Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
[PATCH v3] core, nfqueue, openvswitch: Orphan frags in skb_zerocopy and handle errors,
Zoltan Kiss
[PATCH next] netfilter: connlimit: move lock array out of struct connlimit_data,
Florian Westphal
[PATCH v2] core, nfqueue, openvswitch: Orphan frags in skb_zerocopy and handle errors,
Zoltan Kiss
[libnftnl PATCH] set_elems: delete void EXPORT_SYMBOL,
Arturo Borrero Gonzalez
[nf_tables RFH PATCH] netfilter: nf_tables: add set_elem notifications,
Arturo Borrero Gonzalez
[PATCH] netfilter: x_tables: allow to use cgroup match for LOCAL_IN nf hooks,
Alexey Perevalov
[PATCH] core, nfqueue, openvswitch: Orphan frags in skb_zerocopy and handle errors,
Zoltan Kiss
[PATCH v2] net: netfilter: LLVMLinux: vlais-netfilter,
behanw
[PATCH nft] expr: do not suppress OP_EQ when RHS is bitmask type,
Florian Westphal
[PATCH -next] netfilter: connlimit: fix UP build,
Florian Westphal
[PATCH 00/38] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 14/38] netfilter: ipset: Prepare the kernel for create option flags when no extension is needed, Pablo Neira Ayuso
- [PATCH 34/38] netfilter: connlimit: use kmem_cache for conn objects, Pablo Neira Ayuso
- [PATCH 37/38] netfilter: connlimit: make same_source_net signed, Pablo Neira Ayuso
- [PATCH 38/38] netfilter: connlimit: use rbtree for per-host conntrack obj storage, Pablo Neira Ayuso
- [PATCH 36/38] netfilter: connlimit: use keyed locks, Pablo Neira Ayuso
- [PATCH 28/38] netfilter: nf_tables: restore notifications for anonymous set destruction, Pablo Neira Ayuso
- [PATCH 35/38] netfilter: Convert uses of __constant_<foo> to <foo>, Pablo Neira Ayuso
- [PATCH 30/38] netfilter: nft_nat: fix family validation, Pablo Neira Ayuso
- [PATCH 32/38] netfilter: connlimit: improve packet-to-closed-connection logic, Pablo Neira Ayuso
- [PATCH 31/38] netfilter: connlimit: factor hlist search into new function, Pablo Neira Ayuso
- [PATCH 33/38] netfilter: connlimit: move insertion of new element out of count function, Pablo Neira Ayuso
- [PATCH 18/38] sections, ipvs: Remove useless __read_mostly for ipvs genl_ops, Pablo Neira Ayuso
- [PATCH 27/38] netfilter: nf_tables: restore context for expression destructors, Pablo Neira Ayuso
- [PATCH 29/38] netfilter: nft_ct: remove family from struct nft_ct, Pablo Neira Ayuso
- [PATCH 10/38] netfilter: ipset: Follow manual page behavior for SET target on list:set, Pablo Neira Ayuso
- [PATCH 25/38] netfilter: nft_hash: bug fixes and resizing, Pablo Neira Ayuso
- [PATCH 26/38] netfilter: nf_tables: clean up nf_tables_trans_add() argument order, Pablo Neira Ayuso
- [PATCH 24/38] netfilter: conntrack: remove central spinlock nf_conntrack_lock, Pablo Neira Ayuso
- [PATCH 11/38] netfilter: ipset: Add hash: fix coccinelle warnings, Pablo Neira Ayuso
