Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH bpf-next v2 1/2] net: netfilter: Make ct zone opts configurable for bpf ct helpers, (continued)
- [PATCH] netfilter: mark racy access on ext->gen_id,
linke li
- [PATCH nf-next] netfilter: conntrack: remove flowtable early-drop test,
Florian Westphal
- [PATCH net-next 0/7] selftest: netfilter: additional cleanups,
Florian Westphal
- [PATCH net-next 1/7] selftests: netfilter: nft_concat_range.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 4/7] selftests: netfilter: nft_flowtable.sh: re-run with random mtu sizes, Florian Westphal
- [PATCH net-next 2/7] selftests: netfilter: nft_concat_range.sh: drop netcat support, Florian Westphal
- [PATCH net-next 3/7] selftests: netfilter: nft_concat_range.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 5/7] selftests: netfilter: nft_flowtable.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 6/7] selftests: netfilter: skip tests on early errors, Florian Westphal
- [PATCH net-next 7/7] selftests: netfilter: conntrack_vrf.sh: prefer socat, not iperf3, Florian Westphal
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups, Jakub Kicinski
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups, patchwork-bot+netdevbpf
- Re: [PATCH net-next 0/7] selftest: netfilter: additional cleanups, Jakub Kicinski
- [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers,
Thomas Weißschuh
- [PATCH v3 05/11] neighbour: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH v3 06/11] ipv4/sysctl: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH v3 07/11] ipv6/addrconf: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH v3 08/11] ipv6/ndisc: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH v3 10/11] sysctl: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH v3 09/11] ipvs: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH v3 11/11] sysctl: treewide: constify the ctl_table argument of handlers, Thomas Weißschuh
- [PATCH v3 02/11] cgroup: bpf: constify ctl_table arguments and fields, Thomas Weißschuh
- [PATCH v3 04/11] utsname: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH v3 03/11] hugetlb: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH v3 01/11] stackleak: don't modify ctl_table argument, Thomas Weißschuh
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers, Luis Chamberlain
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers, Jakub Kicinski
- Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers, Joel Granados
- Launchpad: Validate your team's contact email address, Launchpad Email Validator
- [PATCH net-next] tools: testing: selftests: switch conntrack_dump_flush to TEST_PROGS,
Florian Westphal
- Looking for (unit-) tests for libmnl, Schroeder, Stefan
- [PATCH net-next] selftests: netfilter: fix conntrack_dump_flush retval on unsupported kernel,
Florian Westphal
- [PATCH net-next] selftests: netfilter: nft_zones_many.sh: set ct sysctl after ruleset load,
Florian Westphal
- [PATCH v2] ipvs: Fix checksumming on GSO of SCTP packets,
Ismael Luceno
- Re: [Thread split] nftables rule optimization - dropping invalid in ingress?,
imnozi
- [PATCH nf] netfilter: conntrack: documentation: remove reference to non-existent sysctl, Florian Westphal
- [PATCH net-next v2 00/12] testing: make netfilter selftests functional in vng environment,
Florian Westphal
