Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH net 0/3] ipv6: use rt6i_gateway as nexthop, (continued)
- Re: linux-next: Tree for Oct 18 (netdev: nf_tables_bridge.c),
Randy Dunlap
- [PATCH 0/3] ipset patches for nf-next,
Jozsef Kadlecsik
- [nftables-kernel PATCH] netfilter: nftables: Fix sparse endianness issue on nft_nat.c,
Tomasz Bursztyka
- [PATCH] netfilter: fix ordering of jumpstack allocation and table update,
Will Deacon
- No more PHYSIN in iptables INPUT rules in kernel 3.11.3, Rolf Fokkens
- [RFC PATCH nf_conntrack_extend] new extensions without changes kernel source,
Vitaly E. Lavrov
- [libnftables PATCH] src: add fprintf functions,
Arturo Borrero Gonzalez
- [PATCH iptables-nftables] nft: fix interface wildcard matching,
Pablo Neira Ayuso
- [RFC PATCH nft] src: add support for interface wildcard name,
Florian Westphal
- [GIT PULL] IPVS updates for v3.13,
Simon Horman
- [PATCH conntrack-tools] conntrackd: Don't hardcode libs dir path,
Hani Benhabiles
- ip{,6}tables-save misleading return code,
mancha
- [PATCH 00/17] netfilter updates: nf_tables pull request,
Pablo Neira Ayuso
- [PATCH 09/17] netfilter: nf_tables: add compatibility layer for x_tables, Pablo Neira Ayuso
- [PATCH 03/17] netfilter: add nftables, Pablo Neira Ayuso
- [PATCH 17/17] netfilter: nf_tables: add ARP filtering support, Pablo Neira Ayuso
- [PATCH 16/17] netfilter: nf_tables: add trace support, Pablo Neira Ayuso
- [PATCH 15/17] netfilter: nfnetlink: add batch support and use it from nf_tables, Pablo Neira Ayuso
- [PATCH 13/17] netfilter: nf_tables: complete net namespace support, Pablo Neira Ayuso
- [PATCH 14/17] netfilter: nf_tables: add insert operation, Pablo Neira Ayuso
- [PATCH 12/17] netfilter: nf_tables: Add support for IPv6 NAT, Pablo Neira Ayuso
- [PATCH 11/17] netfilter: nf_tables: add support for dormant tables, Pablo Neira Ayuso
- [PATCH 07/17] netfilter: nft_payload: add optimized payload implementation for small loads, Pablo Neira Ayuso
- [PATCH 08/17] netfilter: nf_tables: convert built-in tables/chains to chain types, Pablo Neira Ayuso
- [PATCH 10/17] netfilter: nf_tables: nft_payload: fix transport header base, Pablo Neira Ayuso
- [PATCH 06/17] netfilter: nf_tables: add optimized data comparison for small values, Pablo Neira Ayuso
- [PATCH 05/17] netfilter: nf_tables: expression ops overloading, Pablo Neira Ayuso
- [PATCH 04/17] netfilter: nf_tables: add netlink set API, Pablo Neira Ayuso
- [PATCH 02/17] netfilter: nf_nat: move alloc_null_binding to nf_nat_core.c, Pablo Neira Ayuso
- [PATCH 01/17] netfilter: pass hook ops to hookfn, Pablo Neira Ayuso
- Re: [PATCH 00/17] netfilter updates: nf_tables pull request, David Miller
- [nftables-kernel PATCH 0/7] API minor fixes and improvement proposals,
Tomasz Bursztyka
- [libnftables PATCH] json: remove space in Json output support,
Alvaro Neira
- [PATCH] nft: arp: fix STRING_OVERFLOW,
Giuseppe Longo
- [PATCH conntrack-tools] nfct: Fix use-after-free / double-free,
Hani Benhabiles
- [PATCH net-next] netfilter: xt_socket: use sock_gen_put(),
Eric Dumazet
- [PATCH] netfilter: ipset: Fix configure failure when --with-kmod=no,
Oliver
- [OOPS PATCH 0/1] netfilter/sip: fix OOPS in flush_expectations(),
Holger Eitzenberger
- [nftables PATCH v2] src: fix return code,
Arturo Borrero Gonzalez
- [PATCH] iptables-nftables nft: Removes NFT_META_IIF ,NFT_META_OIF, Anand Raj Manickam
- [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_IIF, iniface, Anand Raj Manickam
