Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH xtables] extensions: libebt_ip: fix tos negation, Florian Westphal
- [PATCH xtables] extensions: libebt_ip6: fix ip6-dport negation, Florian Westphal
- [PATCH xtables] xtables-nft: make -Z option work,
Florian Westphal
- [PATCH nf v3 4/4] netfilter: ipt_CLUSTERIP: check MAC address when duplicate config is set, Taehee Yoo
- [PATCH nf v3 3/4] netfilter: ipt_CLUSTERIP: fix sleep-in-atomic bug in clusterip_config_entry_put(), Taehee Yoo
- [PATCH nf v3 2/4] netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routine, Taehee Yoo
- [PATCH nf v3 1/4] netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routine, Taehee Yoo
- [PATCH nf v3 0/4] netfilter: ipt_CLUSTERIP: fix bugs in ipt_CLUSTERIP,
Taehee Yoo
- [PATCH nft] documentation: try to clarify iif vs. iifname.,
Florian Westphal
- [PATCH nf v2 3/3] netfilter: nf_conncount: fix unexpected permanent node of list., Taehee Yoo
- [PATCH nf v2 2/3] netfilter: nf_conncount: fix list_del corruption in conn_free, Taehee Yoo
- [PATCH nf v2 1/3] netfilter: nf_conncount: use spin_lock_bh instead of spin_lock, Taehee Yoo
- [PATCH nf v2 0/3] netfilter: nf_conncount: fix bugs in conn_free,
Taehee Yoo
- [PATCH nf] netfilter: nf_tables: don't use position attribute on rule replacement,
Florian Westphal
- [PATCH] doc: libnftables.adoc misc cleanups,
Duncan Roe
- [PATCH xtables] libxtables: add and use mac print helpers, Florian Westphal
- [PATCH iptables] iptables-tests: add % to run iptables commands, Pablo Neira Ayuso
- [PATCH iptables] iptables-tests: do not append xtables-multi to external commands,
Pablo Neira Ayuso
- Rebasing nf.git ahead, Pablo Neira Ayuso
- [PATCH iptables 0/6] misc. ebtables-nft improvements,
Florian Westphal
- [PATCH nf,v2 1/2] netfilter: conntrack: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(),
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_compat: ebtables 'nat' table is normal chain type,
Florian Westphal
- [PATCH xtables] iptables-nft: fix bogus handling of zero saddr/daddr,
Florian Westphal
- [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(),
Pablo Neira Ayuso
- [PATCH nf 2/2] netfilter: nfnetlink_cttimeout: pass default timeout policy to obj_to_nlattr, Pablo Neira Ayuso
- Re: [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(), kbuild test robot
- Re: [PATCH nf 1/2] netfilter: add nf_{tcp,udp,sctp,icmp,dccp,icmpv6,generic}_pernet(), kbuild test robot
- [PATCH iptables] iptables: iptables-test: fix netns test,
Taehee Yoo
- [PATCH] netfilter: ctnetlink: always honor CTA_MARK_MASK,
Andreas Jaggi
- [nft PATCH] doc: Fix for make distcheck,
Phil Sutter
- [iptables PATCH v2] xtables: Fix for matching rules with wildcard interfaces,
Phil Sutter
- [PATCH nf 0/2] netfilter: nf_tables: don't skip inactive chains during update,
Florian Westphal
- [nft PATCH] py: Adjust Nftables class to output flags changes,
Phil Sutter
- [PATCH nft] json: fix json_events_cb() declaration when libjansson is not present,
Laura Garcia Liebana
- Segmentation fault when using ebtables, Dmitry Vinokurov
- [PATCH v2] netfilter: ipset: Fix calling ip_set() macro at dumping,
Jozsef Kadlecsik
- [iptables PATCH] xtables: Fix for matching rules with wildcard interfaces,
Phil Sutter
- [PATCH 1/3 nft,v3] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft 1/2,v2] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft] expression: always print range expression numerically, Pablo Neira Ayuso
