Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH v2 nf-next 8/9] netfilter: conntrack: use a single hashtable for all namespaces, (continued)
- [nft PATCH] dist: include tests/ directory and files in tarball,
Arturo Borrero Gonzalez
- [conntrack-tools PATCH] dist: include tests/ directory and files in tarball,
Arturo Borrero Gonzalez
- [PATCH nf-next] netfilter: allow logging from non-init namespaces,
Michal Kubecek
- [PATCH nft 1/3 nft] tests/py: add more interval tests for anonymous sets,
Pablo Neira Ayuso
- [PATCH nft 0/7] flow statement,
Patrick McHardy
- [iptables PATCH] configure: make libmnl and libnftnl hard requirements,
Giuseppe Longo
- [Documentation] SNAT in INPUT chain,
Lion Yang
- [PATCH libnftnl] libnftnl: constify object arguments to various functions, Patrick McHardy
- [PATCH -nf v7] netfilter: nftables: add connlabel set support,
Florian Westphal
- iptables audit target causes kernel panic with iptables-persistent (kernel 3.2.78),
Lev Stipakov
- [nft PATCH] tests: shell: add testcases for named sets with intervals,
Arturo Borrero Gonzalez
- [PATCH net-next 0/9] netlink: align attributes when needed (patchset #2),
Nicolas Dichtel
- [PATCH net-next 9/9] wireless: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 5/9] bridge: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 8/9] netfilter/ipvs: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 4/9] ovs: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 7/9] ieee802154: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 6/9] l2tp: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 2/9] sched: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 3/9] ipv6: use nla_put_u64_64bit(), Nicolas Dichtel
- [PATCH net-next 1/9] rtnl: use nla_put_u64_64bit(), Nicolas Dichtel
- Re: [PATCH net-next 0/9] netlink: align attributes when needed (patchset #2), David Miller
- [PATCH nft 0/6] ruleset tracing,
Patrick McHardy
- [PATCH v2] uapi glibc compat: fix compile errors when glibc net/if.h included before linux/if.h,
Mikko Rapeli
- [PATCH nf] netfilter: conntrack: avoid integer overflow when resizing,
Florian Westphal
- [PATCH nf] netfilter: conntrack: init all_locks to avoid debug warning,
Florian Westphal
- new ipset set type - hash:ip,mac,
Tomasz Chiliński
- [PATCH] off-by-one in DecodeQ931,
Toby DiPasquale
- [PATCH nft 0/4] Interval overlap detection for named sets,
Pablo Neira Ayuso
- [PATCH net-next 0/9] netlink: align attributes when needed (patchset #1),
Nicolas Dichtel
- [PATCH net-next 9/9] taskstats: use the libnl API to align nlattr on 64-bit, Nicolas Dichtel
- [PATCH net-next 6/9] libnl: nla_put_msecs(): align on a 64-bit area, Nicolas Dichtel
- [PATCH net-next 1/9] libnl: fix help of _64bit functions, Nicolas Dichtel
- [PATCH net-next 5/9] libnl: nla_put_s64(): align on a 64-bit area, Nicolas Dichtel
- [PATCH net-next 3/9] libnl: nla_put_be64(): align on a 64-bit area, Nicolas Dichtel
- [PATCH net-next 8/9] xfrm: align nlattr properly when needed, Nicolas Dichtel
- [PATCH net-next 7/9] libnl: add nla_put_u64_64bit() helper, Nicolas Dichtel
- [PATCH net-next 4/9] libnl: nla_put_net64(): align on a 64-bit area, Nicolas Dichtel
- [PATCH net-next 2/9] libnl: nla_put_le64(): align on a 64-bit area, Nicolas Dichtel
- Re: [PATCH net-next 0/9] netlink: align attributes when needed (patchset #1), David Miller
- [PATCH] netfilter: ip6t_SYNPROXY: unnecessary to check whether ip6_route_output returns NULL,
Liping Zhang
- [PATCH -next v6] nftables: connlabel set support,
Florian Westphal
- [nft PATCH] tests: py: allow to run tests with other nft binaries,
Arturo Borrero Gonzalez
- [PATCH] netfilter: IDLETIMER: fix race condition when destroy the target,
Liping Zhang
- [PATCH] nf_nat_packet: Clear skb hash after modifying packet headers.,
Jarno Rajahalme
Minor issue in libnetfilter_queue.c - nfq_set_queue_maxlen, Bogdan Harjoc
[nft PATCH] evaluate: better error reporting in too long sets names,
Arturo Borrero Gonzalez
xtables-addons build failed with linux 4.5 header,
Normand
[GIT PULL nf-next 0/3] IPVS Updates for v4.6,
Simon Horman
[libnftnl PATCH] expr: ct: fix typo unknow vs unknown,
Arturo Borrero Gonzalez
[PATCHv2 net] openvswitch: Orphan skbs before IPv6 defrag,
Joe Stringer
[PATCH nft 0/7] named sets with intervals,
Pablo Neira Ayuso
[PATCH nf-next 0/3] netfilter: conntrack: prepare for hashtable merge, take 1,
Florian Westphal
[PATCH] netfilter: ctnetlink: add more #ifdef around unused code,
Arnd Bergmann
[announce] conntrack-tools-bash_completion 1.0 released, AllKind
