Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH 00/12] Ethernet: Add and use ether_<type>_addr globals, (continued)
- [Patches] iptables and ip6tables: Warning on use of -L, Noel Kuntze
- [Patch nf] nf_conntrack_extend: silent a memory leak warning,
Cong Wang
- [PATCH nf-next v2] netfilter: nf_osf implementation: nf_osf_ttl() and nf_osf_match(),
Fernando Fernandez Mancera
- [PATCH 40/47] netfilter: nf_tables: build-in filter chain type,
Pablo Neira Ayuso
- [PATCH 30/47] netfilter: Replace printk() with pr_*() and define pr_fmt(),
Pablo Neira Ayuso
- [PATCH 20/47] netfilter: x_tables: fix build with CONFIG_COMPAT=n,
Pablo Neira Ayuso
- [PATCH 27/47] netfilter: nf_tables: remove VLA usage, Pablo Neira Ayuso
- [PATCH 29/47] netfilter: xt_conntrack: Support bit-shifting for CONNMARK & MARK targets., Pablo Neira Ayuso
- [PATCH 24/47] netfilter: nft_ct: add NFT_CT_{SRC,DST}_{IP,IP6}, Pablo Neira Ayuso
- [PATCH 26/47] netfilter: nfnetlink_cthelper: Remove VLA usage, Pablo Neira Ayuso
- [PATCH 28/47] netfilter: ebtables: use ADD_COUNTER macro, Pablo Neira Ayuso
- [PATCH 25/47] netfilter: cttimeout: remove VLA usage, Pablo Neira Ayuso
- [PATCH 21/47] ipvs: use true and false for boolean values, Pablo Neira Ayuso
- [PATCH 23/47] netfilter: conncount: Support count only use case, Pablo Neira Ayuso
- [PATCH 22/47] netfilter: Refactor nf_conncount, Pablo Neira Ayuso
- [PATCH 10/47] netfilter: x_tables: enforce unique and ascending entry points,
Pablo Neira Ayuso
- [PATCH 00/47] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 07/47] netfilter: x_tables: check standard verdicts in core, Pablo Neira Ayuso
- [PATCH 08/47] netfilter: x_tables: check error target size too, Pablo Neira Ayuso
- [PATCH 06/47] netfilter: unlock xt_table earlier in __do_replace, Pablo Neira Ayuso
- [PATCH 05/47] netfilter: ipt_ah: return boolean instead of integer, Pablo Neira Ayuso
- [PATCH 09/47] netfilter: x_tables: move hook entry checks into core, Pablo Neira Ayuso
- [PATCH 03/47] netfilter: xt_cluster: get rid of xt_cluster_ipv6_is_multicast, Pablo Neira Ayuso
- [PATCH 04/47] netfilter: nf_conntrack_broadcast: remove useless parameter, Pablo Neira Ayuso
- [PATCH 01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static, Pablo Neira Ayuso
- [PATCH 02/47] netfilter: nfnetlink_acct: remove useless parameter, Pablo Neira Ayuso
- Re: [PATCH 00/47] Netfilter/IPVS updates for net-next, David Miller
- Re: [PATCH 00/47] Netfilter/IPVS updates for net-next, Rafał Miłecki
- [PATCH net-next 0/5] Introduce net_rwsem to protect net_namespace_list,
Kirill Tkhai
- [PATCH] netfilter: x_tables: Add note about how to free percpu counters,
Ben Hutchings
- [PATCH net-next 0/3] Close race between {un, }register_netdevice_notifier and pernet_operations,
Kirill Tkhai
- INFO: task hung in stop_sync_thread (2),
syzbot
- [PATCH] net: netfilter: Merge assignment with return,
Arushi Singhal
- [PATCH nf-next] netfilter: add flowtable documentation, Pablo Neira Ayuso
- [PATCH nf-next 1/4] netfilter: nf_tables: rename to nft_set_lookup_global(),
Pablo Neira Ayuso
- [PATCH nft] proto: permit icmp-in-ipv6 and icmpv6-in-ipv4,
Florian Westphal
