Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH v3] netfilter/ipset: replace a strncpy() with strscpy(),
Qian Cai
- [PATCH nft] doc: nft: document ct count, Pablo Neira Ayuso
- [PATCH nft 1/2] src: introduce simple hints on incorrect object,
Pablo Neira Ayuso
- [PATCH nft 1/3] utils: remove type checks in min() and max(),
Pablo Neira Ayuso
- [PATCH v2] netfilter: nf_conntrack_sip: add sip_external_media logic, Alin Nastac
- [PATCH nftables] src: xt: fix build when libxtables is not installed, Florian Westphal
- [PATCH] netfilter: nf_conntrack_sip: add sip_external_media logic,
Alin Nastac
- [PATCH nft] tests: fix return codes,
Arturo Borrero Gonzalez
- Proposal: rename of arptables.git and ebtables.git,
Arturo Borrero Gonzalez
- [PATCH 00/16] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 01/16] netfilter: nf_conncount: use spin_lock_bh instead of spin_lock, Pablo Neira Ayuso
- [PATCH 02/16] netfilter: nf_conncount: fix list_del corruption in conn_free, Pablo Neira Ayuso
- [PATCH 04/16] netfilter: nf_tables: don't skip inactive chains during update, Pablo Neira Ayuso
- [PATCH 03/16] netfilter: nf_conncount: fix unexpected permanent node of list., Pablo Neira Ayuso
- [PATCH 08/16] netfilter: nf_tables: fix use-after-free when deleting compat expressions, Pablo Neira Ayuso
- [PATCH 14/16] netfilter: nat: fix double register in masquerade modules, Pablo Neira Ayuso
- [PATCH 16/16] netfilter: nf_tables: deactivate expressions in rule replecement routine, Pablo Neira Ayuso
- [PATCH 15/16] netfilter: nf_conncount: remove wrong condition check routine, Pablo Neira Ayuso
- [PATCH 13/16] netfilter: add missing error handling code for register functions, Pablo Neira Ayuso
- [PATCH 11/16] netfilter: nfnetlink_cttimeout: fetch timeouts for udplite and gre, too, Pablo Neira Ayuso
- [PATCH 10/16] ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notf, Pablo Neira Ayuso
- [PATCH 12/16] netfilter: ipv6: Preserve link scope traffic original oif, Pablo Neira Ayuso
- [PATCH 05/16] selftests: add script to stress-test nft packet path vs. control plane, Pablo Neira Ayuso
- [PATCH 06/16] netfilter: nf_tables: don't use position attribute on rule replacement, Pablo Neira Ayuso
- [PATCH 09/16] netfilter: xt_hashlimit: fix a possible memory leak in htable_create(), Pablo Neira Ayuso
- [PATCH 07/16] netfilter: xt_RATEEST: remove netns exit routine, Pablo Neira Ayuso
- Re: [PATCH 00/16] Netfilter fixes for net, David Miller
- 4.19.x kernels oops in nf_conncount_destroy,
Todd Eigenschink
- [PATCH nf] netfilter: nf_tables: deactivate expressions in rule replecement routine,
Taehee Yoo
- [iptables PATCH] xtables: Don't use native nftables comments,
Phil Sutter
- [PATCH] netfilter: ipset: fix ip_set_byindex function,
Florent Fourcot
- iptables configure ignore "--disable-silent-rules",
Rolf Eike Beer
- 4.19.4 nf_conntrack_count kernel panic,
Sami Farin
- [PATCH v2] netfilter: ipset: replace a strncpy() with strscpy(),
Qian Cai
- [PATCH] netfilter: update comment about get_unique_tuple(),
Xiaozhou Liu
- [PATCH nf] netfilter: nf_tables: fix suspicious RCU usage in nft_chain_stats_replace(),
Taehee Yoo
- [PATCH] netfilter: ipset: do not call ipset_nest_end after nla_nest_cancel,
Pan Bian
- [RFC -next v0 0/3] netfilter: expose flow offload tables as an ebpf map,
Aaron Conole
- [PATCH nf] netfilter: nf_conncount: remove wrong condition check routine,
Taehee Yoo
- [PATCH] include: extend the headers conflict workaround to in6.h, Baruch Siach
- [iptables PATCH] ebtables: Use xtables_exit_err(),
Phil Sutter
- compilation error glibc, Ansuel Smith
- [iptables PATCH] arptables: Support --set-counters option,