- [PATCH] iptables-nftables nft: Removes if_nametoindex ,NFT_META_OIF for outiface,
Anand Raj Manickam
- [nftables PATCH] src: error if listing nonexistent table,
Arturo Borrero Gonzalez
- [nftables PATCH] src: fix return code,
Arturo Borrero Gonzalez
- [nftables tool PATCH v2] src: add support for listing the entire ruleset, Arturo Borrero Gonzalez
- extension module 'owner' enhancement, Adam Kubicki
- [nftables tool PATCH] src: add support for listing the entire ruleset, Arturo Borrero Gonzalez
- [libnftables PATCH 1/2] examples: add nft-ruleset-get,
Arturo Borrero Gonzalez
- [PATCH] iptables: spurious error in load_extension,
Phil Oester
- iptables-nftables mnl_nft_batch_talk:: Invalid argument,
Anand Raj Manickam
- [PATCH iptables-nftables] nft: fix bad length when comparing extension data area, Pablo Neira Ayuso
- [PATCH] nfnetlink: use rcu_assign_pointer in nfnetlink_subsys_unregister,
Gao feng
- iptables automated tests, Pablo Neira Ayuso
- [iptables-nftables 1/2] xtables: fix missing ipt_entry for MASQUERADE target,
Pablo Neira Ayuso
- Creation of a custom netfilter/iptables target module,
Steve (Telsat Broadband)
- [PATCH 1/4] [RFC] net: Explicitly initialize u64_stats_sync structures for lockdep,
John Stultz
- [nftables kernel - PATCH 0/2] Minor API fixes (mostly documentation),
Tomasz Bursztyka
- [PATCH] man: update the manpage for cluster match,
Gao feng
- [PATCH] nft: arp: add parse_target to nft_family_ops_arp,
Giuseppe Longo
- [PATCH] nftables: operational limit match,
Phil Oester
- [PATCH] iptables: improve chain name validation,
Phil Oester
- [PATCH iptables] iptables: add libxt_cgroup frontend, Daniel Borkmann
- [PATCH nf-next] netfilter: xtables: lightweight process control group matching,
Daniel Borkmann
- [PATCH 00/33] Netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/33] netfilter: nf_ct_sip: extend RCU read lock in set_expected_rtp_rtcp(), Pablo Neira Ayuso
- [PATCH 04/33] netfilter: ipset: Don't call ip_nest_end needlessly in the error path, Pablo Neira Ayuso
- [PATCH 03/33] netfilter: xt_TCPMSS: lookup route from proper net namespace, Pablo Neira Ayuso
- [PATCH 09/33] netfilter: ipset: Use fix sized type for timeout in the extension part, Pablo Neira Ayuso
- [PATCH 17/33] netfilter: ipset: Support extensions which need a per data destroy function, Pablo Neira Ayuso
- [PATCH 14/33] netfilter: ipset: Rename extension offset ids to extension ids, Pablo Neira Ayuso
- [PATCH 11/33] netfilter: ipset: order matches and targets separatedly in xt_set.c, Pablo Neira Ayuso
- [PATCH 30/33] netfilter: nfnetlink_queue: use proper net namespace to allocate skb, Pablo Neira Ayuso
- [PATCH 29/33] netfilter: ipset: Add hash:net,port,net module to kernel., Pablo Neira Ayuso
- [PATCH 02/33] netfilter: xt_TCPMSS: Get mtu only if clamp-mss-to-pmtu is specified, Pablo Neira Ayuso
- [PATCH 20/33] netfilter: ipset: Add hash:net,net module to kernel., Pablo Neira Ayuso
- [PATCH 22/33] netfilter: ipset: Support comments in bitmap-type ipsets., Pablo Neira Ayuso
- [PATCH 19/33] netfilter: ipset: Kconfig: ipset needs NETFILTER_NETLINK, Pablo Neira Ayuso
- [PATCH 27/33] netfilter: ipset: Use a common function at listing the extensions, Pablo Neira Ayuso
- [PATCH 32/33] netfilter: nf_ct_sip: consolidate NAT hook functions, Pablo Neira Ayuso
- [PATCH 10/33] netfilter: ipset: Support package fragments for IPv4 protos without ports, Pablo Neira Ayuso