- [PATCH nft] payload: don't remove icmp family dependency in special cases,
Florian Westphal
- [PATCH nf] netfilter: ipt_CLUSTERIP: Allow configuring --local-node 0 again,
Pablo Neira Ayuso
- [PATCH nf-next] nf_osf implementation: nf_osf_ttl() and nf_osf_match(),
Fernando Fernandez Mancera
- [PATCH nf-next 1/4] netfilter: nf_tables: rename struct nf_chain_type,
Pablo Neira Ayuso
- [PATCH nft] src: avoid errouneous assert with map+concat, Florian Westphal
- [PATCH] doc: nft.8 more spelling fixes,
Duncan Roe
- [PATCH 0/4] net: drivers/net: Use octal permissions,
Joe Perches
- [nf-next PATCH 0/2] net: nftables: Simplify set backend selection,
Phil Sutter
- [PATCH 1/2] netfilter: nf_flow_table: add missing condition for TCP state check,
Felix Fietkau
- [PATCH nf] netfilter: nf_socket: Fix out of bounds access in nf_sk_lookup_slow_v{4,6},
Subash Abhinov Kasiviswanathan
- [PATCH 1/2 nf] netfilter: nf_tables: cache device name in flowtable object,
Pablo Neira Ayuso
- [PATCH nf] netfilter: drop template ct when conntrack is skipped.,
Paolo Abeni
- [nft PATCH] Export libnftables (again),
Phil Sutter
- [nft PATCH] tests/shell: Test flush and nat chain recreate in one go,
Phil Sutter
- [nf-next PATCH] net: nftables: Respect hash set backend features,
Phil Sutter
- [PATCH] bridge: netfilter: ebt_stp: Use generic functions for comparisons,
Joe Perches
- [PATCH v2] iptables: constify option struct,
Arushi Singhal
- [PATCH] iptables: extension: Constify option struct, Arushi Singhal
- [ebtables PATCH v2] Add string filter to ebtables,
Bernie Harris
- [PATCH v2 1/3] net: Allow to and from offsets to be equal in skb_find_text,
Bernie Harris
- [PATCH] netfilter: ipset: Use is_zero_ether_addr instead of static and memcmp,
Joe Perches
- [PATCH libnftnl v2] examples: add nft-ct-helper-{add,get,del},
Yang Zheng
- [PATCH nf] netfilter: nf_tables: add missing netlink attrs to policies,
Florian Westphal
- [PATCH 1/2 conntrackd] src: add ARRAY_SIZE definition,
Pablo Neira Ayuso
- [PATCH nf-next,RFC] netfilter: nf_conntrack_tcp: reset entry only from CLOSE and TIME_WAIT states,
Pablo Neira Ayuso
- [PATCH 1/2 nf-next,v2] netfilter: ctnetlink: synproxy support,
Pablo Neira Ayuso
- [PATCH libnftnl] examples: add nft-ct-helper-{add,get,del},
Yang Zheng
- [nft PATCH 0/6] A set of patches resulting from running tests/shell,
Phil Sutter
- [PATCH net-next 0/2] Converting pernet_operations (part #10),
Kirill Tkhai
- [PATCH] doc: nft.8 aim for consistent synopses throughout (again),
Duncan Roe
- [WIKI] Certificate has expired, Duncan Roe
- [PATCH nft] rule: reset cache iff there is an existing cache, Pablo Neira Ayuso
- [PATCH] libxt_CONNMARK: Support bit-shifting for --restore,set and save-mark,
Jack Ma
- [PATCH] xt_conntrack: Support bit-shifting for CONNMARK & MARK targets.,
Jack Ma
- [PATCH libmnl] attr: zero attribute padding,
Florian Westphal
- [PATCH nf] netfilter: nf_tables: permit second nat hook if colliding hook is going away,
Florian Westphal
- [PATCH nft] doc: describe table dormant flag,
Florian Westphal
- [nft PATCH] Combine redir and masq statements into nat,
Phil Sutter
- [PATCH nft 1/2] src: fix routing header support,
Florian Westphal
