Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH] netfilter: Parse ICMPv6 redirects, (continued)
- [PATCH] ipv6: Preserve link scope traffic original oif,
Alin Nastac
- [PATCH] netfilter: Use pr_cont where appropriate,
Joe Perches
- nft authentication,
Fabian Franz
- [PATCH nft v2] src: hash: support of symmetric hash,
Laura Garcia Liebana
- [PATCH nf-next v2 2/2] netfilter: nft_hash: support of symmetric hash,
Laura Garcia Liebana
- ANNOUNCE: Netdev 2.1 update Feb 28, Jamal Hadi Salim
- [PATCH] netfilter: remove redundant check on ret being non-zero,
Colin King
- [PATCH lnfct 0/2] fix - src: add support for IPv6 NAT,
Ken-ichirou MATSUZAWA
- [PATCH nft 1/4] src: add conntrack zone support,
Pablo Neira Ayuso
- [PATCH nft 1/4] evaluate: set byteorder as lhs expression context in stmt_evaluate_arg(),
Pablo Neira Ayuso
- per flow stats collection using libnetfilter_conntrack,
Tarun Khanna
- [PATCH iptables] xtables: Remove unused macro,
Subash Abhinov Kasiviswanathan
- [PATCH iptables] extensions: libxt_hashlimit: Add translation to nft,
Elise Lennion
- [PATCH libnftnl 0/2] object: fix crashes with out-of-tree nft,
Florian Westphal
- [PATCH 0/7] nftables: add ct helper set support,
Florian Westphal
- ANNOUNCE: Netdev 2.1 update Feb 27, Jamal Hadi Salim
- [PATCH V3] audit: normalize NETFILTER_PKT,
Richard Guy Briggs
- [PATCH nf] netfilter: nft_set_bitmap: incorrect bitmap size, Pablo Neira Ayuso
- nft bug: Deleting map elements with intervals,
Felix Kluge
- [PATCH nft] mnl: continue monitor if errno is ESRCH,
Alexander Alemayhu
- [PATCH nft] datatype: add DTYPE_F_CLONE flag, Pablo Neira Ayuso
- [PATCH nft] tests: py: fix incorrect bytecode in numgen and hash mappings, Pablo Neira Ayuso
- [PATCH nft] netlink_delinearize: remove integer_type_postprocess(), Pablo Neira Ayuso
- [PATCH nft 1/2] evaluate: store byteorder for set keys,
Pablo Neira Ayuso
- [PATCH] libiptc: don't set_changed() when checking rules with module jumps,
Dan Williams
- [PATCH nf 1/2] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success.,
Jarno Rajahalme
- [PATCH] uapi: fix linux/netfilter/xt_hashlimit.h userspace compilation error,
Dmitry V. Levin
- [PATCH libnftnl] exthdr: remove unused variable uval8,
Alexander Alemayhu
- [PATCH nft] src: hash: support of symmetric hash, Laura Garcia Liebana
- [PATCH nf-next 2/2] netfilter: nft_hash: support of symmetric hash,
Laura Garcia Liebana
- [PATCH nf-next 1/2] netfilter: nft_hash: rename nft_hash to nft_jhash,
Laura Garcia Liebana
- [PATCH libnftnl] expr: hash: support of symmetric hash,
Laura Garcia Liebana
- [PATCH nf-next 0/2] netfilter: nft_hash: symhash type support, Laura Garcia Liebana
- Re: netfilter: nft_ct: add zone id set support,
Geert Uytterhoeven
- Re: [PATCH V2] audit: normalize NETFILTER_PKT (fwd),
Julia Lawall
- [PATCH] uapi: stop including linux/sysctl.h in uapi/linux/netfilter.h,
Dmitry V. Levin
- [PATCH V2] audit: normalize NETFILTER_PKT,
Richard Guy Briggs
- [PATCH nft] src: revisit tcp options support,
Pablo Neira Ayuso
- Re: [PATCH net-next 1/2] netfilter: nf_ct_expect: nf_ct_expect_related_report(): Return zero on success,, Pablo Neira Ayuso
