Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Dynamic IP set support, Brian Allen Vanderburg II
- [PATCH v2 nf-next 0/9] netfilter: don't copy initns hooks to new namespaces,
Florian Westphal
- [PATCH v2 nf-next 1/9] netfilter: ingress: don't use nf_hook_list_active, Florian Westphal
- [PATCH v2 nf-next 2/9] netfilter: add and use nf_ct_netns_get/put, Florian Westphal
- [PATCH v2 nf-next 3/9] netfilter: conntrack: register hooks in netns when needed by ruleset, Florian Westphal
- [PATCH v2 nf-next 4/9] netfilter: xtables: don't register xt hooks in namespace at init time, Florian Westphal
- [PATCH v2 nf-next 5/9] netfilter: defrag: only register defrag functionality if needed, Florian Westphal
- [PATCH v2 nf-next 6/9] netfilter: nat: add dependencies on conntrack module, Florian Westphal
- [PATCH v2 nf-next 9/9] nftables: add conntrack dependencies for nat/masq/redir expressions, Florian Westphal
- [PATCH v2 nf-next 8/9] netfilter: don't call nf_hook_state_init/_hook_slow unless needed, Florian Westphal
- [PATCH v2 nf-next 7/9] netfilter: bridge: register hooks only when bridge is added, Florian Westphal
- Re: [PATCH v2 nf-next 0/9] netfilter: don't copy initns hooks to new namespaces, Pablo Neira Ayuso
- Re: [PATCH v2 nf-next 0/9] netfilter: don't copy initns hooks to new namespaces, Pablo Neira Ayuso
- [PATCH] ebtables: Allow RETURN target rules in user defined chains,
Alin Nastac
- [PATCH 1/1] netfilter: Add nf_conntrack_helpers_register to fix one kernel panic,
Feng Gao
- Re: [RFC PATCH 5/5] openvswitch: Interface with NAT.,
Thomas Graf
- Re: [RFC PATCH 2/5] netfilter: Factor out nf_ct_get_info().,
Pablo Neira Ayuso
- Re: [RFC PATCH 3/5] netfilter: Allow calling into nat helper without skb_dst.,
Pablo Neira Ayuso
- Re: [RFC PATCH 4/5] openvswitch: conntrack netlink API updates.,
Pablo Neira Ayuso
- Re: [ovs-dev] [RFC PATCH 2/5] netfilter: Factor out nf_ct_get_info()., Thomas Graf
- Re: [ovs-dev] [RFC PATCH 1/5] netfilter: Remove IP_CT_NEW_REPLY definition.,
Thomas Graf
- [PATCH net] netfilter: xt_TEE: fix NULL dereference,
Eric Dumazet
- [conntrackd PATCH v2] conntrackd: add basic systemd notification support,
Arturo Borrero Gonzalez
- [PATCH nft] src: add interface wildcard matching,
Pablo Neira Ayuso
- [PATCH nf-next 0/4] netfilter: rework netfilter ipv6 defrag,
Florian Westphal
- [PATCH 00/35] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/35] ipvs: Don't protect ip_vs_addr_is_unicast with CONFIG_SYSCTL, Pablo Neira Ayuso
- [PATCH 06/35] netfilter: nfnetlink_queue: rename related to nfqueue attaching conntrack info, Pablo Neira Ayuso
- [PATCH 10/35] ipvs: Remove possibly unused variable from ip_vs_out, Pablo Neira Ayuso
- [PATCH 14/35] nfnetlink_cttimeout: add rcu_barrier() on module removal, Pablo Neira Ayuso
- [PATCH 30/35] netfilter: turn NF_HOOK into an inline function, Pablo Neira Ayuso
- [PATCH 35/35] netfilter: ipv4: whitespace around operators, Pablo Neira Ayuso
- [PATCH 31/35] netfilter: ipv4: label placement, Pablo Neira Ayuso