- [PATCH 19/38] ipvs: Reduce checkpatch noise in ip_vs_lblc.c, Pablo Neira Ayuso
- [PATCH 23/38] netfilter: conntrack: seperate expect locking from nf_conntrack_lock, Pablo Neira Ayuso
- [PATCH 17/38] netfilter: ipset: add forceadd kernel support for hash set types, Pablo Neira Ayuso
- [PATCH 21/38] netfilter: conntrack: spinlock per cpu to protect special lists., Pablo Neira Ayuso
- [PATCH 22/38] netfilter: avoid race with exp->master ct, Pablo Neira Ayuso
- [PATCH 16/38] netfilter: ipset: move registration message to init from net_init, Pablo Neira Ayuso
- [PATCH 07/38] netfilter: nf_tables: accept QUEUE/DROP verdict parameters, Pablo Neira Ayuso
- [PATCH 15/38] netfilter: ipset: kernel: uapi: fix MARKMASK attr ABI breakage, Pablo Neira Ayuso
- [PATCH 20/38] netfilter: trivial code cleanup and doc changes, Pablo Neira Ayuso
- [PATCH 13/38] netfilter: ipset: add markmask for hash:ip,mark data type, Pablo Neira Ayuso
- [PATCH 09/38] netfilter: nf_tables: add optional user data area to rules, Pablo Neira Ayuso
- [PATCH 12/38] netfilter: ipset: add hash:ip,mark data type to ipset, Pablo Neira Ayuso
- [PATCH 08/38] netfilter: nfnetlink_log: remove unused code, Pablo Neira Ayuso
- [PATCH 05/38] netfilter: nfnetlink: add rcu_dereference_protected() helpers, Pablo Neira Ayuso
- [PATCH 04/38] netfilter: ip_set: rename nfnl_dereference()/nfnl_set(), Pablo Neira Ayuso
- [PATCH 03/38] netfilter: nft_ct: labels get support, Pablo Neira Ayuso
- [PATCH 02/38] netfilter: xt_ipcomp: Use ntohs to ease sparse warning, Pablo Neira Ayuso
- [PATCH 06/38] netfilter: nf_tables: add nft_dereference() macro, Pablo Neira Ayuso
- [PATCH 01/38] netfilter: remove double colon, Pablo Neira Ayuso
- Re: [PATCH 00/38] Netfilter/IPVS updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/38] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 01/38] netfilter: nft_reject_bridge: remove unnecessary ttl set, Pablo Neira Ayuso
- [PATCH 02/38] netfilter: flowtables: use fixed renew timeout on teardown, Pablo Neira Ayuso
- [PATCH 03/38] netfilter: nft_tproxy: Move nf_tproxy_assign_sock() to nf_tproxy.h, Pablo Neira Ayuso
- [PATCH 04/38] netfilter: utils: move nf_ip_checksum* from ipv4 to utils, Pablo Neira Ayuso
- [PATCH 06/38] openvswitch: use nf_ct_get_tuplepr, invert_tuplepr, Pablo Neira Ayuso
- [PATCH 07/38] netfilter: Kconfig: Make NETFILTER_XT_MATCH_SOCKET select NF_SOCKET_IPV4/6, Pablo Neira Ayuso
- [PATCH 09/38] netfilter: conntrack: remove pkt_to_tuple indirection from l3 protocol trackers, Pablo Neira Ayuso
- [PATCH 08/38] netfilter: conntrack: remove ctnetlink callbacks from l3 protocol trackers, Pablo Neira Ayuso
- [PATCH 12/38] netfilter: conntrack: avoid calls to l4proto invert_tuple, Pablo Neira Ayuso
