compiler warnings,
Phil Sutter
- [PATCH nf-next 0/7] netfilter: nf_tables_offload: support more actions,
wenxu
- [PATCH net-next] netfilter: conntrack: use shared sysctl constants,
Matteo Croce
- nftables feature request: modify set element timeout,
Fran Fitzpatrick
- [PATCH 0/2 nft v2] Introduce variables in chain priority and policy,
Fernando Fernandez Mancera
- [PATCH nft v3] src: osf: fix snprintf -Wformat-truncation warning,
Fernando Fernandez Mancera
- memleak when using "nft -f",
Fernando Fernandez Mancera
- [PATCH 0/2 nft] Introduce variables in chain priority and policy,
Fernando Fernandez Mancera
- [PATCH nft] evaluate: missing location for chain nested in table definition,
Pablo Neira Ayuso
- [PATCH] [v2 net-next] ipvs: reduce kernel stack usage,
Arnd Bergmann
- [iptables PATCH v2 00/11] Larger xtables-save review,
Phil Sutter
- [iptables PATCH v2 04/11] xtables-save: Fix table compatibility check, Phil Sutter
- [iptables PATCH v2 08/11] xtables-save: Make COMMIT line optional, Phil Sutter
- [iptables PATCH v2 01/11] ebtables: Fix error message for invalid parameters, Phil Sutter
- [iptables PATCH v2 07/11] xtables-save: Pass optstring/longopts to xtables_save_main(), Phil Sutter
- [iptables PATCH v2 02/11] ebtables-save: Fix counter formatting, Phil Sutter
- [iptables PATCH v2 11/11] ebtables-save: Merge into xtables_save_main(), Phil Sutter
- [iptables PATCH v2 03/11] xtables-save: Unify *-save header/footer comments, Phil Sutter
- [iptables PATCH v2 10/11] arptables-save: Merge into xtables_save_main(), Phil Sutter
- [iptables PATCH v2 06/11] xtables-save: Avoid mixed code and declarations, Phil Sutter
- [iptables PATCH v2 09/11] xtables-save: Pass format flags to do_output(), Phil Sutter
- [iptables PATCH v2 05/11] nft: Make nft_for_each_table() more versatile, Phil Sutter
- Re: [iptables PATCH v2 00/11] Larger xtables-save review, Florian Westphal
- Re: [iptables PATCH v2 00/11] Larger xtables-save review, Pablo Neira Ayuso
- [PATCH nft v2] src: evaluate: support prefix expression in statements,
Florian Westphal
- [PATCH iptables] nfnl_osf: fix snprintf -Wformat-truncation warning,
Fernando Fernandez Mancera
- [PATCH nft v2] src: osf: fix snprintf -Wformat-truncation warning, Fernando Fernandez Mancera
- [PATCH nft] src: evaluate: support prefix expression in statements,
Florian Westphal
- [PATCH nft] doc: fib: explain example in more detail,
Florian Westphal
- [PATCH nft] scanner: don't rely on fseek for input stream repositioning,
Florian Westphal
- [PATCH nft 0/3] fix crash bug during rule restore,
Florian Westphal
- [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings,
Phil Sutter
- [iptables PATCH 00/12] Larger xtables-save review,
Phil Sutter
- [iptables PATCH 05/12] xtables-save: Fix table compatibility check, Phil Sutter
- [iptables PATCH 09/12] xtables-save: Make COMMIT line optional, Phil Sutter
- [iptables PATCH 03/12] xtables-save: Use argv[0] as program name, Phil Sutter
- [iptables PATCH 06/12] nft: Make nft_for_each_table() more versatile, Phil Sutter
- [iptables PATCH 11/12] arptables-save: Merge into xtables_save_main(), Phil Sutter
- [iptables PATCH 07/12] xtables-save: Avoid mixed code and declarations, Phil Sutter
- [iptables PATCH 10/12] xtables-save: Pass format flags to do_output(), Phil Sutter
- [iptables PATCH 01/12] ebtables: Fix error message for invalid parameters, Phil Sutter
- [iptables PATCH 08/12] xtables-save: Pass optstring/longopts to xtables_save_main(), Phil Sutter
- [iptables PATCH 04/12] xtables-save: Unify *-save header/footer comments, Phil Sutter
- [iptables PATCH 02/12] ebtables-save: Fix counter formatting, Phil Sutter
- [iptables PATCH 12/12] ebtables-save: Merge into xtables_save_main(), Phil Sutter
