Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh, (continued)
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP, Pablo Neira Ayuso
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core, Pablo Neira Ayuso
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure, Pablo Neira Ayuso
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure, Pablo Neira Ayuso
- [PATCH nf-next,RFC 00/10] Netfilter core updates, Pablo Neira Ayuso
- [PATCH nf-next,RFC 07/10] netfilter: use switch() to handle verdict cases from nf_hook_slow(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 06/10] netfilter: nf_tables: use hook state from xt_action_param structure, Pablo Neira Ayuso
- [PATCH nf-next,RFC 03/10] netfilter: bridge: kill NF_HOOK_THRESH() and state->tresh, Pablo Neira Ayuso
- [PATCH nf-next,RFC 05/10] netfilter: x_tables: move hook state into xt_action_param structure, Pablo Neira Ayuso
- [PATCH nf-next,RFC 04/10] netfilter: deprecate NF_STOP, Pablo Neira Ayuso
- [PATCH nf-next,RFC 02/10] netfilter: remove comments that predate rcu days, Pablo Neira Ayuso
- [PATCH nf-next,RFC 10/10] netfilter: inline nf_hook_slow() and rename it to nf_hook_iterate(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 09/10] netfilter: merge nf_iterate() into nf_hook_slow(), Pablo Neira Ayuso
- [PATCH nf-next,RFC 08/10] netfilter: move NF_QUEUE handling away from core, Pablo Neira Ayuso
- [PATCH nf-next,RFC 01/10] netfilter: get rid of useless debugging from core, Pablo Neira Ayuso
- [PATCH 1/2 nf] netfilter: nf_queue: don't re-enter same hook on packet reinjection,
Pablo Neira Ayuso
- [PATCH nft] src: use new range expression for != [a,b] intervals, Pablo Neira Ayuso
- [PATCH libnftnl] src: add range expression, Pablo Neira Ayuso
- [PATCH nf] netfilter: nft_hash: add missing NFTA_HASH_OFFSET's nla_policy,
Liping Zhang
- [PATCH nf] netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name,
Liping Zhang
- [patch] netfilter: nf_tables: underflow in nft_parse_u32_check(),
Dan Carpenter
- [RFC] SIP conntrack handler and TCP fragmentation,
Ulrich Weber
- [patch] netfilter: nft_exthdr: fix error handling in nft_exthdr_init(),
Dan Carpenter
- routing table lookup,
Bjørnar Ness
- [PATCH nf] netfilter: xt_NFLOG: fix unexpected truncated packet,
Liping Zhang
- [PATCH ulogd2] ulogd: fix crash when ipv4 packet is truncated,
Liping Zhang
- [libnftnl PATCH] libnftnl: update Arturo Borrero Gonzalez email,
Arturo Borrero Gonzalez
- [PATCH net 0/2] conntrack update,
Nicolas Dichtel
- slab corruption with current -git (was Re: [git pull] vfs pile 1 (splice)),
Linus Torvalds
[PATCH nf] netfilter: nft_dynset: fix element timeout for HZ != 1000,
Anders K. Pedersen | Cohaesio
[PATCH net-next] nfnetlink_log: Use GFP_NOWARN for skb allocation,
Calvin Owens
[PATCH iptables 0/8] iptables-translate: fix some bugs and add more translations to nft,
Liping Zhang
[PATCH nf-next 0/2] netfilter: autoload NAT support for non-builtin L4 protocols,
Davide Caratti
[PATCH] netfilter: xt_hashlimit: Add missing ULL suffixes for 64-bit constants,
Geert Uytterhoeven
[PATCH 0/5] Netfilter fixes for net-next,
Pablo Neira Ayuso
[PATCH 1/3] netfilter: nf_tables: avoid uninitialized variable warning,
Arnd Bergmann
[PATCH net-next v3] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division,
Vishwanath Pai
[NetDev] [ANNOUNCE] Netdev 1.2 program announced, Hajime Tazaki
[PATCH nft] doc: Fix wrong word in description of option "-n --numberic",