Phil Sutter
- [PATCH nf v2 2/2] netfilter: nat: fix double register in masquerade modules, Taehee Yoo
- [PATCH nf v2 1/2] netfilter: add missing error handling code for register functions, Taehee Yoo
- [PATCH nf v2 0/2] netfilter: fix notifier registration bugs,
Taehee Yoo
- [PATCH] netfilter: ipset: replace a strncpy() with strscpy(),
Qian Cai
- [PATCH nf] netfilter: nfnetlink_cttimeout: nf_proto_net must be first member of netns_proto_gre,
Florian Westphal
- [PATCH v2] ipv6: Preserve link scope traffic original oif,
Alin Nastac
- RFC: Designing per chain rule cache support in libnftnl,
Phil Sutter
- [PATCH nf-next] netfilter: add missing error handling code for register functions.,
Taehee Yoo
- [PATCH iptables] extensions: libip6t_mh: fix bogus translation error, Pablo Neira Ayuso
- [PATCH nft,v4 1/3] src: introduce simple hints on incorrect table,
Pablo Neira Ayuso
- [PATCH nft,v3 1/3] src: introduce simple hints on incorrect table,
Pablo Neira Ayuso
- [PATCH nft 1/2] src: introduce simple hints on incorrect table,
Pablo Neira Ayuso
- [PATCH nf] netfilter: xt_TEE: fix build failure,
Taehee Yoo
- [PATCH xtables] arptables-nft: use generic expression parsing function, Florian Westphal
- [PATCH iptables] xtables-monitor: fix build with musl libc,
Baruch Siach
- [PATCH iptables 1/4] nft: add type field to builtin_table,
Pablo Neira Ayuso
- WARNING in cttimeout_default_get,
syzbot
- [PATCH nf] netfilter: xt_hashlimit: fix a possible memory leak in htable_create(),
Taehee Yoo
- [PATCH iptables] include: fix build with kernel headers before 4.2,
Baruch Siach
- [PATCH xtables v2] xtables-monitor: fix build with older glibc,
Baruch Siach
- [ANNOUNCE] nftlb 0.3 release, Laura Garcia
- Different namespaces share the same xtables lock,
wenxian li
- Re: linux-next: Tree for Nov 15 (netfilter/xt_TEE), Randy Dunlap
- [iptables PATCH v2] xtables: Introduce per table chain caches,
Phil Sutter
- [iptables PATCH] xtables: Introduce per table chain caches, Phil Sutter
- [PATCH nf-next] netfilter: nat: remove l4 protocol port rovers,
Florian Westphal
- [PATCHv2 net] ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notf,
Xin Long
- [PATCH xtables] xtables-monitor: fix build with older glibc,
Baruch Siach
- [PATCH AUTOSEL 4.18 05/59] netfilter: ipset: list:set: Decrease refcount synchronously on deletion and replace, Sasha Levin
- [PATCH AUTOSEL 4.18 06/59] netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,net, Sasha Levin
- [PATCH AUTOSEL 4.18 07/59] netfilter: ipset: fix ip_set_list allocation failure, Sasha Levin
- [PATCH AUTOSEL 4.18 16/59] netfilter: xt_IDLETIMER: add sysfs filename checking routine, Sasha Levin
- [PATCH AUTOSEL 4.18 18/59] netfilter: nft_compat: ebtables 'nat' table is normal chain type, Sasha Levin
- [PATCH AUTOSEL 4.18 15/59] netfilter: ipset: Correct rcu_dereference() call in ip_set_put_comment(), Sasha Levin
- [PATCH AUTOSEL 4.18 17/59] netfilter: ipset: Fix calling ip_set() macro at dumping, Sasha Levin
- [PATCH AUTOSEL 4.14 02/27] netfilter: ipset: list:set: Decrease refcount synchronously on deletion and replace, Sasha Levin
- [PATCH AUTOSEL 4.14 08/27] netfilter: ipset: Correct rcu_dereference() call in ip_set_put_comment(), Sasha Levin
- [PATCH AUTOSEL 4.14 09/27] netfilter: xt_IDLETIMER: add sysfs filename checking routine, Sasha Levin
- [PATCH AUTOSEL 4.9 02/13] netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,net, Sasha Levin
- [PATCH AUTOSEL 4.9 06/13] netfilter: xt_IDLETIMER: add sysfs filename checking routine, Sasha Levin
- [PATCH AUTOSEL 4.9 05/13] netfilter: ipset: Correct rcu_dereference() call in ip_set_put_comment(), Sasha Levin