- [PATCH 10/38] netfilter: conntrack: remove invert_tuple indirection from l3 protocol trackers, Pablo Neira Ayuso
- [PATCH 11/38] netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackers, Pablo Neira Ayuso
- [PATCH 17/38] netfilter: nf_conncount: Early exit for garbage collection, Pablo Neira Ayuso
- [PATCH 16/38] netfilter: Kconfig: Change select IPv6 dependencies, Pablo Neira Ayuso
- [PATCH 19/38] netfilter: nf_conncount: Early exit in nf_conncount_lookup() and cleanup, Pablo Neira Ayuso
- [PATCH 14/38] netfilter: conntrack: remove get_timeout() indirection, Pablo Neira Ayuso
- [PATCH 23/38] netfilter: nf_conntrack: resolve clash for matching conntracks, Pablo Neira Ayuso
- [PATCH 25/38] ipvs: add assured state for conn templates, Pablo Neira Ayuso
- [PATCH 24/38] ipvs: provide just conn to ip_vs_state_name, Pablo Neira Ayuso
- [PATCH 27/38] netfilter: Remove useless param helper of nf_ct_helper_ext_add, Pablo Neira Ayuso
- [PATCH 26/38] ipvs: drop conn templates under attack, Pablo Neira Ayuso
- [PATCH 29/38] netfilter: nf_tables: make valid_genid callback mandatory, Pablo Neira Ayuso
- [PATCH 33/38] netfilter: nf_osf: add nf_osf_match_one(), Pablo Neira Ayuso
- [PATCH 28/38] netfilter: nf_tables: add and use helper for module autoload, Pablo Neira Ayuso
- [PATCH 31/38] netfilter: nf_tables: avoid global info storage, Pablo Neira Ayuso
- [PATCH 15/38] netfilter: conntrack: remove l3proto abstraction, Pablo Neira Ayuso
- [PATCH 35/38] netfilter: nft_socket: Break evaluation if no socket found, Pablo Neira Ayuso
- [PATCH 36/38] netfilter: nft_socket: Expose socket mark, Pablo Neira Ayuso
- [PATCH 34/38] netfilter: nf_osf: add struct nf_osf_hdr_ctx, Pablo Neira Ayuso
- [PATCH 37/38] ipv6: remove dependency of nf_defrag_ipv6 on ipv6 module, Pablo Neira Ayuso
- [PATCH 38/38] netfilter: nf_osf: add missing definitions to header file, Pablo Neira Ayuso
- [PATCH 32/38] netfilter: nf_tables: use dedicated mutex to guard transactions, Pablo Neira Ayuso
- [PATCH 30/38] netfilter: nf_tables: take module reference when starting a batch, Pablo Neira Ayuso
- [PATCH 22/38] netfilter: nf_conncount: Add list lock and gc worker, and RCU for init tree search, Pablo Neira Ayuso
- [PATCH 18/38] netfilter: nf_conncount: Switch to plain list, Pablo Neira Ayuso
- [PATCH 21/38] netfilter: nf_conncount: Split insert and traversal, Pablo Neira Ayuso
- [PATCH 20/38] netfilter: nf_conncount: Move locking into count_tree(), Pablo Neira Ayuso
- [PATCH 13/38] netfilter: conntrack: avoid l4proto pkt_to_tuple calls, Pablo Neira Ayuso
- [PATCH 05/38] netfilter: utils: move nf_ip6_checksum* from ipv6 to utils, Pablo Neira Ayuso
- Re: [PATCH 00/38] Netfilter/IPVS updates for net-next, David Miller
xt_CHAOS - PDE_DATA compilation error,
M.G.
