Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH nft 7/9] tests: files: Remove tests for chain., (continued)
- Support for attribute based deletion operation in nftables, Doddamadaiah, Abhijit (Nokia - IN/Bangalore)
- netfilter: x_tables: speed up iptables-restore,
Florian Westphal
- [PATCH RFC tip/core/rcu 14/15] netfilter: Remove now-redundant smp_read_barrier_depends(),
Paul E. McKenney
- [PATCH] doc: nft.8 Document rule replace,
Duncan Roe
- [iptables PATCH] extensions: libxt_tcpmss: Detect invalid ranges,
Phil Sutter
- [PATCH v2] netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1',
Shmulik Ladkani
- [PATCH] Out Of Bound Read in Netfilter Conntrack,
Eric Sesterhenn
- [PATCH] datatype: Change "%Zx" to "%zx" and "%Zu" to "%zu", Harsha Sharma
- [PATCH v2] src: Use snprintf() over strncpy(), Harsha Sharma
- [PATCH] src: buffer is not null terminated,
Harsha Sharma
- [PATCH] src: Code indent should use tabs wherever possible, Harsha Sharma
- [PATCH] src: Remove unnecessary spaces, Harsha Sharma
- [PATCH] test: shell: update shell/run-tests.sh to refer to relative path of testcase,
Harsha Sharma
- [PATCH] src: Merge assignment with return,
Harsha Sharma
- [PATCH] netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1',
Shmulik Ladkani
- [PATCH v2] nftables: make pointers in string arrays constant,
Harsha Sharma
- nftables: 0040set_0 test in tests/shell/testcases/transactions fails, Harsha Sharma
- [ebtables PATCH] Use flock() for --concurrent option,
Phil Sutter
- [PATCH v2] nftables: Add support for reserved header and addrs for routing header type 0,
Harsha Sharma
- man page nft.8 add chain synopsis,
Duncan Roe
- [PATCH v2] netfilter: ipset: Convert timers to use timer_setup(), Kees Cook
- [PATCH nf-next] netfilter: nat: use test_and_clear_bit when deleting ct from bysource list,
Florian Westphal
- [PATCH] tests: shell: add testcases for named objects,
Harsha Sharma
- [PATCH net] netfilter: x_tables: avoid stack-out-of-bounds read in xt_copy_counters_from_user,
Eric Dumazet
- [PATCH] nftables: make pointers in string arrays constant,
Harsha Sharma
- [PATCH v3] netfilter: SYNPROXY: fix process non tcp packet bug in {ipv4,ipv6}_synproxy_hook,
Lin Zhang
- [PATCH nft v2] tests: shell: Add tests for chain rename.,
Varsha Rao
- [PATCH] test: shell: execute shell/run-tests.sh from any directory,
Harsha Sharma
- [PATCH] INSTALL: Update dependency list and configure with libxtables support,
Harsha Sharma
- [PATCH] netfilter: ipset: Convert timers to use timer_setup(),
Kees Cook
- [PATCH] inet: frags: Convert timers to use timer_setup(),
Kees Cook
- libnftables, next steps,
Phil Sutter
- [nft PATCH] netlink: Use nftnl_expr_fprintf() in netlink_dump_expr(),
Phil Sutter
- [libnftnl PATCH] expr: Introduce nftnl_expr_fprintf(),
Phil Sutter
- [PATCH nf] netfilter: nf_tables: do not dump chain counters if not enabled, Pablo Neira Ayuso
- [nft PATCH] evaluate: Fix debug output,
Phil Sutter
- [PATCH libnftnl] build: libnftnl 1.0.8 release, Pablo Neira Ayuso
- [PATCH libnftnl,v2 1/4] buffer: use nftnl_expr_snprintf() from nftnl_buf_expr(),
Pablo Neira Ayuso
- [PATCH libnftnl 1/3] buffer: use nftnl_expr_snprintf() from nftnl_buf_expr(),
Pablo Neira Ayuso
- nftables: Add support for unsupported codes in icmp and icmp6 extensions,
Harsha Sharma
- nftables: Add support for reserved header and addrs for routing header type 0,
Harsha Sharma
- [PATCH nf] netfilter: nft_set_hash: disable fast_ops for 2-len keys, Anatole Denis
- [PATCH nft] parser_bison: allow to used named limit from dictionaries too,
Pablo Neira Ayuso
- [ulogd2 PATCH] ulogd2: new config behaviour: load all plugins by default, Arturo Borrero Gonzalez
- Memory Leak in nf_conntrack_in, Shankara Pailoor
- [PATCH nft] mnl: fix broken sequence number allocation, Pablo Neira Ayuso