- [PATCH 33/33] netfilter: cttimeout: allow to set/get default protocol timeouts, Pablo Neira Ayuso
- [PATCH 07/33] netfilter: ipset: Rename simple macro names to avoid namespace issues., Pablo Neira Ayuso
- [PATCH 28/33] netfiler: ipset: Add net namespace for ipset, Pablo Neira Ayuso
- [PATCH 15/33] netfilter: ipset: Move extension data to set structure, Pablo Neira Ayuso
- [PATCH 21/33] netfilter: ipset: Support comments for ipset entries in the core., Pablo Neira Ayuso
- [PATCH 23/33] netfilter: ipset: Support comments in the list-type ipset., Pablo Neira Ayuso
- [PATCH 31/33] netfilter: nfnetlink_log: use proper net to allocate skb, Pablo Neira Ayuso
- [PATCH 26/33] netfilter: ipset: For set:list types, replaced elements must be zeroed out, Pablo Neira Ayuso
- [PATCH 25/33] netfilter: ipset: Fix hash resizing with comments, Pablo Neira Ayuso
- [PATCH 24/33] netfilter: ipset: Support comments in hash-type ipsets., Pablo Neira Ayuso
- [PATCH 16/33] netfilter: ipset: Generalize extensions support, Pablo Neira Ayuso
- [PATCH 18/33] netfilter: ipset: list:set: make sure all elements are checked by the gc, Pablo Neira Ayuso
- [PATCH 13/33] netfilter: ipset: Prepare ipset to support multiple networks for hash types, Pablo Neira Ayuso
- [PATCH 08/33] netfilter: ipset: Fix "may be used uninitialized" warnings, Pablo Neira Ayuso
- [PATCH 05/33] netfilter: ipset: Sparse warning about shadowed variable fixed, Pablo Neira Ayuso
- [PATCH 06/33] netfilter: ipset: Fix sparse warnings due to missing rcu annotations, Pablo Neira Ayuso
- [PATCH 12/33] netfilter: ipset: Introduce new operation to get both setname and family, Pablo Neira Ayuso
- Re: [PATCH 00/33] Netfilter updates for net-next, David Miller
- [iptables-nftables PATCH] nft: initialize flags in nft_arp_parse_meta,
Giuseppe Longo
- [iptables-nftables PATCH] nft: Calculate properly the target size when parsing it back,
Tomasz Bursztyka
- [iptables-nftables PATCH v2] xtables: arp: Parse properly target's options, Tomasz Bursztyka
- [iptables-nftables PATCH] xtables: arp: Parse properly target's options,
Tomasz Bursztyka
- [iptables-nftables PATCH] nft: Header inclusion missing,
Tomasz Bursztyka
- [iptables-nftables PATCH] lixtables: Fixes option issues in libxt_mangle.c,
Tomasz Bursztyka
- [iptables-nftables PATCH 0/3] xtables-arp fixes + libxt_mangle addition,
Tomasz Bursztyka
- [nftables RFC PATCH]limit netlink message size during delete operation,
Eric Leblond
- [nftables PATCH 0/4] fix rule flush operation,
Eric Leblond
- [ANNOUNCE] ipset package kernel support changes, Jozsef Kadlecsik
- [ANNOUNCE] ipset 6.20 released, Jozsef Kadlecsik
- [nftables PATCH] netfilter: nf_tables: allow to dump sets with NFPROTO_UNSPEC, Arturo Borrero Gonzalez
- [PATCH 0/2] [arptables] Fixes for problems found by static analysis.,
Jiri Popelka
- [PATCH net-next] net:drivers/net: Miscellaneous conversions to ETH_ALEN,
Joe Perches
- [PATCH 1/6] ipvs: fix overflow on dest weight multiply,
Pablo Neira Ayuso
- [PATCH 0/6] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- Is there anyway for Netfilter_queue to provide only control packets., gaurav sharma
- [libnftables PATCH 2] src: add low-level ruleset API,
Arturo Borrero Gonzalez
- [libmnl PATCH] debug: don't colorize output on non tty,
Eric Leblond
- [PATCH 0/2] netlink heap info leak fixes,
Mathias Krause
- [PATCH 00/26] ipset patches for nf-next,
