Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
[PATCH 0/3] nftables: concat preparation,
Patrick McHardy
[PATCH 0/6] netlink: style and readability fixes,
Patrick McHardy
[PATCH] netlink: fix memory leaks, Patrick McHardy
[PATCH 1/3] eval: refactor NAT evaluation functions,
Patrick McHardy
BUG: Kernel panic at masquerade,
Linke
[libnftnl PATCH 1/2] src: not create iterator with empty list,
Alvaro Neira Ayuso
[PATCH v2] net: ipv6: Prevent ipv6_find_hdr() from returning ENOENT for valid non-first fragments, Rahul Sharma
[PATCH net v2] ipv6: Prevent ipv6_find_hdr() from returning ENOENT for valid non-first fragments,
Rahul Sharma
[PATCH nft] src: modify pr_debug() to use printf and introduce to pr_gmp_debug(),
Pablo Neira Ayuso
[PATCH nft] src: rename pr_debug() to pr_gmp_debug() and use printf() whenever possible,
Pablo Neira Ayuso
[PATCH nft] build: use -Wno-sign-compare to avoid compilation warning in mini-gmp.c, Pablo Neira Ayuso
[PATCH nft] src: use printf() instead of pr_debug() whenever possible,
Pablo Neira Ayuso
[PATCHv3] build: add --with-mini-gmp switch to disable linking libgmp,
Steven Barth
NetDev 0.1 Deadline Extension(Jan 24) and Talk Summary, Richard Guy Briggs
[ebtables-compat PATCH v2] ebtables-compat: incluyde /etc/ethertypes in tarball,
Arturo Borrero Gonzalez
[nft PATCH v2] doc: add a reference to the wiki page in the man page,
Arturo Borrero Gonzalez
Re: [PATCH net] ipv6: Prevent ipv6_find_hdr() from returning ENOENT for valid non-first fragments,
Pablo Neira Ayuso
[nft PATCHv2 0/4] support for mini-gmp / embedded friendliness,
Steven Barth
[PATCH nft] evaluate: reject: fix dependency generation from nft -f,
Pablo Neira Ayuso
NetDev 0.1 Hotel guaranteed rate expiry fast approaching, Richard Guy Briggs
[ebtables-compat PATCH v2] ebtables-compat: fix segfault in rules w/o target,
Arturo Borrero Gonzalez
[PATCH nft] payload: assert when accessing inner transport header,
Pablo Neira Ayuso
[PATCH nf 3/3] netfilter: nf_tables: fix flush ruleset chain dependencies, Pablo Neira Ayuso
[PATCH nf 1/3] netfilter: nfnetlink: validate nfnetlink header from batch,
Pablo Neira Ayuso
nft produces incorrect output when a reject rule is added using nft -f, 藍挺瑋
Possible BUG in ipv6_find_hdr function for fragmented packets, Rahul Sharma
[ebtables-compat PATCH] ebtables-compat: fix segfault in rules w/o target,
Arturo Borrero Gonzalez
[nft PATCH] doc: add a reference to the wiki page in the man page,
Arturo Borrero Gonzalez
[PATCH libnftnl] Add Libs.private field to libnftnl.pc,
Thomas Petazzoni
Support SNAT on the INPUT chain, Jianhua Sun
[nft PATCH 0/5] support for mini-gmp / embedded friendliness,
Steven Barth
[PATCH] nftables: nft_flush_table: handle chain dependencies,
Asbjoern Sloth Toennesen
[nft-sync PATCH 1/3] build: rename configure.in to configure.ac,
Arturo Borrero Gonzalez
[ebtables-compat PATCH] ebtables-compat: fix printing of extension,
Arturo Borrero Gonzalez
[PATCH] netfilter: seqadj: print the host byte order ack seq,
Gao feng
[PATCH next] net: netfilter: nfnetlink_cthelper: Remove 'const' and '&' to avoid warnings,
Chen Gang
[PATCH v2 0/2] conntrack: Support flushing connections with given mark,
Kristian Evensen
[ebtables-compat PATCH] ebtables-compat: fix counter listing,
Arturo Borrero Gonzalez
[PATCH 1/1 net-next] netfilter: remove unnecessary sizeof(char),
Fabian Frederick
[PATCH] netfilter: nf_tables: fix port natting in little endian archs,
Pablo Neira Ayuso
[PATCH nft 1/2] tests: regression: named sets work,
Pablo Neira Ayuso
[PATCH nft] evaluate: fix wrong port natting in little endian,
Pablo Neira Ayuso