- Re: [iptables PATCH 00/12] Larger xtables-save review, Florian Westphal
- Re: [iptables PATCH 00/12] Larger xtables-save review, Pablo Neira Ayuso
- [PATCH] netfilter: ebtables: compat: fix a memory leak bug,
Wenwen Wang
- [PATCH 10/14] netfilter: nf_tables: Support auto-loading for inet nat,
Pablo Neira Ayuso
- [PATCH nf,v5 0/4] flow_offload fixes,
Pablo Neira Ayuso
- [PATCH nf,v5 1/4] net: openvswitch: rename flow_stats to sw_flow_stats, Pablo Neira Ayuso
- [PATCH nf,v5 2/4] net: flow_offload: remove netns parameter from flow_block_cb_alloc(), Pablo Neira Ayuso
- [PATCH nf,v5 3/4] net: flow_offload: rename tc_setup_cb_t to flow_setup_cb_t, Pablo Neira Ayuso
- [PATCH nf,v5 4/4] net: flow_offload: add flow_block structure and use it, Pablo Neira Ayuso
- Re: [PATCH nf,v5 0/4] flow_offload fixes, David Miller
- [PATCH nft] src: allow variables in the chain priority specification, Fernando Fernandez Mancera
- [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust,
Phil Sutter
- [PATCH conntrack-tools] conntrackd: cthelper: Add new SLP helper,
Michal Kubecek
- [PATCH nf 1/2] netfilter: nft_meta: skip EAGAIN if nft_meta_bridge is not a module,
Pablo Neira Ayuso
- [PATCH net,v4 0/4] flow_offload fixes,
Pablo Neira Ayuso
- [PATCH net,v4 1/4] net: openvswitch: rename flow_stats to sw_flow_stats, Pablo Neira Ayuso
- [PATCH net,v4 2/4] net: flow_offload: remove netns parameter from flow_block_cb_alloc(), Pablo Neira Ayuso
- [PATCH net,v4 3/4] net: flow_offload: rename tc_setup_cb_t to flow_setup_cb_t, Pablo Neira Ayuso
- [PATCH net,v4 4/4] net: flow_offload: add flow_block structure and use it, Pablo Neira Ayuso
- Re: [PATCH net,v4 0/4] flow_offload fixes, David Miller
- [nft PATCH] json: Fix memleak in timeout_policy_json(),
Phil Sutter
- [iptables PATCH] xtables-save: Use argv[0] as program name,
Phil Sutter
- [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning,
Fernando Fernandez Mancera
- [RFC net] net: generate icmp redirects after netfilter forward hook, Florian Westphal
- [PATCH nft] include: json: add missing synproxy stmt print stub,
Fernando Fernandez Mancera
- userspace conntrack helper and confirming the master conntrack,
Michal Kubecek
- [PATCH v2] netfilter: nft_dynset: support for element deletion,
Ander Juaristi
- [nft PATCH 1/3] meta: Reject zero ifindex values,
Phil Sutter
- [libnftnl PATCH] expr: meta: Make NFT_META_{I,O}IFKIND known,
Phil Sutter
- [nf PATCH] net: nf_tables: Make nft_meta expression more robust,
Phil Sutter
- [PATCH net,v3 1/4] net: openvswitch: rename flow_stats to sw_flow_stats,
Pablo Neira Ayuso
- [nf PATCH] net: nf_tables: Support auto-loading for inet nat,
Phil Sutter
- [nf PATCH RFC] net: nf_tables: Support auto-loading inet family nat chain,
Phil Sutter
- [PATCH 1/2 nft] src: json: fix synproxy flag parser typo,
Fernando Fernandez Mancera
- [PATCH nft] evaluate: missing basic evaluation of expectations, Pablo Neira Ayuso
- rebasing nf.git, Pablo Neira Ayuso
- json_cmd_assoc and cmd,
Pablo Neira Ayuso
- [PATCH nft,v2] evaluate: bogus error when refering to existing non-base chain, Pablo Neira Ayuso
- [PATCH nft] evaluate: bogus error when refering to existing non-base chain,
Pablo Neira Ayuso
- [PATCH nft 1/5] src: add set_is_datamap(), set_is_objmap() and set_is_map() helpers,
Pablo Neira Ayuso
- [PATCH 0/2 nft WIP] Using variables in chain priority,
Fernando Fernandez Mancera
- [PATCH nf-next v5 0/8] netfilter: nf_flow_offload: support bridge family offload for both,
wenxu
- [PATCH nf v3] netfilter: synproxy: fix rst sequence number mismatch,
Fernando Fernandez Mancera
- Re: linux-next: Tree for Jul 15 (HEADERS_TEST w/ netfilter tables offload),
Laura Garcia
- [PATCHv2] Fix dumping vlan rules,
michael-dev
- [PATCH libiptc] libip6tc.h: Add extern "C" wrapping for C++ linking.,