fgao
[PATCH nf-next v4 0/2] fixes for recent nf_compact hooks,
Aaron Conole
[PATCH nf-next v3 0/2] fixes for recent nf_compact hooks,
Aaron Conole
[ANNOUNCE] Netdev 1.2 updates (27th September, 2016), Hajime Tazaki
[PATCH v2] netfilter: xt_hashlimit: Fix link error in 32bit arch because of 64bit division,
Vishwanath Pai
[PATCH nf-next v2 0/2] fixes for recent nf_compact hooks,
Aaron Conole
[PATCH nf] netfilter: nft_limit: fix divded by zero panic,
Liping Zhang
Re: linux-next: Tree for Sep 27,
Sergey Senozhatsky
[PATCH] Fix link error in 32bit arch because of 64bit division,
Vishwanath Pai
[PATCH nf-next] netfilter: xt_osf: Use explicit member assignment to avoid implicit no padding rule,
fgao
[PATCH v4 2/2] libxt_hashlimit: Create revision 2 of xt_hashlimit to support higher pps rates,
Vishwanath Pai
[PATCH v4 1/2] libxt_hashlimit: Prepare libxt_hashlimit.c for revision 2,
Vishwanath Pai
[PATCH nf-next 0/2] fixes for recent nf_compact hooks,
Aaron Conole
[PATCH nf-next] netfilter: xt_nfacct: Use not operation instead of condition check,
fgao
[PATCH nf-next] netfilter: xt_multiport: Use switch case instead of multiple condition checks,
fgao
[nf-next:master 43/54] net/netfilter/core.c:96: error: type defaults to 'int' in declaration of '__val', kbuild test robot
[PATCH 00/53] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 02/53] netfilter: gre: Use consistent GRE and PTTP header structure instead of the ones defined by netfilter, Pablo Neira Ayuso
- [PATCH 06/53] netfilter: ftp: Remove the useless code, Pablo Neira Ayuso
- [PATCH 07/53] netfilter: nft_numgen: rename until attribute by modulus, Pablo Neira Ayuso
- [PATCH 08/53] netfilter: nft_quota: fix overquota logic, Pablo Neira Ayuso
- [PATCH 18/53] netfilter: nf_tables_bridge: use nft_set_pktinfo_ipv{4, 6}_validate, Pablo Neira Ayuso
- [PATCH 19/53] netfilter: nf_tables: don't drop IPv6 packets that cannot parse transport, Pablo Neira Ayuso
- [PATCH 24/53] netfilter: conntrack: remove packet hotpath stats, Pablo Neira Ayuso
- [PATCH 22/53] netfilter: Add the missed return value check of nft_register_chain_type, Pablo Neira Ayuso
- [PATCH 39/53] netfilter: call nf_hook_ingress with rcu_read_lock, Pablo Neira Ayuso
- [PATCH 49/53] netfilter: evict stale entries when user reads /proc/net/nf_conntrack, Pablo Neira Ayuso
- [PATCH 47/53] netfilter: xt_hashlimit: Prepare for revision 2, Pablo Neira Ayuso
- [PATCH 40/53] netfilter: Remove explicit rcu_read_lock in nf_hook_slow, Pablo Neira Ayuso
- [PATCH 52/53] netfilter: nft_log: complete NFTA_LOG_FLAGS attr support, Pablo Neira Ayuso
- [PATCH 51/53] netfilter: nf_tables: add range expression, Pablo Neira Ayuso
- [PATCH 50/53] netfilter: xt_socket: fix transparent match for IPv6 request sockets, Pablo Neira Ayuso
- [PATCH 48/53] netfilter: xt_hashlimit: Create revision 2 to support higher pps rates, Pablo Neira Ayuso
- [PATCH 53/53] netfilter: nf_log: get rid of XT_LOG_* macros, Pablo Neira Ayuso
- [PATCH 46/53] netfilter: nft_ct: report error if mark and dir specified simultaneously, Pablo Neira Ayuso
- [PATCH 43/53] netfilter: replace list_head with single linked list, Pablo Neira Ayuso
- [PATCH 42/53] netfilter: nf_queue: whitespace cleanup, Pablo Neira Ayuso
- [PATCH 41/53] netfilter: Only allow sane values in nf_register_net_hook, Pablo Neira Ayuso
- [PATCH 44/53] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack, Pablo Neira Ayuso
