Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH net] ipv6: Prevent ipv6_find_hdr() from returning ENOENT for valid non-first fragments, (continued)
- [nft PATCHv2 0/4] support for mini-gmp / embedded friendliness,
Steven Barth
- [PATCH nft] evaluate: reject: fix dependency generation from nft -f,
Pablo Neira Ayuso
- NetDev 0.1 Hotel guaranteed rate expiry fast approaching, Richard Guy Briggs
- [ebtables-compat PATCH v2] ebtables-compat: fix segfault in rules w/o target,
Arturo Borrero Gonzalez
- [PATCH nft] payload: assert when accessing inner transport header,
Pablo Neira Ayuso
- [PATCH nf 3/3] netfilter: nf_tables: fix flush ruleset chain dependencies, Pablo Neira Ayuso
- [PATCH nf 1/3] netfilter: nfnetlink: validate nfnetlink header from batch,
Pablo Neira Ayuso
- nft produces incorrect output when a reject rule is added using nft -f, 藍挺瑋
- Possible BUG in ipv6_find_hdr function for fragmented packets, Rahul Sharma
- [ebtables-compat PATCH] ebtables-compat: fix segfault in rules w/o target,
Arturo Borrero Gonzalez
- [nft PATCH] doc: add a reference to the wiki page in the man page,
Arturo Borrero Gonzalez
- [PATCH libnftnl] Add Libs.private field to libnftnl.pc,
Thomas Petazzoni
- Support SNAT on the INPUT chain, Jianhua Sun
- [nft PATCH 0/5] support for mini-gmp / embedded friendliness,
Steven Barth
- [PATCH] nftables: nft_flush_table: handle chain dependencies,
Asbjoern Sloth Toennesen
- [nft-sync PATCH 1/3] build: rename configure.in to configure.ac,
Arturo Borrero Gonzalez
- [ebtables-compat PATCH] ebtables-compat: fix printing of extension,
Arturo Borrero Gonzalez
- [PATCH] netfilter: seqadj: print the host byte order ack seq,
Gao feng
- [PATCH next] net: netfilter: nfnetlink_cthelper: Remove 'const' and '&' to avoid warnings,
Chen Gang
- [PATCH v2 0/2] conntrack: Support flushing connections with given mark,
Kristian Evensen
- [ebtables-compat PATCH] ebtables-compat: fix counter listing,
Arturo Borrero Gonzalez
- [PATCH 1/1 net-next] netfilter: remove unnecessary sizeof(char),
Fabian Frederick
- [PATCH] netfilter: nf_tables: fix port natting in little endian archs,
Pablo Neira Ayuso
- [PATCH nft 1/2] tests: regression: named sets work,
Pablo Neira Ayuso
- [PATCH nft] evaluate: fix wrong port natting in little endian,
Pablo Neira Ayuso
- REGRESSION in nfnetlink on 3.18.x (bisected),
Andre Tomt
- [PATCH] Add element count to hash headers, Eric B Munson
- Removing a REDIRECT rule not working,
U.Mutlu
- [PATCH] conntrack: Flush connections with given work,
Kristian Evensen
- randconfig build error with next-20141218, in net/netfilter/xt_socket.c, Jim Davis
- netdev01 twitter feed, first proposal accepted, Richard Guy Briggs
- [PATCH] add systemd service file,
Jörg Thalheim
- Re: [PATCH] add systemd service file, Arturo Borrero Gonzalez
- Re: [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Arturo Borrero Gonzalez
- Re: [PATCH] add systemd service file, Jan Engelhardt
- Re: [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Jörg Thalheim
- <Possible follow-ups>
- [PATCH] add systemd service file, Jörg Thalheim
- Re: [PATCH] add systemd service file, Jörg Thalheim
- [PATCH] add systemd service file, Jörg Thalheim
- [PATCH] add systemd service file, Jörg Thalheim