- [PATCH AUTOSEL 4.4 2/8] netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,net, Sasha Levin
- [PATCH AUTOSEL 4.4 5/8] netfilter: xt_IDLETIMER: add sysfs filename checking routine, Sasha Levin
- [PATCH AUTOSEL 4.4 4/8] netfilter: ipset: Correct rcu_dereference() call in ip_set_put_comment(), Sasha Levin
- [PATCH AUTOSEL 4.14 03/27] netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,net, Sasha Levin
- iptc_delete_entry matchmask parameter,
Tom Cook
- [PATCH iptables] extensions: format-security fixes in libip[6]t_icmp,
Adam Gołębiowski
- [PATCH xtables] ebtables: vlan: fix userspace/kernel headers collision,
Baruch Siach
- [PATCH net] ipvs: call ip_vs_dst_notifier before ipv6_dev_notf,
Xin Long
- [ANNOUNCE] libnftnl 1.1.2 release, Pablo Neira Ayuso
- [ANNOUNCE] iptables 1.8.2 release, Florian Westphal
- [PATCH] doc: grammar fixes,
Jan Engelhardt
- [PATCH nftables] doc: Spelling and grammar fixes,
Ville Skyttä
- [PATCH nf] netfilter: nf_tables: fix use-after-free when deleting compat expressions,
Florian Westphal
- [PATCH xtables] libxtables: xlate: init buffer to zero, Florian Westphal
- [ebtables PATCH] extensions: among: Fix bitmask check,
Phil Sutter
- [PATCH nf-next] netfilter: remove NFC_* cache bits, Pablo Neira Ayuso
- [PATCH xtables 00/13] arptables: make it work,
Florian Westphal
- [PATCH xtables 01/13] arptables: use ->save for arptables-save, like xtables, Florian Westphal
- [PATCH xtables 02/13] arptables-save: add -c option, like xtables-save, Florian Westphal
- [PATCH xtables 03/13] arptables: remove code that is also commented-out in original arptables, Florian Westphal
- [PATCH xtables 04/13] arptables: fix rule deletion/compare, Florian Westphal
- [PATCH xtables 05/13] arptables: add basic test infra for arptables-nft, Florian Westphal
- [PATCH xtables 06/13] arptables: fix -s/-d handling for negation and mask, Florian Westphal
- [PATCH xtables 07/13] arptables: fix target ip offset, Florian Westphal
- [PATCH xtables 08/13] arptables: fix src/dst mac handling, Florian Westphal
- [PATCH xtables 09/13] arptables: pre-init hlen and ethertype, Florian Westphal
- [PATCH xtables 10/13] arptables: add test cases, Florian Westphal
- [PATCH xtables 11/13] arptables: make uni/multicast mac masks static, Florian Westphal
- [PATCH xtables 12/13] arptables: ignore --table argument., Florian Westphal
- [PATCH xtables 13/13] arptables: fix --version info, Florian Westphal
- BUG: Fatal in exception in interrupt, at nf_conncount_count [regression in 4.19(.1)],
Bruno Prémont
- [nft PATCH] nft.8: Clarify 'index' option of add rule command,
Phil Sutter
- [PATCH xtables] xtables: add 'printf' attribute to xlate_add, Florian Westphal
- [iptables PATCH 0/3] A few minor fixes,
Phil Sutter
- [PATCH iptables] nft: add NFT_TABLE_* enumeration, Pablo Neira Ayuso
- [PATCH xtables 1/2] ebtables-save: add -c option, using xtables-style counters,
Florian Westphal
- [PATCH iptables] nft: replace nft_chain_dump() by nft_chain_get_list(), Pablo Neira Ayuso
- [PATCH tip/core/rcu 30/41] netfilter: Replace call_rcu_bh(), rcu_barrier_bh(), and synchronize_rcu_bh(),
Paul E. McKenney
- [PATCH net-next 0/9] Use __vlan_hwaccel_*() helpers,
Michał Mirosław
- [PATCH net-next 6/9] ipv4/tunnel: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 3/9] net/core: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 4/9] 8021q: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 9/9] sky2: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 5/9] bridge: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 2/9] nfnetlink/queue: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 1/9] cxgb4: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 7/9] benet: use __vlan_hwaccel helpers, Michał Mirosław