- [PATCH 45/53] netfilter: nft_ct: unnecessary to require dir when use ct l3proto/protocol, Pablo Neira Ayuso
- [PATCH 38/53] netfilter: call nf_hook_state_init with rcu_read_lock held, Pablo Neira Ayuso
- [PATCH 37/53] netfilter: bridge: add and use br_nf_hook_thresh, Pablo Neira Ayuso
- [PATCH 35/53] netfilter: nft_lookup: remove superfluous element found check, Pablo Neira Ayuso
- [PATCH 34/53] netfilter: xt_helper: Use sizeof(variable) instead of literal number, Pablo Neira Ayuso
- [PATCH 36/53] netfilter: xt_TCPMSS: Refactor the codes to decrease one condition check and more readable, Pablo Neira Ayuso
- [PATCH 27/53] netfilter: nft_numgen: add number generation offset, Pablo Neira Ayuso
- [PATCH 33/53] netfilter: Enhance the codes used to get random once, Pablo Neira Ayuso
- [PATCH 32/53] netfilter: nf_tables: check tprot_set first when we use xt.thoff, Pablo Neira Ayuso
- [PATCH 30/53] netfilter: nf_queue: improve queue range support for bridge family, Pablo Neira Ayuso
- [PATCH 29/53] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number, Pablo Neira Ayuso
- [PATCH 31/53] netfilter: nf_tables: improve nft payload fast eval, Pablo Neira Ayuso
- [PATCH 28/53] netfilter: nf_tables: validate maximum value of u32 netlink attributes, Pablo Neira Ayuso
- [PATCH 23/53] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES, Pablo Neira Ayuso
- [PATCH 20/53] netfilter: nf_conntrack: simplify __nf_ct_try_assign_helper() return logic, Pablo Neira Ayuso
- [PATCH 25/53] netfilter: nft_numgen: fix race between num generate and store it, Pablo Neira Ayuso
- [PATCH 26/53] netfilter: nft_hash: fix hash overflow validation, Pablo Neira Ayuso
- [PATCH 21/53] netfilter: Add the missed return value check of register_netdevice_notifier, Pablo Neira Ayuso
- [PATCH 16/53] netfilter: nf_tables_ipv6: setup pktinfo transport field on failure to parse, Pablo Neira Ayuso
- [PATCH 17/53] netfilter: introduce nft_set_pktinfo_{ipv4, ipv6}_validate(), Pablo Neira Ayuso
- [PATCH 15/53] netfilter: nf_tables: ensure proper initialization of nft_pktinfo fields, Pablo Neira Ayuso
- [PATCH 13/53] netfilter: nft_hash: Add hash offset value, Pablo Neira Ayuso
- [PATCH 14/53] netfilter: nft_dynset: allow to invert match criteria, Pablo Neira Ayuso
- [PATCH 03/53] netfilter: nf_ct_sip: correct parsing of continuation lines in SIP headers, Pablo Neira Ayuso
- [PATCH 12/53] netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_l3proto, Pablo Neira Ayuso
- [PATCH 11/53] netfilter: nft_queue: check the validation of queues_total and queuenum, Pablo Neira Ayuso
- [PATCH 01/53] netfilter: gre: Use consistent GRE_* macros instead of ones defined by netfilter., Pablo Neira Ayuso
- [PATCH 04/53] netfilter: nf_ct_sip: correct allowed characters in Call-ID SIP header, Pablo Neira Ayuso
- [PATCH 10/53] netfilter: nf_ct_sip: allow tab character in SIP headers, Pablo Neira Ayuso
- [PATCH 09/53] netfilter: nft_quota: introduce nft_overquota(), Pablo Neira Ayuso
- [PATCH 05/53] netfilter: ftp: Remove the useless dlen==0 condition check in find_pattern, Pablo Neira Ayuso
- Re: [PATCH 00/53] Netfilter updates for net-next, David Miller
[nf-next:master 43/54] net/netfilter/core.c:96:30: error: 'struct net_device' has no member named 'nf_hooks_ingress', kbuild test robot
[PATCH nft 0/3] src: add nft log flags support,
Liping Zhang
[PATCH libnftnl 0/3] expr: complete log flags support,
Liping Zhang