REGRESSION in nfnetlink on 3.18.x (bisected),
Andre Tomt
[PATCH] Add element count to hash headers, Eric B Munson
Removing a REDIRECT rule not working,
U.Mutlu
[PATCH] conntrack: Flush connections with given work,
Kristian Evensen
randconfig build error with next-20141218, in net/netfilter/xt_socket.c, Jim Davis
netdev01 twitter feed, first proposal accepted, Richard Guy Briggs
[PATCH] add systemd service file,
Jörg Thalheim
- Re: [PATCH] add systemd service file, Arturo Borrero Gonzalez
- Re: [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Arturo Borrero Gonzalez
- Re: [PATCH] add systemd service file, Jan Engelhardt
- Re: [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Jörg Thalheim
- <Possible follow-ups>
- [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Jörg Thalheim
- [PATCH] add systemd service file, Jörg Thalheim
- [PATCH] add systemd service file, Jörg Thalheim
[RFC ebtables-compat PATCH v2] extensions: add ebt 802_3 extension,
Arturo Borrero Gonzalez
[PATCH netfilter-next] xt_osf: Use continue to reduce indentation,
Joe Perches
Building ipset-6.24 on CentOS7 fails,
Ricardo Klein
Hook on non standard protocol families,
Yaron Galula
[ANNOUNCE] nftables 0.4 release, Pablo Neira Ayuso
[PATCH] build: resolve build failure on systems with old glibc-linux headers,
Jan Engelhardt
[ANNOUNCE] libnftnl 1.0.3 release, Pablo Neira Ayuso
Question regarding iptables-nftables compatibility layer with libiptc,
Tomer Eliyahu
[PATCH 1/9] rhashtable: Do hashing inside of rhashtable_lookup_compare(),
Thomas Graf
[PATCH 5/9] nft_hash: Remove rhashtable_remove_pprev(),
Thomas Graf
[PATCH 7/9] rhashtable: Per bucket locks & deferred expansion/shrinking,
Thomas Graf
[PATCH nft] build: restore --disable-debug, Pablo Neira Ayuso
[PATCH nft 0/4] nft updates,
Pablo Neira Ayuso
[PATCH 0/8] ipset patches for nf-next, v3,
Jozsef Kadlecsik
src: add redirect support,
Patrick McHardy
NetDev 0.1 Attendee clarification [was: Netdev 0.1 Call for Proposals], Richard Guy Briggs
bug : nft_redirect port byteorder issue,
leroy christophe
[PATCH 0/6] nftables: support concat types in sets,
Patrick McHardy
[PATCH 1/3] meta: properly align types in meta_template table,
Patrick McHardy
[PATCH] stmt: rename nat "random-fully" option to "fully-random", Patrick McHardy
nftables "random-fully" option, Patrick McHardy
BUG: kernel panic nf_ct_del_from_dying_or_unconfirmed_list, Markus Kaindl
[PATCH] dtype: remove unnecessary icmp* parse/print functions,
Patrick McHardy
[conntrack-tools PATCH] Fix file descriptor leak in channel_open() on error,
Thomas Jarosch
conntrack-tools: cli test script broken, Thomas Jarosch
[RFC ebtables-compat PATCH] extensions: add ebt 802_3 extension,
Arturo Borrero Gonzalez
[PATCH] netfilter: nfnetlink: remove redundant variable nskb,
Duan Jiong
[GIT PULL nf-next] Second round of IPVS Updates for v3.19,
Simon Horman
[PATCH nft] rule: fix segmentation faults on kernels without nftables support, Pablo Neira Ayuso
[PATCH nft 1/3] src: generate set members using integer_type in the appropriate byteorder,
Pablo Neira Ayuso
[PATCH nft 1/2] src: add big endian integer datatype,
Pablo Neira Ayuso
[PATCH nf-next 0/2] netfilter: conntrack: route cache for forwarded connections,
Florian Westphal
Getting started, Rahul Radhakrishnan
[PATCH] netfilter: Fix build for NETFILTER_XT_TARGET_REDIRECT,
Guenter Roeck
[PATCH 1/1] bridge: detect NAT66 correctly and change MAC address,
Bernhard Thaler
[PATCH nft v2] payload: fix endianess issue in payload_expr_pctx_update(),
Pablo Neira Ayuso
[PATCH nft] payload: fix endianess issue in payload_expr_pctx_update(), Pablo Neira Ayuso
