Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH 1/7 nf-next] netfilter: separate bridge meta key from nft_meta into meta_bridge,
wenxu
- [PATCH nftables v4] exthdr: doc: add support for matching IPv4 options,
Stephen Suryaputra
- [PATCHv2 net-next] ipvs: strip gre tunnel headers from icmp errors,
Julian Anastasov
- Re: linux-next: Tree for Jul 3 (netfilter/ipvs/),
Randy Dunlap
- [PATCH] netfilter: nft_meta: fix bridge port vlan ID selector,
Pablo Neira Ayuso
- [PATCH nft] tests: shell: update test to include reset command, Pablo Neira Ayuso
- [iptables PATCH 1/2] nft: Pass nft_handle down to mnl_batch_talk(),
Phil Sutter
- Ease usage of libnetfilter_log with C++ applications,
Stefan Laufmann
- [PATCH nft,v2] mnl: remove unnecessary NLM_F_ACK flags,
Pablo Neira Ayuso
- netfilter patches for -stable,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nfnetlink: avoid deadlock due to synchronous request_module,
Florian Westphal
- [PATCH nft v12]tests: py: add netns feature,
Shekhar Sharma
- [PATCH nf-next] netfilter: nf_queue: remove unused hook entries pointer,
Florian Westphal
- [iptables PATCH v2] nft: Set socket receive buffer,
Phil Sutter
- [PATCH] netfilter: nf_log: Replace a seq_printf() call by seq_puts() in seq_show(),
Markus Elfring
- [PATCH nft] mnl: remove unnecessary NLM_F_ACK flags, Pablo Neira Ayuso
- [iptables PATCH RFC] nft: Set socket receive buffer,
Phil Sutter
- [PATCH v5] net: netfilter: Fix rpfilter dropping vrf packets by mistake,
Miaohe Lin
- [PATCH v4 1/4] meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH net-next] ipvs: strip gre tunnel headers from icmp errors,
Julian Anastasov
- [PATCH] ipvsadm: allow tunneling with gre encapsulation,
Julian Anastasov
- [PATCH nft v11]tests: py: add netns feature,
Shekhar Sharma
- [PATCH nft 1/3] parser_bison: do not enforce semicolon from ct helper block,
Pablo Neira Ayuso
- [PATCH v3] ipvs: allow tunneling with gre encapsulation,
Vadim Fedorenko
- [PATCH nft 1/2] monitor: fix double cache update with --echo,
Pablo Neira Ayuso
- [nft PATCH v2 1/3] nft: don't use xzalloc(),
Arturo Borrero Gonzalez
- [PATCH v2] ipvs: allow tunneling with gre encapsulation,
Vadim Fedorenko
- [PATCH nft v10]tests: py: fix python3,
Shekhar Sharma
- [PATCH 1/4] [v2] structleak: disable STRUCTLEAK_BYREF in combination with KASAN_STACK,
Arnd Bergmann
- [PATCH 24/43] docs: leds: convert to ReST,
Mauro Carvalho Chehab
- if nfqnl_test utility (libnetfilter_queue) drops a packet the utility receives the packet again,
Valeri Sytnik
- [PATCH 1/4 nf-next v2] netfilter:nf_flow_table: Refactor flow_offload_tuple to destination,
wenxu
- [PATCH v4] net: netfilter: Fix rpfilter dropping vrf packets by mistake,
Miaohe Lin
- [PATCH v3 1/4] meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH 1/2 nf-next v3] netfilter: nft_meta: Add NFT_META_BRI_IIFVPROTO support,
wenxu
- [PATCH] netfilter: nat: Update obsolete comment on get_unique_tuple(),
Yonatan Goldschmidt
- [PATCH nft v10]tests: py: add netns feature, Shekhar Sharma
- [PATCH 1/2 nf-next v2] netfilter: nft_meta: add NFT_META_BRI_O/IIFVPROTO support,
wenxu
- [nft PATCH 1/3] nft: use own allocation function,
Arturo Borrero Gonzalez
- [PATCH 1/2 nf-next] netfilter: nft_meta: add NFT_META_BRI_VLAN_PROTO support,
wenxu
