Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH v3] ipvs: add checksum support for gue encapsulation,
Jacky Hu
- Announcing Netdev 0x14, Jamal Hadi Salim
- [nft PATCH v4 0/7] Cache update fix && intra-transaction rule references,
Phil Sutter
- memory leak in start_sync_thread,
syzbot
- Avoid unnecessary rebuilds of iptables,
Jan Engelhardt
- [PATCH] Apply userspace filter on resync with internal cache disabled,
Robin Geuze
- [PATCH] build: remove -Wl,--no-as-needed and libiptc.so,
Jan Engelhardt
- [PATCH] conntrackd: Fix "Address Accept" filter case,
Robin Geuze
- [PATCH nft v2]tests: json_echo: convert to py3,
Shekhar Sharma
[PATCH nft v3]tests: py: add netns feature,
Shekhar Sharma
[PATCH nft v5] tests: py: fix python3,
Shekhar Sharma
[PATCH] conntrackd: Use strdup in lexer,
Ash Hughes
[PATCH] conntrackd: search for RPC headers,
Ash Hughes
[ANNOUNCE] iptables 1.8.3 release, Pablo Neira Ayuso
[ANNOUNCE] libnftnl 1.1.3 release, Pablo Neira Ayuso
[nft PATCH] parser_json: Fix and simplify verdict expression parsing,
Phil Sutter
[nft PATCH v4 0/2] JSON schema for nftables.py,
Phil Sutter
[PATCH] ipset: Fix memory accounting for hash types on resize,
Stefano Brivio
[PATCH v2] ipvs: add checksum support for gue encapsulation,
Jacky Hu
[PATCH nf-next v5] netfilter: nft_ct: add ct expectations support,
Stéphane Veyret
[PATCH nf] netfilter: nf_tables: fix module autoload with inet family, Pablo Neira Ayuso
[PATCH iptables v1] iptables-test.py: fix python3,
Shekhar Sharma
[PATCH nft] tests: replace single element sets, Pablo Neira Ayuso
[PATCH nft v1 ] py: nftables.py: fix python3,
Shekhar Sharma
[PATCH nft] src: add cache_is_complete() and cache_is_updated(),
Pablo Neira Ayuso
[PATCH nft v1] tests: json_echo: fix python3,
Shekhar Sharma
[PATCH nf-next v3 0/4] Extract SYNPROXY infrastructure,
Fernando Fernandez Mancera
[PATCH nft v4 1/2] jump: Introduce chain_expr in jump and goto statements,
Fernando Fernandez Mancera
[PATCH v1] ipvs: add checksum support for gue encapsulation,
Jacky Hu
[PATCH 00/11] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH 02/11] netfilter: nf_queue: fix reinject verdict handling, Pablo Neira Ayuso
- [PATCH 03/11] netfilter: nft_fib: Fix existence check support, Pablo Neira Ayuso
- [PATCH 07/11] netfilter: nf_flow_table: ignore DF bit setting, Pablo Neira Ayuso
- [PATCH 08/11] netfilter: nft_flow_offload: set liberal tracking mode for tcp, Pablo Neira Ayuso
- [PATCH 06/11] netfilter: nat: fix udp checksum corruption, Pablo Neira Ayuso
- [PATCH 10/11] netfilter: nft_flow_offload: IPCB is only valid for ipv4 family, Pablo Neira Ayuso
- [PATCH 11/11] selftests: netfilter: add flowtable test script, Pablo Neira Ayuso
- [PATCH 09/11] netfilter: nft_flow_offload: don't offload when sequence numbers need adjustment, Pablo Neira Ayuso
- [PATCH 05/11] selftests: netfilter: missing error check when setting up veth interface, Pablo Neira Ayuso
- [PATCH 04/11] ipvs: Fix use-after-free in ip_vs_in, Pablo Neira Ayuso
- [PATCH 01/11] netfilter: nf_tables: fix oops during rule dump, Pablo Neira Ayuso