- [PATCH nft] src: get rid of nft_ctx_output_{get,set}_numeric(),
Pablo Neira Ayuso
- [PATCH nft 1/2,v2] src: add NFT_CTX_OUTPUT_NUMERIC_PROTO,
Pablo Neira Ayuso
- [PATCH 1/2 nft,v2] src: add -p to print layer 4 protocol numerically,
Pablo Neira Ayuso
- [PATCH nft] src: add -p to print layer 4 protocol numerically,
Pablo Neira Ayuso
- [PATCH nft 4/5,v3] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags,
Pablo Neira Ayuso
- [PATCH nft,v3 2/5] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags,
Pablo Neira Ayuso
- [PATCH] src: default to numeric UID and GID listing,
Pablo Neira Ayuso
- [PATCH nft 1/5,v4] src: Revert --literal, add -S/--service,
Pablo Neira Ayuso
- [PATCH nft 2/5,v2] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags, Pablo Neira Ayuso
- [PATCH nft 3/5,v2] src: add nft_ctx_output_{get,set}_handle() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 5/5,v2] src: add nft_ctx_output_{get,set}_echo() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 4/5,v2] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- Re: [PATCH nft 1/5,v4] src: Revert --literal, add -S/--service, Phil Sutter
- [PATCH] ulogd2: fix build with musl libc,
Cameron Norman
- [ANNOUNCE] ipset 7.0 released, Jozsef Kadlecsik
- [PATCH 0/5] ipset patches for nf,
Jozsef Kadlecsik
- [PATCH nft 1/5,v3] src: Revert --literal, add -S/--services,
Pablo Neira Ayuso
- [PATCH nft 3/5] src: add nft_ctx_output_{get,set}_handle() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 5/5] src: add nft_ctx_output_{get,set}_echo() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 4/5] src: add nft_ctx_output_{get,set}_json() to nft_ctx_output_{get,set}_flags, Pablo Neira Ayuso
- [PATCH nft 2/5] src: add nft_ctx_output_{get,set}_stateless() to nft_ctx_output_{get,flags}_flags, Pablo Neira Ayuso
- [nft PATCH] nft.8: Document log level audit,
Phil Sutter
- [nft PATCH] JSON: Add support for echo option,
Phil Sutter
- [nft PATCH] tests/shell: Add testcase for cache update problems,
Phil Sutter
- [PATCH nf] Revert "netfilter: nft_numgen: add map lookups for numgen random operations", Pablo Neira Ayuso
- [PATCH v2] netfilter: conntrack: fix calculation of next bucket number in early_drop,
Vasily Khoruzhick
- [PATCH nft 1/2] evaluate: do not pass EXPR_SET_ELEM to stmt_evaluate_arg() for set/map evaluation,
Pablo Neira Ayuso
- [PATCH nf 2/2] netfilter: nf_conncount: fix list_del corruption in conn_free,
Taehee Yoo
- [PATCH nf 1/2] netfilter: nf_conncount: use spin_lock_bh instead of spin_lock,
Taehee Yoo
- [PATCH nf 0/2] netfilter: nf_conncount: fix bugs in conn_free,
Taehee Yoo
- [PATCH] netfilter: conntrack: fix calculation of next bucket number in early_drop,
Vasily Khoruzhick
- [nft PATCH] json: Work around segfault when encountering xt stmt,
Phil Sutter
- [RFC] [PATCH] netfilter: Fix kmemleak false positive reports, zhe.he
- [PATCH libnftnl] src: remove nftnl_rule_cmp() and nftnl_expr_cmp(), Pablo Neira Ayuso
- [PATCH nft] netlink: remove netlink_batch_send(), Pablo Neira Ayuso
- [PATCH nft] mnl: remove alloc_nftnl_flowtable(), Pablo Neira Ayuso
- [nft PATCH] mnl: Improve error checking in mnl_nft_event_listener(),
Phil Sutter
- [PATCH nft,v2] src: Revert --literal, add -S/--services, Pablo Neira Ayuso
- [PATCH nft] src: Revert --literal, add --service, Pablo Neira Ayuso
- [PATCH] netfilter: bridge: define INT_MIN & INT_MAX in userspace,
Jiri Slaby
- [PATCH iptables] old patch from Debian for iptables-apply, Arturo Borrero Gonzalez