Chris PeBenito
- [PATCH AUTOSEL 5.2 080/249] netfilter: ipset: fix a missing check of nla_parse, Sasha Levin
- [PATCH AUTOSEL 5.2 081/249] ipset: Fix memory accounting for hash types on resize, Sasha Levin
- [PATCH AUTOSEL 5.2 174/249] netfilter: ctnetlink: Fix regression in conntrack entry deletion, Sasha Levin
- [PATCH AUTOSEL 5.1 070/219] ipset: Fix memory accounting for hash types on resize, Sasha Levin
- [PATCH AUTOSEL 5.1 143/219] ipvs: fix tinfo memory leak in start_sync_thread, Sasha Levin
- [PATCH AUTOSEL 5.1 183/219] netfilter: Fix remainder of pseudo-header protocol 0, Sasha Levin
- [PATCH AUTOSEL 4.19 091/158] ipvs: defer hook registration to avoid leaks, Sasha Levin
- [PATCH AUTOSEL 4.19 107/158] ipvs: fix tinfo memory leak in start_sync_thread, Sasha Levin
- [PATCH AUTOSEL 4.14 039/105] ipset: Fix memory accounting for hash types on resize, Sasha Levin
- [PATCH net] ipvs: Improve robustness to the ipvs sysctl,
hujunwei
- [PATCH AUTOSEL 4.14 060/105] ipvs: defer hook registration to avoid leaks, Sasha Levin
- [PATCH AUTOSEL 4.14 075/105] ipvs: fix tinfo memory leak in start_sync_thread, Sasha Levin
- [PATCH AUTOSEL 4.19 051/158] ipset: Fix memory accounting for hash types on resize, Sasha Levin
- [PATCH AUTOSEL 5.1 153/219] netfilter: ctnetlink: Fix regression in conntrack entry deletion, Sasha Levin
- [PATCH AUTOSEL 5.1 125/219] ipvs: defer hook registration to avoid leaks, Sasha Levin
- [PATCH AUTOSEL 5.2 210/249] netfilter: Fix remainder of pseudo-header protocol 0, Sasha Levin
- [PATCH AUTOSEL 5.2 161/249] ipvs: fix tinfo memory leak in start_sync_thread, Sasha Levin
- [PATCH AUTOSEL 5.2 143/249] ipvs: defer hook registration to avoid leaks, Sasha Levin
- [PATCH nf] netfilter: fix symhash with modulus one,
Laura Garcia Liebana
- [PATCH conntrack-tools] conntrackd: use correct max unix path length,
Michal Kubecek
- [ANNOUNCE] New Netfilter core team member: Phil Sutter, Arturo Borrero Gonzalez
- [PATCH xtables] nft: exit in case we can't fetch current genid,
Florian Westphal
- [PATCH nf] netfilter: nf_tables: don't fail when updating base chain policy,
Florian Westphal
- Re: [PATCH] Fix dumping vlan rules,
Laura Garcia
- [sparc64] nft bus error,
Anatoly Pugachev
[PATCH nft] proto: add pseudo th protocol to match d/sport in generic way,
Florian Westphal
[PATCH] netfilter: support for element deletion,
Ander Juaristi
[PATCH] netfilter: nft_dynset: support for element deletion,
Ander Juaristi
[net-next 0/2] ipvs: speedup ipvs netns dismantle,
Haishuang Yan
LPC 2019 Networking Track CFP (reminder), David Miller
[PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch,
Fernando Fernandez Mancera
[PATCH nft] src/ct: provide fixed data lengh sizes for ip/ip6 keys,
Florian Westphal
[PATCH nf-next] netfilter: synproxy: fix rst sequence number mismatch, Fernando Fernandez Mancera
[PATCH nf] netfilter: conntrack: always store window size un-scaled,
Florian Westphal
[PATCH net-next,v2 1/3] net: flow_offload: remove netns parameter from flow_block_cb_alloc(),
Pablo Neira Ayuso
[PATCH net-next] netfilter: nf_table_offload: Fix zero prio of flow_cls_common_offload,
wenxu
[PATCH net-next 1/3] net: flow_offload: remove netns parameter from flow_block_cb_alloc(),
Pablo Neira Ayuso
[PATCH 1/1] netfilter: nf_tables: fix module autoload for redir,
Christian Hesse
[PATCH net-next] net/sched: Fix kernel NULL pointer dereference,
wenxu
[PATCH] ipv6: Use ipv6_authlen for len,
yangxingwu
Re: 3-way handshake sets conntrack timeout to max_retrans,
Jozsef Kadlecsik
[PATCH 0/2 nf-next] Fix mss value announced to the client,
Fernando Fernandez Mancera
[PATCH] [net-next] netfilter: bridge: make NF_TABLES_BRIDGE tristate,
Arnd Bergmann
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]