[PATCH 1/1] payload: only merge if adjacent and combined size fits into a register,
Florian Westphal
[PATCH libnftnl] rule: fix leaks in NFTNL_RULE_USERDATA, Pablo Neira Ayuso
[PATCH nf-next] netfilter: ctnetlink: restore inlining for netlink message size calculation, Pablo Neira Ayuso
[PATCH libnftnl] tests: nat-test: Use different values to test,
Shivani Bhardwaj
[nft PATCH] tests/shell: delete tempfile failover in testcases,
Arturo Borrero Gonzalez
[PATCH 2/2] extensions: libxt_NFQUEUE: Unstack different versions,
Shivani Bhardwaj
[PATCH 1/2] NFQUEUE: Fix bug with order of fanout and bypass,
Shivani Bhardwaj
[PATCH nf-next] netfilter: nf_ct_helper: disable automatic helper assignment,
Pablo Neira Ayuso
[nft PATCH] tests/shell: add testcases for Netfilter bug #965,
Arturo Borrero Gonzalez
[PATCH nf] netfilter: ipv6: Orphan skbs in nf_ct_frag6_gather(),
Joe Stringer
[PATCH 0/4] nf_tables: basic dynamic support for set intervals,
Pablo Neira Ayuso
[PATCH nf-next] netfilter: ctnetlink: remove unnecessary inlining, Pablo Neira Ayuso
[PATCH] NFQUEUE: Fix bug with order of fanout and bypass,
Shivani Bhardwaj
[PATCH v5 nf-next 0/4] netfilter: nftables: add connlabel set support,
Florian Westphal
[nft PATCH v3] src/evaluate.c: improve rule management checks,
Arturo Borrero Gonzalez
[PATCH] netfilter: ebtables: Fix extension lookup with identical name,
Phil Sutter
[PATCH nf-next 0/2] netfilter: conntrack: de-inline two helpers,
Florian Westphal
[PATCH nf-next] netfilter: conntrack: don't acquire lock during seq_printf,
Florian Westphal
[PATCH] Not printing "nft" in iptables-restore-translate command,
Guruswamy Basavaiah
[PATCH] net: force inlining of netif_tx_start/stop_queue, sock_hold, __sock_put,
Denys Vlasenko
Possible segfault in nft utility,
Meyer Raffaele
[nf_tables PATCH] netfilter: nf_tables: invert chain deletion abort path,
Arturo Borrero Gonzalez
[nft PATCH] test/shell/run-tests.sh: also unload NAT modules,
Arturo Borrero Gonzalez
[PATCH 0/4] nfct: documentation updates and corrections.,
Mart Frauenlob
[PATCH iptables] xtables: use exponential delay when waiting for xtables lock,
Subash Abhinov Kasiviswanathan
[PATCH] Printing the table name before chain name.,
Guruswamy Basavaiah
[PATCH 0/5] conntrack: documentation updates,
Mart Frauenlob
[PATCH nft v2] src: evaluate: Show error for fanout without balance,
Shivani Bhardwaj
[RESEND PATCH -stable,4.1.y] netfilter: nf_nat_redirect: add missing NULL pointer check, Pablo Neira Ayuso
[PATCH nft] src: evaluate: Show error for fanout without balance,
Shivani Bhardwaj
nfct parameters,
Mart Frauenlob
[PATCH 0/2] conntrackd: Fix bogus characters in help,
Mart Frauenlob
[PATCH RFC nf-next 0/3] named expressions for nf_tables,
Pablo Neira Ayuso
[iptables PATCH] extensions/libxt_tcp: fix nftables translate flags value, 'none' vs '0x0',
Arturo Borrero Gonzalez
[nft PATCH] tests/shell: add some tests for network namespaces,
Arturo Borrero Gonzalez
[PATCH] doc: Complete the documentation of statements,
Shivani Bhardwaj
[PATCH] conntrack: Rename option --protonum to --proto.,
Mart Frauenlob
[PATCH] iptables-translate: Printing the table name before chain name,
Guruswamy Basavaiah
[PATCH] conntrack: Replace remaining occurances of --src, --dst options with --orig-src, --orig-dst,
Mart Frauenlob
[PATCH] conntrack: Add missing tables dying and unconfirmed to usage output.,
Mart Frauenlob
[PATCH] conntrack: Fix wrong --src, or --dst option shown., Mart Frauenlob
[PATCH v2] conntrack-tools: Fix build for old automake,
Mart Frauenlob
[PATCH] conntrack-tools: Fix build for old automake,
Mart Frauenlob
[PATCH] netfilter: unnecessary to check whether ip6_route_output() returns NULL,
Haishuang Yan
[PATCH xtables-addons v2] build: fix configure compatiblity with POSIX shells,
Matthias Schiffer
Inquiry for interest: bash compspec for nfacct, Mart Frauenlob
Conntrack timestamp, ravin goyal
[PATCH xtables-addons] build: fix configure compatiblity with POSIX shells,
Matthias Schiffer
[PATCH nf 00/17] netfilter: xtables: stricter ruleset validation,
Florian Westphal
- [PATCH nf 01/17] netfilter: x_tables: don't move to non-existent next rule, Florian Westphal
- [PATCH nf 02/17] netfilter: x_tables: validate targets of jumps, Florian Westphal
- [PATCH nf 03/17] netfilter: x_tables: add and use xt_check_entry_offsets, Florian Westphal
- [PATCH nf 04/17] netfilter: x_tables: kill check_entry helper, Florian Westphal
- [PATCH nf 05/17] netfilter: x_tables: assert minimum target size, Florian Westphal
- [PATCH nf 06/17] netfilter: x_tables: add compat version of xt_check_entry_offsets, Florian Westphal