- [PATCH net-next 8/9] mlx4: use __vlan_hwaccel helpers, Michał Mirosław
- Re: [PATCH net-next 0/9] Use __vlan_hwaccel_*() helpers, David Miller
- [PATCH net-next 0/2] br_netfilter: enable in non-initial netns,
Christian Brauner
- [PATCH] netfilter: Only call ftp alg when needed,
Felix Jia
- [PATCH nf-next 2/2] netfilter: nf_flow_table: simplify nf_flow_offload_gc_step(), Taehee Yoo
- [PATCH nf-next 1/2] netfilter: nf_flow_table: make nf_flow_table_iterate() static, Taehee Yoo
- [PATCH nf-next 0/2] netfilter: nf_flow_table: remove duplicate code in nf_flow_table_core.c,
Taehee Yoo
- [PATCH nftables 0/2] add minimal x_tables output support,
Florian Westphal
- CFS for Netdev 0x13 open!, Jamal Hadi Salim
- [PATCH] netfilter: nf_nat_sip: fix RTP/RTCP source port translations,
Alin Nastac
- [PATCH xtables] extensions: libebt_ip: fix tos negation, Florian Westphal
- [PATCH xtables] extensions: libebt_ip6: fix ip6-dport negation, Florian Westphal
- [PATCH xtables] xtables-nft: make -Z option work,
Florian Westphal
- [PATCH nf v3 4/4] netfilter: ipt_CLUSTERIP: check MAC address when duplicate config is set, Taehee Yoo
- [PATCH nf v3 3/4] netfilter: ipt_CLUSTERIP: fix sleep-in-atomic bug in clusterip_config_entry_put(), Taehee Yoo
- [PATCH nf v3 2/4] netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routine, Taehee Yoo
- [PATCH nf v3 1/4] netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routine, Taehee Yoo
- [PATCH nf v3 0/4] netfilter: ipt_CLUSTERIP: fix bugs in ipt_CLUSTERIP,
Taehee Yoo
- [PATCH nft] documentation: try to clarify iif vs. iifname.,
Florian Westphal
- [PATCH nf v2 3/3] netfilter: nf_conncount: fix unexpected permanent node of list., Taehee Yoo
- [PATCH nf v2 2/3] netfilter: nf_conncount: fix list_del corruption in conn_free, Taehee Yoo
- [PATCH nf v2 1/3] netfilter: nf_conncount: use spin_lock_bh instead of spin_lock, Taehee Yoo
- [PATCH nf v2 0/3] netfilter: nf_conncount: fix bugs in conn_free,
Taehee Yoo
- [PATCH nf] netfilter: nf_tables: don't use position attribute on rule replacement,
Florian Westphal
- [PATCH] doc: libnftables.adoc misc cleanups,
Duncan Roe
- [PATCH xtables] libxtables: add and use mac print helpers, Florian Westphal
- [PATCH iptables] iptables-tests: add % to run iptables commands, Pablo Neira Ayuso
- [PATCH iptables] iptables-tests: do not append xtables-multi to external commands,
Pablo Neira Ayuso
- Rebasing nf.git ahead, Pablo Neira Ayuso
- [PATCH iptables 0/6] misc. ebtables-nft improvements,
Florian Westphal
- [PATCH nf,v2 1/2] netfilter: conntrack: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(),
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_compat: ebtables 'nat' table is normal chain type,
Florian Westphal
- [PATCH xtables] iptables-nft: fix bogus handling of zero saddr/daddr,
Florian Westphal
- [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(),
Pablo Neira Ayuso
- [PATCH nf 2/2] netfilter: nfnetlink_cttimeout: pass default timeout policy to obj_to_nlattr, Pablo Neira Ayuso
- Re: [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(), kbuild test robot
- Re: [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(), kbuild test robot
- [PATCH iptables] iptables: iptables-test: fix netns test,
Taehee Yoo
- [PATCH] netfilter: ctnetlink: always honor CTA_MARK_MASK,
Andreas Jaggi
- [nft PATCH] doc: Fix for make distcheck,
Phil Sutter
- [iptables PATCH v2] xtables: Fix for matching rules with wildcard interfaces,
Phil Sutter