- ANNOUNCE: Netdev 2.1 CFP extended, Jamal Hadi Salim
- [PATCH nft] erec: Fix input descriptors for included files,
Anatole Denis
- [nf-next PATCH] nftables: exthdr: Allow checking TCP option presence, too,
Phil Sutter
- net: possible deadlock in skb_queue_tail,
Andrey Konovalov
- ANNOUNCE: Netdev 2.1 update Feb 20, Jamal Hadi Salim
- [ANNOUNCE] ipset 6.31 released, Jozsef Kadlecsik
- [PATCH 0/2] ipset patches for nf,
Jozsef Kadlecsik
- [PATCH nf-next] netfilter: nfnetlink: remove static declaration from err_list,
Liping Zhang
- Re: [4.9.10] ip_route_me_harder() reading off-slab,
Florian Westphal
- [libnftnl PATCH] exthdr: Add missing exthdr flags cases,
Phil Sutter
- [PATCH] netfilter: nfnetlink_queue: fix NFQA_VLAN_MAX definition,
Ken-ichirou MATSUZAWA
- [PATCH] nfnetlink_log: fix the typo,
段炯
- [PATCH] netfilter: ipset: Null pointer exception in ipset list:set,
Vishwanath Pai
- [RFC nf-next] netfilter: ct: add helper assignment support,
Florian Westphal
- [Question] Is there some documentation for nftables development,
Fabian Franz
[PATCH libnftnl 1/3] common: get rid of nftnl_batch_build_hdr(),
Pablo Neira Ayuso
Parameter 'size' in type list:set is ignored,
Vishwanath Pai
ANNOUNCE: Netdev 2.1 update Feb 14,
Jamal Hadi Salim
[bug report] netfilter: nft_ct: add zone id set support,
Dan Carpenter
[PATCH nft] doc: Document maps,
Elise Lennion
[PATCH ulogd2 1/2] ulogd.conf: harmonize log file options with module default values,
Kaarle Ritvanen
[PATCH nft] statement: Avoid rounding bytes in get_rate(),
Elise Lennion
conntrack_ftp and DNAT,
Klaus Ethgen
[PATCH nf-next] netfilter: nf_tables: honor NFT_SET_OBJECT in set backend selection, Pablo Neira Ayuso
[PATCH nft] doc: Document sets,
Elise Lennion
[PATCH nf-next] netfilter: update MAINTAINERS, Pablo Neira Ayuso
[PATCH nf-next 0/5] nf_tables: rule deletion by description,
Pablo Neira Ayuso
[PATCH v2 nft] doc: Document stateful objects,
Elise Lennion
[PATCH nf-next 1/1] netfilter: expect: Make return value of nf_ct_expect_insert is void,
fgao
[PATCH nf-next 1/1] netfilter: sip: Use mod_timer_pending instead of current multiple statements,
fgao
[PATCH nf] netfilter: nat: remove incorrect debug assert,
Florian Westphal
[PATCH nft] doc: Document stateful objects, Elise Lennion
nftables bug: Only the first two elements of a map are used for NAT,
Simon Hanisch
net/ipv4: warning in nf_nat_ipv4_fn,
Andrey Konovalov
[PATCH] src: consolidate XML/JSON exportation for rule,
Shivani Bhardwaj
ANNOUNCE: Netdev 2.1 seeking netdev conferences reporter(s), Jamal Hadi Salim
[PATCH] net: fix description of skb_find_text() according to removed functionality,
Igor Pylypiv
[PATCH nf-next v2,1/2] netfilter: nft_exthdr: Add support for existence check,
Pablo Neira Ayuso
ANNOUNCE: Netdev 2.1 Location and Hotel, Jamal Hadi Salim
[PATCH nftables 0/7] TCP option matching,
Manuel Messner
[PATCH nf-next 0/1] TCP option matching,
Manuel Messner
Re: Chain priorities for NAT, Pablo Neira Ayuso
[PATCH nft] datatype: Replace getaddrinfo() by internal lookup table,
Elise Lennion
