Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: url filtering with netfiler, (continued)
- [PATCH v2 nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed,
Florian Westphal
- [iptables PATCH] nft: don't print rule counters unless verbose,
Eric Garver
- [PATCH] netfilter: ipset: fix ip_set_list allocation failure, Andrey Ryabinin
- [PATCH nft] doc: nft.txt: Wrap extra long lines to 80 chars,
Máté Eckl
- [PATCH nf] netfilter: nf_tables: don't prevent event handler from device cleanup on netns exit, Florian Westphal
- [PATCH] netfilter: nf_tables: remove redundant variables 'create' and 'ext', YueHaibing
- [PATCH ghak90 (was ghak32) V4 00/10] audit: implement container identifier,
Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 09/10] audit: NETFILTER_PKT: record each container ID associated with a netNS, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 10/10] debug audit: read container ID of a process, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 07/10] audit: add containerid filtering, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 08/10] audit: add support for containerid to network namespaces, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 06/10] audit: add containerid support for tty_audit, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 05/10] audit: add support for non-syscall auxiliary records, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 04/10] audit: add containerid support for ptrace and signals, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 01/10] audit: collect audit task parameters, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 02/10] audit: add container id, Richard Guy Briggs
- [PATCH ghak90 (was ghak32) V4 03/10] audit: log container info of syscalls, Richard Guy Briggs
- Re: [PATCH ghak90 (was ghak32) V4 00/10] audit: implement container identifier, Guenter Roeck
- [PATCH nf-next 1/2] fixup: nf_osf: move nf_osf_fingers to non-uapi nf_osf header file,
Fernando Fernandez Mancera
- SLAB_TYPESAFE_BY_RCU without constructors (was Re: [PATCH v4 13/17] khwasan: add hooks implementation),
Andrey Ryabinin
- [PATCH net v2 0/2] fix glitch in IPVS /proc handlers,
Matteo Croce
- [PATCH] nft: doc: changes in configure file for PDF creation,
Arushi Singhal
- [PATCH nf-next] netfilter: nf_tables: flow event notifier must use transaction mutex,
Florian Westphal
- [PATCH nf-next] netfilter: kconfig: make ct zone/labels selectable without xtables, Florian Westphal
- [PATCH] nft: doc: correct some typos in asciidoc,
Arushi Singhal
- [PATCH nf] netfilter: fix memory leaks on netlink_dump_start error,
Florian Westphal
- [PATCH nf-next v3 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack,
Harsha Sharma
- [PATCH nf-next v3 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT,
Harsha Sharma
- [PATCH nf-next v10] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- Re: [netfilter-core] [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel, Fernando Fernandez Mancera
- [nf-next:master 5/7] ./usr/include/linux/netfilter/nf_osf.h:73: userspace cannot reference function or variable defined in the kernel,
kbuild test robot
- KMSAN: uninit-value in iptable_mangle_hook (3), syzbot
- [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore},
Phil Sutter
- [iptables PATCH 09/23] ebtables: Support --init-table command, Phil Sutter
- [iptables PATCH 16/23] arptables: Fix memleak in do_commandarp(), Phil Sutter
- [iptables PATCH 21/23] xtables: Always set FMT_NUMERIC when saving rules, Phil Sutter
- [iptables PATCH 13/23] ebtables: Fix loading of non-standard targets, Phil Sutter