[nft RFC PATCH] mnl: Fix a potential buffer overflow, Yuxuan Shui
[libnftnl RFC PATCH] set: Add nft_set_elems_nlmsg_build_payload_check, Yuxuan Shui
[PATCH 1/2] iptables: save&restore: warn that -b/--binary isn't implemented,
Jiri Popelka
[libnftnl PATCH v2 2/2] rule: Changed parser for being more flexible,
Alvaro Neira Ayuso
[libnftnl PATCH v2 1/2] rule: Changed the print support for not having several attributes,
Alvaro Neira Ayuso
[PATCH 1/3] iptables-restore(8): missing -T in synopsis,
Jiri Popelka
[PATCH 1/2] update FSF address in license text,
Jiri Popelka
[PATCH v2 0/3] netfilter: connlimit: scalability improvements,
Florian Westphal
[nft PATCH] ct: add support for setting ct mark,
Arturo Borrero Gonzalez
[PATCH net-next 0/6] net: Convert uses of __constant_<foo> to <foo>,
Joe Perches
[nft PATCH] src: fix expr_binary_error()-related compilation warnings,
Arturo Borrero Gonzalez
[PATCH] iptables: make 'iptables-save -M' actually work,
Jiri Popelka
some minor tweaks for building doc/man pages for nftables,
Robert P. J. Day
[PATCH] conntrackd: claim lockfile ownership properly,
Ansis Atteka
[PATCH RFC 0/9] socket filtering using nf_tables,
Pablo Neira Ayuso
- [PATCH RFC 1/9] net: rename fp->bpf_func to fp->run_filter, Pablo Neira Ayuso
- [PATCH RFC 4/9] netfilter: nf_tables: move fast operations to header, Pablo Neira Ayuso
- [PATCH RFC 3/9] net: filter: generalise sk_filter_release, Pablo Neira Ayuso
- [PATCH RFC 6/9] netfilter: nf_tables: rename nf_tables_core.c to nf_tables_nf.c, Pablo Neira Ayuso
- [PATCH RFC 5/9] netfilter: nf_tables: add nft_value_init, Pablo Neira Ayuso
- [PATCH RFC 8/9] netfilter: nf_tables: generalize verdict handling and introduce scopes, Pablo Neira Ayuso
- [PATCH RFC 7/9] netfilter: nf_tables: move expression infrastructure to built-in core, Pablo Neira Ayuso
- [PATCH RFC 9/9] netfilter: nf_tables: add support for socket filtering, Pablo Neira Ayuso
- [PATCH RFC 2/9] net: filter: account filter length in bytes, Pablo Neira Ayuso
- Re: [PATCH RFC 0/9] socket filtering using nf_tables, Daniel Borkmann
- Re: [PATCH RFC 0/9] socket filtering using nf_tables, Andi Kleen
- Re: [PATCH RFC 0/9] socket filtering using nf_tables, David Miller
[libnftnl PATCH 1/2] src/rule: Removed mandatory attribute printing in rules,
Alvaro Neira Ayuso
[PATCH] userspace SSDP conntrack helper,
Ash Hughes
[libnftnl PATCH v2 1/3] example: fix the example for deleting rules,
Alvaro Neira Ayuso
[libnftnl PATCH 1/3] example: fix the example for deleting rules,
Alvaro Neira Ayuso
[ulogd PATCH 0/8] make progress ulogd_output_IPFIX,
Ken-ichirou MATSUZAWA
- [PATCH 2/8] ipfix: fix enterprise bit handling, Ken-ichirou MATSUZAWA
- [PATCH 3/8] ipfix: some cleanups, Ken-ichirou MATSUZAWA
- [PATCH 4/8] ipfix: add functions for ipfix dataset creation, Ken-ichirou MATSUZAWA
- [PATCH 5/8] ipfix: add function for ipfix message creation, Ken-ichirou MATSUZAWA
- [PATCH 6/8] ipfix: decide whether prepending template by send times, Ken-ichirou MATSUZAWA
- [PATCH 7/8] ipfix: print ipfix message, Ken-ichirou MATSUZAWA
- [PATCH 8/8] ipfix: build headers with template, Ken-ichirou MATSUZAWA
- [libnetfilter_conntrack PATCH] conntrack: introduce clear and equal functions for bitmask object, Ken-ichirou MATSUZAWA