- [PATCH net-next v2 02/12] selftests: netfilter: nft_queue.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next v2 01/12] selftests: netfilter: nft_queue.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next v2 03/12] selftests: netfilter: nft_synproxy.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next v2 04/12] selftests: netfilter: nft_zones_many.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next v2 05/12] selftests: netfilter: xt_string.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next v2 06/12] selftests: netfilter: xt_string.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next v2 07/12] selftests: netfilter: nft_nat_zones.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next v2 08/12] selftests: netfilter: conntrack_ipip_mtu.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next v2 09/12] selftests: netfilter: nft_fib.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next v2 10/12] selftests: netfilter: nft_meta.sh: small shellcheck cleanup, Florian Westphal
- [PATCH net-next v2 11/12] selftests: netfilter: nft_audit.sh: add more skip checks, Florian Westphal
- [PATCH net-next v2 12/12] selftests: netfilter: update makefiles and kernel config, Florian Westphal
- Re: [PATCH net-next v2 00/12] testing: make netfilter selftests functional in vng environment, patchwork-bot+netdevbpf
- [PATCH net-next v3 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh,
Alexander Mikhalitsyn
- [PATCH] ipvs: Fix checksumming on GSO of SCTP packets,
Ismael Luceno
- [PATCH net-next v2 1/2] ipvs: add READ_ONCE barrier for ipvs->sysctl_amemthresh,
Alexander Mikhalitsyn
- [PATCH net-next v4 0/4] netlink: Add nftables spec w/ multi messages,
Donald Hunter
- [PATCH v2] sysctl: treewide: constify ctl_table_header::ctl_table_arg,
Thomas Weißschuh
- [PATCH nf 1/3] netfilter: nf_tables: missing iterator type in lookup walk,
Pablo Neira Ayuso
- [PATCH] netfilter: ipset: Add list flush to cancel_gc,
Alexander Maltsev
- [PATCH net-next v3 0/4] netlink: Add nftables spec w/ multi messages,
Donald Hunter
- [PATCH net-next] ipvs: allow some sysctls in non-init user namespaces,
Alexander Mikhalitsyn
- [PATCH net-next] selftests: fix netfilter path in Makefile,
Yujie Liu
- [PATCH net-next 00/12] selftests: netfilter: move to lib.sh infra,
Florian Westphal
- [PATCH net-next 05/12] selftests: netfilter: nft_zones_many.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 01/12] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 06/12] selftests: netfilter: xt_string.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 02/12] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 04/12] selftests: netfilter: nft_synproxy.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 03/12] selftests: netfilter: nft_queue.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 07/12] selftests: netfilter: nft_nat_zones.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 08/12] selftests: netfilter: nft_queue.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 09/12] selftests: netfilter: conntrack_ipip_mtu.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 10/12] selftests: netfilter: nft_fib.sh: shellcheck cleanups, Florian Westphal
- [PATCH net-next 11/12] selftests: netfilter: nft_audit.sh: skip if auditd is running, Florian Westphal
- [PATCH net-next 12/12] selftests: netfilter: update makefiles and kernel config, Florian Westphal
- Re: [PATCH net-next 00/12] selftests: netfilter: move to lib.sh infra, Pablo Neira Ayuso
- [PATCH net-next] netfilter: nft_chain_filter: remove redundant code in nf_tables_netdev_event, Zhengchao Shao
- Incorrect dependency handling with delayed ipset destroy ipset 7.21,
keltargw
- [nft PATCH] limit: Support arbitrary unit values, Phil Sutter
- [libnftnl PATCH] expr: limit: Prepare for odd time units,
Phil Sutter
- [PATCH v3 0/4] sysctl: Remove sentinel elements from networking,
Joel Granados via B4 Relay
- [nft PATCH v3] Add support for table's persist flag,
Phil Sutter
- [PATCH net-next 00/15] selftests: move netfilter tests to net,
Florian Westphal
- [PATCH net-next 02/15] selftests: netfilter: bridge_brouter.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 01/15] selftests: netfilter: move to net subdir, Florian Westphal