ANNOUNCE: Netdev 2.1 update Feb 06, Jamal Hadi Salim
[PATCH iptables V2 2/2] xshared: using the blocking file lock request when we wait indefinitely,
Liping Zhang
[PATCH nf-next,v2 1/7] netfilter: nf_tables: pass netns to set->ops->remove(),
Pablo Neira Ayuso
- [PATCH nf-next,v2 3/7] netfilter: nf_tables: rename deactivate_one() to flush(), Pablo Neira Ayuso
- [PATCH nf-next,v2 6/7] netfilter: nf_tables: add space notation to sets, Pablo Neira Ayuso
- [PATCH nf-next,v2 7/7] netfilter: nf_tables: add bitmap set type, Pablo Neira Ayuso
- [PATCH nf-next,v2 4/7] netfilter: nf_tables: add flush field to struct nft_set_iter, Pablo Neira Ayuso
- [PATCH nf-next,v2 5/7] netfilter: nf_tables: rename struct nft_set_estimate class field, Pablo Neira Ayuso
- [PATCH nf-next,v2 2/7] netfilter: nf_tables: use struct nft_set_iter in set element flush, Pablo Neira Ayuso
[PATCH iptables 1/2] xshared: do not lock again and again if "-w" option is not specified,
Liping Zhang
[PATCH] Revert "net: Remove state argument from skb_find_text()",
Igor Pylypiv
[PATCH] netfilter: xt_hashlimit: Fix integer divide round to zero.,
Alban Browaeys
Concurrent iptables-restore calls clobberring each other,
Shaun Crampton
[PATCH nft] statement: Print NAT IPv4 address in nat_stmt_print(),
Elise Lennion
[PATCH nftables] statement: fix print of ip dnat address,
Florian Westphal
[PATCH -next 0/9] nftables: add zone support to ct statement,
Florian Westphal
[PATCH 00/27] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/27] netfilter: merge udp and udplite conntrack helpers, Pablo Neira Ayuso
- [PATCH 11/27] arptables: use match, target and data copy_to_user helpers, Pablo Neira Ayuso
- [PATCH 24/27] netfilter: guarantee 8 byte minalign for template addresses, Pablo Neira Ayuso
- [PATCH 15/27] netfilter: pkttype: unnecessary to check ipv6 multicast address, Pablo Neira Ayuso
- [PATCH 17/27] netfilter: nf_tables: eliminate useless condition checks, Pablo Neira Ayuso
- [PATCH 22/27] skbuff: add and use skb_nfct helper, Pablo Neira Ayuso
- [PATCH 19/27] netfilter: conntrack: no need to pass ctinfo to error handler, Pablo Neira Ayuso
- [PATCH 20/27] netfilter: reset netfilter state when duplicating packet, Pablo Neira Ayuso
- [PATCH 26/27] ipvs: free ip_vs_dest structs when refcnt=0, Pablo Neira Ayuso
- [PATCH 27/27] netfilter: allow logging from non-init namespaces, Pablo Neira Ayuso
- [PATCH 23/27] netfilter: add and use nf_ct_set helper, Pablo Neira Ayuso
- [PATCH 25/27] netfilter: merge ctinfo into nfct pointer storage area, Pablo Neira Ayuso
- [PATCH 21/27] netfilter: reduce direct skb->nfct usage, Pablo Neira Ayuso
- [PATCH 18/27] netfilter: nf_tables: Eliminate duplicated code in nf_tables_table_enable(), Pablo Neira Ayuso
- [PATCH 14/27] xtables: extend matches and targets with .usersize, Pablo Neira Ayuso
- [PATCH 16/27] netfilter: nft_meta: deal with PACKET_LOOPBACK in netdev family, Pablo Neira Ayuso
- [PATCH 12/27] ebtables: use match, target and data copy_to_user helpers, Pablo Neira Ayuso
- [PATCH 13/27] xtables: use match, target and data copy_to_user helpers in compat, Pablo Neira Ayuso