- [PATCH 33/35] netfilter: ipv4: function definition layout, Pablo Neira Ayuso
- [PATCH 34/35] netfilter: ipv4: code indentation, Pablo Neira Ayuso
- [PATCH 32/35] netfilter: ipv4: ternary operator layout, Pablo Neira Ayuso
- [PATCH 28/35] netfilter: make nf_queue_entry_get_refs return void, Pablo Neira Ayuso
- [PATCH 27/35] netfilter: remove hook owner refcounting, Pablo Neira Ayuso
- [PATCH 29/35] netfilter: nf_queue: remove rcu_read_lock calls, Pablo Neira Ayuso
- [PATCH 20/35] netfilter: ipv6: code indentation, Pablo Neira Ayuso
- [PATCH 26/35] netfilter: nfnetlink_log: validate dependencies to avoid breaking atomicity, Pablo Neira Ayuso
- [PATCH 22/35] netfilter: ip6_tables: ternary operator layout, Pablo Neira Ayuso
- [PATCH 24/35] netfilter: ipv6: pointer cast layout, Pablo Neira Ayuso
- [PATCH 25/35] netfilter: nfnetlink_log: consolidate check for instance in nfulnl_recv_config(), Pablo Neira Ayuso
- [PATCH 21/35] netfilter: ipv6: whitespace around operators, Pablo Neira Ayuso
- [PATCH 18/35] netfilter: ip6_tables: label placement, Pablo Neira Ayuso
- [PATCH 23/35] netfilter: ip6_tables: improve if statements, Pablo Neira Ayuso
- [PATCH 19/35] netfilter: ip6_tables: function definition layout, Pablo Neira Ayuso
- [PATCH 17/35] netfilter: nfqueue: don't use prev pointer, Pablo Neira Ayuso
- [PATCH 15/35] netfilter: bridge: avoid unused label warning, Pablo Neira Ayuso
- [PATCH 16/35] netfilter: nfnetlink_log: autoload nf_conntrack_netlink module NFQA_CFG_F_CONNTRACK config flag, Pablo Neira Ayuso
- [PATCH 11/35] ipvs: Remove possibly unused variables from ip_vs_conn_net_{init,cleanup}, Pablo Neira Ayuso
- [PATCH 13/35] netfilter: conntrack: fix crash on timeout object removal, Pablo Neira Ayuso
- [PATCH 12/35] netfilter: xt_CT: don't put back reference to timeout policy object, Pablo Neira Ayuso
- [PATCH 07/35] netfilter: Kconfig rename QUEUE_CT to GLUE_CT, Pablo Neira Ayuso
- [PATCH 08/35] netfilter: ctnetlink: add const qualifier to nfnl_hook.get_ct, Pablo Neira Ayuso
- [PATCH 09/35] netfilter: nfnetlink_log: allow to attach conntrack, Pablo Neira Ayuso
- [PATCH 03/35] netfilter: rename nfnetlink_queue_core.c to nfnetlink_queue.c, Pablo Neira Ayuso
- [PATCH 04/35] netfilter: nfnetlink_queue: use y2038 safe timestamp, Pablo Neira Ayuso
- [PATCH 05/35] netfilter: remove dead code, Pablo Neira Ayuso
- [PATCH 02/35] netfilter: nfnetlink_queue: get rid of nfnetlink_queue_ct.c, Pablo Neira Ayuso
- Re: [PATCH 00/35] Netfilter/IPVS updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/35] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- Need net-next in nf-next for netfilter ipv6 frag patchset,
Florian Westphal
- [PATCH] netfilter: fix Kconfig dependencies for nft_dup_ipv{4,6},
Arnd Bergmann
- [RFC conntrackd PATCH] conntrackd: add basic systemd notification support,
Arturo Borrero Gonzalez
- [PATCH v3] netfilter: ipset: Fix sleeping memory allocation in atomic context,
Nikolay Borisov
- Patch series for netfilter still missing in 4.2,
Thomas D.