- [PATCH net-next 03/15] selftests: netfilter: br_netfilter.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 04/15] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 05/15] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 06/15] selftests: netfilter: conntrack_sctp_collision.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 07/15] selftests: netfilter: conntrack_vrf.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 08/15] selftests: netfilter: conntrack_ipip_mtu.sh" move to lib.sh infra, Florian Westphal
- [PATCH net-next 09/15] selftests: netfilter: place checktool helper in lib.sh, Florian Westphal
- [PATCH net-next 10/15] selftests: netfilter: ipvs.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 11/15] selftests: netfilter: nf_nat_edemux.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 12/15] selftests: netfilter: nft_conntrack_helper.sh: test to lib.sh infra, Florian Westphal
- [PATCH net-next 13/15] selftests: netfilter: nft_fib.sh: move to lib.sh infra, Florian Westphal
- [PATCH net-next 14/15] selftests: netfilter: nft_flowtable.sh: move test to lib.sh infra, Florian Westphal
- [PATCH net-next 15/15] selftests: netfilter: nft_nat.sh: move to lib.sh infra, Florian Westphal
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net, Jakub Kicinski
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net, Jakub Kicinski
- Re: [PATCH net-next 00/15] selftests: move netfilter tests to net, patchwork-bot+netdevbpf
- [PATCH nf,v2] netfilter: flowtable: incorrect pppoe tuple, Pablo Neira Ayuso
- [PATCH nf] netfilter: flowtable: incorrect pppoe tuple in reply direction, Pablo Neira Ayuso
- [PATCH nf,v3] netfilter: flowtable: validate pppoe header, Pablo Neira Ayuso
- [PATCH net-next v2 0/3] netlink: Add nftables spec w/ multi messages,
Donald Hunter
- [PATCH v2 nf] netfilter: nft_set_pipapo: do not free live element, Florian Westphal
- [PATCH nf] netfilter: nft_set_pipapo: walk over current view on netlink dump, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_set_pipapo: do not free live element,
Florian Westphal
- [PATCH nf,v2] netfilter: flowtable: validate PPPoe header, Pablo Neira Ayuso
- [iptables PATCH] libxtables: Attenuate effects of functions' internal static buffers,
Phil Sutter
- [PATCH net] netfilter: complete validation of user input,
Eric Dumazet
- [PATCH nf] netfilter: flowtable: validate PPPoe header, Pablo Neira Ayuso
- [iptables PATCH] xshared: Fix parsing of empty string arg in '-c' option,
Phil Sutter
- [PATCH nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets, Pablo Neira Ayuso
- [PATCH -stable,5.4.x 0/5] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH -stable,5.4.x 1/5] netfilter: nf_tables: reject new basechain after table flag update, Pablo Neira Ayuso
- [PATCH -stable,5.4.x 2/5] netfilter: nf_tables: flush pending destroy work before exit_net release, Pablo Neira Ayuso
- [PATCH -stable,5.4.x 3/5] netfilter: nf_tables: release batch on table validation from abort path, Pablo Neira Ayuso
- [PATCH -stable,5.4.x 4/5] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path, Pablo Neira Ayuso
- [PATCH -stable,5.4.x 5/5] netfilter: nf_tables: discard table flag update with pending basechain deletion, Pablo Neira Ayuso
- [PATCH -stable,5.10.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH -stable,5.15.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH -stable 6.1.x 0/3] Netfilter fixes for -stable,
Pablo Neira Ayuso
- [PATCH nft 0/4] add missing requirements in tests/shell,
Pablo Neira Ayuso
- [PATCH 0/2] Forbid illegitimate binding via listen(2),
Ivanov Mikhail
- [RFC PATCH v1 00/10] Socket type control for Landlock,
Ivanov Mikhail