- [PATCH nft] tests: shell: Add test for chain rename.,
Varsha
- [PATCH 0/3] evaluate: Follow linux-kernel coding style,
Harsha Sharma
- [PATCH] exthdr: Add support for reserved header and address,
Harsha Sharma
- [PATCH v2] netfilter: SYNPROXY: fix process non tcp packet bug in {ipv4,ipv6}_synproxy_hook,
Lin Zhang
- [nft PATCH 0/2] Follow-up on nft_print() enhancement,
Phil Sutter
- [nft PATCH v2 0/5] Get output under application control,
Phil Sutter
- [PATCH] iptables: change large file support handling,
Juergen Borleis
- [PATCH nft 0/10] nftables remove use of meta nfproto,
Florian Westphal
- [PATCH nft 01/10] src: add alternate syntax for ct saddr, Florian Westphal
- [PATCH nft 02/10] src: ct: store proto base of ct key, if any, Florian Westphal
- [PATCH nft 03/10] src: ct: add eval part to inject dependencies for ct saddr/daddr, Florian Westphal
- [PATCH nft 04/10] src: unifiy meta and ct postprocessing, Florian Westphal
- [PATCH nft 05/10] tests: update inet/bridge icmp test case, Florian Westphal
- [PATCH nft 06/10] src: ct: print nfproto name for some header fields, Florian Westphal
- [PATCH nft 07/10] tests: ct: adjust test case commands, Florian Westphal
- [PATCH nft 08/10] src: rt: add keyword distinction for nexthop vs nexthop6, Florian Westphal
- [PATCH nft 09/10] tests: rt: fix test cases, Florian Westphal
- [PATCH nft 10/10] doc: update man page, Florian Westphal
- Re: [PATCH nft 0/10] nftables remove use of meta nfproto, Pablo Neira Ayuso
- [PATCH nft 1/3] ct: make ct event set work with COMMA syntax,
Florian Westphal
- [PATCH] netfilter: ipset: Fix race between dump and swap,
Ross Lagerwall
- [PATCH nft,v2 1/3] parser_bison: consolidate stmt_expr rule,
Pablo Neira Ayuso
- [PATCH nft 1/3] parser_bison: consolidate stmt_expr rule,
Pablo Neira Ayuso
- [conntrack-tools PATCH] conntrack.8: refresh manpage,
Arturo Borrero Gonzalez
- [PATCH] ebtables: fix race condition in frame_filter_net_init(),
Artem Savkov
- [PATCH nf v2] netfilter: ipset: pernet ops must be unregistered last,
Florian Westphal
- [PATCH nf] netfilter: ipset: pernet ops must be unregistered last,
Florian Westphal
- [ulogd2 PATCH] ulogd2: add new config option: load_all_plugins,
Arturo Borrero Gonzalez
- [PATCH] ipset: fix build with musl,
Stijn Tintel
- [PATCH 4.9 61/77] net/netfilter/nf_conntrack_core: Fix net_conntrack_lock(), Greg Kroah-Hartman
- [PATCH 4.13 083/109] net/netfilter/nf_conntrack_core: Fix net_conntrack_lock(), Greg Kroah-Hartman
- [ANNOUNCE] ipset 6.34 released, Jozsef Kadlecsik
- [HEADS UP] ipset git tree is rebased, Jozsef Kadlecsik
- [PATCH] include: remove outdated comment,
JingPiao Chen
- [PATCH] netfilter: nf_tables: fix update chain error,
JingPiao Chen
- [PATCH v3] netfilter: xt_socket: Restore mark from full sockets only,
Subash Abhinov Kasiviswanathan
- [PATCH v2] netfilter: xt_socket: Restore mark from full sockets only,
Subash Abhinov Kasiviswanathan
- [PATCH] netfilter: xt_socket: Restore mark from full sockets only,
Subash Abhinov Kasiviswanathan
- [nft PATCH] monitor: Fix for incorrect debug_mask,
Phil Sutter
- [ulog2 PATCH] Non-arbitrary malloc for SQL queries + string length limit,
Jean Weisbuch
- [nft PATCH] main: Fix for return of uninitialized variable in nft_run_cmd_from_filename(),
Phil Sutter
- [iptables PATCH 0/2] ip{,6}tables-restore: Fix wait-interval parsing,
Phil Sutter
- [iptables PATCH 0/2] Document nfnl_osf utility,
Phil Sutter
- [PATCH libnftnl] src: Change parameters of SNPRINTF_BUFFER_SIZE macro.,
Varsha Rao
- [RFC PATCH nft V4] src: Add import command for json,
Shyam Saini
- [PATCH] netfilter: nf_tables: Release memory obtained by kasprintf,
Arvind Yadav
- [PATCH nft 0/2] store expression instead of data type as set key,
Florian Westphal
- nftables/libnftnl release plan?,
