Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [nft PATCH v3 2/3] monitor: Fix printing of range elements in named sets, (continued)
- [PATCH nft] src: netlink: Remove variable nf_mon_sock.,
Varsha Rao
- [PATCH V3] netfilter: Remove duplicated rcu_read_lock.,
Taehee Yoo
- [PATCH] netfilter: fix netfilter_net_init() return,
Dan Carpenter
- [PATCH nf-next] netfilter: nf_tables: keep chain counters away from hot path, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_compat: check extension hook mask only if set, Pablo Neira Ayuso
- [nft PATCH v3 0/3] Fix printing of range elements in named sets,
Phil Sutter
- [PATCH nf] netfilter: ipt_CLUSTERIP: fix use-after-free of proc entry,
Sabrina Dubroca
- [PATCH 1/1] netfilter: nf_ct_expect: fix expect removal,
Jiri Slaby
- [nft PATCH v2 0/2] monitor: Fix printing of range elements in named sets,
Phil Sutter
- 4.12 nf_conntrack_expect crash,
Jiri Slaby
- [ANNOUNCE]: New Coreteam Member Arturo Borrero, Pablo Neira Ayuso
- [PATCHv2 -stable 0/3] ipvs: patches for stable,
Julian Anastasov
- Problem with snat.,
sorcus
- [nft PATCH 0/4] monitor: Fix printing of range elements in named sets,
Phil Sutter
- [nft PATCH] monitor: add debug messages,
Arturo Borrero Gonzalez
- [nft PATCH] set_expr: Allow passing the parent set to set_expr_alloc(),
Phil Sutter
- net-next STATUS page,
David Miller
- [nft PATCH 0/7] some memory leak fixes,
Eric Leblond
- [PATCH] libnetfilter_conntrack: bump version to 1.0.7,
Richard Weinberger
- [PATCH nf] netfilter: expect: add to hash table after expect init,
Florian Westphal
- [PATCH nf] netfilter: expect: fix crash when putting uninited expectation,
Florian Westphal
- [PATCH nft v4] include: Remove __init and __exit macro definitions.,
Varsha Rao
- how to get consistent value of "nf_conntrack_htable_size" and "nf_conntrack_hash" in a kernel module ?,
Shiyao Ma
- [PATCH nf] netfilter: nftables: onlly allow in/output for arp packets,
Florian Westphal
- [PATCH nf] netfilter: nat: fix src map lookup,
Florian Westphal
- [PATCH nf] netfilter: remove old pre-netns era hook api,
Florian Westphal
- [PATCH nft v3] include: Remove __init and __exit macro definitions.,
Varsha Rao
- [PATCH] monitor: fix printing of range elements in named sets,
Arturo Borrero Gonzalez
- [nft PATCH] segtree: Fix expr_value_cmp(),
Phil Sutter
- [PATCH libnfntl] set: free user data,
Eric Leblond
- [PATCH RFC] inetpeer: remove AVL implementation in favor of RB tree,
Eric Dumazet
- [PATCH net-next] inetpeer: remove AVL implementation in favor of RB tree, Eric Dumazet
Re: [PATCH RFC 01/26] netfilter: Replace spin_unlock_wait() with lock/unlock pair,
Alan Stern
How to add snat and dnat rules in a kernel module?, Shiyao Ma
nf_conntrack: Infoleak via CTA_ID and CTA_EXPECT_ID,
Richard Weinberger
[PATCH nf-next 1/3] netfilter: exthdr: factor out tcp option access,
Florian Westphal
[ANNOUNCE] Netfilter (+folks) userday in Faro, Portugal (Monday, July 3th), Pablo Neira Ayuso
[PATCH nft 0/3] include: Remove datatype_register(), __init and __exit macros.,
Varsha Rao
[PATCH RFC 0/26] Remove spin_unlock_wait(),
Paul E. McKenney
[PATCH RFC 10/26] arc: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 19/26] mn10300: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 13/26] blackfin: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 18/26] mips: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 24/26] sparc: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 08/26] locking: Remove spin_unlock_wait() generic definitions, Paul E. McKenney
