Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [nft] Byteorder problem still exists in nft, (continued)
[PATCH libnftnl] src: get rid of cached copies of x_tables.h and xt_LOG.h, Pablo Neira Ayuso
does "iptables -t filter -A INPUT --match conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT" gives a false sense of security ?, Toralf Förster
[nft PATCH] Kill the correct protocol expression during payload parsing,
Yanchuan Nian
vmap verdict on two matched meta types,
Alex Chapman
[GIT PULL nf] Second round of IPVS fixes for v3.17,
Simon Horman
[nf_tables PATCH v4 1/5] netfilter: nf_tables: refactor rule deletion helper,
Arturo Borrero Gonzalez
[GIT PULL nf-next] IPVS Updates for v3.18,
Simon Horman
[GIT PULL nf] IPVS fixes for v3.17,
Simon Horman
[nf_tables PATCH v3 1/5] netfilter: nf_tables: refactor rule deletion helper,
Arturo Borrero Gonzalez
[nf_tables PATCH v2 0/5] Series short description,
Arturo Borrero Gonzalez
[libnftnl PATCH] examples: add nft-ruleset-replace,
Arturo Borrero Gonzalez
[nf_tables PATCH 0/5] Extended NFT_MSG_DELTABLE,
Arturo Borrero Gonzalez
[{ip,ip6}tables-compat PATCH] nft: fix network prefixes,
Giuseppe Longo
[PATCH 1/2] nft: fix network prefixes,
Giuseppe Longo
[libnftnl PATCH 1/2] utils: ensure \0 is in place in nft_fprintf(),
Arturo Borrero Gonzalez
[PATCH nf-next 1/4] netfilter: nat: move specific NAT IPv4 to core,
Pablo Neira Ayuso
ARP flux on bond interface,
Max Dmitrichenko
[PATCH net-next] net: use reciprocal_scale() helper,
Daniel Borkmann
[PATCH] Fix trivial error in man page where flush should be rename,
Kevin Fenzi
[libnftnl PATCH 1/6] examples: merge nft-table-{xml|json}-add.c,
Arturo Borrero Gonzalez
[iptables-compat PATCH 0/3] ebtables compat layer,
Giuseppe Longo
[iptables-compat PATCH 1/5 v2] nft: adds nft_xt_ctx struct,
Giuseppe Longo
[PATCH V2 1/1] netfilter/jump_label: HAVE_JUMP_LABEL instead of CONFIG_JUMP_LABEL,
Zhouyi Zhou
Easy network (config) breakage with 3.17-rc1: NETFILTER_XT_TARGET_LOG,
Rafał Miłecki
[PATCH 1/1] netfilter/jump_label: use HAVE_JUMP_LABEL?,
Zhouyi Zhou
[PATCH] verdict type: handle verdict flags and encoded additional information, Patrick McHardy
[PATCH 0/3] nftables: fix some endian issues,
Patrick McHardy
[nft PATCH] linealize: generate unary expression with the appropiate operation,
Alvaro Neira Ayuso
[PATCH nft] src: don't return error in netlink_linearize_rule(), Pablo Neira Ayuso
[libnftnl PATCH 1/2] examples: merge nft-chain-{xml|json}-add.c,
Arturo Borrero Gonzalez
[PATCH] netfilter: x_tables: allow to use default cgroup match,
Daniel Borkmann
[libnftnl PATCH 1/2] examples: nft-chain-del: add chain_del_parse(),
Arturo Borrero Gonzalez
[nft PATCH v2] nft: add reject support,
Alvaro Neira Ayuso
Post_Routing hook with encapsulated packets (forwarding scenario), Hugo Alves
[libnftnl PATCH] Rename xfree() to libnftnl_xfree() to avoid symbol naming conflict,
Thomas Petazzoni
none zero check of the classid in xt_cgroup,
Alexey Perevalov
Centos 6.5 xtables Addons,
Glenn Sams
[PATCH 1/3 libnftnl] common: add batching interfaces,
Pablo Neira Ayuso
[nft RFC PATCH] src: add set optimization options,
Arturo Borrero Gonzalez
[PATCHv2 1/2] netfilter: move NAT Kconfig switches out of the iptables scope, Pablo Neira Ayuso
[nft PATCH] More extensive error checking on base chain,
Yanchuan Nian
[PATCH 1/2] netfilter: move NAT Kconfig switches out of the iptables scope,
Pablo Neira Ayuso
[libnftnl PATCH 1/4] examples: fix nft-set-del by adding batching support,
Arturo Borrero Gonzalez
[libnftnl PATCH 1/4] examples: fix nft-table-add by adding batching support,
