Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: Linux 4.3.1 regression: -m state returns "Protocol wrong type for socket", (continued)
- [PATCH 0/5] new testsuite for nft,
Arturo Borrero Gonzalez
- [PATCH V2 nf-next] netfilter: meta: add support for setting skb->pkttype,
Florian Westphal
- [PATCH 1/4] list: introduce list_is_first(),
Geliang Tang
- Re: undefined reference to `nf_conntrack_untracked', Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_dup: add missing dependencies with NF_CONNTRACK, Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nf_tables: release objects on netns destruction,
Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: resched in nf_ct_iterate_cleanup,
Florian Westphal
- [PATCH nf-next] netfilter: nf_tables: fix nf_log_trace based tracing,
Florian Westphal
- [PATCH nf-next] netfilter: cttimeout: add netns support, Pablo Neira Ayuso
- [PATCH nf 1/2] netfilter: nfnetlink: avoid recurrent netns lookups in call_batch,
Pablo Neira Ayuso
- nf_conntrack_count is increasing,
Гаврилов Игорь
- [PATCH net-next v4 0/8] openvswitch: NAT support.,
Jarno Rajahalme
- [PATCH nf-next] netfilter: ipv6: nf_defrag: fix NULL deref panic,
Florian Westphal
- libnetfilter_conntrack: set_attr_dnat_ipv4,
Sargun Dhillon
- [PATCH xtables-addons] make xt_ACCOUNT network namespace aware, Andreas Schultz
- [PATCH] netfilter: nf_ct_sctp: validate vtag for new conntrack entries,
Marcelo Ricardo Leitner
- next-20151207 - crash in IPv6 code,
Valdis Kletnieks
- [PATCH nf-next] netfilter: nftables: Change the return type of nfulnl_set_timeout() and nfulnl_set_qthresh() to be void.,
Rami Rosen
- [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup,
Tejun Heo
- [PATCH 5/8] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 8/8] netfilter: implement xt_cgroup cgroup2 path match, Tejun Heo
- [PATCH 7/8] netfilter: prepare xt_cgroup for multi revisions, Tejun Heo
- [PATCH 4/8] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 6/8] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- [PATCH 2/8] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/8] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 1/8] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- Re: [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, David Miller
- RE: [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Dexuan Cui
- nf_conntrack_ipv4: UDP packets are spuriously dropped on parallel send via loopback device on SMP machines, Matthias Gerstner
- [PATCH nf-next 0/3] netfilter: nftables: add set support for conntrack labels,
Florian Westphal
- [PATCH net] nftables: use list_for_each_entry_safe_reverse to traversal commit_list in nf_tables_abort,
Xin Long
- [PATCH] netfilter: nfnetlink_queue: Unregister pernet subsys in case of init failure,
Nikolay Borisov
- [PATCH v2] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
[PATCH nft 1/7,v2] tests: vlan pcp and cfi are located in the first byte,
Pablo Neira Ayuso
[PATCH] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
[PATCH] netfilter: Initialize local variables to NULL, to prevent using them when uninitialized.,
Tomer Barletz
Support marking/matching tc_index in netfilter,
Luuk Paulussen
[PATCH -next] netfilter: meta: add support for setting skb->pkttype,
Florian Westphal
[nft] bug in sets cache, Arturo Borrero Gonzalez
[PATCH v3 nf-next 0/12] netfilter: don't copy init ns hooks to new namespaces,
Florian Westphal
- [PATCH v3 nf-next 02/12] netfilter: conntrack: register hooks in netns when needed by ruleset, Florian Westphal