- [PATCH v2] netfilter: ipset: Fix sleeping memory allocation in atomic context,
Nikolay Borisov
- [PATCH] Fix sleeping memory allocation in atomic context,
Nikolay Borisov
- [PATCH v4 52/79] include/uapi/netfilter/*.h: fix include files for compilation,
Mikko Rapeli
- [PATCH nf-next 0/6] coding style improvements: netfilter-ipv4,
Ian Morris
- [PATCH nf-next 0/3] netfilter: remove hook owner refcounting,
Florian Westphal
- [PATCH nf-next 1/2] netfilter: nfnetlink_log: consolidate check for instance in nfulnl_recv_config(),
Pablo Neira Ayuso
- [libnftnl PATCH] chain: fix segfault in 'device' XML parsing,
Arturo Borrero Gonzalez
- [PATCH nf-next 0/7] coding style improvements for netfilter,
Ian Morris
- [PATCH libnftnl] Fix nft-table-upd example,
Vijay Subramanian
- [PATCH libnftnl] Fix compilation with JSON and XML parsing enabled,
Vijay Subramanian
- [RFC nft PATCH 0/3] new test suite,
Arturo Borrero Gonzalez
- [PATCH] netfilter: turn NF_HOOK into an inline function,
Arnd Bergmann
- [PATCH -next] netfilter: nfqueue: don't use prev pointer,
Florian Westphal
- [nft] possible several bugs in maps,
Arturo Borrero Gonzalez
- [PATCH nf] netfilter: sync with packet rx also after removing queue entries,
Florian Westphal
- [PATCH libnftnl] expr: dup: Fix json parsing,
Aaron Conole
- [PATCH nft 0/7] listing command updates,
Pablo Neira Ayuso
- [PATCH v2] bridge/netfilter: avoid unused label warning,
Arnd Bergmann
- [nft] regarding sets names length,
Arturo Borrero Gonzalez
- [nft PATCH] rule: fix printing of rule comments,
Arturo Borrero Gonzalez
- linux 3.4.43 : kernel crash at __nf_conntrack_confirm,
Ani Sinha
[GIT PULL nf-next 0/2] Fourth Round of IPVS Updates for v4.4,
Simon Horman
[PATCH] netfilter: fix bad checksum on IPv6 when NAT is performed,
Maxime Bizon
[PATCH net] netfilter: ipt_rpfilter: remove the nh_scope test in rpfilter_lookup_reverse,
Xin Long
[nft] segfault in expr_clone(),
Arturo Borrero Gonzalez
[PATCH] ipvs: Remove possibly unused net variable from ip_vs_out,
Simon Horman
[PATCH] ipvs: Remove possibly unused variables from ip_vs_conn_net_{init,cleanup}, Simon Horman
[PATCH v4] libmnl: Drop the EXPORT_SYMBOL() tags,
Neutron Soutmun
[PATCH v3] libmnl: Drop the EXPORT_SYMBOL() tags,
Neutron Soutmun
[PATCH nf-next] netfilter: bridge: fix 2 compiler warnings, Nikolay Aleksandrov
[PATCH nf 1/3] netfilter: conntrack: fix crash on timeout object removal,
Pablo Neira Ayuso
[PATCH nf-next,v2] netfilter: ctnetlink: remove function inline declaration,
Pablo Neira Ayuso
[PATCH] netfilter: ctnetlink: remove function inline declaration,
Pablo Neira Ayuso
[PATCH nf-next] netfilter: nfnetlink_queue: use y2038 safe timestamp, Pablo Neira Ayuso
[PATCH libmnl 0/2] Introduce mnl_socket_open2(),
Guillaume Nault
[PATCH -next 0/8] netfilter: don't copy init ns hooks to new namespaces,
Florian Westphal
[PATCH v2] libmnl: Drop the EXPORT_SYMBOL() tags,
Neutron Soutmun
[GIT PULL nf-next] Third Round of IPVS Updates for v4.4,
Simon Horman
[PATCH] ipvs: Remove unused net variable from ip_vs_out,
Simon Horman
[PATCH 1/2 v3] netfilter: nfnetlink_queue: get rid of nfnetlink_queue_ct.c,
Pablo Neira Ayuso
[libmnl] Creating netlink socket with SOCK_CLOEXEC flag,
Guillaume Nault
[PATCH nf-next v2 1/2] netfilter: nfnetlink_queue: get rid of nfnetlink_queue_ct.c,
Pablo Neira Ayuso
[PATCH] libmnl: Drop the EXPORT_SYMBOL() tags,
Neutron Soutmun
[PATCH nft] expression: provide clone operation for set element ops,