- [PATCH AUTOSEL 5.1 36/95] netfilter: ipv6: nf_defrag: accept duplicate fragments again, Sasha Levin
- [PATCH AUTOSEL 4.19 18/60] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments, Sasha Levin
- [PATCH AUTOSEL 4.19 20/60] netfilter: ipv6: nf_defrag: accept duplicate fragments again, Sasha Levin
- [PATCH AUTOSEL 4.14 12/35] netfilter: ipv6: nf_defrag: accept duplicate fragments again, Sasha Levin
- [PATCH AUTOSEL 4.14 11/35] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments, Sasha Levin
- [PATCH AUTOSEL 4.9 09/21] netfilter: ipv6: nf_defrag: accept duplicate fragments again, Sasha Levin
- [PATCH AUTOSEL 4.9 08/21] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments, Sasha Levin
- [PATCH AUTOSEL 5.1 32/95] netfilter: ipv6: nf_defrag: fix leakage of unqueued fragments, Sasha Levin
- [PATCH v2 1/7] nftables: meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH nf v2] selftests: netfilter: add nfqueue test case,
Florian Westphal
- [PATCH net v2] net: make skb_dst_force return true when dst is refcounted,
Florian Westphal
- [PATCH nf] selftests: netfilter: add nfqueue test case,
Florian Westphal
- [ebtables PATCH] Drop ebtables-config from repository,
Phil Sutter
- Question about nf_conntrack_proto for IPsec,
Naruto Nguyen
- [PATCH nf-next v6] netfilter: nf_tables: Add SYNPROXY support,
Fernando Fernandez Mancera
- [PATCH nf-next v5] netfilter: nf_tables: Add SYNPROXY support, Fernando Fernandez Mancera
- [PATCH 1/3 nf-next] netfilter:nf_flow_table: Refactor flow_offload_tuple to support more offload method,
wenxu
- [PATCH] netfilter: ctnetlink: Fix regression in conntrack entry deletion,
Felix Kaechele
- Re: Use of oifname in input chains,
Pablo Neira Ayuso
- [PATCH] ipvs: allow tunneling with gre encapsulation,
Vadim Fedorenko
- 4.19: Traced deadlock during xfrm_user module load,
Thomas Jarosch
- [PATCH nf-next v4] netfilter: nf_tables: Add SYNPROXY support,
Fernando Fernandez Mancera
- [PATCH 1/3] daemons: review owner and permissions on PF_LOCAL sockets,
Jan Engelhardt
- [PATCH RESEND nftables v3] exthdr: doc: add support for matching IPv4 options,
Stephen Suryaputra
- [PATCH 1/3] build: unbreak non-functionality of --disable-python,
Jan Engelhardt
- [nf-next:master 9/20] net/ipv6/netfilter.c:237:26: error: '__cookie_v6_init_sequence' undeclared here (not in a function); did you mean 'cookie_init_sequence'?, kbuild test robot
- [PATCH nftables v3] exthdr: doc: add support for matching IPv4 options, Stephen Suryaputra
- [nft PATCH 0/2] Improve a few minor JSON glitches,
Phil Sutter
- [ANNOUNCE] nftables 0.9.1 release, Pablo Neira Ayuso
- [nft PATCH v2] parser_bison: Accept arbitrary user-defined names by quoting,
Phil Sutter
- [nft PATCH] parser_bison: Accept arbitrary user-defined names by quoting, Phil Sutter
- [nft PATCH] files: Move netdev-ingress.nft to /etc/nftables as well,
Phil Sutter
- [PATCH 0/2] ipset: Two fixes for destination MAC address matches in ip,mac types,
Stefano Brivio
- [PATCH] netfilter: synproxy: erroneous TCP mss option fixed.,
İbrahim Ercan
- [PATCH] netfilter: Fix remainder of pseudo-header protocol 0,
zhe.he
- linux-next: manual merge of the netfilter-next tree with Linus' tree,
Stephen Rothwell
- [PATCH 1/2] meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH] nft_meta: Introduce new conditions 'time', 'day' and 'hour',
Ander Juaristi