- [nft PATCH] evaluate: Convert ranges of N-N to N,
Phil Sutter
- [nft PATCH 0/3] Fix JSON API after recent other changes,
Phil Sutter
- stable regression: revert request for netfilter ipv6 defrag bug,
Florian Westphal
- iptables-1.8.1: cannot build without libnftnl,
Lars Wendler
- [PATCH nf-next] netfilter: remove unused headers., Weongyo Jeong
- [PATCH nft 1/3] src: move socket open and reopen to mnl.c,
Pablo Neira Ayuso
- [PATCH nft v3] src: osf: add ttl option support,
Fernando Fernandez Mancera
- [iptables PATCH] xtables: Fix for spurious errors from iptables-translate,
Phil Sutter
- [PATCH nf] netfilter: ipv6: fix oops when defragmenting locally generated fragments,
Florian Westphal
- [ANNOUNCE] iptables 1.8.1 release, Florian Westphal
- [PATCH 1/2 nft v3 preview] src: osf: add ttl option support,
Fernando Fernandez Mancera
- [PATCH nf-next] netfilter: nft_osf: check if attribute is present, Pablo Neira Ayuso
- [PATCH nft 1/3] src: pass struct nft_ctx through struct eval_ctx,
Pablo Neira Ayuso
- [PATCH iptables] configure: bump versions for 1.8.1 release,
Florian Westphal
- [nft PATCH] tests: shell: Extend get element test,
Phil Sutter
- [PATCH nf] netfilter: xt_IDLETIMER: add sysfs filename checking routine,
Taehee Yoo
- [nft PATCH] make cache persistent if local entries were added,
Phil Sutter
- [PATCH 00/10] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/10] netfilter: Replace spin_is_locked() with lockdep, Pablo Neira Ayuso
- [PATCH 04/10] netfilter: nft_xfrm: use state family, not hook one, Pablo Neira Ayuso
- [PATCH 06/10] netfilter: nf_nat_snmp_basic: add missing helper alias name, Pablo Neira Ayuso
- [PATCH 09/10] netfilter: nfnetlink_log: remove empty nfnetlink_log.h header file, Pablo Neira Ayuso
- [PATCH 10/10] Revert "netfilter: xt_quota: fix the behavior of xt_quota module", Pablo Neira Ayuso
- [PATCH 08/10] netfilter: remove two unused variables., Pablo Neira Ayuso
- [PATCH 07/10] netfilter: nf_flow_table: remove unnecessary parameter of nf_flow_table_cleanup(), Pablo Neira Ayuso
- [PATCH 05/10] netfilter: xt_osf: simplify xt_osf_match_packet(), Pablo Neira Ayuso
- [PATCH 02/10] netfilter: cttimeout: remove set but not used variable 'l3num', Pablo Neira Ayuso
- [PATCH 03/10] netfilter: nft_osf: Add ttl option support, Pablo Neira Ayuso
- Re: [PATCH 00/10] Netfilter updates for net-next, David Miller
- [PATCH iptables] libxtables: expose new etherdb lookup function through libxtables API,
Pablo Neira Ayuso
- [PATCH iptables] libxtables: prefix exported new functions for etherdb lookups,
Pablo Neira Ayuso
- [PATCH nf-next] Revert "netfilter: xt_quota: fix the behavior of xt_quota module",
Pablo Neira Ayuso
- [PATCH iptables,v2] iptables-test: add -N option to exercise netns removal path, Pablo Neira Ayuso
- [PATCH iptables] iptables-test: add -N option to exercise netns removal path,
Pablo Neira Ayuso
- [PATCH nft v2] doc: Document ct timeout support,
Harsha Sharma
- [PATCH nf] netfilter: xt_RATEEST: remove netns exit routine,
Taehee Yoo
- [PATCH nf-next] netfilter: nfnetlink_log: remove empty nfnetlink_log.h header file,
Taehee Yoo
- [PATCH] netfilter: add grev6 conntrack support,
Alin Nastac
- [PATCH] netfilter: conntrack: fix cloned skb __nf_conntrack_confirm race,
Chieh-Min Wang
- [PATCH libnftnl 1/4] tests: Execute nft-flowtable-test in test-script.sh,
Matt Turner
- netfilter request for -stable 4.9.x inclusion,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: remove unused udp.h header.,