Arturo Borrero Gonzalez
[libnftnl PATCH 1/3] examples: fix nft-chain-add by adding batching support,
Arturo Borrero Gonzalez
Bug: nft cannot identify elements in set correctly,
Yanchuan Nian
Bug: Some anonymous sets aren't displayed correctly, Yanchuan Nian
[nft PATCH] Remove unused function netlink_get_table, Yanchuan Nian
[nft PATCH] Fix memory leak in nft get operation, Yanchuan Nian
[PATCH nftables] payload: use proto_unknown for raw protocol header,
Yuxuan Shui
[PATCH] nft-arp: remove wrong conditions,
Giuseppe Longo
[PATCH] netfilter: xt_u32: Accept negative offset in AT operation, Takero Funaki
[PATCH 0/5] fix error return code,
Julia Lawall
SDP NATing issue producing invalid X.Y.0.0 IPs, Cormac Long
[PATCH] [libnftnl] expr: meta: Add cpu support for meta expresion,
Ana Rey
[PATCH v2] net: reallocate new socket option number for IPV6_AUTOFLOWLABEL,
Pablo Neira Ayuso
[PATCH] net: reallocate new socket option number for IPV6_AUTOFLOWLABEL,
Pablo Neira Ayuso
[PATCH 0/3] nftables: add cpu attribute to nft_meta,
Valentina Giusti
Re: ip6tables filter breakage.,
David Miller
[PATCH] nfacct: add filter in to the list operation,
Alexey Perevalov
README: Merge window prep, David Miller
[nft PATCH] tests: Add tests for pkttype attribute., Ana Rey
[nft PATCH v2] src: Add support for pkttype in meta expresion, Ana Rey
[PATCH] netfilter: nf_tables: don't update chain with unset counters,
Pablo Neira Ayuso
[PATCH] netfilter: h323: Remove typedefs from structs, Himangi Saraogi
[nf-next 1/2] net/netfilter/ipset: Resolve missing-field-initializer warnings,
Jeff Kirsher
nftables null pointer,
Matteo Croce
[PATCH] netfilter: nf_tables: uninitialize element key/data from the commit path, Pablo Neira Ayuso
[nft PATCH 0/5] Changes in nft byteorder conversions,
Alvaro Neira Ayuso
[nft PATCH] doc: update documentation with 'monitor' and 'export', Arturo Borrero Gonzalez
[PATCH net-next v5 0/3] Lockless netlink_lookup() with new concurrent hash table,
Thomas Graf
what is the default value of /proc/sys/net/netfilter/nf_conntrack_helper ?,
Toralf Förster
[PATCH 0/3] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
[PATCH] nftables: Avoid duplicate call to nft_data_uninit() for same key,
Thomas Graf
[PATCH net-next v4 0/3] Lockless netlink_lookup() with new concurrent hash table,
Thomas Graf
[PATCH net-next v3 0/3] Lockless netlink_lookup() with new concurrent hash table,
Thomas Graf
[PATCH v2 0/3 net-next] Lockless netlink_lookup() with new concurrent hash table,
Thomas Graf
[PATCH 0/9] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 1/9] netfilter: bridge: add reject support, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables: check for unset NFTA_SET_ELEM_LIST_ELEMENTS attribute, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nfnetlink_acct: dump unmodified nfacct flags, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_conntrack: remove exceptional & on function name, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nfnetlink_acct: avoid using NFACCT_F_OVERQUOTA with bit helper functions, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: kill remnants of ulog targets, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: xt_LED: don't output error message redundantly, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nf_tables: simplify set dump through netlink, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: xt_hashlimit: perform garbage collection from process context, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 0/9] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: xt_TEE: use IS_ENABLED(CONFIG_NF_DUP_IPV6), Pablo Neira Ayuso