- Re: [PATCH 00/11] Netfilter/IPVS fixes for net, David Miller
[PATCH nf-next v4 0/1] add ct expectation support,
Stéphane Veyret
[PATCH nft v2] tests: py: Add netns feature, Shekhar Sharma
[PATCH nft v4] tests: py: fix python3,
Shekhar Sharma
[PATCH nf-next 0/8] netfilter: remove skb_make_writable helper,
Florian Westphal
- [PATCH nf-next 1/8] netfilter: bridge: convert skb_make_writable to skb_ensure_writable, Florian Westphal
- [PATCH nf-next 2/8] netfilter: ipvs: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 3/8] netfilter: conntrack, nat: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 4/8] netfilter: ipv4: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 5/8] netfilter: nf_tables: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 6/8] netfilter: xt_HL: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 7/8] netfilter: tcpmss, optstrip: prefer skb_ensure_writable, Florian Westphal
- [PATCH nf-next 8/8] netfilter: replace skb_make_writable with skb_ensure_writable, Florian Westphal
- Re: [PATCH nf-next 0/8] netfilter: remove skb_make_writable helper, Pablo Neira Ayuso
[PATCH nftables] exthdr: doc: add support for matching IPv4 options, Stephen Suryaputra
[PATCH libnftnl] src: libnftnl: add support for matching IPv4 options, Stephen Suryaputra
[PATCH nf-next] netfilter: add support for matching IPv4 options,
Stephen Suryaputra
[PATCH nf-next] netfilter: nf_tables: free base chain counters from worker,
Florian Westphal
[PATCH nft] src: support for arp sender and target ethernet and IPv4 addresses,
Pablo Neira Ayuso
[nft PATCH v2 0/3] Resolve cache update woes,
Phil Sutter
[nft PATCH v3 0/2] JSON schema for nftables.py,
Phil Sutter
[nft PATCH 0/3] Support intra-transaction rule references,
Phil Sutter
[PATCH nft v3]tests: py: fix python3.,
Shekhar Sharma
progress on connection tracking for bridge family, M. Schröder
[PATCH nf 0/5] netfilter: flow table fixes,
Florian Westphal
[PATCH iptables 0/6] ERESTART fixes,
Pablo Neira Ayuso
[PATCH iptables RFC 0/4] revisit RESTART log,
Pablo Neira Ayuso
[PATCH iptables 0/6] cache rework,
Pablo Neira Ayuso
[PATCH nf] netfilter: nat: fix udp checksum corruption,
Florian Westphal
[iptables PATCH] Drop release.sh,
Phil Sutter
[iptables PATCH] Revert "build: don't include tests in released tarball",
Phil Sutter
iptables: Testsuites in release tarballs?,
Phil Sutter
[PATCH nf-next v2 0/4] Extract SYNPROXY infrastructure,
Fernando Fernandez Mancera
[PATCH iptables 1/4] nft: add struct nft_cache,
Pablo Neira Ayuso
[PATCH nft] evaluate: kill anon sets with one element,
Florian Westphal
[PATCH nft v1] tests: py: Add netns feature,
Shekhar Sharma
[PATCH nft v2] tests: py: fix python3.,
Shekhar Sharma
[PATCH 0/5] Extract SYNPROXY infrastructure,
Fernando Fernandez Mancera
Expectations,
Stéphane Veyret
Refcounts in libnftnl?, Phil Sutter
[nft PATCH 0/3] Resolve cache update woes,
Phil Sutter
[nft PATCH v2 0/2] JSON schema for nftables.py,
Phil Sutter
[PATCH nftables,v3] add ct expectations support,
Stéphane Veyret
nftables flow offload possible mtu handling issue,
marcmicalizzi
oops in netfilter, David Howells