Weongyo Jeong
- [PATCH nf-next] netfilter: remove two unused variables.,
Weongyo Jeong
- [PATCH nf-next] netfilter: x_tables: add missing comments, Hyejeong Jang
- [PATCH nft,v2] evaluate: bogus bail out with raw expression from dynamic sets, Pablo Neira Ayuso
- [PATCH nft] evaluate: bogus bail out with raw expression from dynamic sets, Pablo Neira Ayuso
- [PATCH nft] src: remove opts field from struct xt_stmt,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: xt_quota: simplify quota logic, account for consumed bytes, Pablo Neira Ayuso
- [PATCH net] netfilter: fix DNAT target for shifted portmap ranges,
Paolo Abeni
- [nf-next:master 1/7] net/ipv4/netfilter/ipt_ECN.c:58:28: error: 'IPT_ECN_OP_SET_ECE' undeclared; did you mean 'IPT_ECN_OP_MATCH_ECE'?, kbuild test robot
- [PATCH libnftables] src: remove json support,
Pablo Neira Ayuso
- [PATCH nf v2 3/3] netfilter: ipt_CLUSTERIP: fix sleep-in-atomic bug in clusterip_config_entry_put(), Taehee Yoo
- [PATCH nf v2 2/3] netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routine, Taehee Yoo
- [PATCH nf v2 1/3] netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routine, Taehee Yoo
- [PATCH nf v2 0/3] netfilter: ipt_CLUSTERIP: fix bugs in ipt_CLUSTERIP, Taehee Yoo
- [PATCH] netfilter: x_tables: fix missing unlock if table init fails,
Omar Sandoval
- [nft PATCH] xt: Fix for covscan warning in xt_stmt_xlate(), Phil Sutter
- [nft PATCH] json: Fix memleak in dup_stmt_json(),
Phil Sutter
- [nft PATCH] parser_json: Fix for ineffective family value checks,
Phil Sutter
- [nft PATCH] libnftables: Fix memleak in nft_parse_bison_filename(),
Phil Sutter
- [nft PATCH] Fix memleak in netlink_parse_fwd() error path,
Phil Sutter
- [PATCH nf-next] netfilter: nft_flow_offload: remove secpath check,
Pablo Neira Ayuso
- [PATCH nf v2] netfilter: nf_flow_table: do not remove offload when other netns's interface is down,
Taehee Yoo
- [PATCH nf-next] netfilter: nf_flow_table: remove unnecessary parameter of nf_flow_table_cleanup(),
Taehee Yoo
- [nft PATCH 0/8] monitor: Use libnftables for JSON output,
Phil Sutter
- spinlock'ing of "struct nf_conn"->custom_buffer_ptr within xt_match.match callback,
Oleh Danilovskyi
- [iptables PATCH] xtables: Remove target_maxnamelen field,
Phil Sutter
- [PATCH nf-next,v2] netfilter: nft_compat: do not dump private area, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: xt_osf: simplify xt_osf_match_packet(), Pablo Neira Ayuso
- [PATCH nft] segtree: set proper error cause on existing elements, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables: xfrm: use state family, not hook one,
Florian Westphal
- [PATCH nft] segtree: incorrect handling of last element in get_set_decompose(), Pablo Neira Ayuso
- [PATCH nft 1/3] mnl: remove alloc_nftnl_set(),
Pablo Neira Ayuso
- [PATCH nft] mnl: remove alloc_nftnl_rule(), Pablo Neira Ayuso
- [PATCH nf-next v4] nft_osf: Add ttl option support,
Fernando Fernandez Mancera
- [PATCH nf] netfilter: nft_osf: output hook is not valid anymore, Fernando Fernandez Mancera
- [PATCH net-next] netfilter: cttimeout: remove set but not used variable 'l3num',
YueHaibing
- [iptables] extensions: Add tests and description for xt_quota module,
Chenbo Feng
- [PATCH net-next 0/3] ip_tunnel: specify tunnel type via template,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_compat: do not dump private area, Pablo Neira Ayuso
- [PATCH iptables] extensions: cgroup: fix option parsing for v2, Pablo Neira Ayuso