- [PATCH v3 nf-next 03/12] netfilter: xtables: don't register table hooks in namespace at init time, Florian Westphal
- [PATCH v3 nf-next 04/12] netfilter: defrag: only register defrag functionality if needed, Florian Westphal
- [PATCH v3 nf-next 06/12] netfilter: bridge: register hooks only when bridge interface is added, Florian Westphal
- [PATCH v3 nf-next 07/12] netfilter: don't call nf_hook_state_init/_hook_slow unless needed, Florian Westphal
- [PATCH v3 nf-next 05/12] netfilter: nat: add dependencies on conntrack module, Florian Westphal
- [PATCH v3 nf-next 08/12] nftables: add conntrack dependencies for nat/masq/redir expressions, Florian Westphal
- [PATCH v3 nf-next 09/12] nfnetlink: add nfnl_dereference_protected helper, Florian Westphal
- [PATCH v3 nf-next 10/12] netfilter: ctnetlink: make ctnetlink bind register conntrack hooks, Florian Westphal
- [PATCH v3 nf-next 11/12] netfilter: hook up nfnetlink log/queue to register conntrack hooks, Florian Westphal
- [PATCH v3 nf-next 12/12] netfilter: inform ctnetlink about new l3 protocol trackers, Florian Westphal
- [PATCH v3 nf-next 01/12] netfilter: add and use nf_ct_netns_get/put, Florian Westphal
- Re: [PATCH v3 nf-next 0/12] netfilter: don't copy init ns hooks to new namespaces, Pablo Neira Ayuso
[PATCH nft 1/3] tests: add *.got files to .gitignore,
Pablo M. Bermudo Garay
[ANNOUNCE] NetDev 1.1 updates (Seville, Spain February 10-12), Pablo Neira Ayuso
[PATCH nft 1/2] tests: vlan pcp and cfi are located in the first byte,
Pablo Neira Ayuso
[PATCH] netfilter: ipvs: avoid unused variable warning,
Arnd Bergmann
[PATCH nf] netfilter: nf_tables: release objects on netns destruction, Pablo Neira Ayuso
[PATCH v4 nf-next 1/2] netfilter: nf_tables: extend tracing infrastructure,
Florian Westphal
[PATCH nft] src: perform sub-byte length matching from the evaluation step,
Pablo Neira Ayuso
[PATCH nft] null pointer exception,
Linmujia
GIT: [PATCH v3 0/3] netfilter trace infrastructure support,
Florian Westphal
[PATCH nft] netlink: fix up indentation damage, Patrick McHardy
[RFC PATCH nft] datatype: add scaled integer types, Patrick McHardy
[RFC PATCH nft] parser: add typeof keyword for declarations, Patrick McHardy
[PATCH nft,v2] netlink_delinearize: fix use-after-free, Pablo Neira Ayuso
[PATCH nft] netlink_delinearize: fix use-after-free,
Pablo Neira Ayuso
[PATCH nft]evaluate function should have a explicitly return value,
Linmujia
[PATCH nft] proto: fix VLAN header definition,
Patrick McHardy
Re: Bug#806130: linux: netlink_sock_destruct() crash in netns,
Ben Hutchings
[PATCH v2 0/3] src: trace infrastructure support,
Florian Westphal
[RFC PATCH nft] proto: add missing fields for ARP with IPv4/Ethernet,
Patrick McHardy
Re: [nft patch]add default branch for code integrality, Pablo Neira Ayuso
[nft] add default branch for code integrality,
Linmujia
[PATCH net-next v3 0/8] openvswitch: NAT support.,
Jarno Rajahalme
[PATCH nft 1/2] src: add dscp support,
Pablo Neira Ayuso
[RFC PATCH -next] netfilter: nf_ct_sctp: validate vtag for new conntrack entries,
Marcelo Ricardo Leitner
[PATCH nft] proto: fix arpop symbol table endianess, Patrick McHardy
[PATCH 1/2 nf-next] netfilter: nf_tables: add packet duplication to the netdev family,
Pablo Neira Ayuso
[PATCH net] ipv6: distinguish frag queues by device for multicast and link-local packets,
Michal Kubecek
[PATCH v2 nft 0/2] payload mangling support,
Patrick McHardy
[PATCH v2 libnftnl] payload mangling support,