Florian Westphal
[PATCH 1/2 nf-next] netfilter: nfnetlink_queue: get rid of nfnetlink_queue_ct.c,
Pablo Neira Ayuso
[PATCH] netfilter: remove dead code,
Flavio Leitner
[PATCH 00/12] net: assorted y2038 changes,
Arnd Bergmann
[PATCH 00/90] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
[PATCH nf] netfilter: fix Kconfig dependencies for nf_dup_ipv{4,6}, Pablo Neira Ayuso
[PATCH nft 1/2] src: add dup statement support,
Pablo Neira Ayuso
[PATCH libnftnl] expr: dup: fix missing space in text output, Pablo Neira Ayuso
[PATCH RFC 0/7] netfilter: introduce new chain type for local socket input,
Daniel Mack
[PATCH 1/1] netfilter: ftp: Check data size before copy them into FTP buffer,
Feng Gao
[PATCH nft 1/2] src: allow filtering on L2 header in inet family,
Florian Westphal
[PATCH nf-next] bridge: Pass net into br_validate_ipv4 and br_validate_ipv6,
Eric W. Biederman
Re: Fetching interface name,
Pablo Neira Ayuso
[PATCH]: netfilter: ftp/irc/sane/sip/tftp: Fix the kernel panic when load these modules with duplicated ports,
Feng Gao
[PATCH] libmnl: Failed to build with clang, incompatible EXPORT_SYMBOL(x) macro,
Neutron Soutmun
NFQUEUE filtering strategy, Eugene Strulyov
NFQUEUE parallelization,
Eugene Strulyov
[PATCH nf-next] netfilter: Line layout whitespace fixes,
Ian Morris
SIP messages with no/invalid CSeq are dropped by nf_ct_sip, 400 Bad Request is expected instead,
Christophe Leroy
[GIT PULL nf-next 00/84] Second Round of IPVS Updates for v4.4,
Simon Horman
- [PATCH nf-next 01/84] ipvs: Hoist computation of ipvs earlier in sctp_conn_schedule, Simon Horman
- [PATCH nf-next 14/84] ipvs: Pass ipvs not net to ip_vs_find_dest, Simon Horman
- [PATCH nf-next 38/84] ipvs: Pass ipvs not net to ip_vs_process_message, Simon Horman
- [PATCH nf-next 40/84] ipvs: Pass ipvs not net to ip_vs_sync_conn, Simon Horman
- [PATCH nf-next 42/84] ipvs: Pass ipvs not net to ip_vs_proc_sync_conn, Simon Horman
- [PATCH nf-next 54/84] ipvs: Pass ipvs not net to register_ip_vs_app_inc, Simon Horman
- [PATCH nf-next 56/84] ipvs: Pass ipvs not net into ip_vs_app_inc_release, Simon Horman
- [PATCH nf-next 71/84] ipvs: Better derivation of ipvs in ip_vs_in_stats and ip_vs_out_stats, Simon Horman
- [PATCH nf-next 84/84] ipvs: Pass ipvs into ip_vs_gather_frags, Simon Horman
- [PATCH nf-next 82/84] ipvs: Remove skb_net, Simon Horman
- [PATCH nf-next 83/84] ipvs: Remove skb_sknet, Simon Horman
- [PATCH nf-next 80/84] ipvs: Remove net argument from ip_vs_tcp_conn_listen, Simon Horman
- [PATCH nf-next 81/84] ipvs: Pass ipvs not net to ip_vs_protocol_net_(init|cleanup), Simon Horman
- [PATCH nf-next 79/84] ipvs: Pass ipvs through ip_vs_route_me_harder into sysctl_snat_reroute, Simon Horman
- [PATCH nf-next 78/84] ipvs: Pass ipvs into ip_vs_out_icmp and ip_vs_out_icmp_v6, Simon Horman
- [PATCH nf-next 77/84] ipvs: Pass ipvs into ip_vs_in_icmp and ip_vs_in_icmp_v6, Simon Horman
- [PATCH nf-next 76/84] ipvs: Pass ipvs into ip_vs_in, Simon Horman
- [PATCH nf-next 73/84] ipvs: Simplify ipvs and net access in ip_vs_leave, Simon Horman
- [PATCH nf-next 75/84] ipvs: Pass ipvs into ip_vs_out, Simon Horman
- [PATCH nf-next 74/84] ipvs: Pass ipvs not net into sysctl_nat_icmp_send, Simon Horman
- [PATCH nf-next 72/84] ipvs: Wrap sysctl_cache_bypass and remove ifdefs in ip_vs_leave, Simon Horman
- [PATCH nf-next 68/84] ipvs: Pass ipvs into __ip_vs_get_out_rt, Simon Horman
- [PATCH nf-next 70/84] ipvs: Pass ipvs into ensure_mtu_is adequate, Simon Horman
