Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH nf] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state, (continued)
- [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace,
dsahern
- [PATCH RFC/RFT net-next 15/17] net/ipv6: Convert neighbor table to per-namespace, dsahern
- [PATCH RFC/RFT net-next 16/17] net/decnet: Move neighbor table to per-namespace, dsahern
- [PATCH RFC/RFT net-next 17/17] net/neighbor: Remove neigh_tables and NEIGH enum, dsahern
- [PATCH RFC/RFT net-next 14/17] net/ipv4: Convert arp table to per namespace, dsahern
- [PATCH RFC/RFT net-next 12/17] net/neigh: Change neigh_xmit to take an address family, dsahern
- [PATCH RFC/RFT net-next 10/17] net: Add key_len to neighbor constructor, dsahern
- [PATCH RFC/RFT net-next 13/17] net/neighbor: Convert internal functions away from neigh_tables, dsahern
- [PATCH RFC/RFT net-next 11/17] net: Change neigh_table_init and neigh_table_clear signature, dsahern
- [PATCH RFC/RFT net-next 08/17] net: Remove nd_tbl from ipv6 stub, dsahern
- [PATCH RFC/RFT net-next 09/17] net: Remove arp_tbl and nd_tbl from headers, dsahern
- [PATCH RFC/RFT net-next 06/17] net/ipv6: Remove open coded use of neighbor table, dsahern
- [PATCH RFC/RFT net-next 07/17] drivers/net: remove open coding of neighbor tables, dsahern
- [PATCH RFC/RFT net-next 05/17] net/ipv6: wrappers for neighbor table references, dsahern
- [PATCH RFC/RFT net-next 03/17] net/ipv4: wrappers for arp table references, dsahern
- [PATCH RFC/RFT net-next 04/17] net/ipv4: Remove open coded use of arp table, dsahern
- [PATCH RFC/RFT net-next 02/17] net/neigh: export neigh_find_table, dsahern
- [PATCH RFC/RFT net-next 01/17] net/ipv4: rename ipv4_neigh_lookup to ipv4_dst_neigh_lookup, dsahern
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace, Cong Wang
- Re: [PATCH RFC/RFT net-next 00/17] net: Convert neighbor tables to per-namespace, Michael Richardson
- Re: [RFC/RFT, net-next, 00/17] net: Convert neighbor tables to per-namespace, Vasily Averin
- Failed to run nft script with ingress hook for netdev family,
Rosysong
- [PATCH nf 0/4] netfilter: nf_tables: fix resource leaks,
Florian Westphal
- [PATCH nft] tests: add test case for rename-to-same-name, Florian Westphal
- [next-20180713][NET] linux-next kernel panics when booting powerpc, Abdul Haleem
- [PATCH v3] ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
- Re: [PATCH 3/3 nf-next] netfilter: add netlink support for osf module, Fernando Fernandez Mancera
- [PATCH 1/3 nf-next] netfilter: add missing definitions in nf_osf.h,
Fernando Fernandez Mancera
- [PATCH v3 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- [PATCH nf-next] netfilter: cttimeout: move ctnl_untimeout to nf_conntrack,
Harsha Sharma
- [PATCH nf-next v7] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH v2 nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- [PATCH nf-next 1/3] netfilter: nf_osf: add nf_osf_match_one(),
Pablo Neira Ayuso
- [PATCH V2 nf] netfilter: nf_tables: fix jumpstack depth validation, Taehee Yoo
- [PATCH nf-next 1/2] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module,
Florian Westphal
- Re: [PATCH 2/2 WIP nf-next] nft: implement the nf_tables_api changes to add osf signatures in nft, Fernando Fernandez Mancera
- [PATCH WIP libnftnl] expr: add osf support, Fernando Fernandez Mancera
- [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf,
Fernando Fernandez Mancera
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf, Florian Westphal
- Re: [PATCH 1/2 WIP nf-next] netfilter: implement Passive OS fingerprint module in nft_osf, kbuild test robot
[PATCH net] netfilter: nf_conntrack: prevent uninit-value in gc_worker,
Eric Dumazet
[PATCH] iptables-restore: free the table lock when skipping a table,
Joel Goguen
nf_tables: Expose socket mark,
Máté Eckl