- [PATCH 3/9] ipvs: add sync_maxlen parameter for the sync daemon, Pablo Neira Ayuso
- [PATCH 4/9] ipvs: add more mcast parameters for the sync daemon, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: reduce sparse warnings, Pablo Neira Ayuso
- [PATCH 7/9] netfilter: ip6t_REJECT: added missing icmpv6 codes, Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_dup: fix sparse warnings, Pablo Neira Ayuso
- [PATCH 8/9] Revert "netfilter: xtables: compute exact size needed for jumpstack", Pablo Neira Ayuso
- [PATCH 1/9] ipvs: Add ovf scheduler, Pablo Neira Ayuso
- [PATCH 2/9] ipvs: call rtnl_lock early, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter updates for net-next, David Miller
- [PATCH 0/9] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 0/9] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 3/9] netfilter: nf_tables: pass hook list to nft_{un,}register_flowtable_net_hooks(), Pablo Neira Ayuso
- [PATCH 5/9] netfilter: nf_tables: pass hook list to flowtable event notifier, Pablo Neira Ayuso
- [PATCH 6/9] netfilter: nf_tables: add devices to existing flowtable, Pablo Neira Ayuso
- [PATCH 8/9] netfilter: nf_tables: allow to register flowtable with no devices, Pablo Neira Ayuso
- [PATCH 4/9] netfilter: nf_tables: add nft_flowtable_hooks_destroy(), Pablo Neira Ayuso
- [PATCH 7/9] netfilter: nf_tables: delete devices from flowtable, Pablo Neira Ayuso
- [PATCH 9/9] netfilter: nf_tables: skip flowtable hooknum and priority on device updates, Pablo Neira Ayuso
- [PATCH 2/9] netfilter: nf_tables: generalise flowtable hook parsing, Pablo Neira Ayuso
- [PATCH 1/9] netfilter: ctnetlink: add kernel side filtering for dump, Pablo Neira Ayuso
- Re: [PATCH 0/9] Netfilter updates for net-next, David Miller
[PATCH nf-next] netfilter: don't use mutex_lock_interruptible(),
Pablo Neira Ayuso
[PATCH] nftables: Add a flags attribute for lookup operator,
Yuxuan Shui
[PATCH 0/6] tests: Automated regression testing,
Ana Rey
[PATCH v4 net-next 0/5] net: filter: split sk_filter into socket and bpf, cleanup names,
Alexei Starovoitov
[PATCH] Fix overquota output result,
Alexey Perevalov
[PATCH 0/2] fixes for NFACCT_F_OVERQUOTA usage,
Alexey Perevalov
[PATCH nf-next] include: add linux/filter.h,
Willem de Bruijn
[nft PATCH 2/4 v3] src: fix byteorder conversions in simple values,
Alvaro Neira Ayuso
[PATCH 1/2 v2 net-next] netfilter: xt_bpf: add mising opaque struct sk_filter definition,
Pablo Neira Ayuso
[PATCH net-next 1/2] netfilter: xt_bpf: don't include linux/filter.h from uapi header,
Pablo Neira Ayuso
[PATCH v3 net-next] net: filter: cleanup sk_* and bpf_* names,
Alexei Starovoitov
[nft PATCH] nft: add reject support, Alvaro Neira Ayuso
[nft PATCH 0/4] Changes in nft byteorder conversions,
Alvaro Neira Ayuso
[PATCH nft v2] src: add level option to the log statement, Pablo Neira Ayuso
[PATCH resend] nf: xt_LED: fix too short led-always-blink,
Jiri Prchal
Re: [PATCH net-next] net: filter: rename 'struct sk_filter' to 'struct bpf_prog',
Pablo Neira Ayuso
[PATCH] netfilter: nf_tables: check for unset NFTA_SET_ELEM_LIST_ELEMENTS attribute, Pablo Neira Ayuso
reset nfacct counters,
Alexey Perevalov
[PATCH nft] src: add level option to the log statement,
Pablo Neira Ayuso
[PATCH] netfilter: nf_conntrack: remove exceptional & on function name,
Himangi Saraogi
[PATCH nf-next] netfilter: xt_hashlimit: perform garbage collection from process context,
Eric Dumazet
[PATCH] netfilter: nf_sockopt_find() should return ERESTARTSYS,