Phil Sutter
- [PATCH v2 0/2] xt_bpf: fix handling of pinned objects,
Shmulik Ladkani
- [PATCH 0/2] xt_bpf: fix handling of pinned objects,
Rafael Buchbinder
- [PATCH ipset] fix compilation with musl libc,
Kaarle Ritvanen
- Re: nft typeof keywork patch,
Florian Westphal
- netfilter: xt_bpf: ABI issue in xt_bpf_info_v1?,
Shmulik Ladkani
- does nftables support string match?,
Michael Chi
- Memory leaks in conntrack,
Cong Wang
- [RFC PATCH nft V3] src: Add import command for json,
Shyam Saini
- [RFC PATCH nft V2] src: Add import command for json,
Shyam Saini
- [PATCH] netfilter: nat: Do not use ARRAY_SIZE() on spinlocks to fix zero div,
Geert Uytterhoeven
- [PATCH] extensions: libxt_bpf: fix missing __NR_bpf declaration,
Rafael Buchbinder
- [PATCH] xtables-compat-restore: fix translation of mangle's OUTPUT,
Louis Sautier
- Build failure with Linux 4.13+: ERROR: "__udivdi3" [net/netfilter/xt_hashlimit.ko] undefined!,
Paul Menzel
- [nft] Documentation point release/backport, Colin Caine
- [PATCH 0/9] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH 7/9] netfilter: core: remove erroneous warn_on, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: xt_hashlimit: alloc hashtable with right size, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: xt_hashlimit: fix build error caused by 64bit division, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: xtables: add scheduling opportunity in get_counters, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nat: use keyed locks, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nat: Revert "netfilter: nat: convert nat bysrc hash to rhashtable", Pablo Neira Ayuso
- [PATCH 2/9] netfilter: ipvs: do not create conn for ABORT packet in sctp_conn_schedule, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nf_nat: don't bug when mapping already exists, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter/IPVS fixes for net, David Miller
- <Possible follow-ups>
- [PATCH 0/9] Netfilter/IPVS fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump(), Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nft_meta: fix wrong value dereference in nft_meta_set_eval, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: ebtables: handle string from userspace with care, Pablo Neira Ayuso
- [PATCH 5/9] ipvs: fix buffer overflow with sync daemon and service, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj(), Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables: increase nft_counters_enabled in nft_chain_stats_replace(), Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nf_tables: disable preemption in nft_update_chain_stats(), Pablo Neira Ayuso
- [PATCH 6/9] netfilter: provide correct argument to nla_strlcpy(), Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nft_limit: fix packet ratelimiting, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter/IPVS fixes for net, David Miller
- [PATCH nft] mnl: do not set NLM_F_CREATE in deletion requests, Pablo Neira Ayuso
- [PATCH v2] netfilter: xt_hashlimit: fix build error caused by 64bit division,
Vishwanath Pai
- [PATCH] net:netfilter alloc xt_byteslimit_htable with wrong size,
zhizhou . tian
- [PATCH] netfilter: xt_hashlimit: fix build error caused by 64bit division, Vishwanath Pai
- WARN_ON() in __nf_hook_entries_try_shrink(),
Linus Torvalds
- [libnftnl PATCH] chain: Don't print unset policy value in netlink debug,
Phil Sutter
- [ulogd2 PATCH] ulogd: use a RT scheduler by default,
Arturo Borrero Gonzalez
- [PATCH 13/14] netfilter/ipvs: Use %pS printk format for direct addresses,
Helge Deller
- [PATCH] netfilter: xt_hashlimit: avoid 64-bit division,
Arnd Bergmann
- [PATCH nf] netfilter: core: remove erroneous warn_on,
Florian Westphal
- [PATCH nf 0/2] netfilter: nat: do not use rhltable,
Florian Westphal
