Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: git.netfilter.org:git is closed - intentionally?, (continued)
- FINAL Reminder: Linux Plumbers Networking Track CFP, David Miller
- [PATCH nf-next v6] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH 4.14.y] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj(),
Florian Westphal
- [PATCH nf-next v5] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH] netfilter: ipset: export indexes via netlink,
Florent Fourcot
- [PATCH nf] netfilter: nft_compat: explicitly reject builtin targets,
Florian Westphal
- [PATCH v2 nf] netfilter: x_tables: set module owner for icmp(6) matches,
Florian Westphal
- [PATCH nft] rule: limit: don't print default burst value,
Florian Westphal
- [PATCH nf-next] netfilter: nf_tables: handle meta/lookup with direct call,
Florian Westphal
- [PATCH nft] doc: update manpage to document --literal option, Pablo Neira Ayuso
- [PATCH nft] src: display service name with -NN,
Pablo Neira Ayuso
- [PATCH RFC nft] src: meta: always prefix 'meta' for all tokens,
Florian Westphal
- [PATCH nft] src: services: remove more exotic protocol names, Florian Westphal
- [PATCH libnftnl] include: missing C++ linkage in headers, Pablo Neira Ayuso
- [PATCH nf-next 0/6] netfilter: nf_conncount: optimize nf_conncount performance,
Yi-Hung Wei
- [PATCH] netfilter: ipvs: Fix invalid bytes in IP_VS_MH_TAB_INDEX help text,
Ben Hutchings
- [PATCH v2] netfilter: nf_conntrack: resolve clash for matching conntracks,
Martynas Pumputis
- [PATCH] netfilter: nf_conntrack: resolve clash for matching conntracks,
Martynas Pumputis
- Reminder: Linux Plumbers Networking Track CFP, David Miller
- [PATCH xtables] ebtables-nft: add stp match, Florian Westphal
- [PATCH nf 3/4] netfilter: nft_set_rbtree: fix panic when destroying set by GC,
Taehee Yoo
- [PATCH nf 4/4] netfilter: nf_tables: check set->size before decreasing set->nelems,
Taehee Yoo
- [PATCH nf 2/4] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy(), Taehee Yoo
- [PATCH nf 1/4] netfilter: nft_set_hash: fix panic when destroying set,
Taehee Yoo
- [PATCH nf 0/4] netfilter: nf_tables: fix set destroying bugs,
Taehee Yoo
- [PATCH] nftables: tests: shell: Replace "%" with "#" or "$",
Arushi Singhal
- [PATCH xtables] tests: add script that mimics firewalld startup, Florian Westphal
- [PATCH xtables] xtables: display legacy/nf_tables flavor in error messages, too, Florian Westphal
- [PATCH v2 nf-next 0/8] netfilter: conntrack: move ipv4/v6 trackers into core,
Florian Westphal
- [PATCH xtables 1/4] ebtables-nft: don't crash on ebtables -X,
Florian Westphal
- [PATCH nf-next 0/8] netfilter: conntrack: move ipv4/v6 trackers into core,
Florian Westphal
- [PATCH nf-next v6] net: netfilter: nf_tables_api: Use id allocation,
Varsha Rao
- [PATCH nf] netfilter: x_tables: set module owner for builtin matches/targets,
Florian Westphal
- [PATCH] netfilter: ipset: list:set: Decrease refcount synchronously on deletion and replace,
Stefano Brivio
- [PATCH 1/2] iptables: tests: shell: Add README,
Arushi Singhal
- [PATCH nft] src: allow ifname use in concatenated named sets, Florian Westphal
- [PATCH] doc: fix some spellos and the dash escape,
Jan Engelhardt
- [PATCH libnftnl WIP] expr: add osf support,
Fernando Fernandez Mancera
