Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH nf-next v3 4/7] nf_hook_slow: Remove explicit rcu_read_lock, (continued)
- libnftnl XML parsing seems broken with libmxml 2.10, Arturo Borrero Gonzalez
- [PATCH nf-next] netfilter: nft_lookup: remove superfluous element found check, Pablo Neira Ayuso
- Why ctinfo is IP_CT_RELATED_REPLY when reject with TCP RST, Feng Gao
- [PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets,
KOVACS Krisztian
- [PATCH nf-next] netfilter: xt_helper: Use sizeof(variable) instead of literal number,
fgao
- [PATCH] netfilter: fix namespace handling in nf_log_proc_dostring,
Jann Horn
- [nft] Problems with flushing all elements from a set,
Anders K. Pedersen | Cohaesio
- [PATCH nf-next] netfilter: Enhance the codes used to get random once,
fgao
- [PATCH nf-next] netfilter: nf_tables: check tprot_set first when we use xt.thoff,
Liping Zhang
- rate limit not working ?,
Christophe Leroy
- [PATCH nft] tests: py: fix numgen case failed due to changes in libnftnl,
Liping Zhang
- [PATCH nf-next] netfilter: nf_tables: improve nft payload fast eval, Liping Zhang
- [PATCH nf-next] netfilter: nf_queue: improve queue range support for bridge family,
Liping Zhang
- [PATCH nft] tests: py: add more test cases for queue expr,
Liping Zhang
- [PATCH libnftnl V2] expr: queue: add NFTA_QUEUE_SREG_QNUM attr support, Liping Zhang
- [PATCH nf-next V2] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number,
Liping Zhang
- [PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds,
Laura Garcia Liebana
- [PATCH nft] meta: support for nexthop and nexthop6, Anders K. Pedersen | Cohaesio
- [PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6,
Anders K. Pedersen | Cohaesio
- [ANNOUNCE] netdev 1.2 tokyo weekly update (13th September, 2016), Hajime Tazaki
- [PATCH v3 libnftnl] expr: numgen: add number generation offset,
Laura Garcia Liebana
- [PATCH v3] netfilter: nft_numgen: add number generation offset,
Laura Garcia Liebana
- [PATCH] netfilter: nft_hash: fix hash overflow validation,
Laura Garcia Liebana
- [PATCH v8 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions,
fgao
- linux-next: manual merge of the netfilter-next tree with the net tree,
Stephen Rothwell
- [PATCH nf-next] netfilter: nft_numgen: fix race between num generate and store it,
Liping Zhang
- [PATCH nft V2] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl,
Liping Zhang
- [PATCH nf-next] netfilter: conntrack: remove packet hotpath stats,
Florian Westphal
- [PATCH conntrack-tools] Link nfct and helper modules with `-z lazy`,
Kevin Cernekee
- [PATCH libnftnl 0/3] expr: queue: add sreg_from and sreg_to support,
Liping Zhang
- [PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES,
Liping Zhang
- [PATCH nft] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl,
Liping Zhang
- [RFC] nftables: reverse path filtering for nft,
Florian Westphal
- [PATCH nft] tests: py: replace "eth0" with "lo" in dup expr tests,
Liping Zhang
- [PATCH v4 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type,
fgao
- [PATCH v3 1/2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier,
fgao
- [PATCH v3 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type,
fgao
- [PATCH v7 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions,
fgao
- [PATCH nf] netfilter: nf_nat: handle NF_DROP from nfnetlink_parse_nat_setup(), Pablo Neira Ayuso
- [PATCH nft 0/3] fix ether address formatting,
Florian Westphal
- [PATCH nf-next] netfilter: nf_conntrack: simplify __nf_ct_try_assign_helper() return logic, Pablo Neira Ayuso
- [PATCH nf-next 1/5] netfilter: nf_tables: ensure proper initialization of nft_pktinfo fields,