[PATCH RFC 21/26] powerpc: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 07/26] drivers/ata: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 12/26] arm64: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 17/26] metag: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 06/26] ipc: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 05/26] exit: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 15/26] ia64: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 16/26] m32r: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH RFC 04/26] completion: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 03/26] sched: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 02/26] task_work: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
[PATCH RFC 11/26] arm: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
[PATCH v2 0/9] Remove spin_unlock_wait(), Paul E. McKenney
- [PATCH v2 7/9] drivers/ata: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 4/9] completion: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 1/9] net/netfilter/nf_conntrack_core: Fix net_conntrack_lock(), Paul E. McKenney
- [PATCH v2 5/9] exit: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 3/9] sched: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 2/9] task_work: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 8/9] locking: Remove spin_unlock_wait() generic definitions, Paul E. McKenney
- [PATCH v2 6/9] ipc: Replace spin_unlock_wait() with lock/unlock pair, Paul E. McKenney
- [PATCH v2 9/9] arch: Remove spin_unlock_wait() arch-specific definitions, Paul E. McKenney
- RE: [PATCH v2 0/9] Remove spin_unlock_wait(), David Laight
- [PATCH v3 0/9] Remove spin_unlock_wait(), Paul E. McKenney
[4.9.y,netfilter] please, cherry-pick 2638fd0f92d4,
Pablo Neira Ayuso
[4.11.y,netfilter] please, cherry-pick 87e94dbc210a,
Pablo Neira Ayuso
[RFC 0/2] nftables iptables nat co-existence patches,
Florian Westphal
[nft crap] ct original ip saddr ... handling,
Florian Westphal
- [PATCH 01/17] rename struct ct to ct_helper, Florian Westphal
- [PATCH 02/17] src: prepare for future ct timeout policy support, Florian Westphal
- [PATCH 03/17] parser: use scanner tokens again for ct key handling, Florian Westphal
- [PATCH 04/17] parser: compact list of rhs keyword expressions, Florian Westphal
- [PATCH 05/17] bison: permit 'label' on rhs side of expression, Florian Westphal
- [PATCH 06/17] bison: permit keywords in list_stmt_expressions, Florian Westphal
- [PATCH 07/17] tests: ct: remove unsupported syntax, Florian Westphal
- [PATCH 08/17] src: add alternate syntax for ct saddr, Florian Westphal
- [PATCH 09/17] src: ct: store proto base of ct key, if any, Florian Westphal
- [PATCH 10/17] src: ct: add eval part to inject dependencies for ct saddr/daddr, Florian Westphal
- [PATCH 11/17] src: unifiy meta and ct postprocessing, Florian Westphal
- Re: [nft crap] ct original ip saddr ... handling, Pablo Neira Ayuso
[PATCH] man: add include statement documentation.,
Ismo Puustinen
[PATCH 1/2] scanner: support for wildcards in include statements.,
Ismo Puustinen
[PATCH] netfilter: ip_tables: remove useless variable assignment in get_info(),
Gustavo A. R. Silva
[PATCH] libnetfilter_queue: Add information about retrieving UID/GID/SECCTX fields,
Piotr Sawicki
Bug on nfacct xml output, Marcelo S Mota