- [PATCH nft v2] src: introduce SYNPROXY matching,
Fernando Fernandez Mancera
- [PATCH nf-next v3] netfilter: nf_tables: Add SYNPROXY support,
Fernando Fernandez Mancera
- [PATCH nft v9] tests: py: add netns feature,
Shekhar Sharma
- [PATCH nft,v2] ct: support for NFT_CT_{SRC,DST}_{IP,IP6},
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: rename nf_SYNPROXY.h to nf_synproxy.h, Pablo Neira Ayuso
- Next 20190620: fails to compile in netfilter on x86-32,
Pavel Machek
- [PATCH net-next 00/12] netfilter: add hardware offload infrastructure,
Pablo Neira Ayuso
- [PATCH net-next 04/12] net: sched: add tcf_block_setup(), Pablo Neira Ayuso
- [PATCH net-next 06/12] net: sched: add tcf_setup_block_offload(), Pablo Neira Ayuso
- [PATCH net-next 09/12] net: sched: remove tcf_block_cb_{register,unregister}(), Pablo Neira Ayuso
- [PATCH net-next 07/12] net: use tcf_block_setup() infrastructure, Pablo Neira Ayuso
- [PATCH net-next 11/12] net: flow_offload: don't allow block sharing until drivers support this, Pablo Neira Ayuso
- [PATCH net-next 03/12] net: sched: add tcf_block_cb_free(), Pablo Neira Ayuso
- [PATCH net-next 05/12] net: sched: add release callback to struct tcf_block_cb, Pablo Neira Ayuso
- [PATCH net-next 08/12] net: cls_api: do not expose tcf_block to drivers, Pablo Neira Ayuso
- [PATCH net-next 02/12] net: sched: add tcf_block_cb_alloc(), Pablo Neira Ayuso
- [PATCH net-next 10/12] net: flow_offload: add flow_block_cb API, Pablo Neira Ayuso
- [PATCH net-next 12/12] netfilter: nf_tables: add hardware offload support, Pablo Neira Ayuso
- [PATCH net-next 01/12] net: sched: move tcf_block_cb before indr_block, Pablo Neira Ayuso
- Re: [PATCH net-next 00/12] netfilter: add hardware offload infrastructure, Jiri Pirko
- [PATCH nf-next] netfilter: synproxy: fix manual bump of the reference counter,
Fernando Fernandez Mancera
- [PATCH nf-next v5] netfilter: add support for matching IPv4 options,
Stephen Suryaputra
- [PATCH nftables v2] exthdr: doc: add support for matching IPv4 options, Stephen Suryaputra
- [PATCH libnftnl v2] src: libnftnl: add support for matching IPv4 options,
Stephen Suryaputra
- [PATCH nfnext v4] netfilter: add support for matching IPv4 options,
Stephen Suryaputra
- [PATCH iptables v3]iptables-test.py : fix python3.,
Shekhar Sharma
- [PATCH nft 1/2] meta: add brpvid support,
wenxu
- [PATCH nf-next v2 1/2] netfilter: nft_meta: add NFT_META_BRI_PVID support,
wenxu
- [nf-next:master 9/13] include/linux/netfilter_ipv6.h:174:9: error: implicit declaration of function '__cookie_v6_init_sequence'; did you mean 'cookie_init_sequence'?, kbuild test robot
- [PATCH nf-next v2] netfilter: nf_tables: Add SYNPROXY support,
Fernando Fernandez Mancera
- [PATCH nft v9]tests: py: fix pyhton3,
Shekhar Sharma
- [PATCH libnftnl] expr: add synproxy support,
Fernando Fernandez Mancera
- [PATCH net-next] br_netfilter: prevent UAF in brnf_exit_net(),
Christian Brauner
- [PATCH nf-next] netfilter: synproxy: use nf_cookie_v6_check() from core, Pablo Neira Ayuso
- KASAN: use-after-free Read in brnf_exit_net, syzbot
- [PATCH nf-next] netfilter: bridge: Fix non-untagged fragment packet,
wenxu
- [PATCH nft] tests: py: replace calls to cmp(), Eric Garver
- [PATCH nft] tests: py: use tempfile module,
Eric Garver
- [PATCH] netfilter: synproxy: fix building syncookie calls,