- [PATCH nf 0/2] netfilter: nf_tables: don't skip inactive chains during update,
Florian Westphal
- [nft PATCH] py: Adjust Nftables class to output flags changes,
Phil Sutter
- [PATCH nft] json: fix json_events_cb() declaration when libjansson is not present,
Laura Garcia Liebana
- Segmentation fault when using ebtables, Dmitry Vinokurov
- [PATCH v2] netfilter: ipset: Fix calling ip_set() macro at dumping,
Jozsef Kadlecsik
- [iptables PATCH] xtables: Fix for matching rules with wildcard interfaces,
Phil Sutter
- [PATCH 1/3 nft,v3] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft 1/2,v2] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft] expression: always print range expression numerically, Pablo Neira Ayuso
- [PATCH nft] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft 1/2,v2] src: add NFT_CTX_OUTPUT_NUMERIC_PROTO,
Pablo Neira Ayuso
- [PATCH 1/2 nft,v2] src: add -p to print layer 4 protocol numerically,
Pablo Neira Ayuso
- [PATCH nft] src: add -p to print layer 4 protocol numerically,
Pablo Neira Ayuso
- [PATCH nft 4/5,v3] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags,
Pablo Neira Ayuso
- [PATCH nft,v3 2/5] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags,
Pablo Neira Ayuso
- [PATCH] src: default to numeric UID and GID listing,
Pablo Neira Ayuso
- [PATCH nft 1/5,v4] src: Revert --literal, add -S/--service,
Pablo Neira Ayuso
- [PATCH nft 2/5,v2] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags, Pablo Neira Ayuso
- [PATCH nft 3/5,v2] src: add nft_ctx_output_{get,set}_handle() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 5/5,v2] src: add nft_ctx_output_{get,set}_echo() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 4/5,v2] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- Re: [PATCH nft 1/5,v4] src: Revert --literal, add -S/--service, Phil Sutter
- [PATCH] ulogd2: fix build with musl libc,
Cameron Norman
- [ANNOUNCE] ipset 7.0 released, Jozsef Kadlecsik
- [PATCH 0/5] ipset patches for nf,
Jozsef Kadlecsik
- [PATCH nft 1/5,v3] src: Revert --literal, add -S/--services,
Pablo Neira Ayuso
- [PATCH nft 3/5] src: add nft_ctx_output_{get,set}_handle() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 5/5] src: add nft_ctx_output_{get,set}_echo() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 4/5] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 2/5] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags, Pablo Neira Ayuso
- [nft PATCH] nft.8: Document log level audit,
Phil Sutter
- [nft PATCH] JSON: Add support for echo option,
Phil Sutter
- [nft PATCH] tests/shell: Add testcase for cache update problems,
Phil Sutter
- [PATCH nf] Revert "netfilter: nft_numgen: add map lookups for numgen random operations", Pablo Neira Ayuso
- [PATCH v2] netfilter: conntrack: fix calculation of next bucket number in early_drop,
Vasily Khoruzhick
- [PATCH nft 1/2] evaluate: do not pass EXPR_SET_ELEM to stmt_evaluate_arg() for set/map evaluation,
Pablo Neira Ayuso
- [PATCH nf 2/2] netfilter: nf_conncount: fix list_del corruption in conn_free,
Taehee Yoo
- [PATCH nf 1/2] netfilter: nf_conncount: use spin_lock_bh instead of spin_lock,
Taehee Yoo
- [PATCH nf 0/2] netfilter: nf_conncount: fix bugs in conn_free,
Taehee Yoo
- [PATCH] netfilter: conntrack: fix calculation of next bucket number in early_drop,
Vasily Khoruzhick
- [nft PATCH] json: Work around segfault when encountering xt stmt,
Phil Sutter
- [RFC] [PATCH] netfilter: Fix kmemleak false positive reports, zhe.he
- [PATCH libnftnl] src: remove nftnl_rule_cmp() and nftnl_expr_cmp(), Pablo Neira Ayuso
- [PATCH nft] netlink: remove netlink_batch_send(), Pablo Neira Ayuso