Pablo Neira Ayuso
- [PATCH nft 1/2] doc: update meta expression,
Florian Westphal
- [PATCH 1/2 nft] doc: nft: add my copyright statement to the manpage,
Pablo Neira Ayuso
- Network namespace and neighboring subsystem problem, Tugrul Erdogan
- [PATCH v2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier,
fgao
- [PATCH nf-next] netfilter: xt_TEE: Add the missed return value check in tee_tg_check,
fgao
- [PATCH v2 libnftnl] expr: numgen: add increment counter offset value, Laura Garcia Liebana
- [PATCH v2] netfilter: nft_numgen: add increment counter offset value,
Laura Garcia Liebana
- [PATCH v6 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
- [PATCH v3 libnftnl] expr: numgen: Rename until attribute by modulus,
Laura Garcia Liebana
- [PATCH nf-next,v2] netfilter: nft_dynset: allow to invert match criteria, Pablo Neira Ayuso
- [nft] Using variable sized data types in concat expressions, Arturo Borrero Gonzalez
- [PATCH nf-next] netfilter: xt_TCPMSS: Refactor the codes to decrease one condition check and more readable,
fgao
- [PATCH v5 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
- [PATCH nf-next] netfilter: nft_queue: check the validation of queues_total and queuenum,
Liping Zhang
- [PATCH nf-next] netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_l3proto,
Liping Zhang
- [PATCH nf] netfilter: nft_chain_route: re-route before skb is queued to userspace,
Liping Zhang
- [NetDev] [ANNOUNCE] Netdev 1.2 weekly updates (6th September, 2016), Hajime Tazaki
- [PATCH v2] netfilter: nft_hash: Add hash offset value,
Laura Garcia Liebana
- [nf-next:nexpr-wip 38/41] ERROR: "__invalid_xchg_size" [net/netfilter/nft_counter.ko] undefined!, kbuild test robot
- [nf-next:nexpr-wip 38/41] net/netfilter/nft_counter.c:67:16: note: in expansion of macro 'xchg', kbuild test robot
- [nf-next:nexpr-wip 38/41] net/netfilter/nft_counter.c:72:21: error: call to '__xchg_wrong_size' declared with attribute error: Bad argument size for xchg, kbuild test robot
- [PATCH nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH v4 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
[PATCH 2/3] tests: py: any: Make tests more generic by using other interfaces, Manuel Johannes Messner
[PATCH 1/3] tests: py: nft-tests.py: Add function for loading and removing kernel modules, Manuel Johannes Messner
[PATCH 3/3] tests: py: any: Remove duplicate tests,
Manuel Johannes Messner
[PATCH 2/2 nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH 00/29] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 03/29] netfilter: nf_dup4: remove redundant checksum recalculation, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: conntrack: Only need first 4 bytes to get l4proto ports, Pablo Neira Ayuso
- [PATCH 05/29] ipvs: use nf_ct_kill helper, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: nf_tables: add hash expression, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: conntrack: simplify the code by using nf_conntrack_get_ht, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: conntrack: resched gc again if eviction rate is high, Pablo Neira Ayuso
- [PATCH 25/29] netfilter: conntrack: add gc worker to remove timed-out entries, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: evict stale entries on netlink dumps, Pablo Neira Ayuso
- [PATCH 20/29] netfilter: nf_tables: Use nla_put_be32() to dump immediate parameters, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: log_arp: Use ARPHRD_ETHER instead of literal '1', Pablo Neira Ayuso
- [PATCH 27/29] netfilter: remove __nf_ct_kill_acct helper, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: log: Check param to avoid overflow in nf_log_set, Pablo Neira Ayuso