- [PATCH nf 07/17] netfilter: x_tables: check standard target size too, Florian Westphal
- [PATCH nf 08/17] netfilter: x_tables: check for bogus target offset, Florian Westphal
- [PATCH nf 09/17] netfilter: x_tables: validate all offsets and sizes in a rule, Florian Westphal
- [PATCH nf 10/17] netfilter: ip_tables: simplify translate_compat_table args, Florian Westphal
- [PATCH nf 11/17] netfilter: ip6_tables: simplify translate_compat_table args, Florian Westphal
- [PATCH nf 12/17] netfilter: arp_tables: simplify translate_compat_table args, Florian Westphal
- [PATCH nf 13/17] netfilter: x_tables: xt_compat_match_from_user doesn't need a retval, Florian Westphal
- [PATCH nf 14/17] netfilter: x_tables: do compat validation via translate_table, Florian Westphal
- [PATCH nf 15/17] netfilter: x_tables: remove obsolete overflow check for compat case too, Florian Westphal
- [PATCH nf 16/17] netfilter: x_tables: remove obsolete check, Florian Westphal
- [PATCH nf 17/17] netfilter: x_tables: introduce and use xt_copy_counters_from_user, Florian Westphal
- [PATCH v2 nf 17/17] netfilter: x_tables: introduce and use xt_copy_counters_from_user, Florian Westphal
- Re: [PATCH nf 00/17] netfilter: xtables: stricter ruleset validation, Pablo Neira Ayuso
- Re: [PATCH nf 00/17] netfilter: xtables: stricter ruleset validation, Pablo Neira Ayuso
[PATCH] iptables-translate: Moving of printing nft back to xtables_xlate_main,
Guruswamy Basavaiah
[PATCH] iptables-translate: Moving printing of nft to individual commands.,
Guruswamy Basavaiah
[nft PATCH v2] tests/shell: add new testcases for commit/rollback,
Arturo Borrero Gonzalez
Writing nftables extension / modifying packets via nftables and netfilter, Stephan Arndt
[PATCH 0/1] netfilter TCP conntrack option parser fix,
Jozsef Kadlecsik
[PATCH nf] netfilter: arp_tables: register table in initns,
Florian Westphal
[PATCH] iptables-translate: Initializing comment member in xt_xlate structure,
Guruswamy Basavaiah
NFQ breaks conntrack creation to confirmation path for a fast UDP stream causing dropped packets, Yigal Reiss (yreiss)
[PATCH 0/9] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 6/9] netfilter: x_tables: fix unconditional helper, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nfnetlink_queue: honor NFQA_CFG_F_FAIL_OPEN when netlink unicast fails, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: x_tables: enforce nul-terminated table name from getsockopt GET_ENTRIES, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: ipv4: fix NULL dereference, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: x_tables: make sure e->next_offset covers remaining blob size, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: x_tables: validate e->target_offset early, Pablo Neira Ayuso
- [PATCH 2/9] openvswitch: Fix checking for new expected connections., Pablo Neira Ayuso
- [PATCH 3/9] openvswitch: call only into reachable nf-nat code, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: ipset: fix race condition in ipset save, swap and delete, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- <Possible follow-ups>
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_ct_h323: do not re-activate already expired timer, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nf_tables: s/MFT_REG32_01/NFT_REG32_01, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nft_exthdr: Add size check on u8 nft_exthdr attributes, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeq, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: ctnetlink: reject new conntrack request with different l4proto, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_ct_expect: remove the redundant slash when policy name is empty, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nft_rbtree: ignore inactive matching element with no descendants, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nfnetlink_queue: reject verdict request from different portid, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nfnetlink_queue: fix memory leak when attach expectation successfully, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: xt_TCPMSS: add more sanity tests on tcph->doff, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: ipt_CLUSTERIP: Fix wrong conntrack netns refcnt usage, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: ctnetlink: skip dumping expect when nfct_help(ct) is NULL, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nft_hash: do not dump the auto generated seed, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: ctnetlink: make it safer