- [PATCH 1/8] ipfix: use nfct_bitmask, Ken-ichirou MATSUZAWA
- Re: [ulogd PATCH 0/8] make progress ulogd_output_IPFIX, Eric Leblond
- [ulogd PATCH 0/13] make progress ulogd_output_IPFIX, Ken-ichirou MATSUZAWA
- [libnetfilter_conntrack PATCH 1/13] conntrack: introduce clear and equal functions for bitmask object, Ken-ichirou MATSUZAWA
- [ulogd PATCH 2/13] ipfix: use nfct_bitmask, Ken-ichirou MATSUZAWA
- [ulogd PATCH 3/13] ipfix: fix enterprise bit handling, Ken-ichirou MATSUZAWA
- [ulogd PATCH 4/13] ipfix: some cleanups, Ken-ichirou MATSUZAWA
- [ulogd PATCH 5/13] ipfix: add functions for ipfix dataset creation, Ken-ichirou MATSUZAWA
- [ulogd PATCH 6/13] ipfix: add function for ipfix message creation, Ken-ichirou MATSUZAWA
- [ulogd PATCH 7/13] ipfix: decide whether prepending template by send times, Ken-ichirou MATSUZAWA
- [ulogd PATCH 8/13] ipfix: print ipfix message, Ken-ichirou MATSUZAWA
- [ulogd PATCH 9/13] ipfix: build headers with template, Ken-ichirou MATSUZAWA
- [ulogd PATCH 10/13] nfct: fix ipfix field_id of flow.end.usec, Ken-ichirou MATSUZAWA
- [ulogd PATCH 11/13] nfct/ipfix: introduce new vendor id, Ken-ichirou MATSUZAWA
- [ulogd PATCH 12/13] nfct: introduce new out keys for ipfix timestamp, Ken-ichirou MATSUZAWA
- [ulogd PATCH 13/13] ipfix: add debug symbol for yafscii, Ken-ichirou MATSUZAWA
[iptables 0/3] ebtables patchset,
Giuseppe Longo
[PATCH 0/5] netfilter: nf_tables: restore context during destruction,
Patrick McHardy
[PATCH iptables] update coreteam members from manpage, Pablo Neira Ayuso
[PATCH] iptables: fix version in iptables(8),
Jiri Popelka
[iptables PATCH] nft-arp: wrong condition in parse_payload,
Giuseppe Longo
[PATCH 0/7] netfilter: connlimit: scalability improvements,
Florian Westphal
[ANNOUNCE] ipset 6.21.1 released,
Jozsef Kadlecsik
[PATCH] netfilter: nf_tables: handle more than 8 * PAGE_SIZE set name allocations,
Patrick McHardy
[PATCH] nft-arp: fix is_same_interfaces arguments,
Giuseppe Longo
[PATCH] segtree: sort set elements before decomposition, Patrick McHardy
[PATCH] set: properly account set size when merging recursive set definitions, Patrick McHardy
[PATCH 1/2] netlink: use set location for IO errors,
Patrick McHardy
[PATCH 0/3] nftables: fix segtree interval conflict reporting,
Patrick McHardy
[ulogd PATCH] ulogd: fix logleve handling,
Ken-ichirou MATSUZAWA
[GIT PULL nf-next 0/2] IPVS Updates for v3.15,
Simon Horman
[PATCH] net: inetfilter: LLVMLinux: vlais-netfilter,
behanw
[PATCH 0/8] ipset patches for nf-next,
Jozsef Kadlecsik
- [PATCH 1/8] netfilter: ipset: Follow manual page behavior for SET target on list:set, Jozsef Kadlecsik
- [PATCH 2/8] netfilter: ipset: Add hash: fix coccinelle warnings, Jozsef Kadlecsik
- [PATCH 3/8] netfilter: ipset: add hash:ip,mark data type to ipset, Jozsef Kadlecsik
- [PATCH 4/8] netfilter: ipset: add markmask for hash:ip,mark data type, Jozsef Kadlecsik
- [PATCH 7/8] netfilter: ipset: move registration message to init from net_init, Jozsef Kadlecsik
- [PATCH 5/8] netfilter: ipset: Prepare the kernel for create option flags when no extension is needed, Jozsef Kadlecsik
- [PATCH 6/8] netfilter: ipset: kernel: uapi: fix MARKMASK attr ABI breakage, Jozsef Kadlecsik