- [RFC ebtables-compat PATCH v2] extensions: add ebt 802_3 extension,
Arturo Borrero Gonzalez
- [PATCH netfilter-next] xt_osf: Use continue to reduce indentation,
Joe Perches
- Building ipset-6.24 on CentOS7 fails,
Ricardo Klein
- Hook on non standard protocol families,
Yaron Galula
- [ANNOUNCE] nftables 0.4 release, Pablo Neira Ayuso
- [PATCH] build: resolve build failure on systems with old glibc-linux headers,
Jan Engelhardt
- [ANNOUNCE] libnftnl 1.0.3 release, Pablo Neira Ayuso
- Question regarding iptables-nftables compatibility layer with libiptc,
Tomer Eliyahu
- [PATCH 1/9] rhashtable: Do hashing inside of rhashtable_lookup_compare(),
Thomas Graf
- [PATCH 5/9] nft_hash: Remove rhashtable_remove_pprev(),
Thomas Graf
- [PATCH 7/9] rhashtable: Per bucket locks & deferred expansion/shrinking,
Thomas Graf
- [PATCH nft] build: restore --disable-debug, Pablo Neira Ayuso
- [PATCH nft 0/4] nft updates,
Pablo Neira Ayuso
- [PATCH 0/8] ipset patches for nf-next, v3,
Jozsef Kadlecsik
- src: add redirect support,
Patrick McHardy
- NetDev 0.1 Attendee clarification [was: Netdev 0.1 Call for Proposals], Richard Guy Briggs
- bug : nft_redirect port byteorder issue,
leroy christophe
- [PATCH 0/6] nftables: support concat types in sets,
Patrick McHardy
- [PATCH 1/3] meta: properly align types in meta_template table,
Patrick McHardy
- [PATCH] stmt: rename nat "random-fully" option to "fully-random", Patrick McHardy
- nftables "random-fully" option, Patrick McHardy
- BUG: kernel panic nf_ct_del_from_dying_or_unconfirmed_list, Markus Kaindl
- [PATCH] dtype: remove unnecessary icmp* parse/print functions,
Patrick McHardy
- [conntrack-tools PATCH] Fix file descriptor leak in channel_open() on error,
Thomas Jarosch
- conntrack-tools: cli test script broken, Thomas Jarosch
- [RFC ebtables-compat PATCH] extensions: add ebt 802_3 extension,
Arturo Borrero Gonzalez
- [PATCH] netfilter: nfnetlink: remove redundant variable nskb,
Duan Jiong
- [GIT PULL nf-next] Second round of IPVS Updates for v3.19,
Simon Horman
- [PATCH nft] rule: fix segmentation faults on kernels without nftables support, Pablo Neira Ayuso
- [PATCH nft 1/3] src: generate set members using integer_type in the appropriate byteorder,
Pablo Neira Ayuso
- [PATCH nft 1/2] src: add big endian integer datatype,
Pablo Neira Ayuso
- [PATCH nf-next 0/2] netfilter: conntrack: route cache for forwarded connections,
Florian Westphal
- Getting started, Rahul Radhakrishnan
- [PATCH] netfilter: Fix build for NETFILTER_XT_TARGET_REDIRECT,
Guenter Roeck
- [PATCH 1/1] bridge: detect NAT66 correctly and change MAC address,
Bernhard Thaler
- [PATCH nft v2] payload: fix endianess issue in payload_expr_pctx_update(),
Pablo Neira Ayuso
- [PATCH nft] payload: fix endianess issue in payload_expr_pctx_update(), Pablo Neira Ayuso
- [PATCH] netfilter: conntrack: adjust nf_conntrack_buckets default value,
Marcelo Ricardo Leitner
- Reversed byte order issue with nft ?,
leroy christophe
- Netdev 0.1 Call for Proposals, Pablo Neira Ayuso
- [patch] ipvs: uninitialized data with IP_VS_IPV6,
Dan Carpenter
- [PATCH] netfilter: return -EFAULT directly when counters_ptr is NULL,
Duan Jiong
- [nft PATCH] datatype: fix name of icmp* code,
Eric Leblond