[PATCH nf-next 0/5] netfilter: nf_tables: per-netns transactions,
Florian Westphal
[iptables PATCH] xtables: Support nft suffix for arptables and ebtables,
Phil Sutter
[PATCH nft] tests: shell: add tests for listing objects,
Harsha Sharma
[PATCH V2 nf 3/3] netfilter: nf_tables: add default set size,
Taehee Yoo
[PATCH V2 nf 2/3] netfilter: nft_set_rbtree: fix panic when destroying set by GC,
Taehee Yoo
[PATCH V2 nf 1/3] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy(), Taehee Yoo
[PATCH V2 nf 0/3] netfilter: nf_tables: fix set destroying bugs,
Taehee Yoo
[PATCH] netfilter: NFT_SOCKET don't use NF_SOCKET_IPV6 without NF_TABLES_IPV6,
Arnd Bergmann
[PATCH] netfilter: xt_tee: fix calling nf_dup_ipv6, Arnd Bergmann
[PATCH xtables] extensions: don't bother to build libebt/libarp extensions if nft backend was disabled,
Florian Westphal
iptables-1.8.0: Cannot build without libnftnl,
Thomas Deutschmann
[PATCH nf] netfilter: ipv6: nf_defrag: drop skb dst before queueing,
Florian Westphal
[PATCH nf-next] netfilter: Remove useless param helper of nf_ct_helper_ext_add,
gfree . wind
[PATCH] iptables: tests: add test for iptables-save and iptables-restore,
Arushi Singhal
[PATCH nft] tests: py: add ct timeout tests, Harsha Sharma
[PATCH] rule: obj: list only the table containing object,
Harsha Sharma
[PATCH v2] ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
[PATCH libnftnl v3 3/3] examples: Add test for assigning timeout objects via rule, Harsha Sharma
[PATCH libnftnl v3 2/3] examples: add nft-ct-timeout-{add,del,get}, Harsha Sharma
[PATCH libnftnl v3 1/3] src: add ct timeout support, Harsha Sharma
[PATCH libnftnl v3 0/3] Add ct timeout support, Harsha Sharma
[PATCH nft v2] src: add ct timeout support,
Harsha Sharma
[PATCH] iptables: tests: shell: Add README,
Arushi Singhal
KASAN: stack-out-of-bounds Read in vmalloc_fault,
syzbot
[PATCH nft] nft: set: print dynamic flag when set, Florian Westphal
[PATCH nft] doc: describe dynamic flag and caveats for packet-path updates, Florian Westphal
[PATCH nft] evaluate: skip evaluation of datatype concatenations, Pablo Neira Ayuso
[PATCH v2 nf] netfilter: nft_compat: explicitly reject ERROR and standard target,
Florian Westphal
[PATCH nf] netfilter: nf_tables: place all set backends in one single module, Pablo Neira Ayuso
[PATCH nft 1/2] src: add --literal option,
Pablo Neira Ayuso
[PATCH net-next v19 0/8] sched: Add Common Applications Kept Enhanced (cake) qdisc,
Toke Høiland-Jørgensen
[PATCH] nf_conntrack: Fix possible possible crash on module loading.,
Andrey Ryabinin
[PATCH] netfilter: conntrack: add weak IPV6 dependency,
Arnd Bergmann
[PATCH net-next] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies,
Arnd Bergmann
[ANNOUNCE] iptables 1.8.0 release,
Florian Westphal
[bug report] net: ipv4: listified version of ip_rcv,
Dan Carpenter
[PATCHv2 net-next 0/3] Drop IPVS conn templates under attack,
Julian Anastasov
git.netfilter.org:git is closed - intentionally?,
Duncan Roe
FINAL Reminder: Linux Plumbers Networking Track CFP, David Miller
[PATCH nf-next v6] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
[PATCH 4.14.y] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj(),
Florian Westphal
[PATCH nf-next v5] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
[PATCH] netfilter: ipset: export indexes via netlink,
Florent Fourcot
[PATCH nf] netfilter: nft_compat: explicitly reject builtin targets,
Florian Westphal
[PATCH v2 nf] netfilter: x_tables: set module owner for icmp(6) matches,
Florian Westphal
[PATCH nft] rule: limit: don't print default burst value,
Florian Westphal
[PATCH nf-next] netfilter: nf_tables: handle meta/lookup with direct call,
Florian Westphal
[PATCH nft] doc: update manpage to document --literal option, Pablo Neira Ayuso
[PATCH nft] src: display service name with -NN,
Pablo Neira Ayuso