- iptables (nf_tables) error when negating an interface and using protocol port - works fine with classic iptables,
Pedretti Fabio
- [PATCH 00/31] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 02/31] netfilter: nf_tables: split set destruction in deactivate and destroy phase, Pablo Neira Ayuso
- [PATCH 06/31] netfilter: nf_tables: add xfrm expression, Pablo Neira Ayuso
- [PATCH 16/31] netfilter: conntrack: deconstify packet callback skb pointer, Pablo Neira Ayuso
- [PATCH 26/31] netfilter: nf_tables: add SECMARK support, Pablo Neira Ayuso
- [PATCH 25/31] netfilter: masquerade: don't flush all conntracks if only one address deleted on device, Pablo Neira Ayuso
- [PATCH 28/31] netfilter: nf_flow_table: remove unnecessary nat flag check code, Pablo Neira Ayuso
- [PATCH 30/31] netfilter: xt_quota: fix the behavior of xt_quota module, Pablo Neira Ayuso
- [PATCH 31/31] netfilter: xt_quota: Don't use aligned attribute in sizeof, Pablo Neira Ayuso
- [PATCH 27/31] netfilter: nf_tables: add requirements for connsecmark support, Pablo Neira Ayuso
- [PATCH 29/31] netfilter: nf_tables: use rhashtable_lookup() instead of rhashtable_lookup_fast(), Pablo Neira Ayuso
- [PATCH 20/31] netfilter: conntrack: remove l3->l4 mapping information, Pablo Neira Ayuso
- [PATCH 24/31] netfilter: ctnetlink: must check mark attributes vs NULL, Pablo Neira Ayuso
- [PATCH 19/31] netfilter: conntrack: remove unused proto arg from netns init functions, Pablo Neira Ayuso
- [PATCH 21/31] netfilter: conntrack: clamp l4proto array size at largers supported protocol, Pablo Neira Ayuso
- [PATCH 23/31] netfilter: nf_tables: use rhashtable_walk_enter instead of rhashtable_walk_init, Pablo Neira Ayuso
- [PATCH 22/31] netfilter: nat: remove duplicate skb_is_nonlinear() in __nf_nat_mangle_tcp_packet(), Pablo Neira Ayuso
- [PATCH 14/31] netfilter: conntrack: pass nf_hook_state to packet and error handlers, Pablo Neira Ayuso
- [PATCH 17/31] netfilter: conntrack: avoid using ->error callback if possible, Pablo Neira Ayuso
- [PATCH 18/31] netfilter: conntrack: remove error callback and handle icmp from core, Pablo Neira Ayuso
- [PATCH 11/31] netfilter: nf_nat_ipv4: remove obsolete EXPORT_SYMBOL, Pablo Neira Ayuso
- [PATCH 15/31] netfilter: conntrack: remove the l4proto->new() function, Pablo Neira Ayuso
- [PATCH 04/31] netfilter: nf_tables: asynchronous release, Pablo Neira Ayuso
- [PATCH 09/31] netfilter: nf_tables: avoid BUG_ON usage, Pablo Neira Ayuso
- [PATCH 13/31] netfilter: nat: remove unnecessary rcu_read_lock in nf_nat_redirect_ipv{4/6}, Pablo Neira Ayuso
- [PATCH 12/31] netfilter: cttimeout: remove superfluous check on layer 4 netlink functions, Pablo Neira Ayuso
- [PATCH 10/31] netfilter: xtables: avoid BUG_ON, Pablo Neira Ayuso
- [PATCH 08/31] netfilter: xt_cgroup: shrink size of v2 path, Pablo Neira Ayuso
- [PATCH 03/31] netfilter: nf_tables: warn when expr implements only one of activate/deactivate, Pablo Neira Ayuso
- [PATCH 07/31] netfilter: ctnetlink: Support L3 protocol-filter on flush, Pablo Neira Ayuso
- [PATCH 05/31] netfilter: remove obsolete need_conntrack stub, Pablo Neira Ayuso
- [PATCH 01/31] netfilter: nf_tables: rt: allow checking if dst has xfrm attached, Pablo Neira Ayuso
- Re: [PATCH 00/31] Netfilter updates for net-next, David Miller
- [PATCH nf] netfilter: nf_flow_table: do not remove offload when other netns's interface is down,
Taehee Yoo
- [PATCH] netfilter: xt_quota: Don't use aligned attribute in sizeof,