- feature request: snat to @random_ip_from_this_set and negative set lookups,
Bjørnar Ness
- Out-of-bounds access in nfnetlink_bind,
Dmitry Vyukov
- [RFC PATCH] netfilter: conntrack: cache route for forwarded connections,
Florian Westphal
- [PATCH nft 1/5] netlink_delinearize: clone on netlink_get_register(), release previous on _set(),
Pablo Neira Ayuso
- [PATCH 00/10] ipset patches for nf-next, v2,
Jozsef Kadlecsik
- [PATCH 03/14] netfilter: ipset: Indicate when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 08/14] netfilter: ipset: Introduce RCU locking instead of rwlock per set in the core, Jozsef Kadlecsik
- [PATCH 02/14] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace, Jozsef Kadlecsik
- [PATCH 09/14] netfilter: ipset: Introduce RCU locking in the bitmap types, Jozsef Kadlecsik
- [PATCH 05/14] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 07/14] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU, Jozsef Kadlecsik
- [PATCH 14/14] netfilter: ipset: Fix sparse warning, Jozsef Kadlecsik
- [PATCH 10/14] netfilter: ipset: Introduce RCU locking in the list type, Jozsef Kadlecsik
- [PATCH 01/14] netfilter: ipset: Support updating extensions when the set is full, Jozsef Kadlecsik
- [PATCH 13/14] netfilter: ipset: Fix parallel resizing and listing of the same set, Jozsef Kadlecsik
- [PATCH 04/14] netfilter: ipset: Simplify cidr handling for hash:*net* types, Jozsef Kadlecsik
- [PATCH 11/14] netfilter: ipset: Introduce RCU locking in the hash types, Jozsef Kadlecsik
- [PATCH 06/14] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net, Jozsef Kadlecsik
- [PATCH 12/14] netfilter: ipset: styles warned by checkpatch.pl fixed, Jozsef Kadlecsik
- [nft PATCH] scanner: fix reading of really long line,
Eric Leblond
- ipset website,
Mike Wright
- [PATCH nft 2/2 v2] datatype: relax datatype check in integer_type_parse(), Pablo Neira Ayuso
- [PATCH nft 1/2 v2] datatype: fix crash when using basetype instead of symbolic constants,
Pablo Neira Ayuso
- Re: [PATCH] nf_log_ipv6: correct typo in module description, Pablo Neira Ayuso
- Re: issue with nftable - goto : Operation not supported, leroy christophe
- [PATCH nft] datatype: fix crash when using basetype instead of symbolic constants,
Pablo Neira Ayuso
- [PATCH -next] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module,
Pablo Neira Ayuso
- [nft PATCH v2] evaluate: reject: fix crash on NULL location with bridge and tcp reset,
Alvaro Neira Ayuso
- [PATCH nf 1/2 v4] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
- Custom Module for Userspace Proxy, NuSkooler
- [PATCH net] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse",
Pablo Neira Ayuso
- [PATCH] net: netfilter: Fix undefined reference to nf_nat_redirect_* functions,
Andreas Ruprecht
- [PATCH nf 1/2 v3] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
- [nft] segfault, bitmask datatype without parse() function,
Arturo Borrero Gonzalez
- [PATCH nft] src: restore nft --debug and add missing \, Pablo Neira Ayuso
- [PATCH 1/2 nf] Revert "netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse",
Pablo Neira Ayuso
- [PATCH] build: add missing \ in src/Makefile.am (AM_CPPFLAGS), David Kozub
- Fwd: [Bug 88841] New: Kernel crash after a few minutes, Daniel Borkmann