- [PATCH nf 2/2] netfilter: nat: use keyed locks, Florian Westphal
- Re: [PATCH nf 0/2] netfilter: nat: do not use rhltable, Pablo Neira Ayuso
nf_nat_cleanup_conntrack performance with rhlist,
Ivan Babrou
[nft PATCH RFC] Convert man page source to asciidoc,
Phil Sutter
[PATCH] netfilter: xt_hashlimit: fix 64 bit division compile error, Vishwanath Pai
[nf-next:master 1/12] ERROR: "__udivdi3" [net/netfilter/xt_hashlimit.ko] undefined!, kbuild test robot
[nf-next:master 1/12] ERROR: "__aeabi_uldivmod" [net/netfilter/xt_hashlimit.ko] undefined!, kbuild test robot
linux-next: Signed-off-by missing for commits in the netfilter-next tree, Stephen Rothwell
[PATCH 00/12] Netfilter updates for next-net (part 2),
Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nft_limit: replace pkt_bytes with bytes, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: nf_tables: add select_ops for stateful objects, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: nf_tables: support for recursive chain deletion, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_tables: add nf_tables_updchain(), Pablo Neira Ayuso
- [PATCH 05/12] netfilter: remove unused hooknum arg from packet functions, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: nf_tables: add nf_tables_addchain(), Pablo Neira Ayuso
- [PATCH 11/12] netfilter: nf_tables: use NLM_F_NONREC for deletion requests, Pablo Neira Ayuso
- [PATCH 10/12] netlink: add NLM_F_NONREC flag for deletion requests, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: xt_hashlimit: add rate match mode, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: nft_limit: add stateful object type, Pablo Neira Ayuso
- [PATCH 06/12] net: Replace NF_CT_ASSERT() with WARN_ON()., Pablo Neira Ayuso
- [PATCH 07/12] net: Remove CONFIG_NETFILTER_DEBUG and _ASSERT() macros., Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for next-net (part 2), David Miller
[PATCH nft V3] tests: shell: Add tests for json import, Shyam Saini
[PATCH 46/47] netfilter: conntrack: remove unused code in nf_conntrack_proto_generic.c,
Pablo Neira Ayuso
[PATCH 36/47] netfilter: conntrack: place print_tuple in procfs part,
Pablo Neira Ayuso
[PATCH 33/47] netfilter: conntrack: remove protocol name from l3proto struct,
Pablo Neira Ayuso
[PATCH 23/47] netfilter: constify nf_loginfo structures,
Pablo Neira Ayuso
[PATCH 20/47] netfilter: conntrack: do not enable connection tracking unless needed,
Pablo Neira Ayuso
[PATCH 10/47] netfilter: conntrack: destroy functions need to free queued packets,
Pablo Neira Ayuso
[PATCH 00/47] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 02/47] netfilter: nf_tables: keep chain counters away from hot path, Pablo Neira Ayuso
- [PATCH 09/47] netfilter: add and use nf_ct_unconfirmed_destroy, Pablo Neira Ayuso
- [PATCH 07/47] netfilter: conntrack: Change to deferable work queue, Pablo Neira Ayuso
- [PATCH 06/47] netfilter: nf_tables: add fib expression to the netdev family, Pablo Neira Ayuso
- [PATCH 08/47] netfilter: expect: add and use nf_ct_expect_iterate helpers, Pablo Neira Ayuso
- [PATCH 01/47] netfilter: expect: add to hash table after expect init, Pablo Neira Ayuso
- [PATCH 04/47] netfilter: nf_tables: Attach process info to NFT_MSG_NEWGEN notifications, Pablo Neira Ayuso
- [PATCH 03/47] netfilter: Remove duplicated rcu_read_lock., Pablo Neira Ayuso
- [PATCH 05/47] netfilter: nf_tables: fib: use skb_header_pointer, Pablo Neira Ayuso
- Re: [PATCH 00/47] Netfilter updates for net-next, David Miller
[nft PATCH 0/2] libnftables preparation work,
Eric Leblond
[PATCH nf-next 3/5] netlink: add NLM_F_NONREC flag for deletion requests,
Pablo Neira Ayuso
[PATCH nf-next 1/5] netfilter: nf_tables: add nf_tables_updchain(),
Pablo Neira Ayuso
[PATCH V2] netfilter: xt_TEE: Fix potential deadlock when TEE target is inserted, Taehee Yoo