Eric Dumazet
[PATCH nft 1/3] main: propagate error to shell,
Pablo Neira Ayuso
[PATCH libnftnl] set_elem: add nft_set_elems_nlmsg_build_payload_iter(), Pablo Neira Ayuso
netfilter: remnants of ulog targets,
Paul Bolle
[PATCH] netfilter: don't output error message redundantly,
Duan Jiong
[GIT PULL] Third Round of IPVS Fixes for v3.16,
Simon Horman
[PATCH] netfilter: xt_hashlimit: handle iptables-restore of hash with same name,
Josh Hunt
[PATCH libnftnl] src: stricter netlink attribute length validation, Pablo Neira Ayuso
[PATCH net] IPVS fix pull request,
Pablo Neira Ayuso
[PATCH 3/5] net/netfilter/ipvs/ip_vs_ctl.c: drop argument range check just before the check for equality,
Andrey Utkin
[libnftnl PATCH] src: improve printing of XML/JSON event wrapper header/footer,
Arturo Borrero Gonzalez
[nft PATCH 2/2] payload: fix update context with wrong byteorder, Alvaro Neira Ayuso
[nft PATCH 1/2] src: fix byteorder conversions,
Alvaro Neira Ayuso
[PATCH] Add support for negated lookup operator,
Yuxuan Shui
re: netfilter: ipset: list:set set type support, Dan Carpenter
[PATCH nf-next] netfilter: nf_tables: simplify set dump through netlink, Pablo Neira Ayuso
randconfig build error with next-20140716, in net/netfilter/xt_socket.c, Jim Davis
[GIT PULL nf-next 0/2] IPVS Updates for v3.17,
Simon Horman
[GIT PULL nf] Second Round of IPVS Fixes for v3.16,
Simon Horman
[PATCH nft 1/3] mnl: add nft_batch_continue() helper,
Pablo Neira Ayuso
[PATCH 0/4] Netfilter/nf_tables fixes,
Pablo Neira Ayuso
[libnftnl PATCH] log: define variable flags in xml parser,
Alvaro Neira Ayuso
[PATCH 10/16] netfilter: remove unnecessary break after return, Fabian Frederick
[PATCH 00/16] net: remove unnecessary break after goto/return,
Fabian Frederick
[libnftnl PATCH] common: events: be more strict when placing the \0 character,
Arturo Borrero Gonzalez
[nft PATCH 1/2] netlink: monitor: add a helper function to handle sets referenced by a rule,
Arturo Borrero Gonzalez
[libnftnl PATCH] examples: nft-set-add: use batch infraestructure, Arturo Borrero Gonzalez
[libnftnl PATCH] set: add support for set mechanism selection,
Arturo Borrero Gonzalez
[PATCH 2/2 nft, v3] mnl: check for NLM_F_DUMP_INTR when dumping object lists, Pablo Neira Ayuso
[PATCH 1/2 nft] mnl: immediately return on errors in mnl_nft_ruleset_dump(), Pablo Neira Ayuso
[nft PATCH v2] payload: generate dependency with wrong byteorder value format,
Alvaro Neira Ayuso
[PATCH nft, v2] mnl: check for NLM_F_DUMP_INTR when dumping object lists,
Pablo Neira Ayuso
[nft PATCH 2/2] payload: generate dependency with wrong byteorder value format,
Alvaro Neira Ayuso
[nft PATCH 1/2] proto: add protocol key in some proto_desc for identifying it,
Alvaro Neira Ayuso
[RFC Patch V1 04/30] mm, netfilter: Use cpu_to_mem()/numa_mem_id() to support memoryless node, Jiang Liu
Aw: Re: [PATCH] autotools conversion: include the header 'config.h' in every C source file., giorgio . nicole
[PATCH] evaluate: fix concat expressions as map arguments, Patrick McHardy
Aw: Re: [PATCH 4/7] autotools conversion: include the header 'config.h' in every C source file.,
giorgio . nicole
[PATCH] netlink: check and handle errors from netlink_delinearize_set(), Patrick McHardy
[PATCH] netfilter: nf_tables: 64bit stats need some extra synchronization,
Eric Dumazet
[nft-sync PATCH] mnl: delete erroneous memory free, Arturo Borrero Gonzalez
[nftables PATCH] Fix memory leak in batch operation, Yanchuan Nian
[PATCH 0/7] patches for an autotooled version of 'nftables'. (vers. 2),
Giorgio Dal Molin