- [ANNOUNCE] ipset 6.24 released, Jozsef Kadlecsik
- [PATCH 00/10] ipset patches for nf-next,
Jozsef Kadlecsik
- [PATCH 01/10] netfilter: ipset: Support updating extensions when the set is full, Jozsef Kadlecsik
- [PATCH 03/10] netfilter: ipset: Indicate when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 02/10] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace, Jozsef Kadlecsik
- [PATCH 04/10] netfilter: ipset: Simplify cidr handling for hash:*net* types, Jozsef Kadlecsik
- [PATCH 05/10] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported, Jozsef Kadlecsik
- [PATCH 06/10] netfilter: ipset: Explicitly add padding elements to hash:net,net and hash:net,port,net, Jozsef Kadlecsik
- [PATCH 07/10] netfilter: ipset: Remove rbtree from hash:net,iface in order to run under RCU, Jozsef Kadlecsik
- [PATCH 10/10] netfilter: ipset: Fix parallel resizing and listing of the same set, Jozsef Kadlecsik
- [PATCH 09/10] netfilter: ipset: styles warned by checkpatch.pl fixed, Jozsef Kadlecsik
- [PATCH 08/10] netfilter: ipset: Introduce RCU in all set types instead of rwlock per set, Jozsef Kadlecsik
- [nft PATCH] evaluate: reject: fix a crash to use tcp reset with network context in bridge,
Alvaro Neira Ayuso
- [PATCH nf 1/2 v2] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
- [ebtables-compat-experimental6 PATCH v2] iptables: xtables-eb: fix renaming of chains,
Arturo Borrero Gonzalez
- [PATCH -next] netfilter: conntrack: drop new packets that lose race against get_next_corpse(), Pablo Neira Ayuso
- [PATCH next] netfilter: conntrack: avoid zeroing timer,
Florian Westphal
- [PATCH 00/17] netfilter/ipvs updates for net-next,
Pablo Neira Ayuso
- [PATCH 03/17] netfilter: nf_tables: add new expression nft_redir, Pablo Neira Ayuso
- [PATCH 06/17] netfilter: log: protect nf_log_register against double registering, Pablo Neira Ayuso
- [PATCH 17/17] netfilter: nfnetlink_log: Make use of pr_fmt where applicable, Pablo Neira Ayuso
- [PATCH 16/17] netfilter: Deletion of unnecessary checks before two function calls, Pablo Neira Ayuso
- [PATCH 09/17] netfilter: nft_meta: add cgroup support, Pablo Neira Ayuso
- [PATCH 14/17] netfilter: xt_connlimit: honor conntrack zone if available, Pablo Neira Ayuso
- [PATCH 15/17] netfilter: nf_conntrack_h323: lookup route from proper net namespace, Pablo Neira Ayuso
- [PATCH 11/17] netfilter: nft_redir: fix sparse warnings, Pablo Neira Ayuso
- [PATCH 12/17] netfilter: fix various sparse warnings, Pablo Neira Ayuso
- [PATCH 13/17] netfilter: nfnetlink_log: remove unnecessary error messages, Pablo Neira Ayuso
- [PATCH 10/17] netfilter: fix unmet dependencies in NETFILTER_XT_TARGET_REDIRECT, Pablo Neira Ayuso
- [PATCH 08/17] netfilter: nf_log: fix sparse warning in nf_logger_find_get(), Pablo Neira Ayuso
- [PATCH 04/17] ipvs: remove unnecessary assignment in __ip_vs_get_out_rt, Pablo Neira Ayuso
- [PATCH 07/17] netfilter: fix spelling errors, Pablo Neira Ayuso
- [PATCH 02/17] netfilter: refactor NAT redirect IPv6 code to use it from nf_tables, Pablo Neira Ayuso
- [PATCH 05/17] netfilter: nf_log: Introduce nft_log_dereference() macro, Pablo Neira Ayuso
- [PATCH 01/17] netfilter: refactor NAT redirect IPv4 to use it from nf_tables, Pablo Neira Ayuso