- [PATCH nf-next 69/84] ipvs: Pass ipvs into __ip_vs_get_out_rt_v6, Simon Horman
- [PATCH nf-next 67/84] ipvs: Better derivation of ipvs in ip_vs_tunnel_xmit, Simon Horman
- [PATCH nf-next 66/84] ipvs: Pass ipvs into .conn_schedule and ip_vs_try_to_schedule, Simon Horman
- [PATCH nf-next 64/84] ipvs: Pass ipvs not net into ip_vs_conn_net_flush, Simon Horman
- [PATCH nf-next 65/84] ipvs: Pass ipvs not net into ip_vs_conn_net_init and ip_vs_conn_net_cleanup, Simon Horman
- [PATCH nf-next 58/84] ipvs: Pass ipvs not net into [un]register_ip_vs_proto_netns, Simon Horman
- [PATCH nf-next 59/84] ipvs: Pass ipvs not net into init_netns and exit_netns, Simon Horman
- [PATCH nf-next 63/84] ipvs: Pass ipvs not net to ip_vs_conn_hashkey, Simon Horman
- [PATCH nf-next 62/84] ipvs: Pass ipvs into conn_out_get, Simon Horman
- [PATCH nf-next 57/84] ipvs: Pass ipvs not net into ip_vs_app_net_init and ip_vs_app_net_cleanup, Simon Horman
- [PATCH nf-next 60/84] ipvs: Pass ipvs into ip_vs_conn_fill_param_proto, Simon Horman
- [PATCH nf-next 61/84] ipvs: Pass ipvs into .conn_in_get and ip_vs_conn_in_get_proto, Simon Horman
- [PATCH nf-next 53/84] ipvs: Pass ipvs not net into ip_vs_app_inc_new, Simon Horman
- [PATCH nf-next 55/84] ipvs: Pass ipvs not net to register_ip_vs_app and unregister_ip_vs_app, Simon Horman
- [PATCH nf-next 50/84] ipvs: Pass ipvs not net to estimation_timer, Simon Horman
- [PATCH nf-next 52/84] ipvs: Pass ipvs not net into register_app and unregister_app, Simon Horman
- [PATCH nf-next 49/84] ipvs: Pass ipvs not net into ip_vs_control_net_(init|cleanup), Simon Horman
- [PATCH nf-next 51/84] ipvs: Pass ipvs not net to ip_vs_estimator_net_init and ip_vs_estimator_cleanup, Simon Horman
- [PATCH nf-next 48/84] ipvs: Pass ipvs not net to ip_vs_control_net_(init|cleanup)_sysctl, Simon Horman
- [PATCH nf-next 47/84] ipvs: Pass ipvs not net to ip_vs_random_drop_entry, Simon Horman
- [PATCH nf-next 46/84] ipvs: Pass ipvs not net to ip_vs_start_estimator aned ip_vs_stop_estimator, Simon Horman
- [PATCH nf-next 44/84] ipvs: Pass ipvs not net to ip_vs_sync_net_cleanup, Simon Horman
- [PATCH nf-next 43/84] ipvs: Pass ipvs not net to ip_vs_sync_net_init, Simon Horman
- [PATCH nf-next 45/84] ipvs: Pass ipvs not net to ip_vs_genl_set_config, Simon Horman
- [PATCH nf-next 41/84] ipvs: Pass ipvs not net to ip_vs_proc_conn, Simon Horman
- [PATCH nf-next 39/84] ipvs: Pass ipvs not net to ip_vs_sync_conn_v0, Simon Horman
- [PATCH nf-next 36/84] ipvs: Pass ipvs not net to make_receive_sock, Simon Horman
- [PATCH nf-next 37/84] ipvs: Store ipvs not net in struct ip_vs_sync_thread_data, Simon Horman
- [PATCH nf-next 34/84] ipvs: Pass ipvs not net to stop_sync_thread, Simon Horman
- [PATCH nf-next 35/84] ipvs: Pass ipvs not net to make_send_sock, Simon Horman
- [PATCH nf-next 33/84] ipvs: Pass ipvs not net to start_sync_thread, Simon Horman
- [PATCH nf-next 32/84] ipvs: Pass ipvs not net to ip_vs_genl_del_daemon, Simon Horman
- [PATCH nf-next 30/84] ipvs: Pass ipvs not net to ip_vs_genl_find_service, Simon Horman
- [PATCH nf-next 17/84] ipvs: Pass ipvs not net to ip_vs_dest_trash_expire, Simon Horman
- [PATCH nf-next 19/84] ipvs: Pass ipvs not net to ip_vs_add_service, Simon Horman
- [PATCH nf-next 18/84] ipvs: Cache ipvs in ip_vs_genl_set_cmd, Simon Horman
- [PATCH nf-next 31/84] ipvs: Pass ipvs not net to ip_vs_genl_new_daemon, Simon Horman
- [PATCH nf-next 13/84] ipvs: Pass ipvs not net to ip_vs_has_real_service, Simon Horman