- [PATCH 22/29] netfilter: don't rely on DYING bit to detect when destroy event was sent, Pablo Neira Ayuso
- [PATCH 23/29] netfilter: conntrack: get rid of conntrack timer, Pablo Neira Ayuso
- [PATCH 17/29] netfilter: nf_tables: reject hook configuration updates on existing chains, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: restart search if moved to other chain, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: nft_hash: fix non static symbol warning, Pablo Neira Ayuso
- [PATCH 19/29] netfilter: nf_tables: honor NLM_F_EXCL flag in set element insertion, Pablo Neira Ayuso
- [PATCH 18/29] rhashtable: add rhashtable_lookup_get_insert_key(), Pablo Neira Ayuso
- [PATCH 16/29] netfilter: nf_tables: introduce nft_chain_parse_hook(), Pablo Neira Ayuso
- [PATCH 15/29] netfilter: nf_tables: typo in trace attribute definition, Pablo Neira Ayuso
- [PATCH 13/29] netfilter: fix spelling mistake: "delimitter" -> "delimiter", Pablo Neira Ayuso
- [PATCH 12/29] netfilter: nf_tables: add number generator expression, Pablo Neira Ayuso
- [PATCH 11/29] netfilter: nf_tables: add quota expression, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: remove ip_conntrack* sysctl compat code, Pablo Neira Ayuso
- [PATCH 10/29] netfilter: nf_conntrack: restore nf_conntrack_htable_size as exported symbol, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: use_nf_conn_expires helper in more places, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: physdev: add missed blank, Pablo Neira Ayuso
- [PATCH 06/29] netfilter: nf_tables: rename set implementations, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/29] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: nf_tables: reduce chain type table size, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: nat: destroy nat mappings on module exit path only, Pablo Neira Ayuso
- [PATCH 27/29] netfilter: conntrack: use NFPROTO_MAX to size array, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: use nf_conntrack_helpers_register when possible, Pablo Neira Ayuso
- [PATCH 13/29] netfilter: nf_tables: select set backend flavour depending on description, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: nfnetlink: extended ACK reporting, Pablo Neira Ayuso
- [PATCH 12/29] netfilter: nft_set_hash: use nft_rhash prefix for resizable set backend, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: ipt_CLUSTERIP: do not hold dev, Pablo Neira Ayuso
- [PATCH 23/29] netns: add and use net_ns_barrier, Pablo Neira Ayuso
- [PATCH 25/29] netfilter, kbuild: use canonical method to specify objs., Pablo Neira Ayuso
- [PATCH 22/29] netfilter: move table iteration out of netns exit paths, Pablo Neira Ayuso
- [PATCH 06/29] netfilter: conntrack: don't call iter for non-confirmed conntracks, Pablo Neira Ayuso
- [PATCH 16/29] netfilter: nf_tables: allow large allocations for new sets, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: ebt: Use new helper ebt_invalid_target to check target, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: nf_tables: pass set description to ->privsize, Pablo Neira Ayuso
- [PATCH 18/29] netfilter: nft_set_hash: add lookup variant for fixed size hashtable, Pablo Neira Ayuso
- [PATCH 19/29] netfilter: nf_ct_helper: use nf_ct_iterate_destroy to unlink helper objs, Pablo Neira Ayuso
- [PATCH 20/29] netfilter: cttimeout: use nf_ct_iterate_cleanup_net to unlink timeout objs, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: nft_rt: make local functions static, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: ipt_CLUSTERIP: switch to nf_register_net_hook, Pablo Neira Ayuso