- [iptables PATCH] iptables: add xtables-translate.8 manpage, Arturo Borrero Gonzalez
- [PATCH nft] tests: update to new syntax to add/update set from packet path, Pablo Neira Ayuso
- [PATCH nft,v2] src: revisit syntax to update sets and maps from packet path, Pablo Neira Ayuso
- [PATCH nft] src: revisit syntax to update sets and maps from packet path, Pablo Neira Ayuso
- [PATCH nft] src: update dynamic set updates from packet path syntax, Pablo Neira Ayuso
- [nft PATCH 0/2] relational: Eliminate meta OPs,
Phil Sutter
- [nft PATCH] tests/shell: Use custom nft binary for ruleset listing,
Phil Sutter
- [PATCH v2 nft] support of dynamic map addition and update of elements,
Laura Garcia Liebana
- [PATCH net-next 0/6] Converting pernet_operations (part #8),
Kirill Tkhai
- [PATCH nft] support of dynamic map addition and update of elements,
Laura Garcia Liebana
- [PATCH nft] create u32_integer type to be used as a key for sets and maps,
Laura Garcia Liebana
- [PATCH] netfilter: ebtables: use ADD_COUNTER macro,
Taehee Yoo
- [PATCH conntrack-tools] src: synproxy support, Pablo Neira Ayuso
- [PATCH libnetfilter_conntrack] conntrack: add synproxy support, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: ctnetlink: synproxy support, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: meter: pick a set backend that supports updates,
Florian Westphal
- explicit OP_EQ with non-singleton RHS,
Phil Sutter
- nftables patch proposal: debug_mask propagate through cache_update() just as it is., nozzy123nozzy
- [PATCH v2] netfilter: nf_tables: remove VLA usage,
Gustavo A. R. Silva
- [PATCH] netfilter: nf_tables: remove VLA usage, Gustavo A. R. Silva
- [PATCH] netfilter: nfnetlink_cthelper: Remove VLA usage,
Gustavo A. R. Silva
- [PATCH] netfilter: cttimeout: remove VLA usage,
Gustavo A. R. Silva
- [PATCH] net: drivers/net: Remove unnecessary skb_copy_expand OOM messages,
Joe Perches
- [PATCH] Net: netfilter: Replace printk() with pr_*() and define pr_fmt(),
Arushi Singhal
- [PATCH nft] netlink: use nftnl_flowtable_get/set,
Florian Westphal
- [PATCH nft] src: install table skeleton files to sysconfdir/nftables,
Florian Westphal
- [PATCH nf] netfilter: nf_tables: release flowtable hooks, Pablo Neira Ayuso
- [PATCH v2] net: netfilter: Replace printk() with appropriate pr_*() macro,
Arushi Singhal
[PATCH 1/1] doc: add set information and example for run-time blackhole, Florian Westphal
[PATCH] src: fix parsing for set handle attributes,
Harsha Sharma
Re: [PATCH Netfilter] net: netfilter: Replace printk() with more standardize output format.,
Pablo Neira Ayuso
Problem in setting up netfilter repository,
SIMRAN SINGHAL
connlimit modul doesn't works as expected,
Toralf Förster
[PATCH nf] netfilter: x_tables: add and use xt_check_proc_name,
Florian Westphal
WARNING in __proc_create,
syzbot
[PATCH] tests: shell: fix tests for deletion via handle attribute,
Harsha Sharma
[PATCH nf v5] netfilter: bridge: ebt_among: add more missing match size checks,
Florian Westphal
[PATCH nft] ct: support for NFT_CT_{SRC,DST}_{IP,IP6},
Pablo Neira Ayuso
[PATCH libnftnl] src: support for NFT_CT_{SRC,DST}_{IP,IP6}, Pablo Neira Ayuso
[PATCH nf-next] netfilter: nft_ct: add NFT_CT_{SRC,DST}_{IP,IP6},