[PATCH nf-next 2/2] netfilter: nf_log: get rid of XT_LOG_* macros,
Liping Zhang
[PATCH nf-next 0/2] netfilter: complete nft log flags support,
Liping Zhang
[PATCH] netfilter: don't permit unprivileged writes to global state via sysctls,
Jann Horn
[PATCH nf-next] netfilter: nf_tables: add range expression, Pablo Neira Ayuso
[PATCH libnftnl] src: display offset only if present in hash and numgen expressions, Pablo Neira Ayuso
[PATCH nf-next] netfilter: evict stale entries when user reads /proc/net/nf_conntrack,
Florian Westphal
[PATCH v3 2/2] netfilter: Create revision 2 of xt_hashlimit to support higher pps rates,
Vishwanath Pai
[PATCH v3 1/2] netfilter: Prepare xt_hashlimit.c for revision 2, Vishwanath Pai
[libnftnl PATCH] libnftnl: remove libmxml support,
Arturo Borrero Gonzalez
[PATCH nft] src: support ct l3proto/protocol without direction syntax,
Liping Zhang
[PATCH nf-next 1/2] netfilter: nft_ct: unnecessary to require dir when use ct l3proto/protocol,
Liping Zhang
[PATCH nf v5] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH nf v4] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack, fgao
[PATCH nf v3] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH 1/1 linux-next] netfilter: conntrack: fix kmemleak false positive,
Fabian Frederick
[PATCH nf-next v3 0/7] Compact netfilter hooks list,
Aaron Conole
libnftnl XML parsing seems broken with libmxml 2.10, Arturo Borrero Gonzalez
[PATCH nf-next] netfilter: nft_lookup: remove superfluous element found check, Pablo Neira Ayuso
Why ctinfo is IP_CT_RELATED_REPLY when reject with TCP RST, Feng Gao
[PATCH] netfilter: xt_socket: fix transparent match for IPv6 request sockets,
KOVACS Krisztian
[PATCH nf-next] netfilter: xt_helper: Use sizeof(variable) instead of literal number,
fgao
[PATCH] netfilter: fix namespace handling in nf_log_proc_dostring,
Jann Horn
[nft] Problems with flushing all elements from a set,
Anders K. Pedersen | Cohaesio
[PATCH nf-next] netfilter: Enhance the codes used to get random once,
fgao
[PATCH nf-next] netfilter: nf_tables: check tprot_set first when we use xt.thoff,
Liping Zhang
rate limit not working ?,
Christophe Leroy
[PATCH nft] tests: py: fix numgen case failed due to changes in libnftnl,
Liping Zhang
[PATCH nf-next] netfilter: nf_tables: improve nft payload fast eval, Liping Zhang
[PATCH nf-next] netfilter: nf_queue: improve queue range support for bridge family,
Liping Zhang
[PATCH nft] tests: py: add more test cases for queue expr,
Liping Zhang
[PATCH libnftnl V2] expr: queue: add NFTA_QUEUE_SREG_QNUM attr support, Liping Zhang
[PATCH nf-next V2] netfilter: nft_queue: add _SREG_QNUM attr to select the queue number,
Liping Zhang
[PATCH nf] netfilter: nf_tables: Ensure u8 attributes are loaded from u32 within the bounds,
Laura Garcia Liebana
[PATCH nft] meta: support for nexthop and nexthop6, Anders K. Pedersen | Cohaesio
[PATCH nf-next] netfilter: nf_meta: support for nexthop and nexthop6,
Anders K. Pedersen | Cohaesio
[ANNOUNCE] netdev 1.2 tokyo weekly update (13th September, 2016), Hajime Tazaki
[PATCH v3 libnftnl] expr: numgen: add number generation offset,
Laura Garcia Liebana
[PATCH v3] netfilter: nft_numgen: add number generation offset,
Laura Garcia Liebana
[PATCH] netfilter: nft_hash: fix hash overflow validation,
Laura Garcia Liebana
[PATCH v8 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions,
fgao
linux-next: manual merge of the netfilter-next tree with the net tree,