- [PATCH v2 net-next 0/2] net: preserve sock reference when scrubbing the skb.,
Flavio Leitner
- [PATCH xtables 1/3] xtables: rename xt-multi binaries to -nft, -legacy,
Florian Westphal
- ebtables: modernize build,
Jan Engelhardt
- [PATCH xtables] xtables-restore: init table before processing policies, Florian Westphal
- [PATCH] ebtables: abandon KERNEL_INCLUDES and use double quotes, Duncan Roe
- [PATCH] build: abandon KERNEL_INCLUDES variable,
Jan Engelhardt
- [PATCH] netfilter: nf_flow_table: add conntrack accounting,
John Crispin
- stable request: don't set F_IFACE on ipv6 fib lookups and followup fix,
Florian Westphal
- [PATCH nf-next v2] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr,
Florian Westphal
- [PATCH net-next] net: preserve sock reference when scrubbing the skb.,
Flavio Leitner
- [PATCH nf-next v2] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils,
Florian Westphal
- [PATCH nf-next v2] netfilter: utils: move nf_ip_checksum* from ipv4 to utils,
Florian Westphal
- [PATCH iptables] doc: Fix spelling error in hashlimit section, Major Hayden
- [PATCH net] netfilter: nf_log: don't hold nf_log_mutex during user access,
Jann Horn
- [PATCH] ebtables: Use double quotes in #include statements for local headers,
Duncan Roe
- [libnftnl PATCH 0/3] Fixes for JSON parsing on big endian,
Phil Sutter
- [PATCH nft] tests/py: fix import when run from other directory,
Eric Leblond
- [nft PATCH] netlink_delinearize: Refactor meta_may_dependency_kill(), Phil Sutter
- [PATCH nf v2] netfilter: nf_conncount: fix garbage collection confirm race,
Florian Westphal
- [PATCH nft] src: trace: fix policy printing, Florian Westphal
- [PATCH net] netfilter: nf_log: fix uninit read in nf_log_proc_dostring,
Jann Horn
- Re: nft 0.8.2 - icmp missing verdict,
Florian Westphal
- [arptables PATCH] arptables: legacy renaming, Arturo Borrero Gonzalez
- [PATCH] xtables: warn in case old-style (set/getsockopt) tables exist, Florian Westphal
- [PATCH nft v2] tests: shell: Add test case for multiple sets, Varsha Rao
- [PATCH nf-next v5] net: netfilter: nf_tables_api: Use id allocation,
Varsha Rao
- [PATCH v2] nftables: Fix typos/Grammatical Errors,
Arushi Singhal
- [PATCH nf-next] netfilter: Move nf_tproxy_assign_sock to nf_tproxy.h,
Máté Eckl
- [PATCH nf-next] netfilter: Configuration fixes for ip/nftables socket matching,
Máté Eckl
- [PATCH nft 0/8] python install and build fixes,
Eric Leblond
- [PATCH xtables] xtables: add nf_tables vs. legacy postfix to version strings,
Florian Westphal
- [PATCH nft] configure.ac: docbook2man invalid syntax error,
Eric Leblond
- [PATCH xtables v2] xtables: add xtables-monitor, Florian Westphal
- [PATCH nft] evaluate: Detect address family in inet context,
Máté Eckl
- [RFC nf-next 0/7] netfilter: nf_conncount: optimize nf_conncount performance,
Yi-Hung Wei
- [nft PATCH 0/3] libnftables: A few fixes and cleanups,
Phil Sutter
- [PATCH nf] netfilter: nf_conncount: fix garbage collection confirm race,
Florian Westphal
- [nft PATCH] Makefile: Introduce Make_global.am,
Phil Sutter
- [nft PATCH v2] libnftables: Simplify nft_run_cmd_from_buffer footprint,
Phil Sutter
- [PATCH xtables 1/3] include: update kernel netfilter header files,
Florian Westphal
- [nft PATCH] libnftables: Simplify nft_run_cmd_from_buffer footprint,
Phil Sutter