Pablo Neira Ayuso
[PATCH nf v4] netfilter: bridge: ebt_among: add more missing match size checks,
Florian Westphal
[PATCH nf v3] netfilter: bridge: ebt_among: add more missing match size checks,
Florian Westphal
[PATCH nf v2] netfilter: bridge: ebt_among: add more missing match size checks, Florian Westphal
[PATCH] rule: print handle attribute in more clearer manner,
Harsha Sharma
[PATCH nf] netfilter: ebtables: fix erroneous reject of last rule,
Florian Westphal
[PATCH nf-next 0/2] netfilter: set transport header properly,
Serhey Popovych
[PATCH nf] netfilter: bridge: ebt_among: add more missing match size checks,
Florian Westphal
[PATCH nft] tests: shell: autogenerate dump verification,
Laura Garcia Liebana
BUG: unable to handle kernel paging request in ebt_among_mt_check (2), syzbot
[PATCH] src: don't not dump set content from netlink_get_setelems(), Pablo Neira Ayuso
[PATCH nft] src: remove unused batch support checks, Pablo Neira Ayuso
[PATCH nft] src: move monitor code to src/monitor.c,
Pablo Neira Ayuso
[PATCH nft] src: support for get element command, Pablo Neira Ayuso
[PATCH iptables 0/4] iptables: Fix [unsupported revision] for matches/targets after update,
Serhey Popovych
[RFC] netfilter: cttimeout: remove VLA in ctnl_timeout_parse_policy,
Gustavo A. R. Silva
WARNING in compat_copy_entries (2),
syzbot
Port triggering,
Stéphane Veyret
[PATCH nf-next] netfilter: x_tables: fix build with CONFIG_COMPAT=n,
Florian Westphal
[nf-next:master 7/24] net/netfilter/x_tables.c:797:3: error: implicit declaration of function 'verdict_ok', kbuild test robot
[PATCH] configure: Verify libnftnl install is recent enough,
Duncan Roe
[nf-next:master 8/24] net/netfilter/x_tables.c:819:8: error: implicit declaration of function 'error_tg_ok', kbuild test robot
[nf-next:master 7/24] net/netfilter/x_tables.c:797:8: error: implicit declaration of function 'verdict_ok'; did you mean 'vprintk'?, kbuild test robot
[RFC nft] tests: shell: autogenerate dump verification,
Laura Garcia Liebana
[PATCH] ipvs: use true and false for boolean values,
Gustavo A. R. Silva
[PATCH nft] rule: broken handle listing of table and named objects, Pablo Neira Ayuso
[PATCH nft] rule: print object handle with --echo --handle, Pablo Neira Ayuso
[PATCH nft 1/2] netlink: print chain handle with --echo --handle,
Pablo Neira Ayuso
[PATCH nft] tests: shell: set timeout and size combination coverage,
Pablo Neira Ayuso
[PATCH nf] netfilter: nft_set_hash: skip fixed hash if timeout is specified, Pablo Neira Ayuso
[PATCH net] netfilter: check for out-of-bounds while copying compat entries,
Paolo Abeni
BUG: unable to handle kernel paging request in compat_copy_entries,
syzbot
[PATCH nf-next v2 1/2] netfilter: Refactor nf_conncount,
Yi-Hung Wei
[PATCH nf-next 0/2] ebtables: add support for ICMP and IGMP type/code matching,
Matthias Schiffer
[PATCH nft,v2] src: add variable expression and use it to allow redefinitions, Pablo Neira Ayuso
[PATCH nft 1/2] src: add variable expression and use it to allow redefinitions,
Pablo Neira Ayuso
Contribute to Net-filter Development && G-Soc 2018,
Himanshu Sagar
[ANNOUNCE] nftables 0.8.3 release, Florian Westphal
[ANNOUNCE] ipset 6.36 released, Jozsef Kadlecsik