- [RFC PATCH v1 01/10] landlock: Support socket access-control, Ivanov Mikhail
- [RFC PATCH v1 02/10] landlock: Add hook on socket_create(), Ivanov Mikhail
- [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test, Ivanov Mikhail
- [RFC PATCH v1 04/10] selftests/landlock: Create 'socket_access_rights' test, Ivanov Mikhail
- [RFC PATCH v1 06/10] selftests/landlock: Create 'rule_with_unhandled_access' test, Ivanov Mikhail
- [RFC PATCH v1 05/10] selftests/landlock: Create 'rule_with_unknown_access' test, Ivanov Mikhail
- [RFC PATCH v1 08/10] selftests/landlock: Create 'ruleset_overlap' test, Ivanov Mikhail
- [RFC PATCH v1 07/10] selftests/landlock: Create 'inval' test, Ivanov Mikhail
- [RFC PATCH v1 10/10] samples/landlock: Support socket protocol restrictions, Ivanov Mikhail
- [RFC PATCH v1 09/10] selftests/landlock: Create 'ruleset_with_unknown_access' test, Ivanov Mikhail
- Re: [RFC PATCH v1 00/10] Socket type control for Landlock, Günther Noack
- [nft PATCH] dynset: avoid errouneous assert with ipv6 concat data,
Son Dinh
- [PATCH nft 0/2] netfilter: nf_tables: Use rcu lock to enhance protection of the lists,
Ziyang Xuan
- [nft PATCH] expr: make map lookup expression as an argument in vmap statement,
Son Dinh
- [syzbot] [netfilter?] KMSAN: uninit-value in nf_flow_offload_ip_hook,
syzbot
- [PATCH net] netfilter: validate user input for expected length,
Eric Dumazet
- [PATCH] conntrackd: Fix signal handler race-condition,
bre Breitenberger Markus
- static analysis results, Ivan Stepchenko
- [PATCH nf,v2] netfilter: nf_tables: discard table flag update with pending basechain deletion, Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: discard table flag update with pending basechain deletion, Pablo Neira Ayuso
- [PATCH nft v2 0/2] Support for variables in map expressions,
Jeremy Sowden
- [PATCH nf,v2 1/4] netfilter: nf_tables: release batch on table validation from abort path,
Pablo Neira Ayuso
- [PATCH nft] tests: packetpath: add check for drop policy, Florian Westphal
- [PATCH nf-next 0/9] nft_set_pipapo: remove cannot-fail allocations on commit and abort,
Florian Westphal
- [PATCH nft v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get(),
Ziyang Xuan
- [PATCH nft] src: disentangle ICMP code types, Pablo Neira Ayuso
- [PATCH nf 1/3] netfilter: nf_tables: release batch on table validation from abort path,
Pablo Neira Ayuso
- [PATCH nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get(),
Ziyang Xuan
- [PATCH nft] netlink_delinearize: unused code in reverse cross-day meta hour range, Pablo Neira Ayuso
- [PATCHv3 net-next 00/14] ipvs: per-net tables and optimizations,
Julian Anastasov
- [PATCHv3 net-next 08/14] ipvs: use resizable hash table for services, Julian Anastasov
- [PATCHv3 net-next 10/14] ipvs: show the current conn_tab size to users, Julian Anastasov
- [PATCHv3 net-next 12/14] ipvs: use more keys for connection hashing, Julian Anastasov
- [PATCHv3 net-next 01/14] rculist_bl: add hlist_bl_for_each_entry_continue_rcu, Julian Anastasov
- [PATCHv3 net-next 14/14] ipvs: add conn_lfactor and svc_lfactor sysctl vars, Julian Anastasov
- [PATCHv3 net-next 05/14] ipvs: do not keep dest_dst after dest is removed, Julian Anastasov
- [PATCHv3 net-next 13/14] ipvs: add ip_vs_status info, Julian Anastasov
- [PATCHv3 net-next 11/14] ipvs: no_cport and dropentry counters can be per-net, Julian Anastasov
- [PATCHv3 net-next 03/14] ipvs: some service readers can use RCU, Julian Anastasov
- [PATCHv3 net-next 04/14] ipvs: use single svc table, Julian Anastasov
- [PATCHv3 net-next 07/14] ipvs: add resizable hash tables, Julian Anastasov
- [PATCHv3 net-next 02/14] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns, Julian Anastasov
- [PATCHv3 net-next 09/14] ipvs: switch to per-net connection table, Julian Anastasov