Patrick McHardy
[PATCH 0/6] nftables trace support,
Florian Westphal
[PATCH v2] netfilter: payload mangling,
Patrick McHardy
[nft]: fix some bugs of return value,
Linmujia
[PATCH -next] netfilter: nf_tables: remove unused struct members,
Florian Westphal
New Netfilter core team PGP key (0x26D292E4), Pablo Neira Ayuso
[PATCH] iptables: Link libext_arpt to static build,
Daniel Wagner
nfnetlink warnings,
Borislav Petkov
[PATCH conntrack-tools] src: fix build with musl libc,
Rodrigo Rebello
[PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup,
Tejun Heo
- [PATCH 2/9] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/9] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 8/9] netfilter: prepare xt_cgroup for multi revisions, Tejun Heo
- [PATCH 6/9] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 9/9] netfilter: implement xt_cgroup cgroup2 path match, Tejun Heo
- [PATCH 7/9] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Tejun Heo
- [PATCH 5/9] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 1/9] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- [PATCH 4/9] cgroups: Allow dynamically changing net_classid, Tejun Heo
- [PATCH 1/2 iptables] libxt_cgroup: prepare for multi revisions, Tejun Heo
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Daniel Wagner
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, David Miller
[nftables] goto vs jump documentation,
Arturo Borrero Gonzalez
[PATCHSET v2] netfilter, cgroup: implement xt_cgroup2 match,
Tejun Heo
- [PATCH 5/7] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 4/7] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 7/7] netfilter: implement xt_cgroup2 match, Tejun Heo
- [PATCH 6/7] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- [PATCH 2/7] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/7] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 1/7] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- [PATCH v2 iptables] libxt_cgroup2: add support for cgroup2 path matching, Tejun Heo
- [PATCH iptables] libxt_cgroup: improve wording in the man page, Tejun Heo
- Re: [PATCHSET v2] netfilter, cgroup: implement xt_cgroup2 match, David Miller
[PATCH nft 1/2] tests: regression: homogenize indentation style,
Pablo M. Bermudo Garay
[PATCH] netfilter: avoid harmless unnitialized variable warnings,
Arnd Bergmann
[PATCH] conntrack-tools: add conntrackd.conf(5) manpage,
Arturo Borrero Gonzalez
WARN due to local_bh_disable called with interrupts disabled,
subashab
[PATCH nf-next 0/2] netfilter: simplify nf_defrag_ipv6,
Florian Westphal
libxt_set.man - iptables build 20151116 - some suggestions, Martin Kratochvíl
Extending connmark to 64 bits,
Matt Bennett
[PATCH] netfilter: remove duplicate include,
Stephen Hemminger
[PATCHSET] netfilter, cgroup: implement xt_cgroup2 match,
Tejun Heo
kernel crash in netlink_sock_destruct(),
Arturo Borrero Gonzalez
"notification events for routing changes" patch,
Murat Sezgin
[PATCH nft] rule: move comment out of handle,
Patrick McHardy
[PATCH] net-ipv6: Delete unnecessary checks before the function call "kfree_skb",
SF Markus Elfring
Read-only fields in libnetfilter_conntrack ct_conntrack structure, Daniel Collins
Re: linux-next: Tree for Nov 13 (netfilter), Randy Dunlap
[conntrackd PATCH v3] conntrackd: add systemd support,
Arturo Borrero Gonzalez
[linux-4.4-mw] BUG: unable to handle kernel paging request ip_vs_out.constprop,
Sander Eikelenboom
[PATCH] netfilter: nf_ct_sctp: move ip_ct_sctp away from UAPI,
Marcelo Ricardo Leitner