Arnd Bergmann
- [PATCH] netfilter: synproxy: fix nf_synproxy_ipv{4,6}_init() return code,
Arnd Bergmann
- [PATCH 1/2 nf-next] netfilter: nft_meta: add NFT_META_BRI_PVID support,
wenxu
- [PATCH nf-next v1] netfilter: nft_ct: fix null pointer in ct expectations support,
Stéphane Veyret
- Re: nft ct original oddity,
Florian Westphal
- [PATCH v2 20/29] docs: leds: convert to ReST,
Mauro Carvalho Chehab
- [PATCH net] ipvs: fix tinfo memory leak in start_sync_thread,
Julian Anastasov
- [PATCH nft 0/3] use skb->protocol as l3 protocol dependency,
Florian Westphal
- [PATCH nft] rule: do not suggest anonymous sets on mispelling errors, Pablo Neira Ayuso
- [PATCH nft 2/2,v3] evaluate: do not allow to list/flush anonymous sets via list command, Pablo Neira Ayuso
- [PATCH nft,v2 1/2] evaluate: allow get/list/flush dynamic sets and maps via list command,
Pablo Neira Ayuso
- [PATCH nft] evaluate: do not allow to list anonymous sets via list command, Pablo Neira Ayuso
- [PATCH][V2][next] netfilter: synproxy: ensure zero is returned on non-error return path,
Colin King
- [PATCH][next] netfilter: synproxy: ensure zero is returned on non-error return path,
Colin King
- re: netfilter: nft_ct: add ct expectations support, Colin Ian King
- [PATCH nft] evaluate: allow get/list/flush dynamic sets and maps via list command, Pablo Neira Ayuso
- Is this possible SYN Proxy bug?,
İbrahim Ercan
[PATCH v3 nf-next] netfilter: enable set expiration time for set elements,
Laura Garcia Liebana
netfilter fix for -stable 5.1.x,
Pablo Neira Ayuso
[PATCH nf-next] netfilter: ipv6: fix CONFIG_SYN_COOKIES=n, Pablo Neira Ayuso
[PATCH v2 nf-next] netfilter: enable set expiration date for set elements, Laura Garcia Liebana
[nf-next:master 9/10] net/ipv6/netfilter.c:237:26: error: '__cookie_v6_init_sequence' undeclared here (not in a function); did you mean 'cookie_init_sequence'?, kbuild test robot
[nf-next:master 9/10] include/linux/netfilter_ipv6.h:174:9: error: implicit declaration of function '__cookie_v6_init_sequence'; did you mean 'cookie_init_sequence'?, kbuild test robot
[PATCH nft 5/5,v3] src: add cache level flags, Pablo Neira Ayuso
[PATCH nft,v2 1/5] src: remove useless parameter from cache_flush(),
Pablo Neira Ayuso
[PATCH nft] src: enable set expiration date for set elements,
nevola
[PATCH libnftnl] src: enable set expiration date for set elements,
Laura Garcia Liebana
[PATCH nf-next] src: enable set expiration date for set elements,
Laura Garcia Liebana
[sparc64] possible circular locking / deadlock,
Anatoly Pugachev
[PATCH nft v8]tests: py: add netns feature,
Shekhar Sharma
[PATCH net-next] netfilter: fix nf_conntrack_bridge/ipv6 link error,
Arnd Bergmann
[PATCH nft 1/5] src: remove useless parameter from cache_flush(),
Pablo Neira Ayuso
[PATCH libnftnl WIP] expr: add synproxy support,
Fernando Fernandez Mancera
[PATCH nft v2] datatype: fix print of raw numerical symbol values,
Florian Westphal
working with libnetfilter_queue and linbetfilter_contrack,
Mojtaba
[PATCH nft] datatype: fix print of raw numerical symbol values,
Florian Westphal
[PATCH net-next] netfilter: bridge: add nft_bridge_pvid to tag the default pvid for non-tagged packet,
wenxu
[PATCH WIP v1]tests: Makefile.am (Work in Progress), Shekhar Sharma
[PATCH nft v7 2/2]tests:py: add netns feature,
Shekhar Sharma