- [PATCH nf-next 15/84] ipvs: Pass ipvs not net to ip_vs_trash_cleanup, Simon Horman
- [PATCH nf-next 29/84] ipvs: Pass ipvs not net to ip_vs_genl_parse_service, Simon Horman
- [PATCH nf-next 16/84] ipvs: Pass ipvs not net to __ip_vs_del_dest, Simon Horman
- [PATCH nf-next 12/84] ipvs: Pass ipvs not net to ip_vs_service_find, Simon Horman
- [PATCH nf-next 28/84] ipvs: Pass ipvs not net to __ip_vs_get_timeouts, Simon Horman
- [PATCH nf-next 11/84] ipvs: Pass ipvs not net to __ip_vs_service_find, Simon Horman
- [PATCH nf-next 10/84] ipvs: Pass ipvs not net to ip_vs_svc_hashkey, Simon Horman
- [PATCH nf-next 27/84] ipvs: Pass ipvs not net to __ip_vs_get_dest_entries, Simon Horman
- [PATCH nf-next 09/84] ipvs: Pass ipvs not net to __ip_vs_svc_fwm_find, Simon Horman
- [PATCH nf-next 26/84] ipvs: Pass ipvs not net to __ip_vs_get_service_entries, Simon Horman
- [PATCH nf-next 07/84] ipvs: Store ipvs not net in struct ip_vs_service, Simon Horman
- [PATCH nf-next 25/84] ipvs: Pass ipvs not net to ip_vs_set_timeout, Simon Horman
- [PATCH nf-next 08/84] ipvs: Pass ipvs not net to ip_vs_svc_fwm_hashkey, Simon Horman
- [PATCH nf-next 24/84] ipvs: Pass ipvs not net to ip_vs_proto_data_get, Simon Horman
- [PATCH nf-next 06/84] ipvs: Pass ipvs not net to ip_vs_fill_conn, Simon Horman
- [PATCH nf-next 05/84] ipvs: Store ipvs not net in struct ip_vs_conn_param, Simon Horman
- [PATCH nf-next 23/84] ipvs: Cache ipvs in ip_vs_in_icmp and ip_vs_in_icmp_v6, Simon Horman
- [PATCH nf-next 04/84] ipvs: Store ipvs not net in struct ip_vs_conn, Simon Horman
- [PATCH nf-next 22/84] ipvs: Pass ipvs not net to ip_vs_zero_all, Simon Horman
- [PATCH nf-next 03/84] ipvs: Use state->net in the ipvs forward functions, Simon Horman
- [PATCH nf-next 21/84] ipvs: Pass ipvs not net to ip_vs_service_net_cleanup, Simon Horman
- [PATCH nf-next 20/84] ipvs: Pass ipvs not net to ip_vs_flush, Simon Horman
- [PATCH nf-next 02/84] ipvs: Don't use current in proc_do_defense_mode, Simon Horman
- Re: [GIT PULL nf-next 00/84] Second Round of IPVS Updates for v4.4, Pablo Neira Ayuso
Re: linux-next: Tree for Sep 23 (netfilter), Randy Dunlap
[PATCH nft 1/2] rule: filter out tables depending on family,
Pablo Neira Ayuso
[nft] strange behaviour,
littlesmilingcloud
[nft] all chains of a table are listed,
Arturo Borrero Gonzalez
[PATCH nft 1/3] src: add per-bytes limit,
Pablo Neira Ayuso
[PATCH 00/30] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/30] ipvs: replace ip_vs_fill_ip4hdr with ip_vs_fill_iph_skb_off, Pablo Neira Ayuso
- [PATCH 04/30] ipvs: pull out ip_vs_try_to_schedule function, Pablo Neira Ayuso
- [PATCH 12/30] ipvs: support scheduling inverse and icmp TCP packets, Pablo Neira Ayuso
- [PATCH 14/30] ipvs: support scheduling inverse and icmp SCTP packets, Pablo Neira Ayuso
- [PATCH 16/30] netfilter: ebtables: Simplify the arguments to ebt_do_table, Pablo Neira Ayuso
- [PATCH 22/30] netfilter: nf_tables: Pass struct net in nft_pktinfo, Pablo Neira Ayuso
- [PATCH 25/30] act_connmark: Remember the struct net instead of guessing it., Pablo Neira Ayuso
- [PATCH 28/30] netfilter: Pass priv instead of nf_hook_ops to netfilter hooks, Pablo Neira Ayuso
- [PATCH 26/30] netfilter: nf_conntrack: Add a struct net parameter to l4_pkt_to_tuple, Pablo Neira Ayuso
- [PATCH 27/30] ipvs: Read hooknum from state rather than ops->hooknum, Pablo Neira Ayuso
- [PATCH 29/30] netfilter: Pass net into nf_xfrm_me_harder, Pablo Neira Ayuso