Stephen Rothwell
[PATCH nf-next] netfilter: nft_numgen: fix race between num generate and store it,
Liping Zhang
[PATCH nft V2] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl,
Liping Zhang
[PATCH nf-next] netfilter: conntrack: remove packet hotpath stats,
Florian Westphal
[PATCH conntrack-tools] Link nfct and helper modules with `-z lazy`,
Kevin Cernekee
[PATCH libnftnl 0/3] expr: queue: add sreg_from and sreg_to support,
Liping Zhang
[PATCH nf-next] netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLES,
Liping Zhang
[PATCH nft] src: fix compile error due to _UNTIL renamed to _MODULUS in libnftnl,
Liping Zhang
[RFC] nftables: reverse path filtering for nft,
Florian Westphal
[PATCH nft] tests: py: replace "eth0" with "lo" in dup expr tests,
Liping Zhang
[PATCH v4 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type,
fgao
[PATCH v3 1/2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier,
fgao
[PATCH v3 2/2 nf-next] netfilter: Add the missed return value check of nft_register_chain_type,
fgao
[PATCH v7 nf] netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensions,
fgao
[PATCH nf] netfilter: nf_nat: handle NF_DROP from nfnetlink_parse_nat_setup(), Pablo Neira Ayuso
[PATCH nft 0/3] fix ether address formatting,
Florian Westphal
[PATCH nf-next] netfilter: nf_conntrack: simplify __nf_ct_try_assign_helper() return logic, Pablo Neira Ayuso
[PATCH nf-next 1/5] netfilter: nf_tables: ensure proper initialization of nft_pktinfo fields,
Pablo Neira Ayuso
[PATCH nft 1/2] doc: update meta expression,
Florian Westphal
[PATCH 1/2 nft] doc: nft: add my copyright statement to the manpage,
Pablo Neira Ayuso
Network namespace and neighboring subsystem problem, Tugrul Erdogan
[PATCH v2 nf-next] netfilter: Add the missed return value check of register_netdevice_notifier,
fgao
[PATCH nf-next] netfilter: xt_TEE: Add the missed return value check in tee_tg_check,
fgao
[PATCH v2 libnftnl] expr: numgen: add increment counter offset value, Laura Garcia Liebana
[PATCH v2] netfilter: nft_numgen: add increment counter offset value,
Laura Garcia Liebana
[PATCH v6 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
[PATCH v3 libnftnl] expr: numgen: Rename until attribute by modulus,
Laura Garcia Liebana
[PATCH nf-next,v2] netfilter: nft_dynset: allow to invert match criteria, Pablo Neira Ayuso
[nft] Using variable sized data types in concat expressions, Arturo Borrero Gonzalez
[PATCH nf-next] netfilter: xt_TCPMSS: Refactor the codes to decrease one condition check and more readable,
fgao
[PATCH v5 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
[PATCH nf-next] netfilter: nft_queue: check the validation of queues_total and queuenum,
Liping Zhang
[PATCH nf-next] netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_l3proto,
Liping Zhang
[PATCH nf] netfilter: nft_chain_route: re-route before skb is queued to userspace,
Liping Zhang
[NetDev] [ANNOUNCE] Netdev 1.2 weekly updates (6th September, 2016), Hajime Tazaki
[PATCH v2] netfilter: nft_hash: Add hash offset value,
Laura Garcia Liebana
[nf-next:nexpr-wip 38/41] ERROR: "__invalid_xchg_size" [net/netfilter/nft_counter.ko] undefined!, kbuild test robot
[nf-next:nexpr-wip 38/41] net/netfilter/nft_counter.c:67:16: note: in expansion of macro 'xchg', kbuild test robot
[nf-next:nexpr-wip 38/41] net/netfilter/nft_counter.c:72:21: error: call to '__xchg_wrong_size' declared with attribute error: Bad argument size for xchg, kbuild test robot
