Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH] tests/py: add test for empty string match, (continued)
- [PATCH nf-next,RFC 1/3] netfilter: nf_conntrack: add 64-bit conntrack ID extension,
Pablo Neira Ayuso
- inquiry for behavior of xt_RATEEST., Taehee Yoo
- [PATCH] iptables: extensions: Fix MARK target help,
Mart Frauenlob
- [PATCH] doc: nft.8 Syslog level is introduced by "level" not "syslog-level",
Duncan Roe
- [PATCH net-next] bridge: ebtables: Avoid resetting limit rule state,
Linus Lüssing
- static libnftables by now?,
Pablo Neira Ayuso
- [PATCH nft 1/2] parser_bison: dismiss anonymous meters,
Pablo Neira Ayuso
- [PATCH] evaluate: print error for null string befort assert statement,
Harsha Sharma
- [PATCH nft] src: deprecate "flow table" syntax, replace it by "meter",
Pablo Neira Ayuso
- nft crashes on empty interface name,
Harsha Sharma
- [PATCH nft 1/2] utils: fix one compilation error with --with-mini-gmp,
Pablo Neira Ayuso
- [PATCH nf-next] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path, Pablo Neira Ayuso
- [PATCH nf-next 1/2] netfilter: nf_tables_arp: don't set forward chain,
Pablo Neira Ayuso
- [PATCH nf-next 0/5] promote NFPROTO_INET as real family,
Pablo Neira Ayuso
- [RFC PATCH] netfilter: call synchronize_net only once from nf_register_net_hooks,
Giuseppe Scrivano
- nftables: lockout with 0008split_tables_0 test,
Phil Sutter
- [PATCH nf] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0,
Florian Westphal
- [PATCH V3 0/5] netfilter: nf_nat_snmp_basic: use ASN.1 decoder,
Taehee Yoo
- [PATCH nft] tests: shell: Add test for IPv4 Mapped IPv6 address.,
Varsha Rao
- [PATCH] doc: nft.8 document use of -f option to start nft scripts,
Duncan Roe
- [nft PATCH] libnftables: Fix for multiple context instances,
Phil Sutter
Rebasing nf-next git tree, Pablo Neira Ayuso
conntracd init.d reload is broken on Centos6,
Jason Hendry
[nft PATCH 0/2] Review code regarding output_fp,
Phil Sutter
[PATCH v4] netfilter: conntrack: clamp timeouts to INT_MAX,
Jay Elliott
[PATCH net-next] netfilter: add ifdef around ctnetlink_proto_size,
Pablo Neira Ayuso
[PATCH v3] netfilter: conntrack: clamp timeouts to INT_MAX,
Jay Elliott
[nft PATCH] libnftables: Split code into frontend and library,
Phil Sutter
Re: [PATCH 4.9 85/87] netfilter: nat: Revert "netfilter: nat: convert nat bysrc hash to rhashtable",
Pablo Neira Ayuso
[PATCH nf-next] netfilter: nf_defrag_ipv4: Skip defrag if NOTRACK is set,
Subash Abhinov Kasiviswanathan
[PATCH nft v2] src: tests: files: Remove test files.,
Varsha Rao
[PATCH net-next v2] net: move decnet to staging,
Stephen Hemminger
[PATCH nf-next 0/4] netfilter: reduce hook sizes in struct net,
Florian Westphal
[PATCH nf-next] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp,
gfree . wind
Re: Request for stable 4.13.x inclusion: netfilter: nft_set_hash: disable fast_ops for 2-len keys, Pablo Neira Ayuso
[RFC]: Is there any reason libnetfilter_queue 1.0.3 is not released yet?,
Duncan Roe
[PATCH nf-next] netfilter: conntrack: timeouts can be const,
Florian Westphal
[PATCH v4 13/18] x_tables: exit_net cleanup check added, Vasily Averin