Nathan Chancellor
- [PATCH nf-next] netfilter: nf_nat_snmp_basic: add missing helper alias name,
Taehee Yoo
- [PATCH nf 2/2] netfilter: xt_TEE: add missing code to get interface index in checkentry.,
Taehee Yoo
- [PATCH nf 1/2] netfilter: xt_TEE: fix wrong interface selection,
Taehee Yoo
- [PATCH nf 0/2] netfilter: xt_TEE: fix bugs in xt_TEE, Taehee Yoo
- [PATCH nf 2/2] netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routine, Taehee Yoo
- [PATCH nf 1/2] netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routine,
Taehee Yoo
- [PATCH nf 0/2] netfilter: ipt_CLUSTERIP: fix bugs in ipt_CLUSTERIP, Taehee Yoo
- [PATCH nf-next v3] nft_osf: Add ttl option support,
Fernando Fernandez Mancera
- [PATCH RFC,net-next 0/3] ip_tunnel: specify tunnel type via template,
Pablo Neira Ayuso
- [PATCH nft 0/4] assorted updates,
Pablo Neira Ayuso
- [PATCH nft] segtree: stop iteration on existing elements in case closing range is found, Pablo Neira Ayuso
- [PATCH nft] rule: fix memleak in do_get_setelems(), Pablo Neira Ayuso
- [PATCH nft] segtree: memleak in get_set_decompose(), Pablo Neira Ayuso
- [PATCH nft] segtree: disantangle get_set_interval_end(), Pablo Neira Ayuso
- [PATCH 14/16] netfilter: Replace spin_is_locked() with lockdep,
Lance Roy
- [PATCH net-next iptables] Rework the xt_quota module,
Chenbo Feng
- [PATCH nf-next] netfilter: nf_flow_table: remove flowtable hook flush routine in netns exit routine,
Taehee Yoo
- [PATCH nf] netfilter: nft_set_rbtree: allow loose matching of closing intervals, Pablo Neira Ayuso
- [PATCH nft] segtree: bogus range via get set element on existing elements, Pablo Neira Ayuso
- [PATCH nft] include: add missing xfrm.h to Makefile.am,
Fernando Fernandez Mancera
- __nf_register_net_hook jump label splat,
Borislav Petkov
- [PATCH nf-next v2] nft_osf: Add ttl option support,
Fernando Fernandez Mancera
- [PATCH 1/2 nft v2] src: osf: add ttl option support,
Fernando Fernandez Mancera
- [PATCH] Revert "openvswitch: Fix template leak in error cases.",
Flavio Leitner
- [PATCH] openvswitch: load NAT helper,
Flavio Leitner
- [nft PATCH] tests: shell: Test 'get element' command,
Phil Sutter
- Re: [PATCH] netfilter: check if the socket netns is correct.,
Guenter Roeck
- nft: Dubious code in get_set_decompose() of src/segtree.c,
Phil Sutter
- [nft PATCH 0/5] Fix and improve for 0021prio_0 in tests/shell,
Phil Sutter
- Contribution of a GRE Module,
Alexandre Connat
- [libnftnl PATCH] expr: xfrm: Fix for unused variable warning,
Phil Sutter
- [iptables PATCH 0/6] Follow-up to covscan fixes,
Phil Sutter
- [PATCH nf-next] netfilter: nf_tables: use rhashtable_lookup() instead of rhashtable_lookup_fast(),
Taehee Yoo
- [PATCH nf-next] netfilter: nf_flow_table: remove unnecessary nat flag check code,
Taehee Yoo
- [PATCH nf] netfilter: avoid erronous array bounds warning,
Florian Westphal
- [PATCH v3 1/2] netfilter: nf_tables: add SECMARK support,
Christian Göttsche
- [PATCH v2 1/2] netfilter: nf_tables: add SECMARK support,
Christian Göttsche
- change netfilter packet flow,
morteza1131@xxxxxxxxx
- How to contribute to netfilter.org/documentation?, Phil Sutter
- [PATCH] doc: Re-work RULES:add/insert/replace to read better.,
Duncan Roe
- general protection fault in ctnetlink_alloc_filter,
syzbot
- [PATCH net-next 0/3] net: wean netfilter from fib_nh,
dsahern
- [PATCH] nftables: add support for setting secmark,
Christian Göttsche
- [PATCH] libnftnl: add support for new secmark object, Christian Göttsche