[PATCH nft] src: datatype: prefer sscanf, avoid strncpy, Florian Westphal
[PATCH nft] netlink: remove non-batching routines, Pablo Neira Ayuso
[PATCH nft] configure: misc updates,
Pablo Neira Ayuso
[PATCH v2 nft] libnftables: Print error and exit for empty string,
Harsha Sharma
[PATCH 00/14] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH 07/14] netfilter: nf_flow_table: fix checksum when handling DNAT, Pablo Neira Ayuso
- [PATCH 09/14] netfilter: don't set F_IFACE on ipv6 fib lookups, Pablo Neira Ayuso
- [PATCH 12/14] netfilter: nf_tables: missing attribute validation in nf_tables_delflowtable(), Pablo Neira Ayuso
- [PATCH 11/14] netfilter: nf_tables: return EBUSY if device already belongs to flowtable, Pablo Neira Ayuso
- [PATCH 14/14] ipvs: remove IPS_NAT_MASK check to fix passive FTP, Pablo Neira Ayuso
- [PATCH 10/14] netfilter: use skb_to_full_sk in ip6_route_me_harder, Pablo Neira Ayuso
- [PATCH 05/14] netfilter: ebtables: convert BUG_ONs to WARN_ONs, Pablo Neira Ayuso
- [PATCH 13/14] netfilter: nf_tables: use the right index from flowtable error path, Pablo Neira Ayuso
- [PATCH 08/14] netfilter: increase IPSTATS_MIB_CSUMERRORS stat, Pablo Neira Ayuso
- [PATCH 04/14] netfilter: bridge: ebt_among: add missing match size checks, Pablo Neira Ayuso
- [PATCH 06/14] netfilter: ebtables: CONFIG_COMPAT: don't trust userland offsets, Pablo Neira Ayuso
- [PATCH 03/14] netfilter: ipv6: fix use-after-free Write in nf_nat_ipv6_manip_pkt, Pablo Neira Ayuso
- [PATCH 01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount, Pablo Neira Ayuso
- [PATCH 02/14] netfilter: ipt_CLUSTERIP: put config instead of freeing it, Pablo Neira Ayuso
- Re: [PATCH 00/14] Netfilter/IPVS fixes for net, David Miller
[PATCH nft] fix integer type size to be used as a key for sets and maps,
Laura Garcia Liebana
[PATCH trivial resend]] netfilter: xt_limit: Spelling s/maxmum/maximum/,
Geert Uytterhoeven
[PATCH nft] parser: support of maps with timeout,
Laura Garcia Liebana
[Patch nf-next] netfilter: make xt_rateest hash table per net,
Cong Wang
[nft PATCH 0/6] A number of covscan-induced fixes,
Phil Sutter
[PATCH iptables 0/3] iptables: Unify val[/mask] parsing and printing routines,
Serhey Popovych
[PATCH nf-next 1/2] netfilter: nf_conncount: Refactor nf_conncount,
Yi-Hung Wei
[PATCH nft] tests: shell: regression test for bugzilla 1228, Pablo Neira Ayuso
[nft PATCH] Review switch statements for unmarked fall through cases,
Phil Sutter
[nft PATCH] netlink_delinearize: Fix resource leaks, Phil Sutter
[nft PATCH 0/2] Review monitor code for output_fp conformity,
Phil Sutter
[PATCH nft] doc: add example for rule add/delete, Florian Westphal
[nft] nftables: Adding support for segment routing header 'srh',
Ahmed Abdelsalam
[PATCH nft] doc: remove ipv6 address FIXME, Florian Westphal
WARNING in xt_cluster_mt, syzbot
[PATCH nf-next 00/11] netfilter: x_tables: add more checks on rule blob format,
Florian Westphal
- [PATCH nf-next 01/11] netfilter: x_tables: check standard verdicts in core, Florian Westphal
- [PATCH nf-next 02/11] netfilter: x_tables: check error target size too, Florian Westphal