- [PATCHv3 net-next 06/14] ipvs: use more counters to avoid service lookups, Julian Anastasov
- Re: [PATCH net-next v1 2/2] tools/net/ynl: Add multi message support to ynl, Pablo Neira Ayuso
- [PATCH bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions,
Brad Cowie
- (re-send): Convert libnetfilter_queue to not need libnfnetlink],
Duncan Roe
- [PATCH v2 0/4] sysctl: Remove sentinel elements from networking,
Joel Granados via B4 Relay
- Convert libnetfilter_queue to not need libnfnetlink, Duncan Roe
- [nft PATCH v2 0/2] Add support for table's persist flag,
Phil Sutter
- [PATCH v2 net] inet: inet_defrag: prevent sk release while still in use,
Florian Westphal
- [PATCH] samples/landlock: Fix incorrect free in populate_ruleset_net,
Ivanov Mikhail
- [PATCH v1 nf] netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.c,
Kuniyuki Iwashima
- [PATCH net-next v2] netfilter: use NF_DROP instead of -NF_DROP,
Jason Xing
- [PATCH net-next 0/3] netfilter: use NF_DROP instead of -NF_DROP,
Jason Xing
- [PATCH RESEND net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack, Jason Xing
- [PATCH nftables] evaluate: add support for variables in map expressions,
Jeremy Sowden
- Re: [PATCH 1/3] leds: trigger: legtrig-bpf: Add ledtrig-bpf module,
Alexei Starovoitov
- nftables documentation improvement?,
Harald Welte
- [PATCH iptables] libxtables: Fix xtables_ipaddr_to_numeric calls with xtables_ipmask_to_numeric,
Vitaly Chikunov
- [nft PATCH] tests: shell: Avoid escape chars when printing to non-terminals,
Phil Sutter
- [nft PATCH v2 0/5] json: Accept more than two operands in binary expressions,
Phil Sutter
- [nft PATCH 0/2] Add support for table's persist flag,
Phil Sutter
- [PATCH nft] datatype: leave DTYPE_F_PREFIX only for IP address datatype, Pablo Neira Ayuso
- [PATCH net 0/3,v2] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH nf 1/3] netfilter: nf_tables: reject destroy command to remove basechain hooks,
Pablo Neira Ayuso
- [nft PATCH] doc: libnftables-json: Drop invalid ops from match expression,
Phil Sutter
- [nft PATCH] json: Accept more than two operands in binary expressions,
Phil Sutter
- [nft PATCH] tests: shell: Fix one json-nft dump for reordered output,
Phil Sutter
- xtables-addons RAWDNAT bug,
Sagatov, Evgeniy
- [PATCH nf 1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_set_pipapo: release elements in clone only from destroy path, Pablo Neira Ayuso
- [PATCH nft] tests: shell: update packetpath/flowtables after flow teardown changes, Pablo Neira Ayuso
- [PATCH nft] netlink_delinearize: reverse cross-day meta hour range,
Pablo Neira Ayuso
- [PATCH nft] evaluate: display "Range negative size" error,
Pablo Neira Ayuso
- [libnftnl PATCH 00/17] obj: Introduce attribute policies,
Phil Sutter
- [libnftnl PATCH 06/17] table: Validate NFTNL_TABLE_OWNER, too, Phil Sutter
- [libnftnl PATCH 05/17] set: Validate NFTNL_SET_ID, too, Phil Sutter
- [libnftnl PATCH 07/17] obj: Do not call nftnl_obj_set_data() with zero data_len, Phil Sutter
- [libnftnl PATCH 11/17] obj: Repurpose struct obj_ops::max_attr field, Phil Sutter
- [libnftnl PATCH 15/17] utils: Introduce and use nftnl_set_str_attr(), Phil Sutter
- [libnftnl PATCH 13/17] obj: Introduce struct obj_ops::attr_policy, Phil Sutter
- [libnftnl PATCH 02/17] table: Validate NFTNL_TABLE_USE, too, Phil Sutter
- [libnftnl PATCH 17/17] expr: Respect data_len when setting attributes, Phil Sutter
- [libnftnl PATCH 10/17] obj: Return value on setters, Phil Sutter
- [libnftnl PATCH 08/17] obj: synproxy: Use memcpy() to handle potentially unaligned data, Phil Sutter
- [libnftnl PATCH 16/17] obj: Respect data_len when setting attributes, Phil Sutter
- [libnftnl PATCH 01/17] chain: Validate NFTNL_CHAIN_USE, too, Phil Sutter