[PATCH nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH v4 nf] netfilter: seqadj: Drop the packet directly when fail to add seqadj extension to avoid dereference NULL pointer later,
fgao
[PATCH 2/3] tests: py: any: Make tests more generic by using other interfaces, Manuel Johannes Messner
[PATCH 1/3] tests: py: nft-tests.py: Add function for loading and removing kernel modules, Manuel Johannes Messner
[PATCH 3/3] tests: py: any: Remove duplicate tests,
Manuel Johannes Messner
[PATCH 2/2 nf] netfilter: seqadj: Fix the wrong ack adjust for the RST packet without ack,
fgao
[PATCH 00/29] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 03/29] netfilter: nf_dup4: remove redundant checksum recalculation, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: conntrack: Only need first 4 bytes to get l4proto ports, Pablo Neira Ayuso
- [PATCH 05/29] ipvs: use nf_ct_kill helper, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: nf_tables: add hash expression, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: conntrack: simplify the code by using nf_conntrack_get_ht, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: conntrack: resched gc again if eviction rate is high, Pablo Neira Ayuso
- [PATCH 25/29] netfilter: conntrack: add gc worker to remove timed-out entries, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: evict stale entries on netlink dumps, Pablo Neira Ayuso
- [PATCH 20/29] netfilter: nf_tables: Use nla_put_be32() to dump immediate parameters, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: log_arp: Use ARPHRD_ETHER instead of literal '1', Pablo Neira Ayuso
- [PATCH 27/29] netfilter: remove __nf_ct_kill_acct helper, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: log: Check param to avoid overflow in nf_log_set, Pablo Neira Ayuso
- [PATCH 22/29] netfilter: don't rely on DYING bit to detect when destroy event was sent, Pablo Neira Ayuso
- [PATCH 23/29] netfilter: conntrack: get rid of conntrack timer, Pablo Neira Ayuso
- [PATCH 17/29] netfilter: nf_tables: reject hook configuration updates on existing chains, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: restart search if moved to other chain, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: nft_hash: fix non static symbol warning, Pablo Neira Ayuso
- [PATCH 19/29] netfilter: nf_tables: honor NLM_F_EXCL flag in set element insertion, Pablo Neira Ayuso
- [PATCH 18/29] rhashtable: add rhashtable_lookup_get_insert_key(), Pablo Neira Ayuso
- [PATCH 16/29] netfilter: nf_tables: introduce nft_chain_parse_hook(), Pablo Neira Ayuso
- [PATCH 15/29] netfilter: nf_tables: typo in trace attribute definition, Pablo Neira Ayuso
- [PATCH 13/29] netfilter: fix spelling mistake: "delimitter" -> "delimiter", Pablo Neira Ayuso
- [PATCH 12/29] netfilter: nf_tables: add number generator expression, Pablo Neira Ayuso
- [PATCH 11/29] netfilter: nf_tables: add quota expression, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: remove ip_conntrack* sysctl compat code, Pablo Neira Ayuso
- [PATCH 10/29] netfilter: nf_conntrack: restore nf_conntrack_htable_size as exported symbol, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: use_nf_conn_expires helper in more places, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: physdev: add missed blank, Pablo Neira Ayuso