- [PATCH 30/30] netfilter: Use nf_ct_net instead of dev_net(out) in nf_nat_masquerade_ipv6, Pablo Neira Ayuso
- [PATCH 23/30] netfilter: nf_tables: Use pkt->net instead of computing net from the passed net_devices, Pablo Neira Ayuso
- [PATCH 24/30] netfilter: Pass net to nf_dup_ipv4 and nf_dup_ipv6, Pablo Neira Ayuso
- [PATCH 15/30] ipvs: add sysctl to ignore tunneled packets, Pablo Neira Ayuso
- [PATCH 21/30] netfilter: x_tables: Use par->net instead of computing from the passed net devices, Pablo Neira Ayuso
- [PATCH 20/30] netfilter: x_tables: Pass struct net in xt_action_param, Pablo Neira Ayuso
- [PATCH 13/30] ipvs: support scheduling inverse and icmp UDP packets, Pablo Neira Ayuso
- [PATCH 10/30] ipvs: attempt to schedule icmp packets, Pablo Neira Ayuso
- [PATCH 17/30] inet netfilter: Remove hook from ip6t_do_table, arp_do_table, ipt_do_table, Pablo Neira Ayuso
- [PATCH 18/30] inet netfilter: Prefer state->hook to ops->hooknum, Pablo Neira Ayuso
- [PATCH 19/30] netfilter: nf_tables: kill nft_pktinfo.ops, Pablo Neira Ayuso
- [PATCH 11/30] ipvs: ensure that ICMP cannot be sent in reply to ICMP, Pablo Neira Ayuso
- [PATCH 09/30] ipvs: sh: support scheduling icmp/inverse packets consistently, Pablo Neira Ayuso
- [PATCH 07/30] ipvs: add schedule_icmp sysctl, Pablo Neira Ayuso
- [PATCH 02/30] ipvs: Add hdr_flags to iphdr, Pablo Neira Ayuso
- [PATCH 08/30] ipvs: Use outer header in ip_vs_bypass_xmit_v6, Pablo Neira Ayuso
- [PATCH 05/30] ipvs: drop inverse argument to conn_{in,out}_get, Pablo Neira Ayuso
- [PATCH 06/30] ipvs: Make ip_vs_schedule aware of inverse iph'es, Pablo Neira Ayuso
- [PATCH 03/30] ipvs: Handle inverse and icmp headers in ip_vs_leave, Pablo Neira Ayuso
- Re: [PATCH 00/30] Netfilter/IPVS updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/30] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 12/30] netfilter: x_tables: limit allocation requests for blob rule heads, Pablo Neira Ayuso
- [PATCH 13/30] netfilter: x_tables: add counters allocation wrapper, Pablo Neira Ayuso
- [PATCH 14/30] netfilter: compat: prepare xt_compat_init_offsets to return errors, Pablo Neira Ayuso
- [PATCH 25/30] netfilter: x_tables: fix build with CONFIG_COMPAT=n, Pablo Neira Ayuso
- [PATCH 24/30] netfilter: nf_flow_table: rename nf_flow_table.c to nf_flow_table_core.c, Pablo Neira Ayuso
- [PATCH 30/30] netfilter: nft_ct: add NFT_CT_{SRC,DST}_{IP,IP6}, Pablo Neira Ayuso
- [PATCH 29/30] netfilter: conncount: Support count only use case, Pablo Neira Ayuso
- [PATCH 28/30] netfilter: Refactor nf_conncount, Pablo Neira Ayuso
- [PATCH 27/30] netfilter: nf_tables: handle rt0 and rt2 properly, Pablo Neira Ayuso
- [PATCH 21/30] netfilter: nf_flow_table: clean up flow_offload_alloc, Pablo Neira Ayuso
- [PATCH 23/30] netfilter: nf_flow_table: cache mtu in struct flow_offload_tuple, Pablo Neira Ayuso
- [PATCH 26/30] ipvs: use true and false for boolean values, Pablo Neira Ayuso
- [PATCH 20/30] netfilter: nf_flow_table: use IP_CT_DIR_* values for FLOW_OFFLOAD_DIR_*, Pablo Neira Ayuso
- [PATCH 22/30] ipv6: make ip6_dst_mtu_forward inline, Pablo Neira Ayuso
- [PATCH 19/30] netfilter: xt_limit: Spelling s/maxmum/maximum/, Pablo Neira Ayuso
- [PATCH 18/30] netfilter: make xt_rateest hash table per net, Pablo Neira Ayuso
- [PATCH 16/30] netfilter: x_tables: make sure compat af mutex is held, Pablo Neira Ayuso
- [PATCH 17/30] netfilter: x_tables: ensure last rule in base chain matches underflow/policy, Pablo Neira Ayuso