[PATCH] netfilter: conntrack: adjust nf_conntrack_buckets default value,
Marcelo Ricardo Leitner
Reversed byte order issue with nft ?,
leroy christophe
Netdev 0.1 Call for Proposals, Pablo Neira Ayuso
[patch] ipvs: uninitialized data with IP_VS_IPV6,
Dan Carpenter
[PATCH] netfilter: return -EFAULT directly when counters_ptr is NULL,
Duan Jiong
[nft PATCH] datatype: fix name of icmp* code,
Eric Leblond
feature request: snat to @random_ip_from_this_set and negative set lookups,
Bjørnar Ness
Out-of-bounds access in nfnetlink_bind,
Dmitry Vyukov
[RFC PATCH] netfilter: conntrack: cache route for forwarded connections,
Florian Westphal
[PATCH nft 1/5] netlink_delinearize: clone on netlink_get_register(), release previous on _set(),
Pablo Neira Ayuso
[PATCH 00/10] ipset patches for nf-next, v2,
Jozsef Kadlecsik
- [PATCH 03/14] netfilter: ipset: Indicate when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 08/14] netfilter: ipset: Introduce RCU locking instead of rwlock per set in the core, Jozsef Kadlecsik
- [PATCH 02/14] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace, Jozsef Kadlecsik
- [PATCH 09/14] netfilter: ipset: Introduce RCU locking in the bitmap types, Jozsef Kadlecsik
- [PATCH 05/14] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 07/14] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU, Jozsef Kadlecsik
- [PATCH 14/14] netfilter: ipset: Fix sparse warning, Jozsef Kadlecsik
- [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type, Jozsef Kadlecsik
- [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full, Jozsef Kadlecsik
- [PATCH 13/14] netfilter: ipset: Fix parallel resizing and listing of the same set, Jozsef Kadlecsik
- [PATCH 04/14] netfilter: ipset: Simplify cidr handling for hash:*net* types, Jozsef Kadlecsik
- [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types, Jozsef Kadlecsik
- [PATCH 06/14] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net, Jozsef Kadlecsik
- [PATCH 12/14] netfilter: ipset: styles warned by checkpatch.pl fixed, Jozsef Kadlecsik
[nft PATCH] scanner: fix reading of really long line,
Eric Leblond
ipset website,
Mike Wright
[PATCH nft 2/2 v2] datatype: relax datatype check in integer_type_parse(), Pablo Neira Ayuso
[PATCH nft 1/2 v2] datatype: fix crash when using basetype instead of symbolic constants,
Pablo Neira Ayuso
Re: [PATCH] nf_log_ipv6: correct typo in module description, Pablo Neira Ayuso
Re: issue with nftable - goto : Operation not supported, leroy christophe
[PATCH nft] datatype: fix crash when using basetype instead of symbolic constants,
Pablo Neira Ayuso
[PATCH -next] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module,
Pablo Neira Ayuso
[nft PATCH v2] evaluate: reject: fix crash on NULL location with bridge and tcp reset,
Alvaro Neira Ayuso
[PATCH nf 1/2 v4] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
Custom Module for Userspace Proxy, NuSkooler
[PATCH net] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse",
Pablo Neira Ayuso
[PATCH] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions,
Andreas Ruprecht
[PATCH nf 1/2 v3] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
[nft] segfault, bitmask datatype without parse() function,
Arturo Borrero Gonzalez
[PATCH nft] src: restore nft --debug and add missing \, Pablo Neira Ayuso
[PATCH 1/2 nf] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse",
Pablo Neira Ayuso
[PATCH] build: add missing \ in src/Makefile.am (AM_CPPFLAGS), David Kozub
Fwd: [Bug 88841] New: Kernel crash after a few minutes, Daniel Borkmann
[ANNOUNCE] ipset 6.24 released, Jozsef Kadlecsik
[PATCH 00/10] ipset patches for nf-next,