- [PATCH nf-next 03/11] netfilter: x_tables: move hook entry checks into core, Florian Westphal
- [PATCH nf-next 04/11] netfilter: x_tables: enforce unique and ascending entry points, Florian Westphal
- [PATCH nf-next 05/11] netfilter: x_tables: cap allocations at 512 mbyte, Florian Westphal
- [PATCH nf-next 06/11] netfilter: x_tables: limit allocation requests for blob rule heads, Florian Westphal
- [PATCH nf-next 07/11] netfilter: x_tables: add counters allocation wrapper, Florian Westphal
- [PATCH nf-next 08/11] netfilter: compat: prepare xt_compat_init_offsets to return errors, Florian Westphal
- [PATCH nf-next 09/11] netfilter: compat: reject huge allocation requests, Florian Westphal
- [PATCH nf-next 10/11] netfilter: x_tables: make sure compat af mutex is held, Florian Westphal
- [PATCH nf-next 11/11] netfilter: x_tables: ensure last rule in base chain matches underflow/policy, Florian Westphal
- Re: [PATCH nf-next 00/11] netfilter: x_tables: add more checks on rule blob format, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: use the right index from flowtable error path, Pablo Neira Ayuso
[PATCH 1/2 nf,v2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable, Pablo Neira Ayuso
[nft] nftables: Fixing Bug 1219 - handle rt0 and rt2 properly,
Ahmed Abdelsalam
[nf-next] netfilter: nf_tables: Fixing Bug 1219 - handle rt0 and rt2 properly,
Ahmed Abdelsalam
[PATCH] extensions: libxt_bpf: Fix build with old kernel versions,
Hauke Mehrtens
[PATCH nft] doc: mention meta l4proto and ipv6 nexthdr issue wrt. extension headers, Florian Westphal
PROBLEM: "netfilter: on sockopt() acquire sock lock only in the required scope" breaks at least sshuttle,
Luke Bratch
[PATCH 1/2] net: Allow to and from offsets to be equal in skb_find_text,
Bernie Harris
[ebtables PATCH] Add string filter to ebtables, Bernie Harris
[PATCH nft 0/5] payload: make raw protocl expressions work,
Florian Westphal
[PATCH nf 1/2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable,
Pablo Neira Ayuso
[PATCH v3 0/17] netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path,
Felix Fietkau
- [PATCH v3 01/17] netfilter: nf_flow_table: use IP_CT_DIR_* values for FLOW_OFFLOAD_DIR_*, Felix Fietkau
- [PATCH v3 02/17] netfilter: nf_flow_table: clean up flow_offload_alloc, Felix Fietkau
- [PATCH v3 08/17] netfilter: nf_flow_table: move ipv6 offload hook code to nf_flow_table, Felix Fietkau
- [PATCH v3 04/17] netfilter: nf_flow_table: cache mtu in struct flow_offload_tuple, Felix Fietkau
- [PATCH v3 05/17] netfilter: nf_flow_table: rename nf_flow_table.c to nf_flow_table_core.c, Felix Fietkau
- [PATCH v3 17/17] netfilter: nf_flow_table: tear down TCP flows if RST or FIN was seen, Felix Fietkau
- [PATCH v3 12/17] netfilter: nf_flow_table: track flow tables in nf_flow_table directly, Felix Fietkau
- [PATCH v3 10/17] netfilter: nf_flow_table: move init code to nf_flow_table_core.c, Felix Fietkau
- [PATCH v3 15/17] netfilter: nf_flow_table: in flow_offload_lookup, skip entries being deleted, Felix Fietkau
- [PATCH v3 11/17] netfilter: nf_flow_table: fix priv pointer for netdev hook, Felix Fietkau
- [PATCH v3 16/17] netfilter: nf_flow_table: add support for sending flows back to the slow path, Felix Fietkau