- [PATCH 10/27] ip6tables: use match, target and data copy_to_user helpers, Pablo Neira Ayuso
- [PATCH 06/27] netfilter: conntrack: validate SCTP crc32c in PREROUTING, Pablo Neira Ayuso
- [PATCH 07/27] netfilter: xt_connlimit: use rb_entry(), Pablo Neira Ayuso
- [PATCH 08/27] xtables: add xt_match, xt_target and data copy_to_user functions, Pablo Neira Ayuso
- [PATCH 09/27] iptables: use match, target and data copy_to_user helpers, Pablo Neira Ayuso
- [PATCH 02/27] netfilter: nat: merge udp and udplite helpers, Pablo Neira Ayuso
- [PATCH 04/27] netfilter: nft_ct: add average bytes per packet support, Pablo Neira Ayuso
- [PATCH 03/27] netfilter: nf_tables: add missing descriptions in nft_ct_keys, Pablo Neira Ayuso
- [PATCH 05/27] netfilter: select LIBCRC32C together with SCTP conntrack, Pablo Neira Ayuso
- Re: [PATCH 00/27] Netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/27] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 02/27] netfilter: nf_tables_offload: avoid excessive stack usage, Pablo Neira Ayuso
- [PATCH 03/27] netfilter: nf_tables_offload: move indirect flow_block callback logic to core, Pablo Neira Ayuso
- [PATCH 07/27] netfilter: nf_tables_offload: refactor the nft_flow_offload_chain function, Pablo Neira Ayuso
- [PATCH 10/27] netfilter: fix include guards., Pablo Neira Ayuso
- [PATCH 09/27] netfilter: nf_tables_offload: remove rules when the device unregisters, Pablo Neira Ayuso
- [PATCH 13/27] netfilter: inline xt_hashlimit, ebt_802_3 and xt_physdev headers, Pablo Neira Ayuso
- [PATCH 19/27] netfilter: conntrack: use consistent style when defining inline functions, Pablo Neira Ayuso
- [PATCH 18/27] netfilter: move nf_bridge_frag_data struct definition to a more appropriate header., Pablo Neira Ayuso
- [PATCH 27/27] netfilter: conntrack: remove two unused functions from nf_conntrack_timestamp.h., Pablo Neira Ayuso
- [PATCH 25/27] netfilter: remove CONFIG_NETFILTER checks from headers., Pablo Neira Ayuso
- [PATCH 17/27] netfilter: synproxy: move code between headers., Pablo Neira Ayuso
- [PATCH 20/27] netfilter: replace defined(CONFIG...) || defined(CONFIG...MODULE) with IS_ENABLED(CONFIG...)., Pablo Neira Ayuso
- [PATCH 22/27] netfilter: br_netfilter: update stub br_nf_pre_routing_ipv6 parameter to `void *priv`., Pablo Neira Ayuso
- [PATCH 21/27] netfilter: conntrack: wrap two inline functions in config checks., Pablo Neira Ayuso
- [PATCH 26/27] netfilter: conntrack: remove CONFIG_NF_CONNTRACK checks from nf_conntrack_zones.h., Pablo Neira Ayuso
- [PATCH 24/27] netfilter: conntrack: remove CONFIG_NF_CONNTRACK check from nf_conntrack_acct.h., Pablo Neira Ayuso
- [PATCH 23/27] netfilter: conntrack: move code to linux/nf_conntrack_common.h., Pablo Neira Ayuso
- [PATCH 14/27] netfilter: update include directives., Pablo Neira Ayuso
- [PATCH 16/27] netfilter: move inline nf_ip6_ext_hdr() function to a more appropriate header., Pablo Neira Ayuso
- [PATCH 15/27] netfilter: remove nf_conntrack_icmpv6.h header., Pablo Neira Ayuso
- [PATCH 11/27] netfilter: fix coding-style errors., Pablo Neira Ayuso