[PATCH net-next] netfilter: conntrack: add a new NF_CT_EXT_EXPAND extension,
Lin Zhang
Re: [netfilter-core] Heap overflow in xt_geoip.c,
Jan Engelhardt
[PATCH nft] include: Remove __init macro definition., Varsha Rao
[PATCH nft 1/2] src: add new generic context structure nft_ctx,
Pablo M. Bermudo Garay
[PATCH 1/2] tests: shell: Add test for incomplete set add set command,
Shyam Saini
[PATCH] bump version to 1.0.3,
Richard Weinberger
[PATCH] nft: make raw payloads work,
Laurent Fasnacht
[PATCH] tests: py: Fail test forcefully when bug is not fixed,
Shyam Saini
[4.11.y netfilter] 4.11 iptables regression fix,
Florian Westphal
[PATCH lnf-queue] src: prepare for new release,
Florian Westphal
[PATCH nf-next] netfilter: nfnetlink: extended ACK reporting, Pablo Neira Ayuso
[PATCH nft] evaluate: Better error reporting for bad set references, Pablo Neira Ayuso
[PATCH nft] evaluate: merge nested set flags, Pablo Neira Ayuso
[PATCH nf] netfilter: ebt_nflog: fix unexpected truncated packet,
Liping Zhang
[NFQUEUE] lack of UID/GID fields in fragmented packets,
Piotr Sawicki
[PATCH nft 0/4] restrict meta nfproto to inet family,
Florian Westphal
[PATCHv3] tests: py: Add test for ambiguity while setting the value,
Shyam Saini
[PATCH nft] src: error reporting for nested ruleset representation, Pablo Neira Ayuso
[PATCH nft v3] src: Pass stateless, numeric, ip2name and handle variables as structure members.,
Varsha Rao
[PATCH nft v2] src: Pass stateless, numeric, ip2name and handle variables as structure members.,
Varsha Rao
[PATCH nft] src: Pass stateless, numeric, ip2name and handle variables as structure members.,
Varsha Rao
[PATCH nf-next] netfilter: conntrack: use NFPROTO_MAX to size array,
Florian Westphal
[PATCH nf-next] nf_tables: reduce chain type table size,
Florian Westphal
using nft & iptables nat in parallel,
Florian Westphal
[PATCH] netfilter: conntrack: fix clash resolution in nat,
Haishuang Yan
[conntrack-tools PATCH v2] conntrackd: make the daemon run in RT mode by default,
Arturo Borrero Gonzalez
[PATCHv2] tests: shell: Add test for ambguity while setting the value,
Shyam Saini
[conntrack-tools PATCH v2] In order to prevent netlink buffer overrun, conntrackd is recommended to run,
Arturo Borrero Gonzalez
[PATCH] tests: shell: Add test for ambguity while setting the value,
Shyam Saini
[PATCH] netfilter: ctnetlink: move CTA_TIMEOUT case to outside,
Haishuang Yan
nfqueue accepted packet is disappeared, Oleg
[PATCH nft] netlink_delinearize: prefer ct event set foo,bar over 'set foo|bar',
Florian Westphal
[PATCH] decnet: dn_rtmsg: Improve input length sanitization in dnrmg_receive_user_skb,
Mateusz Jurczyk
[PATCH] netfilter: nfnetlink: Improve input length sanitization in nfnetlink_rcv,
Mateusz Jurczyk
[PATCH nft 1/2] doc: nft: describe -I override behaviour when path starts by ./ and /,
Pablo Neira Ayuso
[PATCH nft 1/2] parser: allow ct eventmask set new,related,
Florian Westphal
[PATCH 1/3] scanner: add files in include dirs in alphabetical order.,
Ismo Puustinen
[PATCH v3 1/2] scanner: add support for include directories,
Ismo Puustinen
[conntrack-tools PATCH 1/4] conntrackd: evaluate configuration earlier,
Arturo Borrero Gonzalez
[PATCH] src: Remove expire information from list stateless ruleset.,
Varsha Rao
[PATCH iptables 1/3] tests: xlate: generalize owner,
Pablo M. Bermudo Garay
[PATCH V2] netfilter: Remove duplicated rcu_read_lock.,
Taehee Yoo