- [nft PATCH] doc: Fix typo in Makefile.am,
Phil Sutter
- [PATCH nf-next] netfilter: flowtables: use fixed renew timeout on teardown,
Florian Westphal
- [PATCH] nftables: Fix typos/Grammatical Errors,
Arushi Singhal
- [PATCH] extensions: ebt_string: take action if snprintf discards data,
Duncan Roe
- [PATCH net-next,RFC 00/13] New fast forwarding path,
Pablo Neira Ayuso
- [PATCH net-next,RFC 01/13] net: Add a helper to get the packet offload callbacks by priority., Pablo Neira Ayuso
- [PATCH net-next,RFC 04/13] net: Use one bit of NAPI_GRO_CB for the netfilter fastpath., Pablo Neira Ayuso
- [PATCH net-next,RFC 02/13] net: Change priority of ipv4 and ipv6 packet offloads., Pablo Neira Ayuso
- [PATCH net-next,RFC 13/13] netfilter: nft_flow_offload: make sure route is not stale, Pablo Neira Ayuso
- [PATCH net-next,RFC 03/13] net: Add a GSO feature bit for the netfilter forward fastpath., Pablo Neira Ayuso
- [PATCH net-next,RFC 09/13] netfilter: nf_flow_table: add hooknum to flowtable type, Pablo Neira Ayuso
- [PATCH net-next,RFC 12/13] netfilter: nft_flow_offload: remove secpath check, Pablo Neira Ayuso
- [PATCH net-next,RFC 08/13] netfilter: nft_chain_filter: add support for early ingress, Pablo Neira Ayuso
- [PATCH net-next,RFC 11/13] netfilter: nft_flow_offload: enable offload after second packet is seen, Pablo Neira Ayuso
- [PATCH net-next,RFC 06/13] netfilter: add early ingress support for IPv6, Pablo Neira Ayuso
- [PATCH net-next,RFC 05/13] netfilter: add early ingress hook for IPv4, Pablo Neira Ayuso
- [PATCH net-next,RFC 10/13] netfilter: nf_flow_table: add flowtable for early ingress hook, Pablo Neira Ayuso
- [PATCH net-next,RFC 07/13] netfilter: add ESP support for early ingress, Pablo Neira Ayuso
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Willem de Bruijn
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Eric Dumazet
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, David Miller
- Re: [PATCH net-next,RFC 00/13] New fast forwarding path, Tom Herbert
- [nft PATCH] doc: Add libnftables man page,
Phil Sutter
- [PATCH WIP nftables] src: add ct timeout support,
Harsha Sharma
- [PATCH nf-next 0/7] netfilter: preparation work to remove l3 trackers,
Florian Westphal
- [nft PATCH] libnftables: Fix exit_cookie(),
Phil Sutter
- [PATCH net] netfilter: ipv6: nf_defrag: reduce struct net memory waste,
Eric Dumazet
- [PATCH nf-next v4] net: netfilter: nf_tables_api: Use id allocation.,
Varsha Rao
- [PATCH net] netfilter: nf_queue: augment nfqa_cfg_policy,
Eric Dumazet
- [PATCH nf] netfilter: helper: Fix possible panic after nf_conntrack_helper_unregister,
gfree . wind
- [PATCH nf] netfilter: Fix nf_conncount garbage collection,
Yi-Hung Wei
- [PATCH nf] netfilter: xt_connmark: fix list corruption on rmmod,
Florian Westphal
- [PATCH] src: Fix another build warning / error,
Duncan Roe
- [PATCH libnftnl v2 3/3] examples: Add test for assigning timeout objects via rule, Harsha Sharma
- [PATCH libnftnl v2 2/3] examples: add nft-ct-timeout-{add,del,get}, Harsha Sharma
- [PATCH libnftnl v2 1/3] src: add ct timeout support, Harsha Sharma
- [PATCH libnftnl v2 0/3] Add ct timeout support, Harsha Sharma
- [PATCH nf-next v4] netfilter: nft_ct: add ct timeout support,
Harsha Sharma
- [PATCH nf] netfilter: ctnetlink: avoid null pointer dereference,