- Re: [PATCH 00/17] netfilter/ipvs updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/17] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 02/17] netfilter: conntrack: use shared sysctl constants, Pablo Neira Ayuso
- [PATCH 03/17] ipvs: Improve robustness to the ipvs sysctl, Pablo Neira Ayuso
- [PATCH 07/17] netfilter: inline four headers files into another one., Pablo Neira Ayuso
- [PATCH 09/17] netfilter: add missing IS_ENABLED(CONFIG_BRIDGE_NETFILTER) checks to header-file., Pablo Neira Ayuso
- [PATCH 08/17] netfilter: add missing includes to a number of header-files., Pablo Neira Ayuso
- [PATCH 04/17] netfilter: remove unnecessary spaces, Pablo Neira Ayuso
- [PATCH 05/17] netfilter: nft_bitwise: add offload support, Pablo Neira Ayuso
- [PATCH 06/17] netfilter: nf_tables: store data in offload context registers, Pablo Neira Ayuso
- [PATCH 01/17] netfilter: synproxy: rename mss synproxy_options field, Pablo Neira Ayuso
- Re: [PATCH 00/17] Netfilter/IPVS updates for net-next, Jakub Kicinski
- [PATCH -next] netfilter: xt_recent: relax ip_pkt_list_tot restrictions,
Florian Westphal
- [iptables PATCH] iptables: nft: create a separated object update type to rename chains,
Arturo Borrero Gonzalez
- [ebtables-compat-experimental5 PATCH v2] iptables: xtables-eb: user-defined chains default policy is always RETURN,
Arturo Borrero Gonzalez
- nft compilation issues,
Arturo Borrero Gonzalez
- [nft-tests 1/2] tests: regression: don't use -nnn for non-list commands,
Pablo Neira Ayuso
- [PATCH nft 1/2] src: restore nft --debug,
Pablo Neira Ayuso
- catch netlink event when create/delete ipset,
Vasiliy Tolstov
- [PATCH v2 0/9] Replace smp_read_barrier_depends() with lockless_derefrence(),
Pranith Kumar
- netfilter: xt_connlimit: it could get the accurate conn count with heavy traffic and multi cores, Feng Gao
- named vmaps,
Bjørnar Ness
- [libnftnl PATCH] buffer: include stdarg header,
Giuseppe Longo
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: fix renaming of chains,
Arturo Borrero Gonzalez
- nftables error compile current git,
Marco Berizzi
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: user-defined chains default policy is always RETURN,
Arturo Borrero Gonzalez
- [PATCH v2] netfilter: bridge: unshare bridge info before change it,
Gao feng
- [PATCH 1/1] netfilter: Deletion of unnecessary checks before two function calls,
SF Markus Elfring
- [ebtables-compat-experimental5 PATCH] iptables: xtables-eb: adjust policy in user-defined chains,
Arturo Borrero Gonzalez
- [PATCH RFC 0/1] bridge: fix netfilter/NF_BR_LOCAL_OUT for own, locally generated queries,
Linus Lüssing
- [ebtables-compat-experimental5 PATCH] iptables/xtables-eb.c: delete extra 'policy' printf,
Arturo Borrero Gonzalez
- [libnftnl PATCH] examples: nft-rule-parse-add: fix wrong buffer usage when building rule header,
Arturo Borrero Gonzalez
- [PATCH RESEND] netfilter: bridge: unshare bridge info before change it,
Gao feng
- [BUG] libnftnl examples/nft-rule-parse-add.c hangs, Ian Bishop
- [ebtables-compat-experimental5 PATCH] ebtables-compat: include /etc/ethertypes in tarball,
Arturo Borrero Gonzalez
- [PATCH nft] netlink: don't bug on unknown events, Pablo Neira Ayuso
- [PATCH -next] netfilter: xt_connlimit: honor conntrack zone if available,