[nft PATCH 0/2] JSON schema for nftables.py,
Phil Sutter
[PATCH nft v3 1/2] jump: Introduce chain_expr in jump and goto statements,
Fernando Fernandez Mancera
[PATCH nft] src: update cache if cmd is more specific, Eric Garver
[PATCH nf-next] netfilter: nf_flow_table: remove unnecessary variable in flow_offload_tuple,
Taehee Yoo
[PATCH nf] netfilter: nft_fib: Fix existence check support,
Phil Sutter
[PATCH 1/2 nft v2] jump: Introduce chain_expr in jump and goto statements,
Fernando Fernandez Mancera
[PATCH] ipvs: Fix use-after-free in ip_vs_in,
YueHaibing
[PATCH nft] tests: py: fix python3.,
Shekhar Sharma
[PATCH v2] selftests: netfilter: missing error check when setting up veth interface,
Jeffrin Jose T
[PATCH 1/2 nft] jump: Introduce chain_expr in jump and goto statements,
Fernando Fernandez Mancera
[PATCH 1/2 nft WIP v2] jump: Introduce chain_expr in jump statements,
Fernando Fernandez Mancera
[PATCH iptables] man: refer to iptables-translate and ip6tables, Pablo Neira Ayuso
[iptables PATCH] tests: Fix ipt-restore/0004-restore-race_0 testcase,
Phil Sutter
[iptables PATCH] xtables: Fix typo in nft_rebuild_cache(),
Phil Sutter
[PATCH net v3] netfilter: nf_queue:fix reinject verdict handling,
Jagdish Motwani
[PATCH net v2] netfilter: nf_queue:fix reinject verdict handling, Jagdish Motwani
[iptables PATCH] xtables: Don't leak iter in error path of __nft_chain_zero_counters(),
Phil Sutter
[libnftnl PATCH] include: Remove redundant declaration of nftnl_gen_nlmsg_parse(),
Phil Sutter
[iptables PATCH] xtables: Fix for explicit rule flushes, Phil Sutter
[PATCH nf] netfilter: nf_tables: incorrect definition for NFT_LOGLEVEL_MAX, Pablo Neira Ayuso
[PATCH nft] src: use definitions in include/linux/netfilter/nf_tables.h,
Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: correct NFT_LOGLEVEL_MAX value,
Florian Westphal
Undefined reference?,
Stéphane Veyret
[ebtables PATCH] Fix incorrect IPv6 prefix formatting,
Phil Sutter
[PATCH libnftnl,v1 1/2] src: add ct expectation support,
Stéphane Veyret
[PATCH nft v2] py: fix missing decode/encode of strings,
Eric Garver
[PATCH v3] extensions: libxt_owner: Add supplementary groups option, Lukasz Pawelczyk
[PATCH v3] netfilter: xt_owner: Add supplementary groups option,
Lukasz Pawelczyk
linux-next: manual merge of the netfilter tree with Linus' tree, Stephen Rothwell
[conntrack-tools PATCH] sync-mode: Also cancel flush timer in ALL_FLUSH_CACHE,
Simon Kirby
[PATCH net-next,RFC 0/2] netfilter: add hardware offload infrastructure,
Pablo Neira Ayuso
[nft PATCH 0/9] Testsuite-indicated fixes for JSON,
Phil Sutter
- [nft PATCH 2/9] parser_json: Fix igmp support, Phil Sutter
- [nft PATCH 9/9] tests/py: Fix JSON expected output for icmpv6 code values, Phil Sutter
- [nft PATCH 3/9] netlink: Fix printing of zero-length prefixes, Phil Sutter
- [nft PATCH 5/9] json: Fix tproxy support regarding latest changes, Phil Sutter
- [nft PATCH 4/9] tests/py: Fix JSON equivalents of osf tests, Phil Sutter
- [nft PATCH 1/9] json: Support nat in inet family, Phil Sutter
- [nft PATCH 7/9] tests/py: Fix for ip dscp symbol "le", Phil Sutter