Jozsef Kadlecsik
- [PATCH 02/26] netfilter: ipset: Sparse warning about shadowed variable fixed, Jozsef Kadlecsik
- [PATCH 09/26] netfilter: ipset: Introduce new operation to get both setname and family, Jozsef Kadlecsik
- [PATCH 01/26] netfilter: ipset: Don't call ip_nest_end needlessly in the error path, Jozsef Kadlecsik
- [PATCH 05/26] netfilter: ipset: Fix "may be used uninitialized" warnings, Jozsef Kadlecsik
- [PATCH 20/26] netfilter: ipset: Support comments in the list-type ipset., Jozsef Kadlecsik
- [PATCH 21/26] netfilter: ipset: Support comments in hash-type ipsets., Jozsef Kadlecsik
- [PATCH 08/26] netfilter: ipset: order matches and targets separatedly in xt_set.c, Jozsef Kadlecsik
- [PATCH 17/26] netfilter: ipset: Add hash:net,net module to kernel., Jozsef Kadlecsik
- [PATCH 25/26] netfiler: ipset: Add net namespace for ipset, Jozsef Kadlecsik
- [PATCH 23/26] netfilter: ipset: For set:list types, replaced elements must be zeroed out, Jozsef Kadlecsik
- [PATCH 24/26] netfilter: ipset: Use a common function at listing the extensions, Jozsef Kadlecsik
- [PATCH 26/26] netfilter: ipset: Add hash:net,port,net module to kernel., Jozsef Kadlecsik
- [PATCH 22/26] netfilter: ipset: Fix hash resizing with comments, Jozsef Kadlecsik
- [PATCH 16/26] netfilter: ipset: Kconfig: ipset needs NETFILTER_NETLINK, Jozsef Kadlecsik
- [PATCH 07/26] netfilter: ipset: Support package fragments for IPv4 protos without ports, Jozsef Kadlecsik
- [PATCH 14/26] netfilter: ipset: Support extensions which need a per data destroy function, Jozsef Kadlecsik
- [PATCH 19/26] netfilter: ipset: Support comments in bitmap-type ipsets., Jozsef Kadlecsik
- [PATCH 13/26] netfilter: ipset: Generalize extensions support, Jozsef Kadlecsik
- [PATCH 18/26] netfilter: ipset: Support comments for ipset entries in the core., Jozsef Kadlecsik
- [PATCH 06/26] netfilter: ipset: Use fix sized type for timeout in the extension part, Jozsef Kadlecsik
- [PATCH 15/26] netfilter: ipset: list:set: make sure all elements are checked by the gc, Jozsef Kadlecsik
- [PATCH 11/26] netfilter: ipset: Rename extension offset ids to extension ids, Jozsef Kadlecsik
- [PATCH 10/26] netfilter: ipset: Prepare ipset to support multiple networks for hash types, Jozsef Kadlecsik
- [PATCH 03/26] netfilter: ipset: Fix sparse warnings due to missing rcu annotations, Jozsef Kadlecsik
- [PATCH 04/26] netfilter: ipset: Rename simple macro names to avoid namespace issues., Jozsef Kadlecsik
- [PATCH 12/26] netfilter: ipset: Move extension data to set structure, Jozsef Kadlecsik
- Re: [PATCH 00/26] ipset patches for nf-next, Pablo Neira Ayuso
- [PATCH conntrack-tools] nfct: timeout: add support for default protocol timeout tuning, Pablo Neira Ayuso
- [PATCH nf-next] netfilter: cttimeout: allow to set/get default protocol timeouts, Pablo Neira Ayuso
- [PATCH v2 net-next 0/1] sip: introduce nf_nat_sip_hooks,
Holger Eitzenberger
- [libnftables PATCH 1/3] tests: fix error reporting,
Arturo Borrero Gonzalez
- [PATCH net-next 0/1] sip: introduce nf_nat_sip_hooks,
Holger Eitzenberger
- [nftables tool - PATCH] include: Add proper nfnetlink header to fix compilation error,
Tomasz Bursztyka
- [PATCH] netfilter: synproxy: fix BUG_ON triggered by corrupt TCP packets,
Patrick McHardy
- [nftables PATCH 0/2] IPv6 improvements,
Eric Leblond
- [PATCH 1/2] netfilter: ipset: Add hash:net,port,net module to kernel.,
Oliver