- [PATCH 15/30] netfilter: compat: reject huge allocation requests, Pablo Neira Ayuso
- [PATCH 10/30] netfilter: x_tables: enforce unique and ascending entry points, Pablo Neira Ayuso
- [PATCH 11/30] netfilter: x_tables: cap allocations at 512 mbyte, Pablo Neira Ayuso
- [PATCH 04/30] netfilter: nf_conntrack_broadcast: remove useless parameter, Pablo Neira Ayuso
- [PATCH 06/30] netfilter: unlock xt_table earlier in __do_replace, Pablo Neira Ayuso
- [PATCH 09/30] netfilter: x_tables: move hook entry checks into core, Pablo Neira Ayuso
- [PATCH 08/30] netfilter: x_tables: check error target size too, Pablo Neira Ayuso
- [PATCH 05/30] netfilter: ipt_ah: return boolean instead of integer, Pablo Neira Ayuso
- [PATCH 07/30] netfilter: x_tables: check standard verdicts in core, Pablo Neira Ayuso
- [PATCH 01/30] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static, Pablo Neira Ayuso
- [PATCH 03/30] netfilter: xt_cluster: get rid of xt_cluster_ipv6_is_multicast, Pablo Neira Ayuso
- [PATCH 02/30] netfilter: nfnetlink_acct: remove useless parameter, Pablo Neira Ayuso
- Re: [PATCH 00/30] Netfilter/IPVS updates for net-next, David Miller
[PATCH Resolved UMA issue] netfilter: icmp: Enhance the return value check of nf_nat_icmp(v6)_reply_translation,
Feng Gao
Re: [PATCH] netfilter: icmp: Enhance the return value check of nf_nat_icmp(v6)_reply_translation, Pablo Neira Ayuso
[ANNOUNCE] nftables 0.5 release, Pablo Neira Ayuso
[no subject], Alfred Cheuk Chow
[PATCH nf] netfilter: nf_log: wait for rcu grace after logger unregistration, Pablo Neira Ayuso
[GIT-PULL nf-next 00/15] IPVS Updates for v4.4,
Simon Horman
- [PATCH nf-next 04/15] ipvs: pull out ip_vs_try_to_schedule function, Simon Horman
- [PATCH nf-next 01/15] ipvs: replace ip_vs_fill_ip4hdr with ip_vs_fill_iph_skb_off, Simon Horman
- [PATCH nf-next 11/15] ipvs: ensure that ICMP cannot be sent in reply to ICMP, Simon Horman
- [PATCH nf-next 08/15] ipvs: Use outer header in ip_vs_bypass_xmit_v6, Simon Horman
- [PATCH nf-next 15/15] ipvs: add sysctl to ignore tunneled packets, Simon Horman
- [PATCH nf-next 14/15] ipvs: support scheduling inverse and icmp SCTP packets, Simon Horman
- [PATCH nf-next 13/15] ipvs: support scheduling inverse and icmp UDP packets, Simon Horman
- [PATCH nf-next 07/15] ipvs: add schedule_icmp sysctl, Simon Horman
- [PATCH nf-next 05/15] ipvs: drop inverse argument to conn_{in,out}_get, Simon Horman
- [PATCH nf-next 06/15] ipvs: Make ip_vs_schedule aware of inverse iph'es, Simon Horman
- [PATCH nf-next 12/15] ipvs: support scheduling inverse and icmp TCP packets, Simon Horman
- [PATCH nf-next 10/15] ipvs: attempt to schedule icmp packets, Simon Horman
- [PATCH nf-next 09/15] ipvs: sh: support scheduling icmp/inverse packets consistently, Simon Horman
- [PATCH nf-next 03/15] ipvs: Handle inverse and icmp headers in ip_vs_leave, Simon Horman
- [PATCH nf-next 02/15] ipvs: Add hdr_flags to iphdr, Simon Horman
- Re: [GIT-PULL nf-next 00/15] IPVS Updates for v4.4, Eric W. Biederman
- Re: [GIT-PULL nf-next 00/15] IPVS Updates for v4.4, Pablo Neira Ayuso
[PATCH libnftnl] src: fix LIBVERSION, should be 3:0:0 instead of 3:0:3, Pablo Neira Ayuso
[PATCH] build: bump library versioning,
Jan Engelhardt
[PATCH RFC 0/3] Allow postponed netfilter handling for socket matches,
Daniel Mack
[PATCH libnftnl 0/2] map fixes,
Pablo Neira Ayuso
[ANNOUNCE] libnftnl 1.0.4 release,
Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]