[PATCH v2 1/2] scanner: add support for include directories,
Ismo Puustinen
[PATCH nf-next RFC 0/5] netfilter: add net namespace support for cthelper,
Liping Zhang
[PATCH nf] netfilter: nf_ct_dccp/sctp: fix memory leak after netns cleanup,
Liping Zhang
[PATCH 1/1] iptables-xml: Fix segfault on jump without a target,
Oliver Ford
[PATCH] netfilter, kbuild: use canonical method to specify objs.,
Jike Song
[PATCH v2 nf-next] netfilter: ebt: Use new helper ebt_invalid_target to check target,
gfree . wind
[PATCH nf-next] netfilter: ebt: Use ebt_invalid_target instead of INVALID_TARGET,
gfree . wind
[PATCH] ipset: Fix ipset command replacement in runtest.sh,
Neutron Soutmun
[PATCH nf-next] netns: add and use net_ns_barrier,
Florian Westphal
[PATCH nf-next] netfilter: move table iteration out of netns exit paths,
Florian Westphal
[PATCHv2] extensions: libxt_cluster: Add translation to nft,
Shyam Saini
[PATCH nft] src: remove global nftnl_batch structure in mnl layer, Pablo Neira Ayuso
[PATCH nft] meta: permit meta nfproto ip in ip family,
Florian Westphal
[PATCH conntrack-tools] ipv6: remove use of HAVE_INET_PTON_IPV6,
Nicolas Dichtel
[4.9.y,netfilter] please, cherry-pick da2f27e9e615,
Pablo Neira Ayuso
[PATCH nf-next V2] netfilter: cttimeout: use nf_ct_iterate_cleanup_net to unlink timeout objs,
Liping Zhang
[PATCH nf-next V2] netfilter: nf_ct_helper: use nf_ct_iterate_destroy to unlink helper objs,
Liping Zhang
[PATCH nft 1/2] expression: don't trim off unary expression on delinearization,
Pablo Neira Ayuso
[PATCH 1/1] iptables: Add file output option to iptables-save,
Oliver Ford
[nft PATCH v2] evaluate: avoid reference to multiple src data in statements which set values,
Arturo Borrero Gonzalez
NFQUEUE and TRPOXY, Pavel Vajarov
[PATCH] Fix typo in documentation of nft,
Bertrand Bonnefoy-Claudet
[PATCH nf-next 8/9,v2] netfilter: nft_set_hash: add non-resizable hashtable implementation,
Pablo Neira Ayuso
[PATCHv2 net] netfilter: do not hold dev in ipt_CLUSTERIP, Xin Long
[nft PATCH] evaluate: prevent using sets in payload statements,
Arturo Borrero Gonzalez
[PATCH 1/1] extensions: libxt_cluster: Add translation to nft,
Shyam Saini
[PATCH nft 1/3] rule: adjust set expression size accordingly with intervals,
Pablo Neira Ayuso
[PATCH nf-next 0/9] nf_tables set updates,
Pablo Neira Ayuso
[PATCH v3] extensions: libxt_hashlimit: fix uint64_t printf formats,
Alin Nastac
[nft PATCH 0/4 RFC] Support IPv6 AH header matches,
Phil Sutter
[PATCH nf] netfilter: nft_set_rbtree: handle re-addition element after deletion,
Pablo Neira Ayuso
[PATCH nf] netfilter: nat: use atomic bit op to clear the _SRC_NAT_DONE_BIT,
Liping Zhang
[PATCH nf-next 0/5] netfilter: conntrack: rework nf_ct_iterate, part 1.,
Florian Westphal
[PATCH nf-next 0/3] netfilter: handle hash resize situation in nf_ct_iterate_cleanup,
Liping Zhang
[PATCH nf] netfilter: ctnetlink: fix incorrect nf_ct_put during hash resize,
Liping Zhang
[PATCH net] netfilter: do not hold dev in ipt_CLUSTERIP,
Xin Long
[PATCH nft v3 0/7] switch l4 dependency to meta l4proto,
Florian Westphal
[PATCH net-next 1/2] netfilter: resolve warnings about missing prototypes,
Stephen Hemminger
[PATCH v5 1/1] iptables: Fix crash on malformed iptables-restore,
Oliver Ford
[nft PATCH v3] List handles of added rules if requested,
Phil Sutter
[PATCH v4 1/1] iptables: Fix crash on malformed iptables-restore, Oliver Ford
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]