- [nft PATCH 8/9] tests/py: Fix JSON expexted output after expr merge change, Phil Sutter
- [nft PATCH 6/9] parser_json: Fix ct timeout object support, Phil Sutter
- Re: [nft PATCH 0/9] Testsuite-indicated fixes for JSON, Pablo Neira Ayuso
[PATCH nft WIP] jump: Allow jump to a variable when using nft input files,
Fernando Fernandez Mancera
[PATCH net] netfilter: nf_queue:fix reinject verdict handling,
Jagdish Motwani
[PATCH v2] extensions: libxt_owner: Add supplementary groups option, Lukasz Pawelczyk
[PATCH v2] netfilter: xt_owner: Add supplementary groups option,
Lukasz Pawelczyk
[PATCH nf] netfilter: nf_tables: remove NFT_CT_TIMEOUT, Pablo Neira Ayuso
[nft PATCH] doc: Review man page synopses, Phil Sutter
[nft PATCH] py: Fix gitignore of lib/ directory, Phil Sutter
[PATCH AUTOSEL 5.0 64/99] netfilter: nf_tables: prevent shift wrap in nft_chain_parse_hook(), Sasha Levin
[PATCH AUTOSEL 5.0 63/99] netfilter: ctnetlink: don't use conntrack/expect object addresses as id, Sasha Levin
[PATCH AUTOSEL 5.0 62/99] ipvs: do not schedule icmp errors from tunnels, Sasha Levin
[PATCH AUTOSEL 5.0 65/99] netfilter: nat: fix icmp id randomization, Sasha Levin
[PATCH AUTOSEL 5.0 75/99] netfilter: fix nf_l4proto_log_invalid to log invalid packets, Sasha Levin
[PATCH AUTOSEL 5.0 74/99] netfilter: never get/set skb->tstamp, Sasha Levin
[PATCH AUTOSEL 4.19 46/81] netfilter: nf_tables: prevent shift wrap in nft_chain_parse_hook(), Sasha Levin
[PATCH AUTOSEL 4.19 45/81] netfilter: ctnetlink: don't use conntrack/expect object addresses as id, Sasha Levin
[PATCH AUTOSEL 4.19 44/81] ipvs: do not schedule icmp errors from tunnels, Sasha Levin
[PATCH AUTOSEL 4.19 52/81] netfilter: fix nf_l4proto_log_invalid to log invalid packets, Sasha Levin
[PATCH AUTOSEL 4.19 71/81] netfilter: nf_tables: add missing ->release_ops() in error path of newrule(), Sasha Levin
[PATCH AUTOSEL 4.19 70/81] netfilter: nf_tables: use-after-free in dynamic operations, Sasha Levin
[PATCH AUTOSEL 4.14 24/95] ipvs: do not schedule icmp errors from tunnels, Sasha Levin
[PATCH AUTOSEL 4.14 25/95] netfilter: ctnetlink: don't use conntrack/expect object addresses as id, Sasha Levin
[PATCH AUTOSEL 4.14 81/95] netfilter: nf_tables: warn when expr implements only one of activate/deactivate, Sasha Levin
[PATCH AUTOSEL 4.9 17/25] ipvs: do not schedule icmp errors from tunnels, Sasha Levin
[PATCH AUTOSEL 4.4 11/14] ipvs: do not schedule icmp errors from tunnels, Sasha Levin
Subject: [PATCH netfilter] ipvs: Fix crash when ipv6 route unreach,
hujunwei
[PATCH nft v2] evaluate: force full cache update on rule index translation,
Eric Garver
linux-next: Fixes tag needs some work in the netfilter tree,
Stephen Rothwell
[PATCH libmnl 1/1] examples: Add rtnl-addr-add.c,
Petr Vorel
[PATCH nf] netfilter: ebtables: CONFIG_COMPAT: reject trailing data after last rule,
Florian Westphal
[PATCHv2 net-next 0/3] Add UDP tunnel support for ICMP errors in IPVS,
Julian Anastasov
[PATCH] netfilter: nft_ct: add ct expectations support,
Stéphane Veyret
[PATCH] gmputil.h: Add missing header for va_list,