[PATCH v4 12/18] nfnetlink_gueue: exit_net cleanup check added,
Vasily Averin
[PATCH v4 11/18] nfnetlink_log: exit_net cleanup check added,
Vasily Averin
[PATCH v4 10/18] nf_tables: exit_net cleanup check added, Vasily Averin
[PATCH v4 09/18] clusterip: exit_net cleanup check added, Vasily Averin
[PATCH v4 00/18] exit_net checks for objects initialized in net_init hook,
Vasily Averin
[PATCH v2] netfilter: conntrack: clamp timeouts to INT_MAX,
Jay Elliott
[PATCH] netfilter: conntrack: use 64-bit conntracking timestamps,
Jay Elliott
[nft PATCH] Eliminate struct mnl_ctx,
Phil Sutter
[PATCH iptables] libxt_sctp: fix array out of range in print_chunk,
Nicolas Dichtel
[PATCH nf-next] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer,
Pablo Neira Ayuso
netfilter patches for stable 4.13,
Pablo Neira Ayuso
[PATCH] net/icmp: restore source address if packet is NATed,
Jason A. Donenfeld
nft: I broke interactive mode with iface changes,
Phil Sutter
[PATCH v2] netfilter: nf_nat_snmp_basic: use asn1 decoder library,
Taehee Yoo
[PATCH] [net-next] netfilter: add ifdef around ctnetlink_proto_size,
Arnd Bergmann
[PATCH][V2] netfilter: remove redundant assignment to e,
Colin King
[PATCH v2 nf-next 0/3] netfilter: conntrack: make l4 tracker structs const,
Florian Westphal
[PATCH 00/23] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/23] netfilter: ipset: Compress return logic, Pablo Neira Ayuso
- [PATCH 09/23] netfilter: x_tables: don't use seqlock when fetching old counters, Pablo Neira Ayuso
- [PATCH 10/23] netfilter: conntrack: make l3proto trackers const, Pablo Neira Ayuso
- [PATCH 15/23] netfilter: ipvs: Fix inappropriate output of procfs, Pablo Neira Ayuso
- [PATCH 16/23] netfilter: ebtables: clean up initialization of buf, Pablo Neira Ayuso
- [PATCH 18/23] netfilter: nft_hash: fix nft_hash_deactivate, Pablo Neira Ayuso
- [PATCH 19/23] netfilter: conntrack: don't cache nlattr_tuple_size result in nla_size, Pablo Neira Ayuso
- [PATCH 20/23] netfilter: conntrack: move nf_ct_netns_{get,put}() to core, Pablo Neira Ayuso
- [PATCH 22/23] netfilter: nf_tables: performance set policy skips size description in selection, Pablo Neira Ayuso
- [PATCH 23/23] netfilter: nf_tables: get set elements via netlink, Pablo Neira Ayuso
- [PATCH 17/23] netfilter: xt_connlimit: remove mask argument, Pablo Neira Ayuso
- [PATCH 21/23] netfilter: conntrack: use power efficient workqueue, Pablo Neira Ayuso
- [PATCH 14/23] netfilter: ipvs: Use %pS printk format for direct addresses, Pablo Neira Ayuso
- [PATCH 11/23] netfilter: nf_conntrack_h323: Remove typedef struct, Pablo Neira Ayuso
- [PATCH 13/23] netfilter: nf_ct_h323: Out Of Bound Read in Netfilter Conntrack, Pablo Neira Ayuso
- [PATCH 12/23] netfilter: xt_connlimit: don't store address in the conn nodes, Pablo Neira Ayuso
- [PATCH 06/23] netfilter: conntrack: add and use nf_ct_l4proto_log_invalid, Pablo Neira Ayuso
- [PATCH 08/23] netfilter: x_tables: make xt_replace_table wait until old rules are not used anymore, Pablo Neira Ayuso
- [PATCH 03/23] netfilter: ipset: deduplicate prefixlen maps, Pablo Neira Ayuso
- [PATCH 07/23] netfilter: conntrack: remove pf argument from l4 packet functions, Pablo Neira Ayuso