- [PATCH nft] mnl: remove alloc_nftnl_flowtable(), Pablo Neira Ayuso
- [nft PATCH] mnl: Improve error checking in mnl_nft_event_listener(),
Phil Sutter
- [PATCH nft,v2] src: Revert --literal, add -S/--services, Pablo Neira Ayuso
- [PATCH nft] src: Revert --literal, add --service, Pablo Neira Ayuso
- [PATCH] netfilter: bridge: define INT_MIN & INT_MAX in userspace,
Jiri Slaby
- [PATCH iptables] old patch from Debian for iptables-apply, Arturo Borrero Gonzalez
- [nft PATCH] evaluate: Convert ranges of N-N to N,
Phil Sutter
- [nft PATCH 0/3] Fix JSON API after recent other changes,
Phil Sutter
- stable regression: revert request for netfilter ipv6 defrag bug,
Florian Westphal
- iptables-1.8.1: cannot build without libnftnl,
Lars Wendler
- [PATCH nf-next] netfilter: remove unused headers., Weongyo Jeong
- [PATCH nft 1/3] src: move socket open and reopen to mnl.c,
Pablo Neira Ayuso
- [PATCH nft v3] src: osf: add ttl option support,
Fernando Fernandez Mancera
- [iptables PATCH] xtables: Fix for spurious errors from iptables-translate,
Phil Sutter
- [PATCH nf] netfilter: ipv6: fix oops when defragmenting locally generated fragments,
Florian Westphal
- [ANNOUNCE] iptables 1.8.1 release, Florian Westphal
- [PATCH 1/2 nft v3 preview] src: osf: add ttl option support,
Fernando Fernandez Mancera
- [PATCH nf-next] netfilter: nft_osf: check if attribute is present, Pablo Neira Ayuso
- [PATCH nft 1/3] src: pass struct nft_ctx through struct eval_ctx,
Pablo Neira Ayuso
- [PATCH iptables] configure: bump versions for 1.8.1 release,
Florian Westphal
- [nft PATCH] tests: shell: Extend get element test,
Phil Sutter
- [PATCH nf] netfilter: xt_IDLETIMER: add sysfs filename checking routine,
Taehee Yoo
- [nft PATCH] make cache persistent if local entries were added,
Phil Sutter
- [PATCH 00/10] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/10] netfilter: Replace spin_is_locked() with lockdep, Pablo Neira Ayuso
- [PATCH 04/10] netfilter: nft_xfrm: use state family, not hook one, Pablo Neira Ayuso
- [PATCH 06/10] netfilter: nf_nat_snmp_basic: add missing helper alias name, Pablo Neira Ayuso
- [PATCH 09/10] netfilter: nfnetlink_log: remove empty nfnetlink_log.h header file, Pablo Neira Ayuso
- [PATCH 10/10] Revert "netfilter: xt_quota: fix the behavior of xt_quota module", Pablo Neira Ayuso
- [PATCH 08/10] netfilter: remove two unused variables., Pablo Neira Ayuso
- [PATCH 07/10] netfilter: nf_flow_table: remove unnecessary parameter of nf_flow_table_cleanup(), Pablo Neira Ayuso
- [PATCH 05/10] netfilter: xt_osf: simplify xt_osf_match_packet(), Pablo Neira Ayuso
- [PATCH 02/10] netfilter: cttimeout: remove set but not used variable 'l3num', Pablo Neira Ayuso
- [PATCH 03/10] netfilter: nft_osf: Add ttl option support, Pablo Neira Ayuso
- Re: [PATCH 00/10] Netfilter updates for net-next, David Miller
- [PATCH iptables] libxtables: expose new etherdb lookup function through libxtables API,
Pablo Neira Ayuso
- [PATCH iptables] libxtables: prefix exported new functions for etherdb lookups,
Pablo Neira Ayuso
- [PATCH nf-next] Revert "netfilter: xt_quota: fix the behavior of xt_quota module",
Pablo Neira Ayuso
- [PATCH iptables,v2] iptables-test: add -N option to exercise netns removal path, Pablo Neira Ayuso
- [PATCH iptables] iptables-test: add -N option to exercise netns removal path,
Pablo Neira Ayuso
- [PATCH nft v2] doc: Document ct timeout support,
Harsha Sharma
- [PATCH nf] netfilter: xt_RATEEST: remove netns exit routine,
Taehee Yoo
- [PATCH nf-next] netfilter: nfnetlink_log: remove empty nfnetlink_log.h header file,
Taehee Yoo
- [PATCH] netfilter: add grev6 conntrack support,
Alin Nastac