- [PATCH 8/8] netfilter: ipset: add forceadd kernel support for hash set types, Jozsef Kadlecsik
- Re: [PATCH 0/8] ipset patches for nf-next, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH 0/8] ipset patches for nf-next, Jozsef Kadlecsik
[PATCH v2] xt_quota2: introduce support for network namespaces,
Daniel Golle
[ANNOUNCE] ipset 6.21 released,
Jozsef Kadlecsik
[RFC PATCH 0/2] netfilter: nf_tables: set selection,
Patrick McHardy
[PATCH v3] netfilter: nft_hash: bug fixes and resizing,
Patrick McHardy
[PATCH nft] parser: support reject unreach|reset,
Florian Westphal
Re: linux-next: Tree for Mar 3 (netfilter: xt_socket), Randy Dunlap
[nf-next PATCH V3 0/5] netfilter: conntrack: optimization, remove central spinlock,
Jesper Dangaard Brouer
[BUG?] Null pointer dereference in nf_ct_delete_from_lists(),
Namjae Jeon
[PATCH] ip_set: remove extraneous log message,
Jason A. Donenfeld
[PATCH v3 0/2] ipset: forceadd support,
Josh Hunt
[PATCH v2] netfilter: hash resizing,
Patrick McHardy
[PATCH v2 0/2] ipset: forceadd support,
Josh Hunt
[nf-next PATCH 0/5] (repost) netfilter: conntrack: optimization, remove central spinlock,
Jesper Dangaard Brouer
Re: [net-next PATCH 0/5] netfilter: conntrack: optimization, remove central spinlock,
Jesper Dangaard Brouer
[PATCH] netfilter: hash resizing,
Patrick McHardy
[nf_tables] suggestion: system-wide sets,
Arturo Borrero Gonzalez
custom ebtables module && skb manipulation && kernel panic, Marek Kierdelewicz
[libnftnl PATCH] src: check if netlink parsing fails,
Arturo Borrero Gonzalez
[nft PATCH] netlink: fix chain attribute parsing,
Arturo Borrero Gonzalez
[RFC PATCH v2 0/6] nft events reporting,
Arturo Borrero Gonzalez
[PATCH v2] netfilter: nf_tables: add optional user data area to rules,
Pablo Neira Ayuso
[PATCH] netfilter: nf_tables: add optional user data area to rules,
Pablo Neira Ayuso
[PATCH nft] src: add support for rule human-readable comments, Pablo Neira Ayuso
[PATCH 0/7] libnftnl updates,
Pablo Neira Ayuso
[PATCH] xt_quota2: introduce support for netns,
Daniel Golle
[PATCH RESEND v5] netfilter: xtables: add quota support for nfacct, mathieu . poirier
[libmnl] mmap patch review request, Ken-ichirou MATSUZAWA
[PATCH 2/2] bridge: netfilter: Use ether_addr_copy,
Joe Perches
BUG: ip6tables IPv6-REDIRECT over bridges,
Artie Hamilton
[PATCH 1/2] nft-arp: adds nft_arp_save_firewall,
Giuseppe Longo
[PATCH 0/6] Netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 5/6] netfilter: nf_tables: check if payload length is a power of 2, Pablo Neira Ayuso
- [PATCH 4/6] netfilter: nf_tables: fix nf_trace always-on with XT_TRACE=n, Pablo Neira Ayuso
- [PATCH 6/6] netfilter: ctnetlink: force null nat binding on insert, Pablo Neira Ayuso
- [PATCH 3/6] netfilter: nf_nat_snmp_basic: fix duplicates in if/else branches, Pablo Neira Ayuso
- [PATCH 1/6] netfilter: nft_reject_inet: fix unintended fall-through in switch-statatement, Pablo Neira Ayuso
- [PATCH 2/6] netfilter: nft_meta: fix typo "CONFIG_NET_CLS_ROUTE", Pablo Neira Ayuso
- Re: [PATCH 0/6] Netfilter fixes for net, David Miller
- <Possible follow-ups>
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/6] Netfilter fixes for net, Pablo Neira Ayuso
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]