- [PATCH 15/29] netfilter: nft_set_hash: add nft_hash_buckets(), Pablo Neira Ayuso
- [PATCH 11/29] netfilter: nf_tables: no size estimation if number of set elements is unknown, Pablo Neira Ayuso
- [PATCH 10/29] netfilter: nft_set_hash: unnecessary forward declaration, Pablo Neira Ayuso
- [PATCH 17/29] netfilter: nft_set_hash: add non-resizable hashtable implementation, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: conntrack: restart iteration on resize, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: conntrack: add nf_ct_iterate_destroy, Pablo Neira Ayuso
- [PATCH 05/29] netfilter: conntrack: rename nf_ct_iterate_cleanup, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: ctnetlink: delete extra spaces, Pablo Neira Ayuso
- [PATCH 03/29] netfilter: dup: resolve warnings about missing prototypes, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, David Miller
- [PATCH 00/29] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 03/29] netfilter: nft_tunnel: add support for geneve opts, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: xtables: Add snapshot of hardidletimer target, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: nf_tables: make sets built-in, Pablo Neira Ayuso
- [PATCH 15/29] nft_set_pipapo: Generalise group size for buckets, Pablo Neira Ayuso
- [PATCH 18/29] nft_set_pipapo: Prepare for vectorised implementation: helpers, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: Introduce egress hook, Pablo Neira Ayuso
- [PATCH 19/29] nft_set_pipapo: Introduce AVX2-based lookup implementation, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: Generalize ingress hook, Pablo Neira Ayuso
- [PATCH 27/29] netfilter: Rename ingress hook include file, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: conntrack: re-visit sysctls in unprivileged namespaces, Pablo Neira Ayuso
- [PATCH 16/29] nft_set_pipapo: Add support for 8-bit lookup groups and dynamic switch, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: nf_tables: add nft_set_elem_update_expr() helper function, Pablo Neira Ayuso
- [PATCH 25/29] netfilter: nft_lookup: update element stateful expression, Pablo Neira Ayuso
- [PATCH 23/29] netfilter: nf_tables: add elements with stateful expressions, Pablo Neira Ayuso
- [PATCH 17/29] nft_set_pipapo: Prepare for vectorised implementation: alignment, Pablo Neira Ayuso
- [PATCH 20/29] nft_set_pipapo: Prepare for single ranged field usage, Pablo Neira Ayuso
- [PATCH 22/29] netfilter: nf_tables: statify nft_expr_init(), Pablo Neira Ayuso
- [PATCH 12/29] netfilter: flowtable: add indr block setup support, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: Replace zero-length array with flexible-array member, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: nf_tables: add nft_set_elem_expr_alloc(), Pablo Neira Ayuso
- [PATCH 13/29] netfilter: flowtable: add tunnel match offload support, Pablo Neira Ayuso
- [PATCH 11/29] netfilter: flowtable: add nf_flow_table_block_offload_init(), Pablo Neira Ayuso
- [PATCH 10/29] netfilter: xt_IDLETIMER: clean up some indenting, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: flowtable: add tunnel encap/decap action offload support, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: nft_set_pipapo: make the symbol 'nft_pipapo_get' static, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: bitwise: use more descriptive variable-names., Pablo Neira Ayuso
- [PATCH 06/29] netfilter: cleanup unused macro, Pablo Neira Ayuso
- [PATCH 05/29] netfilter: nf_tables: make all set structs const, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, Alexei Starovoitov