[PATCH] netfilter: ipt_CLUSTERIP: Fix potential deadlock when CLUSTERIP target is inserted, Taehee Yoo
[PATCH] netfilter: xt_TEE: Fix potential deadlock when TEE target is inserted,
Taehee Yoo
On ulogd2, nfacct and sqlite3, DEXTER
[nft PATCH V2] tests: shell: Add tests for json import,
Shyam Saini
[PATCH nf] netfilter: xtables: add scheduling opportunity in get_counters,
Florian Westphal
[PATCH nft 1/3] src: move nf_sock into nft_ctx structure,
Pablo Neira Ayuso
[PATCH nf] netfilter: nf_nat: don't bug when mapping already exists,
Florian Westphal
hi, any update on bug id 1177, ulogd, export 'ct.zone' field?, Alex Guo
[PATCH] netfilter: nat: constify rhashtable_params,
Arvind Yadav
[PATCH nf-next] net: Replace NF_CT_ASSERT() with WARN_ON().,
Varsha Rao
[PATCH] examples: Fix memory leaks detected by Valgrind,
Shyam Saini
[PATCH nf-next] netfilter: remove unused hooknum arg from packet functions, Florian Westphal
[PATCH nft] tests: py: add tests for limit stateful object,
Pablo M. Bermudo Garay
[PATCH nft] evaluate: convert expr_rt byteorder when evaluating statment arg,
Florian Westphal
[PATCH nf-next] netfilter: rt: account for tcp header size too,
Florian Westphal
[PATCH nf-next] netfilter: nf_conntrack: remove unused code in nf_conntrack_proto_generic.c,
Davide Caratti
libnetfilter_queue 1.0.3 docs, Oleg
libnetfilter_queue 1.0.3, Oleg
[PATCH nftables] netlink_linearize: skip set element expression in set statement key,
Anders K. Pedersen | Cohaesio
NFQUEUE --queue-balance,
Oleg
libnetfilter_queue & multithreading & 1 queue freezing,
Oleg
[PATCH] netfilter: ipv6: nf_defrag: constify nf_hook_ops, Arvind Yadav
[PATCH] netfilter: ipv4: nf_defrag: constify nf_hook_ops,
Arvind Yadav
[PATCH 0/7] net: make some structures const,
Bhumika Goyal
[nft PATCH] parser: Fix memleaks for STRING token (and derived ones),
Phil Sutter
[PATCH nf-next] net: netfilter: Remove NFDEBUG.,
Varsha Rao
[PATCH nf-next] netfilter: conntrack: don't log "invalid" icmpv6 connections,
Florian Westphal
[nft PATCH 0/4] Memleak fixes and some minor cleanups,
Phil Sutter
[nft PATCH] Fix debug_proto_ctx(),
Phil Sutter
[PATCH nf-next] netfilter: conntrack: remove unused hooknum arg from packet functions, Florian Westphal
netfilter fixes for 4.12.y tree,
Florian Westphal
[PATCH nf-next] netfilter: xt_CHECKSUM: avoid bad offload warnings on GSO packets,
Michal Kubecek
[PATCH V2] tests: json: Add test cases for json format,
Shyam Saini
[PATCH nft v2] files: add arp filter and add in/output to nat skeleton, Florian Westphal
[PATCH nft 1/2] parser: fix typo,
Pablo M. Bermudo Garay
[PATCH libnftnl] src: limit stateful object support,
Pablo M. Bermudo Garay
[PATCH nf-next 1/3] netfilter: nf_tables: add select_ops for stateful objects,
Pablo M. Bermudo Garay
[PATCH nft] files: add arp filter and add in/output to nat skeleton,
Florian Westphal
[PATCH nf-next 0/3] netfilter: convert hook list to an array,
Florian Westphal
[PATCH conntrack-tools] conntrackd: cthelper: ssdp: fix build with musl,
Stijn Tintel
[PATCH nft 0/6] Remove more global variables,
Pablo Neira Ayuso
[PATCH v2 nft 0/3] nftables: tcp option set support,
Florian Westphal
[nft PATCH] Keep cache in struct nft_ctx,
Phil Sutter
[PATCH] tests: json: Add test cases for json format,
Shyam Saini
[patch nf] netfilter: nf_tables: Fix nft limit burst handling,
Andy Zhou
[PATCH conntrack-tools] conntrack: Show multiple CPUs stats from proc,
Chieh-Min Wang
[PATCH nf-next] netfilter: fix a few (harmless) sparse warnings,
Florian Westphal
[PATCH net 0/2] netfilter: ipvs: some fixes in sctp_conn_schedule,
Xin Long
[PATCH nft] src: Initialize struct stmt in _match and _target functions.,
Varsha Rao
[PATCH nft 0/7] tcp mss mangling support,
Florian Westphal
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]