- [PATCH] netfilter: nf_tables: add SECMARK support,
Christian Göttsche
- [iptables PATCH 0/3] Merge legacy save and restore implementations,
Phil Sutter
- [iptables PATCH 00/28] Another round of covscan fixes,
Phil Sutter
- [iptables PATCH 19/28] iptables: Use print_ifaces() from xtables, Phil Sutter
- [iptables PATCH 11/28] libxt_time: Drop initialization of variable 'year', Phil Sutter
- [iptables PATCH 22/28] extensions: libebt_ip{,6}: Drop pointless error checking, Phil Sutter
- [iptables PATCH 02/28] xtables: Fix for wrong assert() in __nft_table_flush(), Phil Sutter
- [iptables PATCH 14/28] libxtables: Don't read garbage in xtables_strtoui(), Phil Sutter
- [iptables PATCH 28/28] iptables: Gitignore xtables-{legacy,nft}-multi scripts, Phil Sutter
- [iptables PATCH 17/28] iptables-apply: Replace signal numbers by names, Phil Sutter
- [iptables PATCH 24/28] libxtables: Use posix_spawn() instead of vfork(), Phil Sutter
- [iptables PATCH 15/28] nfnl_osf: Replace deprecated nfnl_talk() by nfnl_query(), Phil Sutter
- [iptables PATCH 04/28] Mark fall through cases in switch() statements, Phil Sutter
- [iptables PATCH 10/28] libxt_ipvs: Avoid potential buffer overrun, Phil Sutter
- [iptables PATCH 23/28] Fix a few cases of pointless assignments, Phil Sutter
- [iptables PATCH 06/28] xtables: Remove unused variable in nft_is_table_compatible(), Phil Sutter
- [iptables PATCH 13/28] libxtables: Avoid calling memcpy() with NULL source, Phil Sutter
- [iptables PATCH 03/28] libxtables: Integrate getethertype.c from xtables core, Phil Sutter
- [iptables PATCH 16/28] iptables-apply: Quote strings passed to echo, Phil Sutter
- [iptables PATCH 18/28] Share print_ipv{4,6}_addr() from xtables, Phil Sutter
- [iptables PATCH 01/28] nfnl_osf: Drop pointless check in xt_osf_strchr(), Phil Sutter
- [iptables PATCH 21/28] nft-arp: Drop ineffective conditional, Phil Sutter
- [iptables PATCH 07/28] libxt_LED: Avoid string overrun while parsing led-trigger-id, Phil Sutter
- [iptables PATCH 20/28] Sanitize calls to strcpy(), Phil Sutter
- [iptables PATCH 26/28] arptables: Fix incorrect strcmp() in nft_arp_rule_find(), Phil Sutter
- [iptables PATCH 09/28] libxt_conntrack: Avoid potential buffer overrun, Phil Sutter
- [iptables PATCH 25/28] xtables: Don't read garbage in nft_ipv4_parse_payload(), Phil Sutter
- [iptables PATCH 05/28] ip{,6}tables-restore: Fix for uninitialized array 'curtable', Phil Sutter
- [iptables PATCH 12/28] libiptc: Simplify alloc_handle() function signature, Phil Sutter
- [iptables PATCH 08/28] libxt_conntrack: Version 0 does not support XT_CONNTRACK_DIRECTION, Phil Sutter
- [iptables PATCH 27/28] xtables: Drop pointless check, Phil Sutter
- [PATCH] netfilter: conntrack: get rid of double sizeof,
zhong jiang
- Re: bpfilter breaks IPT_SO_GET_INFO,
Michal Kubecek
- [PATCH libnftnl v2] obj: ct_timeout: fix error in building tests,
Harsha Sharma
- Announcing Netdev 0x13 conference, Jamal Hadi Salim
- [PATCH] netfilter: nft_osf: use enum nft_data_types for nft_validate_register_store,
Stefan Agner
- [PATCH 4.14 095/126] inet: frags: Convert timers to use timer_setup(), Greg Kroah-Hartman
- [PATCH net] netfilter: bridge: Don't sabotage nf_hook calls from an l3mdev,
dsahern
- [iptables PATCH] libxt_string: Fix array out of bounds check,
Phil Sutter
- [PATCH nft] src: osf: add ttl option support,
Fernando Fernandez Mancera
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]