- [PATCH 04/27] netfilter: nft_synproxy: add synproxy stateful object support, Pablo Neira Ayuso
- [PATCH 12/27] netfilter: ip_tables: remove unused function declarations., Pablo Neira Ayuso
- [PATCH 05/27] netfilter: nft_{fwd,dup}_netdev: add offload support, Pablo Neira Ayuso
- [PATCH 06/27] netfilter: nf_tables_offload: add __nft_offload_get_chain function, Pablo Neira Ayuso
- [PATCH 08/27] netfilter: nf_tables_offload: refactor the nft_flow_offload_rule function, Pablo Neira Ayuso
- [PATCH 01/27] netfilter: nf_tables: Fix an Oops in nf_tables_updobj() error handling, Pablo Neira Ayuso
- Re: [PATCH 00/27] Netfilter updates for net-next, David Miller
[PATCH ulogd2] adjust ulogd.logrotate to match ulogd.conf,
Kaarle Ritvanen
linux-next: manual merge of the rcu tree with the netfilter-next tree, Stephen Rothwell
[PATCH nft v2 2/2] src: Always print range expressions numerically,
Elise Lennion
[PATCH nft v2 1/2] main: Validate the number of numeric options,
Elise Lennion
[PATCH nft] configure: Require newer version of libxtables,
Elise Lennion
ANNOUNCE: Netdev 2.1 update, Jamal Hadi Salim
[PATCH nf-next v2] netfilter: allow logging from non-init namespaces,
Michal Kubecek
new patch state in patchwork..., David Miller
[PATCH nft] src: Always print range expressions numerically,
Elise Lennion
net: suspicious RCU usage in nf_hook,
Dmitry Vyukov
[ANNOUNCE] iptables 1.6.1 release, Pablo Neira Ayuso
[PATCH 1/2 conntrack-tools] conntrackd: cthelper: Free pktb after use,
Kevin Cernekee
[RFC PATCH] audit: normalize NETFILTER_PKT,
Richard Guy Briggs
[PATCH conntrack-tools] conntrackd: cthelper: Don't leak nat_tuple,
Kevin Cernekee
[PATCH V2 1/2] netfilter: ctnetlink: Fix regression in CTA_STATUS processing,
Kevin Cernekee
[PATCH net] tcp: don't annotate mark on control socket from tcp_v6_send_response(),
Pablo Neira Ayuso
[PATCH nft v3 6/6] tests: py: Add tests for stateful objects, Elise Lennion
[PATCH nft v3 4/6] src: Allow list stateful objects in a table, Elise Lennion
[PATCH nft v3 5/6] tests: py: Add suport for stateful objects in python tests, Elise Lennion
[PATCH nft v3 3/6] evaluate: Evaluate table name before reset stateful objects in a table, Elise Lennion
[PATCH nft v3 2/6] src: Allow list single stateful object, Elise Lennion
[PATCH nft v3 1/6] src: Allow reset single stateful object,
Elise Lennion
Re: ip_rcv_finish() NULL pointer kernel panic,
Eric Dumazet
[PATCH v2 net] net: free ip_vs_dest structs when refcnt=0,
David Windsor
[PATCH] iptables: fix the wrong appending of jump verdict after the comment.,
Shyam Saini
[nft PATCH v2] payload: explicit network ctx assignation for icmp/icmp6 in special families,
Arturo Borrero Gonzalez
[PATCH nf,v2 1/3] netfilter: nf_tables: fix set->nelems counting with no NLM_F_EXCL,
Pablo Neira Ayuso
[PATCH nft v2 2/2] src: Allow list single stateful object, Elise Lennion
[PATCH nft v2 1/2] src: Allow reset single stateful object,
Elise Lennion
[RFC PATCH 0/2] restore original default of nf_conntrack_helper sysctl,
Jiri Kosina
[PATCH 2/2] Revert "netfilter: fix nf_conntrack_helper documentation", Jiri Kosina