Jozsef Kadlecsik
- [PATCH 01/10] netfilter: ipset: Support updating extensions when the set is full, Jozsef Kadlecsik
- [PATCH 03/10] netfilter: ipset: Indicate when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 02/10] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace, Jozsef Kadlecsik
- [PATCH 04/10] netfilter: ipset: Simplify cidr handling for hash:*net* types, Jozsef Kadlecsik
- [PATCH 05/10] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 06/10] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net, Jozsef Kadlecsik
- [PATCH 07/10] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU, Jozsef Kadlecsik
- [PATCH 10/10] netfilter: ipset: Fix parallel resizing and listing of the same set, Jozsef Kadlecsik
- [PATCH 09/10] netfilter: ipset: styles warned by checkpatch.pl fixed, Jozsef Kadlecsik
- [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set, Jozsef Kadlecsik
[nft PATCH] evaluate: reject: fix a crash to use tcp reset with network context in bridge,
Alvaro Neira Ayuso
[PATCH nf 1/2 v2] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
[ebtables-compat-experimental6 PATCH v2] iptables: xtables-eb: fix renaming of chains,
Arturo Borrero Gonzalez
[PATCH -next] netfilter: conntrack: drop new packets that lose race against get_next_corpse(), Pablo Neira Ayuso
[PATCH next] netfilter: conntrack: avoid zeroing timer,
Florian Westphal
[PATCH 00/17] netfilter/ipvs updates for net-next,
Pablo Neira Ayuso
- [PATCH 03/17] netfilter: nf_tables: add new expression nft_redir, Pablo Neira Ayuso
- [PATCH 06/17] netfilter: log: protect nf_log_register against double registering, Pablo Neira Ayuso
- [PATCH 17/17] netfilter: nfnetlink_log: Make use of pr_fmt where applicable, Pablo Neira Ayuso
- [PATCH 16/17] netfilter: Deletion of unnecessary checks before two function calls, Pablo Neira Ayuso
- [PATCH 09/17] netfilter: nft_meta: add cgroup support, Pablo Neira Ayuso
- [PATCH 14/17] netfilter: xt_connlimit: honor conntrack zone if available, Pablo Neira Ayuso
- [PATCH 15/17] netfilter: nf_conntrack_h323: lookup route from proper net namespace, Pablo Neira Ayuso
- [PATCH 11/17] netfilter: nft_redir: fix sparse warnings, Pablo Neira Ayuso
- [PATCH 12/17] netfilter: fix various sparse warnings, Pablo Neira Ayuso
- [PATCH 13/17] netfilter: nfnetlink_log: remove unnecessary error messages, Pablo Neira Ayuso
- [PATCH 10/17] netfilter: fix unmet dependencies in NETFILTER_XT_TARGET_REDIRECT, Pablo Neira Ayuso
- [PATCH 08/17] netfilter: nf_log: fix sparse warning in nf_logger_find_get(), Pablo Neira Ayuso
- [PATCH 04/17] ipvs: remove unnecessary assignment in __ip_vs_get_out_rt, Pablo Neira Ayuso
- [PATCH 07/17] netfilter: fix spelling errors, Pablo Neira Ayuso
- [PATCH 02/17] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables, Pablo Neira Ayuso
- [PATCH 05/17] netfilter: nf_log: Introduce nft_log_dereference() macro, Pablo Neira Ayuso
- [PATCH 01/17] netfilter: refactor NAT redirect IPv4 to use it from nf_tables, Pablo Neira Ayuso
- Re: [PATCH 00/17] netfilter/ipvs updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/17] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 02/17] netfilter: conntrack: use shared sysctl constants, Pablo Neira Ayuso
- [PATCH 03/17] ipvs: Improve robustness to the ipvs sysctl, Pablo Neira Ayuso
- [PATCH 07/17] netfilter: inline four headers files into another one., Pablo Neira Ayuso
- [PATCH 09/17] netfilter: add missing IS_ENABLED(CONFIG_BRIDGE_NETFILTER) checks to header-file., Pablo Neira Ayuso
- [PATCH 08/17] netfilter: add missing includes to a number of header-files., Pablo Neira Ayuso