- [PATCH] netfilter: conntrack: fix cloned skb __nf_conntrack_confirm race,
Chieh-Min Wang
- [PATCH libnftnl 1/4] tests: Execute nft-flowtable-test in test-script.sh,
Matt Turner
- netfilter request for -stable 4.9.x inclusion,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: remove unused udp.h header.,
Weongyo Jeong
- [PATCH nf-next] netfilter: remove two unused variables.,
Weongyo Jeong
- [PATCH nf-next] netfilter: x_tables: add missing comments, Hyejeong Jang
- [PATCH nft,v2] evaluate: bogus bail out with raw expression from dynamic sets, Pablo Neira Ayuso
- [PATCH nft] evaluate: bogus bail out with raw expression from dynamic sets, Pablo Neira Ayuso
- [PATCH nft] src: remove opts field from struct xt_stmt,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: xt_quota: simplify quota logic, account for consumed bytes, Pablo Neira Ayuso
- [PATCH net] netfilter: fix DNAT target for shifted portmap ranges,
Paolo Abeni
- [nf-next:master 1/7] net/ipv4/netfilter/ipt_ECN.c:58:28: error: 'IPT_ECN_OP_SET_ECE' undeclared; did you mean 'IPT_ECN_OP_MATCH_ECE'?, kbuild test robot
- [PATCH libnftables] src: remove json support,
Pablo Neira Ayuso
- [PATCH nf v2 3/3] netfilter: ipt_CLUSTERIP: fix sleep-in-atomic bug in clusterip_config_entry_put(), Taehee Yoo
- [PATCH nf v2 2/3] netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routine, Taehee Yoo
- [PATCH nf v2 1/3] netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routine, Taehee Yoo
- [PATCH nf v2 0/3] netfilter: ipt_CLUSTERIP: fix bugs in ipt_CLUSTERIP, Taehee Yoo
- [PATCH] netfilter: x_tables: fix missing unlock if table init fails,
Omar Sandoval
- [nft PATCH] xt: Fix for covscan warning in xt_stmt_xlate(), Phil Sutter
- [nft PATCH] json: Fix memleak in dup_stmt_json(),
Phil Sutter
- [nft PATCH] parser_json: Fix for ineffective family value checks,
Phil Sutter
- [nft PATCH] libnftables: Fix memleak in nft_parse_bison_filename(),
Phil Sutter
- [nft PATCH] Fix memleak in netlink_parse_fwd() error path,
Phil Sutter
- [PATCH nf-next] netfilter: nft_flow_offload: remove secpath check,
Pablo Neira Ayuso
- [PATCH nf v2] netfilter: nf_flow_table: do not remove offload when other netns's interface is down,
Taehee Yoo
- [PATCH nf-next] netfilter: nf_flow_table: remove unnecessary parameter of nf_flow_table_cleanup(),
Taehee Yoo
- [nft PATCH 0/8] monitor: Use libnftables for JSON output,
Phil Sutter
- spinlock'ing of "struct nf_conn"->custom_buffer_ptr within xt_match.match callback,
Oleh Danilovskyi
- [iptables PATCH] xtables: Remove target_maxnamelen field,
Phil Sutter
- [PATCH nf-next,v2] netfilter: nft_compat: do not dump private area, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: xt_osf: simplify xt_osf_match_packet(), Pablo Neira Ayuso
- [PATCH nft] segtree: set proper error cause on existing elements, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables: xfrm: use state family, not hook one,
Florian Westphal
- [PATCH nft] segtree: incorrect handling of last element in get_set_decompose(), Pablo Neira Ayuso
- [PATCH nft 1/3] mnl: remove alloc_nftnl_set(),
Pablo Neira Ayuso
- [PATCH nft] mnl: remove alloc_nftnl_rule(), Pablo Neira Ayuso
- [PATCH nf-next v4] nft_osf: Add ttl option support,
Fernando Fernandez Mancera
- [PATCH nf] netfilter: nft_osf: output hook is not valid anymore, Fernando Fernandez Mancera
- [PATCH net-next] netfilter: cttimeout: remove set but not used variable 'l3num',
YueHaibing
- [iptables] extensions: Add tests and description for xt_quota module,
Chenbo Feng
- [PATCH net-next 0/3] ip_tunnel: specify tunnel type via template,
Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]