[PATCH libnftnl] expr: hash: Add offset to hash value, Laura Garcia Liebana
[PATCH] netfilter: nft_hash: Add hash offset value,
Laura Garcia Liebana
[conntrack-tools PATCH 4/4 v2] doc/manual/conntrack-tools: include some bits about init systems,
Arturo Borrero Gonzalez
[PATCH conntrack-tools] conntrackd: cthelper: Add new mdns helper,
Kevin Cernekee
[PATCH v3 nf] netfilter: seqadj: Fix one possible panic in seqadj when mem is exhausted,
fgao
[PATCH nf-next 1/2] netfilter: nft_quota: fix overquota logic,
Pablo Neira Ayuso
[PATCH v2 libnftnl] expr: numgen: Rename until attribute by modulus,
Laura Garcia Liebana
[PATCH v2] netfilter: nft_numgen: rename until attribute by modulus,
Laura Garcia Liebana
[PATCH libnftnl] trace: use get_u32 to parse NFPROTO and POLICY attribute,
Liping Zhang
[PATCH nf] netfilter: nf_tables_trace: fix endiness when dump chain policy,
Liping Zhang
[PATCH iptables] extensions: libip6t_SNAT/DNAT: add square bracket in xlat output when port is specified,
Liping Zhang
[PATCH libnftnl] include: resync nf_tables.h cache copy,
Pablo Neira Ayuso
nfqueue & bridge netfilter considered broken,
Florian Westphal
[PATCH libnftnl] expr: numgen: add counter offset value and rename until by modulus, Laura Garcia Liebana
[PATCH] netfilter: nft_numgen: add counter offset value and rename until by modulus,
Laura Garcia Liebana
[PATCH v2 1/2 nf] netfilter: seqadj: Fix one possible panic in seqadj when mem is exhausted,
fgao
[PATCH 1/2 nf] netfilter: seqadj: Fix some possible panics of seqadj when mem is exhausted,
fgao
[PATCH 2/2 nf-next] netfilter: seqadj: print the warning log when fail to add seqadj extension,
fgao
[PATCH 8/7] net/netfilter/nf_conntrack_core: Remove another memory barrier,
Manfred Spraul
[PATCH 6/7] net/netfilter/nf_conntrack_core: Remove barriers after spin_unlock_wait, Manfred Spraul
[PATCH 5/7] net/netfilter/nf_conntrack_core: Fix memory barriers., Manfred Spraul
Re: [RFC 1/9] ipv6: implement dataplane support for rthdr type 4 (Segment Routing Header), Nicolas Dichtel
[PATCH v2 2/2 nf-next] netfilter: ftp: Remove the useless codes,
fgao
[PATCH v2 1/2 nf-next] netfilter: ftp: Remove the useless dlen==0 condition check in find_pattern,
fgao
[PATCH 1/3] conntrackd: cthelper: ftp: Set match offset/len for PORT mangling,
Kevin Cernekee
[PATCH nf-next] netfilter: ftp: Remove the useless dlen==0 condition check in find_pattern,
fgao
[PATCH nft] evaluate: display expression, statement and command name on debug, Pablo Neira Ayuso
[PATCH 5/5] net/netfilter/nf_conntrack_core: update memory barriers.,
Manfred Spraul
[PATCH iptables v3] xtables-translate-restore: do not escape quotes,
Pablo M. Bermudo Garay
[nf-next:master 8/29] ERROR: "nf_conntrack_htable_size" [net/ipv4/netfilter/nf_conntrack_ipv4.ko] undefined!, kbuild test robot
[PATCH libnftnl] set: fix incorrect maximum set description attribute, Pablo Neira Ayuso
[nft PATCH v2 0/4] A round of covscan indicated fixes,
Phil Sutter
[PATCH 0/2] netfilter: allow tab character in SIP headers,
Marco Angaroni
[PATCH 2/2] netfilter: correct allowed characters in Call-ID SIP header,
Marco Angaroni
[PATCH 1/2] netfilter: correct parsing of continuation lines in SIP headers,
Marco Angaroni
[PATCH libnftnl] expr: numgen: add missing nftnl_expr_ng_cmp(), Pablo Neira Ayuso
[conntrack-tools PATCH 1/4] src/main: refresh help message,
Arturo Borrero Gonzalez
[PATCH nft] tests: py: adapt netlink bytecode output of numgen and hash, Pablo Neira Ayuso
[PATCH libnftnl 1/3] expr: numgen: use switch to handle numgen types from snprintf,
Pablo Neira Ayuso
[NetDev] [ANNOUNCE] Netdev 1.2 weekly updates (30th August, 2016), Hajime Tazaki