- [PATCH v3 13/17] netfilter: nf_flow_table: make flow_offload_dead inline, Felix Fietkau
- [PATCH v3 06/17] netfilter: nf_flow_table: move ipv4 offload hook code to nf_flow_table, Felix Fietkau
- [PATCH v3 07/17] netfilter: nf_flow_table: move ip header check out of nf_flow_exceeds_mtu, Felix Fietkau
- [PATCH v3 09/17] netfilter: nf_flow_table: relax mixed ipv4/ipv6 flowtable dependencies, Felix Fietkau
- [PATCH v3 14/17] netfilter: nf_flow_table: add a new flow state for tearing down offloading, Felix Fietkau
- [PATCH v3 03/17] ipv6: make ip6_dst_mtu_forward inline, Felix Fietkau
- Re: [PATCH v3 0/17] netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path, Pablo Neira Ayuso
- Re: [PATCH v3 0/17] netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path, Pablo Neira Ayuso
[PATCH nft] src: allow to specify flowtable maximum size, Pablo Neira Ayuso
[PATCH libnftnl] flowtable: allow to specify size, Pablo Neira Ayuso
[PATCH nf-next] netfilter: nf_tables: set maximum flowtable size, Pablo Neira Ayuso
[PATCH net] ipvs: remove IPS_NAT_MASK check to fix passive FTP,
Julian Anastasov
[iptables PATCH] iptables: add xtables-compat.8 manpage,
Arturo Borrero Gonzalez
[PATCH] src: Print error and exit for empty string,
Harsha Sharma
[nft PATCH v3 2/3] examples: add ct helper examples,
Arturo Borrero Gonzalez
[nft PATCH] meta: introduce datatype ifname_type,
Arturo Borrero Gonzalez
[PATCH v2 0/6] netfilter: nf_flow_table: TCP state tracking and bumping of flows to slow path,
Felix Fietkau
[PATCH 0/5] netfilter: nf_flow_table: TCP state tracking and bumping of flows to slow path,
Felix Fietkau
[PATCH] xtables-compat-multi.c: Allow symlink of ebtables,
Duncan Roe
[nft PATCH v2 1/3] nftables: rearrange files and examples,
Arturo Borrero Gonzalez
[PATCH nf] netfilter: ipvs: flag ct as needing s/dnat in original direction,
Florian Westphal
[PATCH nft] segtree: check for overlapping elements at insertion, Pablo Neira Ayuso
[NFT PATCH 1/3] nftables: rearrange files and examples,
Arturo Borrero Gonzalez
WARNING: ODEBUG bug in do_ipt_get_ctl,
syzbot
WARNING: ODEBUG bug in do_arpt_get_ctl,
syzbot
WARNING: ODEBUG bug in __queue_work,
syzbot
[PATCH 00/19] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 01/19] netfilter: x_tables: remove size check, Pablo Neira Ayuso
- [PATCH 19/19] netfilter: IDLETIMER: be syzkaller friendly, Pablo Neira Ayuso
- [PATCH 18/19] netfilter: xt_hashlimit: fix lock imbalance, Pablo Neira Ayuso
- [PATCH 16/19] netfilter: x_tables: fix missing timer initialization in xt_LED, Pablo Neira Ayuso
- [PATCH 17/19] netfilter: nat: cope with negative port range, Pablo Neira Ayuso
- [PATCH 14/19] netfilter: x_tables: use pr ratelimiting in all remaining spots, Pablo Neira Ayuso
- [PATCH 15/19] .gitignore: ignore ASN.1 auto generated files, Pablo Neira Ayuso
- [PATCH 13/19] netfilter: x_tables: use pr ratelimiting in matches/targets, Pablo Neira Ayuso
- [PATCH 08/19] netfilter: xt_CT: use pr ratelimiting, Pablo Neira Ayuso
- [PATCH 12/19] netfilter: x_tables: rate-limit table mismatch warnings, Pablo Neira Ayuso
- [PATCH 11/19] netfilter: bridge: use pr ratelimiting, Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]