[ANNOUNCE] NetDev 1.1 Registration open, Pablo Neira Ayuso
[PATCH 00/10] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 02/10] netfilter: ingress: fix wrong input interface on hook, Pablo Neira Ayuso
- [PATCH 06/10] netfilter: Fix removal of GRE expectation entries created by PPTP, Pablo Neira Ayuso
- [PATCH 10/10] netfilter: nf_tables: add clone interface to expression operations, Pablo Neira Ayuso
- [PATCH 05/10] netfilter: ipset: Fix hash type expire: release empty hash bucket block, Pablo Neira Ayuso
- [PATCH 04/10] netfilter: ipset: Fix hash:* type expiration, Pablo Neira Ayuso
- [PATCH 09/10] net: add __netdev_alloc_pcpu_stats() to indicate gfp flags, Pablo Neira Ayuso
- [PATCH 08/10] netfilter: fix xt_TEE and xt_TPROXY dependencies, Pablo Neira Ayuso
- [PATCH 03/10] netfilter: ipset: Fix extension alignment, Pablo Neira Ayuso
- [PATCH 07/10] netfilter: nfnetlink_log: work around uninitialized variable warning, Pablo Neira Ayuso
- [PATCH 01/10] netfilter: ingress: don't use nf_hook_list_active, Pablo Neira Ayuso
- Re: [PATCH 00/10] Netfilter fixes for net, David Miller
- Re: [PATCH 00/10] Netfilter fixes for net, Josh Boyer
- <Possible follow-ups>
- [PATCH 00/10] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 10/10] netfilter: nft_ct: do cleanup work when NFTA_CT_DIRECTION is invalid, Pablo Neira Ayuso
- [PATCH 09/10] Revert "netfilter: nf_tables: add flush field to struct nft_set_iter", Pablo Neira Ayuso
- [PATCH 07/10] netfilter: Force fake conntrack entry to be at least 8 bytes aligned, Pablo Neira Ayuso
- [PATCH 01/10] netfilter: don't track fragmented packets, Pablo Neira Ayuso
- [PATCH 02/10] netfilter: nf_nat_sctp: fix ICMP packet to be dropped accidently, Pablo Neira Ayuso
- [PATCH 05/10] netfilter: nf_tables: fix mismatch in big-endian system, Pablo Neira Ayuso
- [PATCH 08/10] netfilter: nft_set_bitmap: keep a list of dummy elements, Pablo Neira Ayuso
- [PATCH 06/10] netfilter: bridge: honor frag_max_size when refragmenting, Pablo Neira Ayuso
- [PATCH 04/10] netfilter: nft_set_bitmap: fetch the element key based on the set->klen, Pablo Neira Ayuso
- [PATCH 03/10] netfilter: nf_tables: set pktinfo->thoff at AH header if found, Pablo Neira Ayuso
- Re: [PATCH 00/10] Netfilter fixes for net, David Miller
[PATCH iptables] iptables-compat: Keep xtables-config and xtables-events out from tree, Pablo Neira Ayuso
[PATCH nf 1/2] net: add __netdev_alloc_pcpu_stats() to indicate gfp flags,
Pablo Neira Ayuso
[PATCH] netfilter: fix xt_TEE and xt_TPROXY dependencies,
Arnd Bergmann
[PATCH] netfilter: nfnetlink_log: work around uninitialized variable warning,
Arnd Bergmann
netfilter.org connectivity problems,
Pablo Neira Ayuso
[PATCH 2/2] netfilter: Add nf_conntrack_helpers_register to fix one panic,
高峰
[PATCH 1/1] netfilter: Add new function nf_ct_helper_init to init ct helper easily,
高峰
[PATCH nft] evaluate: fix string matching on big endian, Pablo Neira Ayuso
nft synproxy integration,
Patrick McHardy
Re: nft synproxy integration, Jozsef Kadlecsik
<Possible follow-ups>
Re: nft synproxy integration, Alexander Meinhardt
nft cache updates,
Patrick McHardy
[PATCH libnftnl 0/1] payload mangling support,
Patrick McHardy
[PATCH nft 0/2] payload statement,
Patrick McHardy
[RFC PATCH nf-next 0/1] payload mangling support,
Patrick McHardy
[PATCH] netfilter: Fix removal of GRE expectation entries created by PPTP, Pablo Neira Ayuso
[ANNOUNCE] ipset 6.27 released, Jozsef Kadlecsik
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]