Florian Westphal
- [PATCH nf-next] netfilter: nft_reject_bridge: remove unnecessary ttl set,
Taehee Yoo
- [PATCH nft] rule: do not print default burst for objects,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL, Pablo Neira Ayuso
- [PATCH nft] src: add dynamic flag and use it, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain(),
Taehee Yoo
- [PATCH nf-next] netfilter: nf_tables: fix jumpstack depth validation,
Taehee Yoo
- [PATCH nf 1/2] netfilter: nf_tables: fix module unload race,
Florian Westphal
- BUG: unable to handle kernel paging request in ebt_do_table,
syzbot
- [PATCH v2] iptables: tests: shell: add shell test-suite,
Arushi Singhal
- [ANNOUNCE] nftables 0.9.0 release, Florian Westphal
- [ANNOUNCE] libnftnl 1.1.1 release, Florian Westphal
- [nft PATCH 0/7] JSON: Some fixes and documentation,
Phil Sutter
- Tproxy matching syntax,
Máté Eckl
- [PATCH] iptables: tests: shell: add shell test-suite,
Arushi Singhal
- [PATCH] netfilter: remove include/net/netfilter/nft_dup.h,
Corentin Labbe
- KMSAN: uninit-value in ebt_stp_mt_check (2),
syzbot
- [PATCH nf] netfilter: nft_socket: fix module autoload,
Pablo Neira Ayuso
- [PATCH nft] src: do not reset generation ID on ruleset flush, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_conntrack: Increase __IPS_MAX_BIT with new bit IPS_OFFLOAD_BIT,
gfree . wind
- [PATCH nft] expr: extend fwd statement to support address and family, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_set_rbtree: fix parameter of __nft_rbtree_lookup(),
Taehee Yoo
- [PATCH libnftnl] expr: extend fwd to support address and protocol, Pablo Neira Ayuso
- [PATCH nft] src: connlimit support, Pablo Neira Ayuso
- [PATCH libnfnl] expr: add connlimit support, Pablo Neira Ayuso
- [PATCH] build: update ebtables.h from kernel and drop local unused copy,
Jan Engelhardt
- [nft PATCH] Explicitly deny concatenated types in interval sets,
Phil Sutter
- [PATCH nft] nat: Eliminate misuse of AF_*,
Máté Eckl
- [nft PATCH] nft.8: Fix reject statement documentation,
Phil Sutter
- WARNING in ebt_do_table,
syzbot
- [RFC PATCH ghak86 V1] audit: eliminate audit_enabled magic number comparison,
Richard Guy Briggs
- [PATCH] iptables src: Use double quotes in #includes for local headers,
Duncan Roe
- [PATCH] libnftnl src: Use double quotes in #includes for non-system headers, Duncan Roe
- [PATCH v2 0/4] Added support for per-file variable scopes and global variables,
David Fabian
- [PATCH nftables] configure.ac: fix a typo in docbook2x error message.,
Fernando Fernandez Mancera
- [PATCH] nftables src: Use double quotes in #includes for non-system headers, Duncan Roe
- [PATCH v2] libmnl src: Use double quotes in #includes for non-system headers,
Duncan Roe
- [PATCH v1] libmnl src: Use double quotes in #includes for non-system headers, Duncan Roe
- issues with shaping cake to 60 gbits or in unlimited mode at 100gbps, Dave Taht
- [PATCH] netfilter: ipset: forbid family for hash:mac sets,
Florent Fourcot
- [RFC PATCH nft] parser: Set base chain prios with textual names,
Máté Eckl
- [PATCH nft] include: update linux/netfilter_ipv4.h,
Máté Eckl
- Re: [PATCH net-next] netfilter: fix null-ptr-deref in nf_nat_decode_session,
Prashant Bhole
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]