- [iptables PATCH 06/23] xtables: Fix ebtables-restore, Phil Sutter
- [iptables PATCH 17/23] arptables: Fix memleaks in target handling, Phil Sutter
- [iptables PATCH 05/23] ebtables: Fix match_list insertion, Phil Sutter
- [iptables PATCH 11/23] xtables: Fix for empty quotes in add_params_to_argv(), Phil Sutter
- [iptables PATCH 12/23] ebtables: Print non-standard target parameters, Phil Sutter
- [iptables PATCH 19/23] arptables: Fix for trailing spaces in output, Phil Sutter
- [iptables PATCH 08/23] arptables: Print policy only for base chains, Phil Sutter
- [iptables PATCH 01/23] xtables: Fix symlinks/names for ebtables-{save,restore}, Phil Sutter
- [iptables PATCH 23/23] tests: Add ebtables-{save,restore} testcase, Phil Sutter
- [iptables PATCH 15/23] arptables: Fix printing non-standard target parameters, Phil Sutter
- [iptables PATCH 22/23] tests: Add arptables-{save,restore} testcase, Phil Sutter
- [iptables PATCH 07/23] ebtables: Fix memleak in do_commandeb(), Phil Sutter
- [iptables PATCH 02/23] xtables: Fix memleak when adding builtin chains, Phil Sutter
- [iptables PATCH 14/23] ebtables: Fix segfault when parsing a rule, Phil Sutter
- [iptables PATCH 04/23] xtables: Fix debug output, Phil Sutter
- [iptables PATCH 18/23] arptables: Fix jumps into user-defined chains, Phil Sutter
- [iptables PATCH 20/23] arptables: Fix opcode printing in numeric output, Phil Sutter
- [iptables PATCH 03/23] xtables: Use correct built-in chain count, Phil Sutter
- [iptables PATCH 10/23] xtables: Implement arptables-{save,restore}, Phil Sutter
- Re: [iptables PATCH 00/23] Fixes and tests for {eb,arp}tables-{save,restore}, Phil Sutter
- [PATCH nft v3 2/2] tests: py: add ct timeout tests, Harsha Sharma
- [PATCH nft v3 1/2] src: add ct timeout support,
Harsha Sharma
- [PATCH nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed, Florian Westphal
- [PATCH 00/18] xfrm: Add compat layer,
Dmitry Safonov
- Re: [Bug 200651] New: cgroups iptables-restor: vmalloc: allocation failure,
Andrew Morton
- [PATCH nf] netfilter: ip6t_rpfilter: set F_IFACE for linklocal addresses,
Florian Westphal
- Re: linux-next: Tree for Jul 25 (netfilter), Randy Dunlap
- [PATCH nf] netfilter: nft_set: fix allocation size overflow in privsize callback.,
Taehee Yoo
- 4.14.54 regression: rpfilter and DHCPv6,
Roman Mamedov
- [PATCH nf-next] netfilter: conntrack: avoid use-after free on rmmod, Florian Westphal
- [PATCH] nft: doc: Convert man page source to asciidoc,
Arushi Singhal
- [PATCH][v3] netfilter: use kvmalloc_array to allocate memory for hashtable,
Li RongQing
- [PATCH v3] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest(),
Tan Hu
- Re: [PATCH][v2] netfilter: use kvzalloc to allocate memory for hashtable,
Eric Dumazet
- Re:(3) $ 100, any 20 countries of your choice / $100 любые 20 стран на Ваш выбор..., Business groups (cuexcech)
- [PATCH v2] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest(),
Tan Hu
- [PATCH libnftnl v3] expr: add osf support,
Fernando Fernandez Mancera
- [PATCH 1/3 nf-next v3] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c,
Fernando Fernandez Mancera
- [PATCH PATCH net-next 00/18] net whitespace cleanups,
Stephen Hemminger
- [PATCH PATCH net-next 05/18] mpls: remove trailing whitepace, Stephen Hemminger
- [PATCH PATCH net-next 11/18] atm: remove blank lines at EOF, Stephen Hemminger
- [PATCH PATCH net-next 12/18] ax25: remove blank line at EOF, Stephen Hemminger
- [PATCH PATCH net-next 15/18] sunrpc: whitespace fixes, Stephen Hemminger
- [PATCH PATCH net-next 18/18] net: remove blank lines at end of file, Stephen Hemminger
- [PATCH PATCH net-next 17/18] l2tp: remove trailing newline, Stephen Hemminger