Rosen Penev
[PATCH nf v2] netfilter: nf_conntrack_h323: Remove deprecated config check,
Subash Abhinov Kasiviswanathan
[PATCH libnetfilter_conntrack] conntrack: api: use libmnl API to build the netlink headers, Pablo Neira Ayuso
[PATCH] netfilter: ctnetlink: Resolve conntrack L3-protocol flush regression,
Kristian Evensen
[PATCH iptables] extensions: SYNPROXY: should not be needed anymore on current kernels, Florian Westphal
[PATCH nf] netfilter: nf_conntrack_h323: Remove deprecated config check,
Subash Abhinov Kasiviswanathan
[PATCH nf] netfilter: nf_flow_table: fix missing err check for rhashtable_insert_fast,
Taehee Yoo
[PATCH nft] parser_json: default to unspecified l3proto for ct helper/timeout,
Eric Garver
[PATCH libnetfilter_conntrack 4/3] src: replace old libnfnetlink builder, Pablo Neira Ayuso
[PATCH libnetfilter_conntrack 1/3] src: introduce abi_breakage(),
Pablo Neira Ayuso
[PATCH][next] netfilter: xt_hashlimit: use struct_size() helper,
Gustavo A. R. Silva
[PATCH nft] evaluate: force full cache update on rule index translation,
Eric Garver
[PATCH nft] py: fix missing decode/encode of strings,
Eric Garver
[PATCH nft] parser_json: fix crash on add rule to bad references,
Eric Garver
[PATCH nft] parser_json: fix off by one index on rule add/replace,
Eric Garver
[nftables,v2] proto: support for draft-ietf-tsvwg-le-phb-10.txt,
Loganaden Velvindron
Debian 9 vs Xtables-addons 3.3 and GeoLite2, Patrick Adam
Problem in libnetfilter_conntrack library, Mojtaba
[PATCH v3 nf] netfilter: nf_flow_table: do not use deleted CT's flow offload,
Taehee Yoo
[PATCH nf] netfilter: nf_tables: fix oops during rule dump,
Florian Westphal
[PATCH nf] netfilter: nf_tables: fix base chain stat rcu_dereference usage,
Florian Westphal
[PATCH iptables,v2] xshared: check for maximum buffer length in add_param_to_argv(), Pablo Neira Ayuso
Re: [PATCH] selftests : netfilter: Wrote a error and exit code for a command which needed veth kernel module., Pablo Neira Ayuso
[PATCH 0/9 net-next,v2] connection tracking support for bridge,
Pablo Neira Ayuso
- [PATCH 2/9 net-next,v2] net: ipv6: add skbuff fraglist splitter, Pablo Neira Ayuso
- [PATCH 8/9 net-next,v2] netfilter: nf_conntrack_bridge: add support for IPv6, Pablo Neira Ayuso
- [PATCH 9/9 net-next,v2] netfilter: nf_conntrack_bridge: register inet conntrack for bridge, Pablo Neira Ayuso
- [PATCH 7/9 net-next,v2] netfilter: bridge: add connection tracking system, Pablo Neira Ayuso
- [PATCH 3/9 net-next,v2] net: ipv4: split skbuff into fragments transformer, Pablo Neira Ayuso
- [PATCH 5/9 net-next,v2] net: ipv4: place cb handling away from fragmentation iterators, Pablo Neira Ayuso
- [PATCH 4/9 net-next,v2] net: ipv6: split skbuff into fragments transformer, Pablo Neira Ayuso
- [PATCH 6/9 net-next,v2] netfilter: nf_conntrack: allow to register bridge support, Pablo Neira Ayuso
- [PATCH 1/9 net-next,v2] net: ipv4: add skbuff fraglist splitter, Pablo Neira Ayuso
[PATCH nf v2 3/3] netfilter: nf_flow_table: do not use deleted CT's flow offload,
Taehee Yoo
[PATCH nf v2 2/3] netfilter: nf_flow_table: check ttl value in flow offload data path, Taehee Yoo