- [PATCH 1/7] autotool conversion: autotools support for the subdir. 'files/nftables'., Giorgio Dal Molin
- [PATCH 2/7] autotool conversion: use pkg-config to find 'libmnl', libnftnl' and 'ncurses'., Giorgio Dal Molin
- [PATCH 7/7] autotool conversion: updated the files .gitignore, Giorgio Dal Molin
- [PATCH 3/7] autotool conversion: converted the subdir. 'src/', Giorgio Dal Molin
- [PATCH 6/7] autotools conversion: commit the rest of the configure.ac changes., Giorgio Dal Molin
- [PATCH 4/7] autotools conversion: include the header 'config.h' in every C source file., Giorgio Dal Molin
- [PATCH 5/7] autotool conversion: Converted the support for the 'doc/' subdir., Giorgio Dal Molin
- Re: [PATCH 0/7] patches for an autotooled version of 'nftables'. (vers. 2), Pablo Neira Ayuso
- [PATCH 0/8] patches for an autotooled version of 'nftables'., Giorgio Dal Molin
- [PATCH 1/8] autotool conversion: Added some required files, removed some unneeded., Giorgio Dal Molin
- [PATCH 2/8] autotool conversion: autotools support for the subdir. 'files/nftables'., Giorgio Dal Molin
- [PATCH 3/8] autotool conversion: use pkg-config to find 'libmnl', libnftnl' and 'ncurses'., Giorgio Dal Molin
- [PATCH 4/8] autotool conversion: converted the subdir. 'src/', Giorgio Dal Molin
- [PATCH 5/8] autotools conversion: include the header 'config.h' in every C source file., Giorgio Dal Molin
- [PATCH 6/8] autotool conversion: Converted the support for the 'doc/' subdir., Giorgio Dal Molin
- [PATCH 7/8] autotools conversion: commit the rest of the configure.ac changes., Giorgio Dal Molin
- [PATCH 8/8] autotool conversion: updated the files .gitignore, Giorgio Dal Molin
[PATCH 0/7] patches for an autotooled version of 'nftables'.,
Giorgio Dal Molin
[PATCH v2] iptables: add optional [seconds] argument to -w,
Jiri Popelka
[nftables PATCH] Fix segmentation fault in batch operation,
Yanchuan Nian
[PATCH nft] mnl: check for NLM_F_DUMP_INTR when dumping object lists,
Pablo Neira Ayuso
[PATCH 1/2] netfilter: nf_tables: safe RCU iteration on list when dumping,
Pablo Neira Ayuso
[libnftnl PATCH] set_elem: use proper free function, Arturo Borrero Gonzalez
patches for an autotooled version of 'nftables'.,
giorgio . nicole
net: pretty odd panic in netfilter,
Sasha Levin
[PATCH] proto: initialize result expression in ethertype_parse(), Pablo Neira Ayuso
[linux PATCH v3 0/5] NAT updates for nf_tables,
Arturo Borrero Gonzalez
[PATCH libnftnl] expr: log: add support for level and flags, Pablo Neira Ayuso
[linux PATCH v2 0/5] NAT updates for nf_tables,
Arturo Borrero Gonzalez
Parser stable fix question for CFG80211_INTERNAL_REGDB,
Luis R. Rodriguez
Starting point in netfilter development,
Quentin Headen
[libnftnl PATCH v2 0/4] src: chain: Do not print unset values in json and xml,
Ana Rey
libreadline not found by configure [was Re: [ANNOUNCE] nftables 0.3,
Pablo Neira Ayuso
Aw: Re: libnftnl.pc lacks dependency from libmnl,
giorgio . nicole
[PATCH libnetfilter_queue] extra: tcp: insufficient sanitization in nfq_tcp_get_payload(), Pablo Neira Ayuso
[PATCH v2] netfilter: use IS_ENABLED() macro,
Duan Jiong
[PATCH 1/2 nf-next] netfilter: fix several Kconfig problems in NF_LOG_*,
Pablo Neira Ayuso
[RFC PATCH iptables] Hide FORWARD chain if forwarding is not enabled,
Jethro Beekman
Unable to DNAT packets back into originating bridge port,
Matthijs Kooijman
[PATCH nf] netfilter: nf_tables: skip transaction if no update flags in tables, Pablo Neira Ayuso
libnftnl 0.3: build fixes,
Jan Engelhardt
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]