[PATCH nft 1/8] tests: py: adapt this to new add element command semantics,
Pablo Neira Ayuso
[PATCH nft] parser_bison: allow variable references in set elements definition, Pablo Neira Ayuso
[PATCH v2 nf] netfilter: log: Check param to avoid overflow in nf_log_set,
fgao
[PATCH nf-next] netfilter: log: Check param to avoid overflow in nf_log_set,
fgao
[PATCH nf-next] netfilter: log_arp: Use ARPHRD_ETHER instead of literal '1',
fgao
[PATCH nf] netfilter: nf_tables_netdev: remove redundant ip_hdr assignment,
Liping Zhang
[PATCH iptables 1/3] extensions: libipt_DNAT/SNAT: fix "OOM" when do translation to nft,
Liping Zhang
[PATCH nft] meta: fix memory leak in tc classid parser,
Liping Zhang
[PATCH iptables v3 1/2] xtables-compat: check if nft ruleset is compatible,
Pablo M. Bermudo Garay
[PATCH nf-next] netfilter: nf_tables: Use nla_put_be32() to dump immediate parameters, Pablo Neira Ayuso
[PATCH v3 net-next 2/2] netfilter: gre: Use consistent GRE and PTTP header structure instead of the ones defined by netfilter,
fgao
[PATCH v3 net-next 1/2] netfilter: gre: Use consistent GRE_* macros instead of ones defined by netfilter.,
fgao
[PATCH libnftnl] expr: imm: Fix immediate verdict comparison,
Carlos Falgueras García
[PATCH nf-next,v2 1/2] rhashtable: add rhashtable_lookup_get_insert_key(),
Pablo Neira Ayuso
netfilter: get rid of per-object conntrack timers,
Florian Westphal
[ANNOUNCE] Netdev 1.2 weekly updates (24th August, 2016), Hajime Tazaki
[PATCH nft 1/4] src: add create set command,
Pablo Neira Ayuso
[PATCH nf-next 1/2] rhashtable: add rhashtable_lookup_get_insert_key(),
Pablo Neira Ayuso
[PATCH libnftnl] expr: data_reg: Fix DATA_CHAIN comparison,
Carlos Falgueras García
[PATCH nf-next v2 0/7] netfilter: get rid of per-object conntrack timers,
Florian Westphal
[PATCH 1/2 nf-next] netfilter: nf_tables: introduce nft_chain_parse_hook(),
Pablo Neira Ayuso
[PATCH nft] parser_bison: explicit indication on export ruleset, Pablo Neira Ayuso
[PATCH] dynset prefix support, Pablo Neira Ayuso
[PATCH v2 iptables] iptables-restore: add missing arguments to usage message,
Brian Haley
[PATCH nf] netfilter: ebtables: put module reference when an incorrect extension is found,
Sabrina Dubroca
[PATCH nft] Simplify parser rule_spec tree,
Carlos Falgueras García
[PATCH v2 1/2 net-next] netfilter: gre: Use consistent GRE_* macros instead of ones defined by netfilter.,
fgao
[PATCH v2 2/2 net-next] netfilter: gre: Use consistent GRE and PTTP header structure instead of the ones defined by netfilter, fgao
[PATCH iptables] iptables-restore: add missing arguments to usage message,
Brian Haley
[PATCH nft] tests: shell: add testcase for reject expr,
Liping Zhang
[PATCH nft] parser_bison: keep snat/dnat existing syntax unchanged,
Liping Zhang
[PATCH iptables v2 1/2] xtables-compat: check if nft ruleset is compatible,
Pablo M. Bermudo Garay
[PATCH nf] netfilter: nft_meta: improve the validity check of pkttype set expr,
Liping Zhang
[PATCH nf 1/3] netfilter: nfnetlink: use list_for_each_entry_safe to delete all objects,
Liping Zhang
[ANNOUNCE] nfacct 1.0.2 release, Pablo Neira Ayuso
[ANNOUNCE] libnetfilter_acct 1.0.3 release, Pablo Neira Ayuso
[ANNOUNCE] conntrack-tools 1.4.4 release, Pablo Neira Ayuso
[ANNOUNCE] libnetfilter_conntrack 1.0.6 release, Pablo Neira Ayuso
[PATCH iptables v2 1/2] xtables-translate: add escape_quotes option to comment_xlate,
Pablo M. Bermudo Garay
[PATCH nft 1/2] ct: allow numeric conntrack labels,
Florian Westphal
[PATCH] netfilter: nf_tables: typo in trace attribute definition, Pablo Neira Ayuso
[PATCH 1/4 V6 nft] Simplify parser rule_spec tree,
Carlos Falgueras García