when checking the ct helper name, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: helper: Add the rcu lock when call __nf_conntrack_helper_find, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nf_ct_expect: use proper RCU list traversal/update APIs, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: make it safer during the inet6_dev->addr_list traversal, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: ctnetlink: using bit to represent the ct event, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_tables: close race between netns exit and rmmod, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nft_socket: fix module autoload, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: xt_connmark: fix list corruption on rmmod, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: ctnetlink: avoid null pointer dereference, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain(), Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_conncount: Fix garbage collection with zones, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_tables: fix module unload race, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_tables: fix jumpstack depth validation, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nft_set_rbtree: fix panic when destroying set by GC, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: fix memory leaks on chain rename, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nft_set_hash: add rcu_barrier() in the nft_rhash_destroy(), Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_tables: use dev->name directly, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: conntrack: dccp: treat SYNC/SYNCACK as invalid if no prior state, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables: move dumper state allocation into ->start, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nf_tables: don't allow to rename to already-pending name, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_tables: free flow table struct too, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_conncount: split gc in two phases, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nf_conncount: move all list iterations under spinlock, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_conncount: fix argument order to find_next_bit, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_conncount: merge lookup and add functions, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_conncount: restart search when nodes have been erased, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nf_conncount: speculative garbage collection on empty lists, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_tables: fix a missing check of nla_put_failure, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nf_conncount: replace CONNCOUNT_LOCK_SLOTS with CONNCOUNT_SLOTS, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nf_conncount: don't skip eviction when age is negative, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nft_set_rbtree: check for inactive element after flag mismatch, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: bridge: set skb transport_header before entering NF_INET_PRE_ROUTING, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nf_flowtable: remove duplicated transition in diagram, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: fix NETFILTER_XT_TARGET_TEE dependencies, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables: add missing ->release_ops() in error path of newrule(), Pablo Neira Ayuso
- [PATCH 5/9] netfilter: ip6t_srh: fix NULL pointer dereferences, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: bogus EBUSY in helper removal from transaction, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nft_redir: fix module autoload with ip4, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_conntrack_sip: remove direct dependency on IPv6, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: ipset: Copy the right MAC address in hash:ip,mac IPv6 sets, Pablo Neira Ayuso
- [PATCH 7/9] bridge: ebtables: don't crash when using dnat target in output chains, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_tables: Align nft_expr private data to 64-bit, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nf_tables: bogus EOPNOTSUPP on basechain update, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables_offload: skip EBUSY on chain update, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: fix unexpected EOPNOTSUPP error, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: ipset: Fix nla_policies to fully support NL_VALIDATE_STRICT, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: ipset: Fix an error code in ip_set_sockfn_get(), Pablo Neira Ayuso