- Re: [PATCH 6/6] sched, wait: Make the __wait_event*() interface more friendly,
Peter Zijlstra
- Using libiptc to programmatically modify iptables rules, Michael Kopreski
- [PATCH 0/3 - GIT PULL] include/linux: Remove externs from networking function prototypes,
Joe Perches
- [PATCH 0/4][RFC] Lockdep enablement for seqcount/seqlocks,
John Stultz
- [PATCH] iptables: xtables_ipmask_to_numeric incorrect with non-CIDR masks,
Phil Oester
- [PATCH RFC 0/3] conntrack: add interface information to accounting extend,
Holger Eitzenberger
- [PATCH 1/2] xt_TCPMSS:Get reserve mtu only when specifing option clamp-mss-to-pmtu,
Gao feng
- [libnftables PATCH 1/2] set_elem: xml: avoid code duplication,
Arturo Borrero Gonzalez
- [PATCH nf-next 0/6] Add net namespace support for ipt_CLUSTERIP,
Gao feng
- [libnftables PATCH v2 1/2] rule: json: Fixed wrong offset return,
Alvaro Neira
- [NOTICE] nftables rebased upon 3.11 and rule batching update, Pablo Neira Ayuso
- [PATCH] netfilter: nf_tables: fix basechain release, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: Remove extern from function prototypes,
Joe Perches
- Developing own utils based on libipset,
Daniel Fiala
- [PATCH 1/2] nfnetlink_queue: use proper net to allocate skb,
Gao feng
- [PATCH 1/7] netfilter: ipset: Support comments for ipset entries in the core.,
Oliver
- [PATCH -nft] src: add rule batching support, Pablo Neira Ayuso
- [iptables-nftables PATCH 1/2] xtables: arp: add delete operation,
Giuseppe Longo
- [FIX V2] sip: add missing RCU reader lock,
Holger Eitzenberger
- [FIX 0/1] sip: add missing RCU reader lock in set_expected_rtp_rtcp(),
Holger Eitzenberger
- [PATCH nftables] meta: iif/oifname should be host byte order,
Florian Westphal
- [PATCH v2 0/7] Add new comments extension to ipset.,
Oliver
[PATCH v2 0/2] Add new hash:net,net type to ipset.,
Oliver
[PATCH -nftables 1/3] netfilter: nf_tables: allow to dump all existing sets,
Pablo Neira Ayuso
Problem compiling nftables kernel,
Bjørnar Ness
[GIT PULL 0/5] IPVS fixes for v3.12,
Simon Horman
Conntrack events using SMP, Sébastien LAVEZE
[PATCH 1/2] netfilter: nf_tables: attach replacement rule after stale one,
Pablo Neira Ayuso
[PATCH -nftables v3 1/4] netfilter: nf_tables: get rid of per rule list_head for commits,
Pablo Neira Ayuso
[PATCH 0/7] netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 3/7] netfilter: ipset: Skip really non-first fragments for IPv6 when getting port/protocol, Pablo Neira Ayuso
- [PATCH 1/7] netfilter: nf_conntrack: use RCU safe kfree for conntrack extensions, Pablo Neira Ayuso
- [PATCH 7/7] netfilter: nfnetlink_queue: use network skb for sequence adjustment, Pablo Neira Ayuso
- [PATCH 2/7] netfilter: nf_nat_proto_icmpv6:: fix wrong comparison in icmpv6_manip_pkt, Pablo Neira Ayuso
- [PATCH 5/7] netfilter: ipset: Validate the set family and not the set type family at swapping, Pablo Neira Ayuso
- [PATCH 6/7] netfilter: ipset: Fix serious failure in CIDR tracking, Pablo Neira Ayuso
- [PATCH 4/7] netfilter: ipset: Consistent userspace testing with nomatch flag, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH 0/7] netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/7] Netfilter fixes for net, Pablo Neira Ayuso
ip6_finish_output2 change broke netfilter xt_TEE target, Phil Oester
[PATCH 1/1] ipset: Add net namespace for ipset,
V. Lavrov
[PATCH 0/6] Add new comments extension to ipset.,
Oliver
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]