[PATCH nft v7 1/2]tests:py: conversion to python3,
Shekhar Sharma
[PATCH nft,v2] cache: do not populate the cache in case of flush ruleset command,
Pablo Neira Ayuso
[PATCH nft] cache: do not populate the cache in case of flush ruleset command, Pablo Neira Ayuso
[PATCH iptables v2]iptables-test: fix python3, Shekhar Sharma
[PATCH nft 1/2] evaluate: update byteorder only for implicit maps,
Pablo Neira Ayuso
[PATCH nft] evaluate: use-after-free in meter, Pablo Neira Ayuso
memory leak in __nf_hook_entries_try_shrink,
syzbot
[PATCH nft] netlink_delinearize: use-after-free in expr_postprocess_string(), Pablo Neira Ayuso
[PATCH nft,v2] netlink_delinearize: use-after-free in expr_postprocess_string(), Pablo Neira Ayuso
[PATCH v1 22/31] docs: leds: convert to ReST, Mauro Carvalho Chehab
[PATCH 1/2 nft,v4] src: add reference counter for dynamic datatypes,
Pablo Neira Ayuso
[nft PATCH] monitor: Accept -j flag,
Phil Sutter
[PATCH nft 1/3,v3] src: add reference counter for dynamic datatypes,
Pablo Neira Ayuso
[PATCH net-next] netfilter: ipv6: Fix build error without CONFIG_IPV6,
YueHaibing
Re: mmotm 2019-06-11-16-59 uploaded (nf_conntrack_bridge), Randy Dunlap
[PATCH nft,v2] src: add reference counter for dynamic datatypes, Pablo Neira Ayuso
[PATCH nft] src: add reference counter for dynamic datatypes, Pablo Neira Ayuso
[PATCH] src: add reference counter for dynamic datatypes, Pablo Neira Ayuso
[PATCH RESEND nf-next] netfilter: add support for matching IPv4 options,
Stephen Suryaputra
[PATCH net-next v2 0/2] br_netfilter: enable in non-initial netns,
Christian Brauner
[PATCH nft] parser_bison: free chain name after creating constant expression, Pablo Neira Ayuso
[PATCH nft 1/2] netlink_delinearize: release expressions in context registers,
Pablo Neira Ayuso
[ANNOUNCE] ipset 7.2 released, Jozsef Kadlecsik
[PATCH 0/7] ipset patches for nf-next,
Jozsef Kadlecsik
[PATCH nft] expression: use expr_clone() from verdict_expr_clone(), Pablo Neira Ayuso
[PATCH nft] src: invalid read when importing chain name (trace and json), Pablo Neira Ayuso
[PATCH nft] src: invalid read when importing chain name, Pablo Neira Ayuso
[PATCH v5] extensions: libxt_owner: Add supplementary groups option,
Lukasz Pawelczyk
[PATCH v4] extensions: libxt_owner: Add supplementary groups option,
Lukasz Pawelczyk
[PATCH] netfilter: nft_paylaod: add base type NFT_PAYLOAD_LL_HEADER_NO_TAG,
wenxu
[PATCH nft v6 2/2]tests: py: add netns feature,
Shekhar Sharma
[PATCH nft v6 1/2]tests: py: conversion to python3,
Shekhar Sharma
[PATCH net-next v1 0/1] br_netfilter: enable in non-initial netns,
Christian Brauner
[iptables PATCH] xtables-restore: Fix program names in help texts,
Phil Sutter
[PATCH AUTOSEL 5.1 09/70] netfilter: nf_tables: fix oops during rule dump, Sasha Levin
[PATCH AUTOSEL 5.1 12/70] netfilter: nft_fib: Fix existence check support, Sasha Levin
[PATCH AUTOSEL 5.1 13/70] ipvs: Fix use-after-free in ip_vs_in, Sasha Levin
[PATCH AUTOSEL 5.1 15/70] netfilter: nat: fix udp checksum corruption, Sasha Levin
[PATCH AUTOSEL 4.14 03/31] netfilter: nf_queue: fix reinject verdict handling, Sasha Levin
[PATCH AUTOSEL 4.14 04/31] ipvs: Fix use-after-free in ip_vs_in, Sasha Levin
[PATCH AUTOSEL 4.19 05/49] netfilter: nf_queue: fix reinject verdict handling, Sasha Levin
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]