- [PATCH 1/9] netfilter: nf_tables_offload: check for register data length mismatches, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: arp_tables: init netns pointer in xt_tgchk_param struct, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nft_flow_offload: fix underflow in flowtable reference counter, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: unbind callbacks from flowtable destroy path, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: conntrack: dccp, sctp: handle null timeout argument, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: ipset: avoid null deref when IPSET_ATTR_LINENO is present, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_flow_table_offload: fix the nat port mangle., Pablo Neira Ayuso
- [PATCH 7/9] netfilter: flowtable: add nf_flowtable_time_stamp, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_flow_table_offload: check the status of dst_neigh, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nf_flow_table_offload: fix incorrect ethernet dst address, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
- [PATCH 0/9] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: xt_hashlimit: reduce hashlimit_mutex scope for htable_put(), Pablo Neira Ayuso
- [PATCH 6/9] netfilter: conntrack: split resolve_clash function, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nft_set_pipapo: Don't abuse unlikely() in pipapo_refill(), Pablo Neira Ayuso
- [PATCH 7/9] netfilter: conntrack: allow insertion of clashing entries, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nft_set_pipapo: Fix mapping table example in comments, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: conntrack: place confirm-bit setting in a helper, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: flowtable: skip offload setup if disabled, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: conntrack: remove two args from resolve_clash, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: xt_hashlimit: limit the max size of hashtable, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter fixes for net, David Miller
[PATCH V2] netfilter: ip6t_SYNPROXY: remove magic number,
Liping Zhang
BUG: net/netfilter: KASAN: stack-out-of-bounds in tcp_packet,
Baozeng Ding
[iptables PATCH] configure: exit if libnftnl is not found,
Giuseppe Longo
Re: [iptables PATCH] configure: exit if libnftnl is not found, Pablo Neira Ayuso
[PATCH V2] netfilter: ipv4: fix NULL dereference,
Liping Zhang
[PATCH nf-next v6 1/3] netfilter: bridge: add nf_afinfo to enable queuing to userspace,
Stephane Bryant
[ANNOUNCE] Linux Security Summit 2016 - CFP, James Morris
[PATCH nf] netfilter: x_tables: enforce nul-terminated table name from getsockopt GET_ENTRIES, Pablo Neira Ayuso
[PATCH nft] src: store parser location for handle and position IDs,
Pablo Neira Ayuso
[PATCH] netfilter: ipv4: fix NULL dereference,
Liping Zhang
Re: [PATCH] netfilter: ipv4: fix NULL dereference, Pablo Neira Ayuso
[PATCH] netfilter: ip6t_SYNPROXY: remove magic number,
Liping Zhang
[nft PATCH 1/3] src/rule.c: don't print trailing statement whitespace,
Arturo Borrero Gonzalez
[PATCH] netfilter: nfnetlink_queue: honor NFQA_CFG_F_FAIL_OPEN when netlink unicast fails, Pablo Neira Ayuso
[PATCH] iptables: extensions: libxt_TEE: Add translation to nft,
Roberto García
[PATCH 1/4 v6] libnftnl: Implement new buffer of TLV objects,
Carlos Falgueras García
Test case example for conntrack expectation doesn't work?,
Bill
[PATCH nf v3] netfilter: x_tables: perform more sanity tests on rule set,
Florian Westphal
Re: net/sctp: stack-out-of-bounds in sctp_getsockopt,
Eric Dumazet
[nft PATCH] tests/shell: add chain validations tests,
Arturo Borrero Gonzalez
[PATCH v4] configure: Show support for connlabel,
Shivani Bhardwaj
[PATCH] openvswitch: Fix checking for new expected connections.,
Jarno Rajahalme
[PATCH net-next] change nfqueue failopen to apply also to receive message buffer in addition to queue size,
Yigal Reiss (yreiss)
[PATCH] Add systemd files,
Sébastien Luttringer
[PATCH nf-next v5 1/3] netfilter: bridge: add nf_afinfo to enable queuing to userspace,
Stephane Bryant
[PATCH] change nfqueue fail-open mechanism to apply also to receive message,
Yigal Reiss (yreiss)
[PATCH 1/4] netfilter: x_tables: validate e->target_offset early,
Florian Westphal
[PATCH] netfilter: x_tables: ensure e->next_offset consistency with table size,
Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]