- [PATCH 05/23] netfilter: conntrack: add and use nf_l4proto_log_invalid, Pablo Neira Ayuso
- [PATCH 04/23] netfilter: nat: use test_and_clear_bit when deleting ct from bysource list, Pablo Neira Ayuso
- [PATCH 02/23] netfilter: ipset: Fix sparse warnings, Pablo Neira Ayuso
- Re: [PATCH 00/23] Netfilter/IPVS updates for net-next, David Miller
[PATCH nf-next 1/2] netfilter: nf_tables: performance set policy skips size description in selection,
Pablo Neira Ayuso
[PATCH] tests/monitor: Print error "this requires root" and exit,
Harsha Sharma
[PATCH v3 16/21] nfnetlink_log: exit_net cleanup check added, Vasily Averin
[PATCH v3 18/21] x_tables: exit_net cleanup check added, Vasily Averin
[PATCH v3 17/21] nfnetlink_gueue: exit_net cleanup check added, Vasily Averin
[PATCH v3 15/21] nf_tables: exit_net cleanup check added, Vasily Averin
[PATCH v3 11/21] clusterip: exit_net cleanup check added,
Vasily Averin
[PATCH v2 18/21] recent: exit_net cleanup check added, Vasily Averin
[PATCH v2 17/21] hashlimit: exit_net cleanup check added, Vasily Averin
[PATCH v2 16/21] x_tables: exit_net cleanup check added, Vasily Averin
[PATCH v2 15/21] nfnetlink_gueue: exit_net cleanup check added, Vasily Averin
[PATCH v2 14/21] nfnetlink_log: exit_net cleanup check added, Vasily Averin
[PATCH v2 13/21] nf_tables: exit_net cleanup check added, Vasily Averin
[PATCH v2 09/21] clusterip: exit_net cleanup check added,
Vasily Averin
[PATCH 18/21] recent: exit_net cleanup check added, Vasily Averin
[PATCH 17/21] hashlimit: exit_net cleanup check added, Vasily Averin
[PATCH 16/21] x_tables: exit_net cleanup check added, Vasily Averin
[PATCH 15/21] nfnetlink_gueue: exit_net cleanup check added, Vasily Averin
[PATCH 14/21] nfnetlink_log: exit_net cleanup check added, Vasily Averin
[PATCH 13/21] nf_tables: exit_net cleanup check added, Vasily Averin
[PATCH 09/21] clusterip: exit_net cleanup check added, Vasily Averin
[PATCH] parser: allow classid as set key, Tomas Mudrunka
[PATCH nf-next] netfilter: nf_defrag_ipv4: Add sysctl to disable per interface,
Subash Abhinov Kasiviswanathan
[PATCH] Net: netfilter: vmalloc/vfree to kvmalloc/kvfree,
Charlie Sale
[PATCH RFC,WIP 0/5] Flow offload infrastructure,
Pablo Neira Ayuso
- [PATCH RFC,WIP 2/5] netfilter: add software flow offload infrastructure, Pablo Neira Ayuso
- [PATCH RFC,WIP 5/5] netfilter: nft_flow_offload: add ndo hooks for hardware offload, Pablo Neira Ayuso
- [PATCH RFC,WIP 3/5] netfilter: nf_flow_offload: integration with conntrack, Pablo Neira Ayuso
- [PATCH RFC,WIP 4/5] netfilter: nf_tables: flow offload expression, Pablo Neira Ayuso
- [PATCH RFC,WIP 1/5] netfilter: nf_conntrack: move nf_ct_netns_{get,put}() to core, Pablo Neira Ayuso
- Re: [PATCH RFC,WIP 0/5] Flow offload infrastructure, Florian Fainelli
- Re: [PATCH RFC,WIP 0/5] Flow offload infrastructure, Jakub Kicinski
[PATCH nf-next 0/4] netfilter: conntrack: make l4 tracker structs const,
Florian Westphal
[PATCH nf] netfilter: nft_hash: fix nft_hash_deactivate,
Florian Westphal
[PATCH] netfilter: conntrack: use power efficient workqueue,
Vincent Guittot