- [PATCH 06/29] netfilter: nf_tables: rename set implementations, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/29] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: nf_tables: reduce chain type table size, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: nat: destroy nat mappings on module exit path only, Pablo Neira Ayuso
- [PATCH 27/29] netfilter: conntrack: use NFPROTO_MAX to size array, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: use nf_conntrack_helpers_register when possible, Pablo Neira Ayuso
- [PATCH 13/29] netfilter: nf_tables: select set backend flavour depending on description, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: nfnetlink: extended ACK reporting, Pablo Neira Ayuso
- [PATCH 12/29] netfilter: nft_set_hash: use nft_rhash prefix for resizable set backend, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: ipt_CLUSTERIP: do not hold dev, Pablo Neira Ayuso
- [PATCH 23/29] netns: add and use net_ns_barrier, Pablo Neira Ayuso
- [PATCH 25/29] netfilter, kbuild: use canonical method to specify objs., Pablo Neira Ayuso
- [PATCH 22/29] netfilter: move table iteration out of netns exit paths, Pablo Neira Ayuso
- [PATCH 06/29] netfilter: conntrack: don't call iter for non-confirmed conntracks, Pablo Neira Ayuso
- [PATCH 16/29] netfilter: nf_tables: allow large allocations for new sets, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: ebt: Use new helper ebt_invalid_target to check target, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: nf_tables: pass set description to ->privsize, Pablo Neira Ayuso
- [PATCH 18/29] netfilter: nft_set_hash: add lookup variant for fixed size hashtable, Pablo Neira Ayuso
- [PATCH 19/29] netfilter: nf_ct_helper: use nf_ct_iterate_destroy to unlink helper objs, Pablo Neira Ayuso
- [PATCH 20/29] netfilter: cttimeout: use nf_ct_iterate_cleanup_net to unlink timeout objs, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: nft_rt: make local functions static, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: ipt_CLUSTERIP: switch to nf_register_net_hook, Pablo Neira Ayuso
- [PATCH 15/29] netfilter: nft_set_hash: add nft_hash_buckets(), Pablo Neira Ayuso
- [PATCH 11/29] netfilter: nf_tables: no size estimation if number of set elements is unknown, Pablo Neira Ayuso
- [PATCH 10/29] netfilter: nft_set_hash: unnecessary forward declaration, Pablo Neira Ayuso
- [PATCH 17/29] netfilter: nft_set_hash: add non-resizable hashtable implementation, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: conntrack: restart iteration on resize, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: conntrack: add nf_ct_iterate_destroy, Pablo Neira Ayuso
- [PATCH 05/29] netfilter: conntrack: rename nf_ct_iterate_cleanup, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: ctnetlink: delete extra spaces, Pablo Neira Ayuso
- [PATCH 03/29] netfilter: dup: resolve warnings about missing prototypes, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, David Miller
- [PATCH 00/29] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 03/29] netfilter: nft_tunnel: add support for geneve opts, Pablo Neira Ayuso
- [PATCH 02/29] netfilter: xtables: Add snapshot of hardidletimer target, Pablo Neira Ayuso
- [PATCH 04/29] netfilter: nf_tables: make sets built-in, Pablo Neira Ayuso
- [PATCH 15/29] nft_set_pipapo: Generalise group size for buckets, Pablo Neira Ayuso
- [PATCH 18/29] nft_set_pipapo: Prepare for vectorised implementation: helpers, Pablo Neira Ayuso