- [PATCH PATCH net-next 16/18] bpfilter: remove trailing newline, Stephen Hemminger
- [PATCH PATCH net-next 14/18] decnet: whitespace fixes, Stephen Hemminger
- [PATCH PATCH net-next 13/18] x25: remove blank lines at EOF, Stephen Hemminger
- [PATCH PATCH net-next 10/18] 9p: fix whitespace issues, Stephen Hemminger
- [PATCH PATCH net-next 09/18] ila: remove blank lines at EOF, Stephen Hemminger
- [PATCH PATCH net-next 08/18] sctp: whitespace fixes, Stephen Hemminger
- [PATCH PATCH net-next 07/18] ceph: fix whitespace, Stephen Hemminger
- [PATCH PATCH net-next 06/18] xfrm: remove blank lines at EOF, Stephen Hemminger
- [PATCH PATCH net-next 03/18] rds: remove trailing whitespace and blank lines, Stephen Hemminger
- [PATCH PATCH net-next 04/18] llc: fix whitespace issues, Stephen Hemminger
- [PATCH PATCH net-next 02/18] wimax: remove blank lines at EOF, Stephen Hemminger
- [PATCH PATCH net-next 01/18] sched: fix trailing whitespace, Stephen Hemminger
- Re: [PATCH PATCH net-next 00/18] net whitespace cleanups, David Miller
- [PATCH xtables] xtables: avoid bogus 'is incompatible' warning, Florian Westphal
- [PATCH 1/4] treewide: convert ISO_8859-1 text comments to utf-8,
Arnd Bergmann
- [PATCH] ipvs: fix race between ip_vs_conn_new() and ip_vs_del_dest(),
Tan Hu
- netfilter xt_alloc_table_info regression,
Georgi Nikolov
- [PATCH nf-next v9] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- Re: linux-next: Tree for Jul 23 (netfilter), Randy Dunlap
- [PATCH nf] netfilter: nf_tables: move dumper state alloation into ->start,
Florian Westphal
- [PATCH] netlink: fix memory leak of dump,
Shaochun Chen
- [PATCH] netlink: fix memory leak,
Shaochun Chen
- typo found in socket.h at nftables repository,
Fernando Fernandez Mancera
- Re: [RFC PATCH ghak90 (was ghak32) V3 08/10] audit: NETFILTER_PKT: record each container ID associated with a netNS, Laura Garcia
- [PATCH] libnetfilter_conntrack: bsf.c: fix verdict,
Florian Lehner
- [PATCH] ipvs: don't show negative times in ip_vs_conn,
Matteo Croce
- [PATCH libnftnl v2] expr: add osf support, Fernando Fernandez Mancera
- [PATCH 1/3 nf-next v2] netfilter: nf_osf: rename nf_osf.c to nfnetlink_osf.c,
Fernando Fernandez Mancera
- [PATCH xtables] nft: decode meta l4proto, Florian Westphal
- [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore},
Phil Sutter
- [iptables PATCH 05/17] xtables: Introduce rule_to_cs/clear_cs callbacks, Phil Sutter
- [iptables PATCH 11/17] xtables: Get rid of nft_ipv{4,6}_save_counters(), Phil Sutter
- [iptables PATCH 16/17] xtables: Introduce nft_init_eb(), Phil Sutter
- [iptables PATCH 07/17] xtables: arp: Make rule_to_cs callback private, Phil Sutter
- [iptables PATCH 13/17] xtables: Introduce save_chain callback, Phil Sutter
- [iptables PATCH 17/17] xtables: Implement ebtables-{save,restore}, Phil Sutter
- [iptables PATCH 14/17] xtables: Pass format to nft_rule_save(), Phil Sutter
- [iptables PATCH 01/17] xtables: Fix crash if nft_rule_list_get() fails, Phil Sutter
- [iptables PATCH 15/17] xtables: Parameter to add_argv() may be const, Phil Sutter
- [iptables PATCH 08/17] xtables: Get rid of nft_ipv{4,6}_print_header(), Phil Sutter
- [iptables PATCH 03/17] xtables: Merge {ip,arp}tables_command_state structs, Phil Sutter
- [iptables PATCH 12/17] xtables: Rename {print,save}_rule functions, Phil Sutter
- [iptables PATCH 04/17] xtables: Simplify struct nft_xt_ctx, Phil Sutter
- [iptables PATCH 10/17] xtables: Eliminate nft_ipv{4,6}_rule_find(), Phil Sutter
- [iptables PATCH 02/17] iptables: Replace memset by c99-style initializers, Phil Sutter
- [iptables PATCH 09/17] xtables: Merge nft_ipv{4,6}_parse_target(), Phil Sutter