[PATCH nf v2 1/3] netfilter: nf_flow_table: fix netdev refcnt leak, Taehee Yoo
[PATCH nf v2 0/3] netfilter: nf_flow_table: fix several flowtable bugs,
Taehee Yoo
[PATCH nf] netfilter: nft_flow_offload: add entry to flowtable after confirmation,
Pablo Neira Ayuso
Netlink socket protocol NETLINK_NFLOG, Vijay Pasapuleti
[PATCH][nf-next] netfilter: slightly optimize nf_inet_addr_mask,
Li RongQing
Netfilter fixes for 4.19 -stable,
Pablo Neira Ayuso
[PATCH nf 4/4] netfilter: nf_flow_table: do not use deleted CT's flow offload,
Taehee Yoo
[PATCH nf 3/4] netfilter: nf_flow_table: check ttl value in flow offload data path, Taehee Yoo
[PATCH nf 2/4] netfilter: nft_flow_offload: do not make un-established tcp flow_offload session.,
Taehee Yoo
[PATCH nf 1/4] netfilter: nf_flow_table: fix netdev refcnt leak, Taehee Yoo
[PATCH nf 0/4] netfilter: nf_flow_table: fix several flowtable bugs, Taehee Yoo
[PATCH] extensions: libxt_owner: Add complementary groups option,
Lukasz Pawelczyk
[PATCH] netfilter: xt_owner: Add complementary groups option, Lukasz Pawelczyk
[PATCH net-next 0/3] make nla_nest_start() add NLA_F_NESTED flag,
Michal Kubecek
[PATCH ulogd2,v2 1/2] IPFIX: Add IPFIX output plugin,
a
[PATCH net-next,RFC 0/9] net: sched: prepare to reuse per-block callbacks from netfilter,
Pablo Neira Ayuso
- [PATCH net-next,RFC 5/9] net: sched: add release callback to struct tcf_block_cb, Pablo Neira Ayuso
- [PATCH net-next,RFC 9/9] net: cls_api: do not expose tcf_block to drivers, Pablo Neira Ayuso
- [PATCH net-next,RFC 8/9] net: cls_api: do not expose tcf_block to drivers, Pablo Neira Ayuso
- [PATCH net-next,RFC 7/9] net: use tcf_block_setup() infrastructure, Pablo Neira Ayuso
- [PATCH net-next,RFC 4/9] net: sched: add tcf_block_setup(), Pablo Neira Ayuso
- [PATCH net-next,RFC 8/9] net: sched: remove tcf_block_cb_{register,unregister}(), Pablo Neira Ayuso
- [PATCH net-next,RFC 6/9] net: sched: add tcf_setup_block_offload(), Pablo Neira Ayuso
- [PATCH net-next,RFC 3/9] net: sched: add tcf_block_cb_free(), Pablo Neira Ayuso
- [PATCH net-next,RFC 1/9] net: sched: move tcf_block_cb before indr_block, Pablo Neira Ayuso
- [PATCH net-next,RFC 2/9] net: sched: add tcf_block_cb_alloc(), Pablo Neira Ayuso
- Re: [PATCH net-next,RFC 0/9] net: sched: prepare to reuse per-block callbacks from netfilter, Jiri Pirko
[PATCH net] netfilter: nf_ct_h323: restore boundary check correctness,
Jakub Jankowski
[nft PATCH RFC 0/2] JSON schema for nftables.py,
Phil Sutter
[PATCH v3] net: netfilter: Fix rpfilter dropping vrf packets by mistake,
linmiaohe
[nft PATCH 0/4] Misc minor fixes,
Phil Sutter
[nft PATCH] use UDATA defines from libnftnl,
Phil Sutter
Issue related to conntrack while insert new rule with conntrack command in linux,
Mojtaba Esfandiari
[RFC PATCH net-next 0/3] make nla_nest_start() add NLA_F_NESTED flag,
Michal Kubecek
[PATCH v2] netfilter: nft_ct: Add ct id support,
Brett Mastbergen
[PATCH v2] net: netfilter: Fix ipv6 rp_filter dropping vrf packets by mistake,
linmiaohe
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]