- [PATCH 04/17] netfilter: remove unnecessary spaces, Pablo Neira Ayuso
- [PATCH 05/17] netfilter: nft_bitwise: add offload support, Pablo Neira Ayuso
- [PATCH 06/17] netfilter: nf_tables: store data in offload context registers, Pablo Neira Ayuso
- [PATCH 01/17] netfilter: synproxy: rename mss synproxy_options field, Pablo Neira Ayuso
- Re: [PATCH 00/17] Netfilter/IPVS updates for net-next, Jakub Kicinski
[PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions,
Florian Westphal
[iptables PATCH] iptables: nft: create a separated object update type to rename chains,
Arturo Borrero Gonzalez
[ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN,
Arturo Borrero Gonzalez
nft compilation issues,
Arturo Borrero Gonzalez
[nft-tests 1/2] tests: regression: don't use -nnn for non-list commands,
Pablo Neira Ayuso
[PATCH nft 1/2] src: restore nft --debug,
Pablo Neira Ayuso
catch netlink event when create/delete ipset,
Vasiliy Tolstov
[PATCH v2 0/9] Replace smp_read_barrier_depends() with lockless_derefrence(),
Pranith Kumar
netfilter: xt_connlimit: it could get the accurate conn count with heavy traffic and multi cores, Feng Gao
named vmaps,
Bjørnar Ness
[libnftnl PATCH] buffer: include stdarg header,
Giuseppe Longo
[ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains,
Arturo Borrero Gonzalez
nftables error compile current git,
Marco Berizzi
[ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN,
Arturo Borrero Gonzalez
[PATCH v2] netfilter: bridge: unshare bridge info before change it,
Gao feng
[PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls,
SF Markus Elfring
[ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains,
Arturo Borrero Gonzalez
[PATCH RFC 0/1] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries,
Linus Lüssing
[ebtables-compat-experimental5 PATCH] iptables/xtables-eb.c: delete extra 'policy' printf,
Arturo Borrero Gonzalez
[libnftnl PATCH] examples: nft-rule-parse-add: fix wrong buffer usage when building rule header,
Arturo Borrero Gonzalez
[PATCH RESEND] netfilter: bridge: unshare bridge info before change it,
Gao feng
[BUG] libnftnl examples/nft-rule-parse-add.c hangs, Ian Bishop
[ebtables-compat-experimental5 PATCH] ebtables-compat: include /etc/ethertypes in tarball,
Arturo Borrero Gonzalez
[PATCH nft] netlink: don't bug on unknown events, Pablo Neira Ayuso
[PATCH -next] netfilter: xt_connlimit: honor conntrack zone if available,
Florian Westphal
[PATCH nf 1/2] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
[RFC PATCH 00/16] Replace smp_read_barrier_depends() with lockless_derefrence(),
Pranith Kumar
Aw: Re: [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'., giorgio . nicole
x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24,
Ronny Janssen
[libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'.,
Giorgio Dal Molin
[PATCH] [netfileter] nf_conntrack_h323: lookup route from proper net namespace,
Vasily Averin
Re: arm64 allmodconfig failures in nft_reject_bridge.c,
Mark Brown
[PATCH 1/1] netfilter: fix various sparse warnings,
Florian Westphal
[BUG] index is out of range for nfnl_group2type[],
Andrey Ryabinin
[PATCH 0/3] autotools conversion: forgotten Makefile.am, 'doc' and 'files',
Giorgio Dal Molin
Aw: Re: [PATCH 1/1] autotools conversion fixups, giorgio . nicole
[ebtables-compat-experimental5 PATCH] iptables/nft-bridge.c: fix inversion of builtin matches,
Arturo Borrero Gonzalez
[PATCH] build: add and use a symbol version map,
Jan Engelhardt
[iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter,
Arturo Borrero Gonzalez
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]