- [iptables PATCH 06/17] xtables: Use new callbacks in nft_rule_print_save(), Phil Sutter
- Re: [iptables PATCH 00/17] xtables: Implement ebtables-{save,restore}, Florian Westphal
- [PATCH] netfilter: use PTR_ERR_OR_ZERO(),
YueHaibing
- [PATCH nf-next v8] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH nf-next v2 2/2] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack,
Harsha Sharma
- [PATCH nf-next v2 1/2] netfilter: Kconfig: Make NF_CT_NETLINK_TIMEOUT depend on NF_CONNTRACK_TIMEOUT, Harsha Sharma
- Re: linux-next: Tree for Jul 18 (netfilter), Randy Dunlap
- linux-next: build failure after merge of the ida tree,
Stephen Rothwell
- linux-next: manual merge of the ipvs-next tree with the netfilter-next tree, Stephen Rothwell
- heads up, rebasing nf-next ahead, Pablo Neira Ayuso
- [PATCH nf-next v2] netfilter: nfnetlink_osf: add netlink support for osf module,
Fernando Fernandez Mancera
- KMSAN: uninit-value in __nf_conntrack_find_get,
syzbot
- [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace,
dsahern
- [PATCH RFC/RFT net-next 15/17] net/ipv6: Convert neighbor table to per-namespace, dsahern
- [PATCH RFC/RFT net-next 16/17] net/decnet: Move neighbor table to per-namespace, dsahern
- [PATCH RFC/RFT net-next 17/17] net/neighbor: Remove neigh_tables and NEIGH enum, dsahern
- [PATCH RFC/RFT net-next 14/17] net/ipv4: Convert arp table to per namespace, dsahern
- [PATCH RFC/RFT net-next 12/17] net/neigh: Change neigh_xmit to take an address family, dsahern
- [PATCH RFC/RFT net-next 10/17] net: Add key_len to neighbor constructor, dsahern
- [PATCH RFC/RFT net-next 13/17] net/neighbor: Convert internal functions away from neigh_tables, dsahern
- [PATCH RFC/RFT net-next 11/17] net: Change neigh_table_init and neigh_table_clear signature, dsahern
- [PATCH RFC/RFT net-next 08/17] net: Remove nd_tbl from ipv6 stub, dsahern
- [PATCH RFC/RFT net-next 09/17] net: Remove arp_tbl and nd_tbl from headers, dsahern
- [PATCH RFC/RFT net-next 06/17] net/ipv6: Remove open coded use of neighbor table, dsahern
- [PATCH RFC/RFT net-next 07/17] drivers/net: remove open coding of neighbor tables, dsahern
- [PATCH RFC/RFT net-next 05/17] net/ipv6: wrappers for neighbor table references, dsahern
- [PATCH RFC/RFT net-next 03/17] net/ipv4: wrappers for arp table references, dsahern
- [PATCH RFC/RFT net-next 04/17] net/ipv4: Remove open coded use of arp table, dsahern
- [PATCH RFC/RFT net-next 02/17] net/neigh: export neigh_find_table, dsahern
- [PATCH RFC/RFT net-next 01/17] net/ipv4: rename ipv4_neigh_lookup to ipv4_dst_neigh_lookup, dsahern
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace, Cong Wang
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace, Michael Richardson
- Re: [RFC/RFT, net-next, 00/17] net: Convert neighbor tables to per-namespace, Vasily Averin
- Failed to run nft script with ingress hook for netdev family,
Rosysong
- [PATCH nf 0/4] netfilter: nf_tables: fix resource leaks,
Florian Westphal
- [PATCH nft] tests: add test case for rename-to-same-name, Florian Westphal
- [next-20180713][NET] linux-next kernel panics when booting powerpc, Abdul Haleem
- [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module, Fernando Fernandez Mancera
- [PATCH 1/3 nf-next] netfilter: add missing definitions in nf_osf.h,
Fernando Fernandez Mancera
- [PATCH v3 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack,
Harsha Sharma
- [PATCH nf-next v7] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH v2 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- [PATCH nf-next 1/3] netfilter: nf_osf: add nf_osf_match_one(),