[PATCH 4/4 V6 nft] parser: Improve syntax errors, Carlos Falgueras García
Re: [PATCH 1/4 V6 nft] Simplify parser rule_spec tree, Pablo Neira Ayuso
[PATCH iptables 1/3] xtables-compat: remove useless functions,
Pablo M. Bermudo Garay
[PATCH nf] netfilter: nft_reject: restrict to INPUT/FORWARD/OUTPUT,
Liping Zhang
[PATCH -next] netfilter: nft_hash: fix non static symbol warning,
Wei Yongjun
[PATCH iptables] extensions: libxt_CLASSIFY: Add translation to nft,
Liping Zhang
[PATCH 1/1] netfilter: gre: Use the consitent GRE and PPTP struct instead of the structures defined in netfilter,
fgao
[PATCH nf-next 0/6] conntrack: get rid of per-object timer,
Florian Westphal
[PATCH v4] netfilter: nf_tables: Ensure init attributes are within the bounds,
Laura Garcia Liebana
[PATCH] netfilter: fix spelling mistake: "delimitter" -> "delimiter",
Colin King
[PATCH nf-next] netfilter: nft_dynset: allow to invert match criteria,
Pablo Neira Ayuso
[PATCH libnftnl] rule: Fix comparison between rules,
Carlos Falgueras García
[PATCH nf-next] netfilter: nf_conntrack: restore nf_conntrack_htable_size as exported symbol, Pablo Neira Ayuso
[PATCH nf] netfilter: cttimeout: fix use after free error when delete netns, Liping Zhang
[PATCH v3] netfilter: nf_tables: Ensure init attributes are within the bounds,
Laura Garcia Liebana
[PATCH v5] netfilter: nft_numgen: add number generator expression,
Laura Garcia Liebana
[PATCH 1/3 v4 libnftnl] tests: Consolidate printing error utilities,
Carlos Falgueras García
[PATCH libnftnl] expr: hash: Add comparator to hash expression,
Carlos Falgueras García
[nf-next:master 8/9] ERROR: "nf_conntrack_htable_size" [net/netfilter/nfnetlink_cttimeout.ko] undefined!, kbuild test robot
linux-next: build failure after merge of the netfilter-next tree,
Stephen Rothwell
[PATCH nf-next] netfilter: nf_tables: add quota expression, Pablo Neira Ayuso
[PATCH v4] netfilter: nft_numgen: add number generator expression,
Laura Garcia Liebana
ulogd plugin development question, Tommy Knowlton
Re: kernel panic TPROXY , vanilla 4.7.1,
Eric Dumazet
[PATCH nf] netfilter: nf_tables_netdev: set nft_pktinfo field for non-IP traffic,
Pablo Neira Ayuso
[PATCH nft 00/10 nft] syntax updates,
Pablo Neira Ayuso
- [PATCH nft 01/10] src: quote user-defined strings when used from rule selectors, Pablo Neira Ayuso
- [PATCH nft 02/10] src: add 'to' for snat and dnat, Pablo Neira Ayuso
- [PATCH nft 03/10] src: support for RFC2732 IPv6 address format with brackets, Pablo Neira Ayuso
- [PATCH nft 04/10] parser_bison: missing token string in QUOTED_ASTERISK and ASTERISK_STRING, Pablo Neira Ayuso
- [PATCH nft 07/10] src: rename datatype name from tc_handle to classid, Pablo Neira Ayuso
- [PATCH nft 05/10] scanner: allow strings starting by underscores and dots, Pablo Neira Ayuso
- [PATCH nft 09/10] src: meta priority support using tc classid, Pablo Neira Ayuso
- [PATCH nft 10/10] parser_bison: redirect to :port for consistency with nat/masq statement, Pablo Neira Ayuso
- [PATCH nft 08/10] src: simplify classid printing using %x instead of %04x, Pablo Neira Ayuso
- [PATCH nft 06/10] scanner: remove range expression, Pablo Neira Ayuso
libipset developer documentation?, Peter Wu
[PATCH 1/2 nft] ct: add missing slash to connlabel path,
Pablo Neira Ayuso
[PATCH 1/3 v5 libnftnl] Implement rule comparison,
Carlos Falgueras García
Snooping expected connections in a user CT helper,
Kevin Cernekee
[PATCH iptables 1/2] xtables-translate: add escape_quotes option to comment_xlate,
Pablo M. Bermudo Garay
[PATCH 1/3 v4 libnftnl] Implement rule comparison,
Carlos Falgueras García
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]