[PATCH 1/2] Revert "netfilter: nf_ct_helper: disable automatic helper assignment", Jiri Kosina
[PATCH nft] tests: shell: Add test for flush bug on sets with size,
Elise Lennion
[PATCH nft 2/2] src: Allow list single stateful object, Elise Lennion
[PATCH nft 1/2] src: Allow reset single stateful object, Elise Lennion
[PATCH nf-next v4 0/7] netfilter: skbuff: merge nfctinfo bits and nfct pointer,
Florian Westphal
[PATCH nft] rule: check for EINTR error from cache_init_objects() for stateful objects,
Pablo Neira Ayuso
[PATCH nf-next v3 0/7] netfilter: skbuff: merge nfctinfo bits and nfct pointer,
Florian Westphal
EPOLLERR on memory mapped netlink socket,
prashantkumar dhotre
[PATCH nf] netfilter: nft_log: restrict the log prefix length to 127,
Liping Zhang
[PATCH nf-next v4 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable,
fgao
[PATCH 1/2 nf] netfilter: nf_tables: deconstify walk callback function,
Pablo Neira Ayuso
[PATCH nf V2] netfilter: nf_tables: validate the name size when possible,
Liping Zhang
[nft PATCH] payload: use explicit network ctx assignation for icmp/icmp6 in inet family,
Arturo Borrero Gonzalez
[PATCH nf-next v3 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable, fgao
[PATCH nft] netlink: don't bail out on dump errors, Pablo Neira Ayuso
[PATCH nft] tests: shell: Add test for set element leak bug,
Elise Lennion
[PATCH nf] netfilter: nf_tables: report error if stateful obj's name is truncated,
Liping Zhang
[PATCH nf-next v2 1/1] netfilter: nf_tables: Eliminate duplicated codes in nf_tables_table_enable,
fgao
[nf-next:fw 18/18] net/netfilter/nf_conntrack_standalone.c:647:2: error: call to '__compiletime_assert_647' declared with attribute error: BUILD_BUG_ON failed: NFCT_INFOMASK >= ARCH_KMALLOC_MINALIGN, kbuild test robot
[PATCH nft] src: Honor obligatory stateless printing of flow tables,
Elise Lennion
[PATCH nf-next 0/7] nf_tables set enhancements,
Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: fix set->nelem leak, Pablo Neira Ayuso
[PATCH nf-next] netfilter: ctnetlink: make more information available in DESTROY events,
Florian Westphal
[PATCH] iptables-save: Exit with error if unable to open proc file,
Thomas Habets
[PATCH nf v2] netfilter: conntrack: refine gc worker heuristics, redux,
Florian Westphal
[nft PATCH 0/3] Boolean comparison and exthdr existence match support,
Phil Sutter
[nf-next PATCH] netfilter: nf_tables: exthdr: Add support for existence check,
Phil Sutter
[libnftnl PATCH] exthdr: Add support for exthdr flags, Phil Sutter
[nf-next PATCH] netfilter: nf_tables: cmp: support boolean operation, Phil Sutter
tcp state in conntrack destroy events,
Victor Julien
[PATCH nft 2/2] tests: py: Use stateless option on tests,
Elise Lennion
[PATCH nft 1/2] doc: Include stateless option,
Elise Lennion
AUDIT_NETFILTER_PKT message format,
Richard Guy Briggs
[RFC/PATCH 0/3] Fix ctnetlink regressions,
Kevin Cernekee
[PATCH nft v2] src: Allow to list ruleset without stateful information,
Elise Lennion
[stable] bridge: netfilter: Fix dropping packets that moving through bridge interface,
Artur Molchanov
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]