[PATCH nf-next] netfilter: xt_connlimit: remove mask argument,
Florian Westphal
[PATCH] netfilter: ipset: use swap macro instead of _manually_ swapping values,
Gustavo A. R. Silva
[PATCH nft 00/16] tests: files: Remove test files.,
Varsha Rao
- [PATCH nft 01/16] tests: files: Remove tests for ipv4, Varsha Rao
- [PATCH nft 02/16] tests: files: Remove tests for ipv6, Varsha Rao
- [PATCH nft 03/16] tests: shell: Add test for log statement., Varsha Rao
- [PATCH nft 04/16] tests: files: Remove log statement tests., Varsha Rao
- [PATCH nft 05/16] tests: shell: Add test for log flags., Varsha Rao
- [PATCH nft 06/16] tests: shell: Add tests for payload expression., Varsha Rao
- [PATCH nft 12/16] tests: files: Test for meta expressions., Varsha Rao
- [PATCH nft 14/16] tests: shell: Add tests for concat expression., Varsha Rao
- [PATCH nft 13/16] tests: files: Remove test for meta expression., Varsha Rao
- [PATCH nft 11/16] tests: files: Remove prefix file., Varsha Rao
- [PATCH nft 15/16] tests: files: Remove tests for concat expression., Varsha Rao
- [PATCH nft 16/16] tests: shell: Add test case for map expression., Varsha Rao
- [PATCH nft 07/16] tests: files: Remove payload expression tests., Varsha Rao
- [PATCH nft 09/16] tests: shell: Add test for ct expression., Varsha Rao
- [PATCH nft 10/16] tests: files: Remove test for ct expression., Varsha Rao
- [PATCH nft 08/16] tests: files: Remove test for syntactical errors., Varsha Rao
- Re: [PATCH nft 00/16] tests: files: Remove test files., Pablo Neira Ayuso
[PATCH] netfilter: nf_nat_snmp_basic: use asn1 decoder library,
Taehee Yoo
[PATCH] netfilter: ipset: ip_set_bitmap_port: use swap macro in bitmap_port_create, Gustavo A. R. Silva
[PATCH] netfilter: ipset: ip_set_bitmap_ip: use swap macro in bitmap_ip_create, Gustavo A. R. Silva
[PATCH] netfilter: ipset: ip_set_bitmap_ipmac: use swap macro in bitmap_ipmac_create,
Gustavo A. R. Silva
[PATCH nft 0/8] rework dependency removal,
Florian Westphal
nftables rules not matching after upgrading from 0.7 to 0.8,
Anders K. Pedersen | Cohaesio
libnetfilter_queue documentation, Rafael Ludtke
[PATCH nf-next] netfilter: nft_set_hash: fix fast_ops for 2-len keys,
Florian Westphal
[PATCH nft] src: add nft_ prefix to everything exposed through include/nftables/nftables.h,
Pablo Neira Ayuso
Fw: [Bug 197367] New: NMI watchdog: BUG: soft lockup - CPU#1 stuck for 22s! [nf_conntrack],
Stephen Hemminger
[PATCH] netfilter: ipvs: Convert timers to use timer_setup(),
Kees Cook
[nft PATCH v2 0/4] libnftables preparations,
Phil Sutter
[PATCH] netfilter: ipv4: Fix use-after-free in send_reset,
Tejaswi Tanikella
[PATCH] extensions: add tests for ipcomp protocol,
Harsha Sharma
[PATCH v3] tests: xlate: print output in same way as nft-test.py,
Harsha Sharma
[PATCH] doc: nft.8 simplify initial SYNOPSIS line,
Duncan Roe
[iptables PATCH] libxt_recent: Remove ineffective checks for info->name,
Phil Sutter
[PATCH] netfilter: mark expected switch fall-throughs,
Gustavo A. R. Silva
[PATCH] tests: xlate: Change testfile to take "extensions/test_file" as argument, Harsha Sharma
[PATCH v2] tests: xlate: print total no. of testfiles, tests and tests passed,