- [PATCH 29/29] netfilter: Introduce egress hook, Pablo Neira Ayuso
- [PATCH 19/29] nft_set_pipapo: Introduce AVX2-based lookup implementation, Pablo Neira Ayuso
- [PATCH 28/29] netfilter: Generalize ingress hook, Pablo Neira Ayuso
- [PATCH 27/29] netfilter: Rename ingress hook include file, Pablo Neira Ayuso
- [PATCH 26/29] netfilter: conntrack: re-visit sysctls in unprivileged namespaces, Pablo Neira Ayuso
- [PATCH 16/29] nft_set_pipapo: Add support for 8-bit lookup groups and dynamic switch, Pablo Neira Ayuso
- [PATCH 24/29] netfilter: nf_tables: add nft_set_elem_update_expr() helper function, Pablo Neira Ayuso
- [PATCH 25/29] netfilter: nft_lookup: update element stateful expression, Pablo Neira Ayuso
- [PATCH 23/29] netfilter: nf_tables: add elements with stateful expressions, Pablo Neira Ayuso
- [PATCH 17/29] nft_set_pipapo: Prepare for vectorised implementation: alignment, Pablo Neira Ayuso
- [PATCH 20/29] nft_set_pipapo: Prepare for single ranged field usage, Pablo Neira Ayuso
- [PATCH 22/29] netfilter: nf_tables: statify nft_expr_init(), Pablo Neira Ayuso
- [PATCH 12/29] netfilter: flowtable: add indr block setup support, Pablo Neira Ayuso
- [PATCH 08/29] netfilter: Replace zero-length array with flexible-array member, Pablo Neira Ayuso
- [PATCH 21/29] netfilter: nf_tables: add nft_set_elem_expr_alloc(), Pablo Neira Ayuso
- [PATCH 13/29] netfilter: flowtable: add tunnel match offload support, Pablo Neira Ayuso
- [PATCH 11/29] netfilter: flowtable: add nf_flow_table_block_offload_init(), Pablo Neira Ayuso
- [PATCH 10/29] netfilter: xt_IDLETIMER: clean up some indenting, Pablo Neira Ayuso
- [PATCH 14/29] netfilter: flowtable: add tunnel encap/decap action offload support, Pablo Neira Ayuso
- [PATCH 07/29] netfilter: nft_set_pipapo: make the symbol 'nft_pipapo_get' static, Pablo Neira Ayuso
- [PATCH 09/29] netfilter: bitwise: use more descriptive variable-names., Pablo Neira Ayuso
- [PATCH 06/29] netfilter: cleanup unused macro, Pablo Neira Ayuso
- [PATCH 05/29] netfilter: nf_tables: make all set structs const, Pablo Neira Ayuso
- [PATCH 01/29] netfilter: flowtable: Use nf_flow_offload_tuple for stats as well, Pablo Neira Ayuso
- Re: [PATCH 00/29] Netfilter updates for net-next, Alexei Starovoitov
[PATCH libnftnl] expr: hash: Add offset to hash value, Laura Garcia Liebana
[PATCH] netfilter: nft_hash: Add hash offset value,
Laura Garcia Liebana
[conntrack-tools PATCH 4/4 v2] doc/manual/conntrack-tools: include some bits about init systems,
Arturo Borrero Gonzalez
[PATCH conntrack-tools] conntrackd: cthelper: Add new mdns helper,
Kevin Cernekee
[PATCH v3 nf] netfilter: seqadj: Fix one possible panic in seqadj when mem is exhausted,
fgao
[PATCH nf-next 1/2] netfilter: nft_quota: fix overquota logic,
Pablo Neira Ayuso
[PATCH v2 libnftnl] expr: numgen: Rename until attribute by modulus,
Laura Garcia Liebana
[PATCH v2] netfilter: nft_numgen: rename until attribute by modulus,
Laura Garcia Liebana
[PATCH libnftnl] trace: use get_u32 to parse NFPROTO and POLICY attribute,
Liping Zhang
[PATCH nf] netfilter: nf_tables_trace: fix endiness when dump chain policy,
Liping Zhang
[PATCH iptables] extensions: libip6t_SNAT/DNAT: add square bracket in xlat output when port is specified,
Liping Zhang
[PATCH libnftnl] include: resync nf_tables.h cache copy,
Pablo Neira Ayuso
nfqueue & bridge netfilter considered broken,
Florian Westphal
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]