[PATCH RFC nft] src: meta: always prefix 'meta' for all tokens,
Florian Westphal
[PATCH nft] src: services: remove more exotic protocol names, Florian Westphal
[PATCH libnftnl] include: missing C++ linkage in headers, Pablo Neira Ayuso
[PATCH nf-next 0/6] netfilter: nf_conncount: optimize nf_conncount performance,
Yi-Hung Wei
[PATCH] netfilter: ipvs: Fix invalid bytes in IP_VS_MH_TAB_INDEX help text,
Ben Hutchings
[PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks,
Martynas Pumputis
[PATCH] netfilter: nf_conntrack: resolve clash for matching conntracks,
Martynas Pumputis
Reminder: Linux Plumbers Networking Track CFP, David Miller
[PATCH xtables] ebtables-nft: add stp match, Florian Westphal
[PATCH nf 3/4] netfilter: nft_set_rbtree: fix panic when destroying set by GC,
Taehee Yoo
[PATCH nf 4/4] netfilter: nf_tables: check set->size before decreasing set->nelems,
Taehee Yoo
[PATCH nf 2/4] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy(), Taehee Yoo
[PATCH nf 1/4] netfilter: nft_set_hash: fix panic when destroying set,
Taehee Yoo
[PATCH nf 0/4] netfilter: nf_tables: fix set destroying bugs,
Taehee Yoo
[PATCH] nftables: tests: shell: Replace "%" with "#" or "$",
Arushi Singhal
[PATCH xtables] tests: add script that mimics firewalld startup, Florian Westphal
[PATCH xtables] xtables: display legacy/nf_tables flavor in error messages, too, Florian Westphal
[PATCH v2 nf-next 0/8] netfilter: conntrack: move ipv4/v6 trackers into core,
Florian Westphal
[PATCH xtables 1/4] ebtables-nft: don't crash on ebtables -X,
Florian Westphal
[PATCH nf-next 0/8] netfilter: conntrack: move ipv4/v6 trackers into core,
Florian Westphal
[PATCH nf-next v6] net: netfilter: nf_tables_api: Use id allocation,
Varsha Rao
[PATCH nf] netfilter: x_tables: set module owner for builtin matches/targets,
Florian Westphal
[PATCH] netfilter: ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
[PATCH 1/2] iptables: tests: shell: Add README,
Arushi Singhal
[PATCH nft] src: allow ifname use in concatenated named sets, Florian Westphal
[PATCH] doc: fix some spellos and the dash escape,
Jan Engelhardt
[PATCH libnftnl WIP] expr: add osf support,
Fernando Fernandez Mancera
[PATCH v2 net-next 0/2] net: preserve sock reference when scrubbing the skb.,
Flavio Leitner
[PATCH xtables 1/3] xtables: rename xt-multi binaries to -nft, -legacy,
Florian Westphal
ebtables: modernize build,
Jan Engelhardt
[PATCH xtables] xtables-restore: init table before processing policies, Florian Westphal
[PATCH] ebtables: abandon KERNEL_INCLUDES and use double quotes, Duncan Roe
[PATCH] build: abandon KERNEL_INCLUDES variable,
Jan Engelhardt
[PATCH] netfilter: nf_flow_table: add conntrack accounting,
John Crispin
stable request: don't set F_IFACE on ipv6 fib lookups and followup fix,
Florian Westphal
[PATCH nf-next v2] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr,
Florian Westphal
[PATCH net-next] net: preserve sock reference when scrubbing the skb.,
Flavio Leitner
[PATCH nf-next v2] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils,
Florian Westphal
[PATCH nf-next v2] netfilter: utils: move nf_ip_checksum* from ipv4 to utils,
Florian Westphal
[PATCH iptables] doc: Fix spelling error in hashlimit section, Major Hayden
[PATCH net] netfilter: nf_log: don't hold nf_log_mutex during user access,
Jann Horn
[PATCH] ebtables: Use double quotes in #include statements for local headers,
Duncan Roe
[libnftnl PATCH 0/3] Fixes for JSON parsing on big endian,
Phil Sutter
[PATCH nft] tests/py: fix import when run from other directory,
Eric Leblond
[nft PATCH] netlink_delinearize: Refactor meta_may_dependency_kill(), Phil Sutter
[PATCH nf v2] netfilter: nf_conncount: fix garbage collection confirm race,
Florian Westphal
[PATCH nft] src: trace: fix policy printing, Florian Westphal