Harsha Sharma
[nft PATCH 0/7] libnftables preparations,
Phil Sutter
[PATCH nft] rule: fix netlink debug flag when listing table/rules,
Florian Westphal
[PATCH] tests: xlate: print total no. of testfiles, tests and tests passed,
Harsha Sharma
nftables and iptables nat coexistence,
Florian Westphal
Problem compiling nftables,
Frank A. Cancio Bello
[PATCH v2] libxt_TOS: add tests for translation infrastructure,
Harsha Sharma
[PATCH] netfilter: ip6_tables: remove redundant assignment to e,
Colin King
[PATCH nft] netlink: fix element addition to map with stateful object, Pablo Neira Ayuso
[PATCH v2] tests: xlate: print tests passed and error for testfile argument,
Harsha Sharma
[PATCH] tests: xlate: print tests passed or error for testfile argument, Harsha Sharma
[PATCH 36/58] inet: frags: Convert timers to use timer_setup(), Kees Cook
[PATCH 34/58] netfilter: ipset: Convert timers to use timer_setup(), Kees Cook
[PATCH] ipv6: mark expected switch fall-throughs,
Gustavo A. R. Silva
[PATCH] ipv4: mark expected switch fall-throughs,
Gustavo A. R. Silva
[PATCH] iptables: add test file for TCPMSS extension,
Aastha Gupta
[PATCH] tests: add regression tests for xtables-translate,
Harsha Sharma
[RFC] connlimit for nftables and limiting ct count by zone,
Florian Westphal
[PATCH] netfilter: ebtables: clean up initialization of buf,
Colin King
[RFC PATCH nft V5 1/2] src: Add import command for low level json,
Shyam Saini
[PATCH v3] iptables: iptables-compat translation for TCPMSS,
Aastha Gupta
[PATCH v2] iptables: iptables-compat translation for TCPMSS,
Aastha Gupta
[PATCH] ipvs: Fix inappropriate output of procfs,
KUWAZAWA Takuya
[PATCH nf-next] netfilter: xt_connlimit: don't store address in the conn nodes,
Florian Westphal
[PATCH] update INSTALL to add library libnfnetlink,
Harsha Sharma
[PATCH] tests: shell: add testcases for named limits,
Harsha Sharma
[PATCH] Update .gitignore,
Harsha Sharma
[PATCH] src: Remove unnecessary cast on void pointer, Harsha Sharma
[ANNOUNCE] nftables 0.8 release, Pablo Neira Ayuso
[ANNOUNCE] libnftnl 1.0.8 release,
Pablo Neira Ayuso
[PATCH] netfilter: nf_conntrack_h323: Remove typedef struct,
Harsha Sharma
[PATCH] netfilter: nfnl_cthelper: Replace kzalloc with kcalloc,
Harsha Sharma
[PATCH] tests: py: Add option --all to nft-test.py, Harsha Sharma
[PATCH nf-next] netfilter: conntrack: make l3proto trackers const,
Florian Westphal
[PATCH] doc: nft.8 change "Native Address Translation" to "Network Address Translation",
Duncan Roe
[PATCH v4 nf-next 0/2] netfilter: x_tables: speed up iptables-restore,
Florian Westphal
[PATCH nf] netfilter: x_tables: ensure readers see new ->private value,
Florian Westphal
[PATCH v3 nf-next 0/2] netfilter: x_tables: speed up iptables-restore,
Florian Westphal
[PATCH nf-next 0/3] netfilter: remove pf argument from conntrack l4 packet function,
Florian Westphal
[redirect: netdev => netfilter-devel] Accept packets that the H.245 ALG can't process, Alexandru Ardelean
[PATCH nft 0/9] tests: Move tests from files to shell.,
Varsha Rao
- [PATCH nft 1/9] tests: files: Remove jump chain tests., Varsha Rao