Pablo Neira Ayuso
- [PATCH V2 nf] netfilter: nf_tables: fix jumpstack depth validation, Taehee Yoo
- [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft, Fernando Fernandez Mancera
- [PATCH WIP libnftnl] expr: add osf support, Fernando Fernandez Mancera
- [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf,
Fernando Fernandez Mancera
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf, Florian Westphal
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf, kbuild test robot
[PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker,
Eric Dumazet
[PATCH] iptables-restore: free the table lock when skipping a table,
Joel Goguen
nf_tables: Expose socket mark,
Máté Eckl
[PATCH nf-next 0/5] netfilter: nf_tables: per-netns transactions,
Florian Westphal
[iptables PATCH] xtables: Support nft suffix for arptables and ebtables,
Phil Sutter
[PATCH nft] tests: shell: add tests for listing objects,
Harsha Sharma
[PATCH V2 nf 3/3] netfilter: nf_tables: add default set size,
Taehee Yoo
[PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC,
Taehee Yoo
[PATCH V2 nf 1/3] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy(), Taehee Yoo
[PATCH V2 nf 0/3] netfilter: nf_tables: fix set destroying bugs,
Taehee Yoo
[PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6,
Arnd Bergmann
[PATCH] netfilter: xt_tee: fix calling nf_dup_ipv6, Arnd Bergmann
[PATCH xtables] extensions: don't bother to build libebt/libarp extensions if nft backend was disabled,
Florian Westphal
iptables-1.8.0: Cannot build without libnftnl,
Thomas Deutschmann
[PATCH nf] netfilter: ipv6: nf_defrag: drop skb dst before queueing,
Florian Westphal
[PATCH nf-next] netfilter: Remove useless param helper of nf_ct_helper_ext_add,
gfree . wind
[PATCH] iptables: tests: add test for iptables-save and iptables-restore,
Arushi Singhal
[PATCH nft] tests: py: add ct timeout tests, Harsha Sharma
[PATCH] rule: obj: list only the table containing object,
Harsha Sharma
[PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
[PATCH libnftnl v3 3/3] examples: Add test for assigning timeout objects via rule, Harsha Sharma
[PATCH libnftnl v3 2/3] examples: add nft-ct-timeout-{add,del,get}, Harsha Sharma
[PATCH libnftnl v3 1/3] src: add ct timeout support, Harsha Sharma
[PATCH libnftnl v3 0/3] Add ct timeout support, Harsha Sharma
[PATCH nft v2] src: add ct timeout support,
Harsha Sharma
[PATCH] iptables: tests: shell: Add README,
Arushi Singhal
KASAN: stack-out-of-bounds Read in vmalloc_fault,
syzbot
[PATCH nft] nft: set: print dynamic flag when set, Florian Westphal
[PATCH nft] doc: describe dynamic flag and caveats for packet-path updates, Florian Westphal
[PATCH nft] evaluate: skip evaluation of datatype concatenations, Pablo Neira Ayuso
[PATCH v2 nf] netfilter: nft_compat: explicitly reject ERROR and standard target,
Florian Westphal
[PATCH nf] netfilter: nf_tables: place all set backends in one single module, Pablo Neira Ayuso
[PATCH nft 1/2] src: add --literal option,
Pablo Neira Ayuso
[PATCH net-next v19 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc,
Toke Høiland-Jørgensen
[PATCH] nf_conntrack: Fix possible possible crash on module loading.,
Andrey Ryabinin
[PATCH] netfilter: conntrack: add weak IPV6 dependency,
Arnd Bergmann
[PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies,
Arnd Bergmann
[ANNOUNCE] iptables 1.8.0 release,
Florian Westphal
[bug report] net: ipv4: listified version of ip_rcv,
Dan Carpenter
[PATCHv2 net-next 0/3] Drop IPVS conn templates under attack,
Julian Anastasov
git.netfilter.org:git is closed - intentionally?,
Duncan Roe
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]