- [libnftnl PATCH 09/17] utils: Fix for wrong variable use in nftnl_assert_validate(), Phil Sutter
- [libnftnl PATCH 14/17] obj: Enforce attr_policy compliance in nftnl_obj_set_data(), Phil Sutter
- [libnftnl PATCH 04/17] obj: Validate NFTNL_OBJ_TYPE, too, Phil Sutter
- [libnftnl PATCH 12/17] obj: Call obj_ops::set with legal attributes only, Phil Sutter
- [libnftnl PATCH 03/17] flowtable: Validate NFTNL_FLOWTABLE_SIZE, too, Phil Sutter
- Re: [libnftnl PATCH 00/17] obj: Introduce attribute policies, Phil Sutter
- [PATCH net] inet: inet_defrag: prevent sk release while still in use,
Florian Westphal
- [PATCH net] MAINTAINERS: step down as netfilter maintainer,
Florian Westphal
- [PATCH nft] netlink_delinearize: restore binop syntax when listing ruleset for flags,
Pablo Neira Ayuso
- [PATCH nf 2/2] netfilter: flowtable: use UDP timeout after flow teardown, Pablo Neira Ayuso
- [BUG] kernel warning from br_nf_local_in+0x157/0x180,
Jianbo Liu
- [PATCH nf] netfilter: flowtable: infer TCP state and timeout before flow teardown,
Pablo Neira Ayuso
- [PATCH 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers,
Thomas Weißschuh
- [PATCH 01/11] stackleak: don't modify ctl_table argument, Thomas Weißschuh
- [PATCH 02/11] cgroup: bpf: constify ctl_table arguments and fields, Thomas Weißschuh
- [PATCH 03/11] hugetlb: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH 04/11] utsname: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH 05/11] neighbour: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH 06/11] ipv4/sysctl: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH 11/11] sysctl: treewide: constify the ctl_table argument of handlers, Thomas Weißschuh
- [PATCH 07/11] ipv6/addrconf: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH 10/11] sysctl: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH 09/11] ipvs: constify ctl_table arguments of utility functions, Thomas Weißschuh
- [PATCH 08/11] ipv6/ndisc: constify ctl_table arguments of utility function, Thomas Weißschuh
- [PATCH nf] netfilter: nf_tables: do not reject dormant flag update for table with owner,
Quan Tian
- [PATCH nf] netfilter: nf_tables: do not compare internal table flags on updates,
Pablo Neira Ayuso
- [PATCH 0/4] sysctl: Remove sentinel elements from networking,
Joel Granados via B4 Relay
- [PATCH nft] tests: py: remove meter tests,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: fix consistent table updates being rejected, Quan Tian
- [PATCH nft] tests/py: remove flow table json test cases,
Florian Westphal
- [PATCH] iptables: Fixed the issue with combining the payload in case of invert filter for tcp src and dst ports,
Sriram Rajagopalan
- [PATCH] nftables: Fixed the issue with merging the payload in case of invert filter for tcp src and dst ports,
Sriram Rajagopalan
- Flowtable race condition error,
Sven Auhagen
- [PATCH v3 nf-next 1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table,
Quan Tian
- [PATCH nf-next v2] netfilter: conntrack: avoid sending RST to reply out-of-window skb,
Jason Xing
- [PATCH nf] netfilter: nf_tables: fix updating/deleting devices in an existing netdev chain,
Pablo Neira Ayuso
- [PATCH v2 nf-next 1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table,
Quan Tian
- [PATCH nf-next] netfilter: nf_tables: support updating userdata for nft_table,
Quan Tian
- [nft PATCH 0/7] A bunch of JSON printer/parser fixes,
Phil Sutter
- [PATCH arptables] Fix a couple of spelling errors,
Jeremy Sowden
- [PATCH v2 xtables] extensions: xt_TPROXY: add txlate support,
Florian Westphal
- [PATCH net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack,
Jason Xing
- iptables-nft: Wrong payload merge of rule filter - "! --sport xx ! --dport xx",
Sriram Rajagopalan
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]