Florian Westphal
- [PATCH nf 1/2] bridge: export nft_reject_ip*hdr_validate functions,
Alvaro Neira Ayuso
- [RFC PATCH 00/16] Replace smp_read_barrier_depends() with lockless_derefrence(),
Pranith Kumar
- Aw: Re: [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'., giorgio . nicole
- x_tables: eb_tables: limit.0 match: invalid size 32 (kernel) != (user) 24,
Ronny Janssen
- [libnftnl PATCH 1/1] Correctly define the header 'Requires:' in the file 'libnftnl.pc'.,
Giorgio Dal Molin
- [PATCH] [netfileter] nf_conntrack_h323: lookup route from proper net namespace,
Vasily Averin
- Re: arm64 allmodconfig failures in nft_reject_bridge.c,
Mark Brown
- [PATCH 1/1] netfilter: fix various sparse warnings,
Florian Westphal
- [BUG] index is out of range for nfnl_group2type[],
Andrey Ryabinin
- [PATCH 0/3] autotools conversion: forgotten Makefile.am, 'doc' and 'files',
Giorgio Dal Molin
- Aw: Re: [PATCH 1/1] autotools conversion fixups, giorgio . nicole
- [ebtables-compat-experimental5 PATCH] iptables/nft-bridge.c: fix inversion of builtin matches,
Arturo Borrero Gonzalez
- [PATCH] build: add and use a symbol version map,
Jan Engelhardt
- [iptables PATCH v2] iptables/nft-shared.c: kill add_*() invflags parameter,
Arturo Borrero Gonzalez
- [PATCH] netfilter: nft_redir: fix sparse warnings: cast to restricted __be32,
Arturo Borrero Gonzalez
- [PATCH nf-next 1/2] netfilter: fix unmet dependencies in NETFILTER_XT_TARGET_REDIRECT,
Pablo Neira Ayuso
- [GIT PULL nf] Second Round of IPVS Fixes for v3.18,
Simon Horman
- [iptables PATCH] iptables/nft-shared.c: kill add_*() invflags parameter,
Arturo Borrero Gonzalez
- [PATCH 1/3] netfilter: nft_compat: relax chain type validation,
Pablo Neira Ayuso
- [PATCH] arptables: remove dead dynamic hooks code,
Gustavo Zacarias
- [PATCH -next 0/2] seq: Convert seq_puts and seq_putc to return void,
Joe Perches
- [PATCH 0/1] autotools conversion: added autotools support for the 'files' subdir.,
Giorgio Dal Molin
- [PATCH 0/1] autotools conversion: added autotools support for the 'doc' subdir.,
Giorgio Dal Molin
- [PATCH libnftnl 1/3] expr: nat: use 'nat_type' instead of 'type' in the parser,
Pablo Neira Ayuso
- [PATCH libnftnl] src: consolidate XML/JSON exportation,
Pablo Neira Ayuso
- [PATCH] From fryasu: Trim kernel struct to allow deletion for TEE targets,
Loganaden Velvindron
- How to debug libiptc and mechanism for exchanging information between user space and kernel space, Nguyen Duong Tuan
- [ebtables-compat-experimental3 PATCH 1/2] nft-bridge: fix inversion of matches,
Arturo Borrero Gonzalez
- [iptables PATCH] nft-arp: fix inversion of matches,
Arturo Borrero Gonzalez
- [PATCH] arptables: disable dlfcn.h include,
Gustavo Zacarias
- [PATCH] netfilter: nft_compat: use current net namespace, Pablo Neira Ayuso
- [PATCH -nf] nft: masq: fix uninitialized range in nft_masq_{ipv4,ipv6}_eval,
Daniel Borkmann
- [nft PATCH 1/3] tests/regression: masquerade: fix invalid syntax,
Arturo Borrero Gonzalez
- [patch -mainline] netfilter: ipset: small potential read beyond the end of buffer,
Dan Carpenter
- [PATCH nft 0/5] autotools conversion,
Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse,
Jesper Dangaard Brouer
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]