[PATCH net] netfilter: nf_log: fix uninit read in nf_log_proc_dostring,
Jann Horn
Re: nft 0.8.2 - icmp missing verdict,
Florian Westphal
[arptables PATCH] arptables: legacy renaming, Arturo Borrero Gonzalez
[PATCH] xtables: warn in case old-style (set/getsockopt) tables exist, Florian Westphal
[PATCH nft v2] tests: shell: Add test case for multiple sets, Varsha Rao
[PATCH nf-next v5] net: netfilter: nf_tables_api: Use id allocation,
Varsha Rao
[PATCH v2] nftables: Fix typos/Grammatical Errors,
Arushi Singhal
[PATCH nf-next] netfilter: Move nf_tproxy_assign_sock to nf_tproxy.h,
Máté Eckl
[PATCH nf-next] netfilter: Configuration fixes for ip/nftables socket matching,
Máté Eckl
[PATCH nft 0/8] python install and build fixes,
Eric Leblond
[PATCH xtables] xtables: add nf_tables vs. legacy postfix to version strings,
Florian Westphal
[PATCH nft] configure.ac: docbook2man invalid syntax error,
Eric Leblond
[PATCH xtables v2] xtables: add xtables-monitor, Florian Westphal
[PATCH nft] evaluate: Detect address family in inet context,
Máté Eckl
[RFC nf-next 0/7] netfilter: nf_conncount: optimize nf_conncount performance,
Yi-Hung Wei
[nft PATCH 0/3] libnftables: A few fixes and cleanups,
Phil Sutter
[PATCH nf] netfilter: nf_conncount: fix garbage collection confirm race,
Florian Westphal
[nft PATCH] Makefile: Introduce Make_global.am,
Phil Sutter
[nft PATCH v2] libnftables: Simplify nft_run_cmd_from_buffer footprint,
Phil Sutter
[PATCH xtables 1/3] include: update kernel netfilter header files,
Florian Westphal
[nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint,
Phil Sutter
[nft PATCH] doc: Fix typo in Makefile.am,
Phil Sutter
[PATCH nf-next] netfilter: flowtables: use fixed renew timeout on teardown,
Florian Westphal
[PATCH] nftables: Fix typos/Grammatical Errors,
Arushi Singhal
[PATCH] extensions: ebt_string: take action if snprintf discards data,
Duncan Roe
[PATCH net-next,RFC 00/13] New fast forwarding path,
Pablo Neira Ayuso
- [PATCH net-next,RFC 01/13] net: Add a helper to get the packet offload callbacks by priority., Pablo Neira Ayuso
- [PATCH net-next,RFC 04/13] net: Use one bit of NAPI_GRO_CB for the netfilter fastpath., Pablo Neira Ayuso
- [PATCH net-next,RFC 02/13] net: Change priority of ipv4 and ipv6 packet offloads., Pablo Neira Ayuso
- [PATCH net-next,RFC 13/13] netfilter: nft_flow_offload: make sure route is not stale, Pablo Neira Ayuso
- [PATCH net-next,RFC 03/13] net: Add a GSO feature bit for the netfilter forward fastpath., Pablo Neira Ayuso
- [PATCH net-next,RFC 09/13] netfilter: nf_flow_table: add hooknum to flowtable type, Pablo Neira Ayuso
- [PATCH net-next,RFC 12/13] netfilter: nft_flow_offload: remove secpath check, Pablo Neira Ayuso
- [PATCH net-next,RFC 08/13] netfilter: nft_chain_filter: add support for early ingress, Pablo Neira Ayuso
- [PATCH net-next,RFC 11/13] netfilter: nft_flow_offload: enable offload after second packet is seen, Pablo Neira Ayuso
- [PATCH net-next,RFC 06/13] netfilter: add early ingress support for IPv6, Pablo Neira Ayuso
- [PATCH net-next,RFC 05/13] netfilter: add early ingress hook for IPv4, Pablo Neira Ayuso
- [PATCH net-next,RFC 10/13] netfilter: nf_flow_table: add flowtable for early ingress hook, Pablo Neira Ayuso
- [PATCH net-next,RFC 07/13] netfilter: add ESP support for early ingress, Pablo Neira Ayuso
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Willem de Bruijn
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Eric Dumazet
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, David Miller
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Tom Herbert
[nft PATCH] doc: Add libnftables man page,
Phil Sutter
[PATCH WIP nftables] src: add ct timeout support,
Harsha Sharma
[PATCH nf-next 0/7] netfilter: preparation work to remove l3 trackers,
Florian Westphal
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]