- [PATCH nft 2/9] tests: shell: Add test case for jump chain., Varsha Rao
- [PATCH nft 3/9] tests: shell: Add test case for sets., Varsha Rao
- [PATCH nft 4/9] tests: files: Remove tests for set., Varsha Rao
- [PATCH nft 5/9] tests: shell: Add tests for variable definition., Varsha Rao
- [PATCH nft 6/9] tests: files: Remove test cases for variable definition., Varsha Rao
- [PATCH nft 7/9] tests: files: Remove tests for chain., Varsha Rao
- [PATCH nft 8/9] tests: files: Remove tests for table., Varsha Rao
- [PATCH nft 9/9] tests: files: Remove tests for verdict maps., Varsha Rao
- Re: [PATCH nft 0/9] tests: Move tests from files to shell., Pablo Neira Ayuso
Support for attribute based deletion operation in nftables, Doddamadaiah, Abhijit (Nokia - IN/Bangalore)
netfilter: x_tables: speed up iptables-restore,
Florian Westphal
[PATCH RFC tip/core/rcu 14/15] netfilter: Remove now-redundant smp_read_barrier_depends(),
Paul E. McKenney
[PATCH] doc: nft.8 Document rule replace,
Duncan Roe
[iptables PATCH] extensions: libxt_tcpmss: Detect invalid ranges,
Phil Sutter
[PATCH v2] netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1',
Shmulik Ladkani
[PATCH] Out Of Bound Read in Netfilter Conntrack,
Eric Sesterhenn
[PATCH] datatype: Change "%Zx" to "%zx" and "%Zu" to "%zu", Harsha Sharma
[PATCH v2] src: Use snprintf() over strncpy(), Harsha Sharma
[PATCH] src: buffer is not null terminated,
Harsha Sharma
[PATCH] src: Code indent should use tabs wherever possible, Harsha Sharma
[PATCH] src: Remove unnecessary spaces, Harsha Sharma
[PATCH] test: shell: update shell/run-tests.sh to refer to relative path of testcase,
Harsha Sharma
[PATCH] src: Merge assignment with return,
Harsha Sharma
[PATCH] netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1',
Shmulik Ladkani
[PATCH v2] nftables: make pointers in string arrays constant,
Harsha Sharma
nftables: 0040set_0 test in tests/shell/testcases/transactions fails, Harsha Sharma
[ebtables PATCH] Use flock() for --concurrent option,
Phil Sutter
[PATCH v2] nftables: Add support for reserved header and addrs for routing header type 0,
Harsha Sharma
man page nft.8 add chain synopsis,
Duncan Roe
[PATCH v2] netfilter: ipset: Convert timers to use timer_setup(), Kees Cook
[PATCH nf-next] netfilter: nat: use test_and_clear_bit when deleting ct from bysource list,
Florian Westphal
[PATCH] tests: shell: add testcases for named objects,
Harsha Sharma
[PATCH net] netfilter: x_tables: avoid stack-out-of-bounds read in xt_copy_counters_from_user,
Eric Dumazet
[PATCH] nftables: make pointers in string arrays constant,
Harsha Sharma
[PATCH v3] netfilter: SYNPROXY: fix process non tcp packet bug in {ipv4,ipv6}_synproxy_hook,
Lin Zhang
[PATCH nft v2] tests: shell: Add tests for chain rename.,
Varsha Rao
[PATCH] test: shell: execute shell/run-tests.sh from any directory,
Harsha Sharma
[PATCH] INSTALL: Update dependency list and configure with libxtables support,
Harsha Sharma
[PATCH] netfilter: ipset: Convert timers to use timer_setup(),
Kees Cook
[PATCH] inet: frags: Convert timers to use timer_setup(),
Kees Cook
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]