Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [libnetfilter_cthelper PATCH] configure: uclinux is also linux, (continued)
- BUG: kernel 3.10 + ipset + NET_NS,
V. Lavrov
- added new hash:ip,net ipset type, David Gervais
- netfilter: active obj WARN when cleaning up,
Sasha Levin
- [iptables PATCH] docs: use generic syslog reference in libxt_LOG.man,
Laurence J. Lane
- [iptables PATCH] build: add DESTDIR to vx_bin_links,
Laurence J. Lane
- Fwd: tproxy and NAT incompatible?, umesh sirsiwal
- [iptables-nftables PATCH 0/3] NFPROTO_ARP and arp mangle target support (+ one minor fix),
Tomasz Bursztyka
- Re: linux-next: Tree for Sep 5 (netfilter: xt_socket.c),
Randy Dunlap
- [PATCH 1/3] conntrack: support multiple -l options,
Florian Westphal
- [libnftables PATCH] src: xml: get rid of mxml parsing flags, Arturo Borrero Gonzalez
- Re: linux-next: Tree for Sep 4 (netfilter: xt_TPROXY),
Randy Dunlap
- merge window warning,
David Miller
- [libnftables PATCH] set: xml: fix key_type parsing,
Arturo Borrero Gonzalez
- [PATCH 0/4] netfilter updates for net-next,
Pablo Neira Ayuso
- [iptables-nftables PATCH 1/1 v4] nft: refactoring parse operations for more genericity,
Giuseppe Longo
- [PATCH 0/4] [RFC] nfnetlink_acct: Traffic-based and periodic notifications,
valentina . giusti
- [nftables tool v2 PATCH 0/4] Easier base chain declaration,
Tomasz Bursztyka
- [PATCH v2] netfilter: ipset: refactor hash types to use address/cidr arrays.,
Oliver
- [PATCH 1/3] conntrack: minor cleanup,
Florian Westphal
- [iptables-nftables PATCH v3] nft: refactoring parse operations for more genericity,
Giuseppe Longo
- [PATCH] netfilter: ipset: refactor hash types to use address/cidr arrays.,
Oliver
- [PATCH 0/2 v2] cleanup and shrink ipset handling code.,
Oliver
- [PATCH net-next 2/2] net: use reciprocal_divide instead of reimplementing it,
Daniel Borkmann
- [PATCH net] bridge: netfiler: update find_inlist_lock_noload() more accurate, Ding Tianhong
- [PATCH 0/1] netfilter: Ignore bogus SACK option values in TCP conntrack,
Jozsef Kadlecsik
- [iptables-nftables PATCH v2] nft: refactoring parse operations for more genericity,
Giuseppe Longo
- [PATCH 0/6] Ipset comment extension - provide annotation of ipset entries,
Oliver
- [PATCH v3] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.,
Oliver
- [libnftables PATCH] chain: xml: optional attributes,
Arturo Borrero Gonzalez
- [PATCH v2 0/2] ipset: rework extension handling to be more manageable.,
Oliver
- [PATCH] netfilter: xt_TCPMSS: correct return value in tcpmss_mangle_packet,
Phil Oester
- [PATCH] netfilter: ipset: rework extensions handling to be more manageable., Oliver
- [iptables-nftables PATCH] nft: refactoring parse operations for more genericity,
Giuseppe Longo
- [PATCH] [RFC] xt_owner: enable xt_owner on INPUT chain,
valentina . giusti
- [nftables-kernel PATCH] netfilter: nf_tables: Fixes how a table is checked to be in use,
Tomasz Bursztyka
- [PATCH nf-next] Second round of IPVS updates for v3.12,
Simon Horman
- [PATCH nf 0/5] IPVS fixes for v3.11,
Simon Horman
- xt_recent.c bug - and cleanup,
Valentijn Sessink
- [nf-next PATCH] netfilter: SYNPROXY let unrelated packets continue,
Jesper Dangaard Brouer
- [PATCH] netfilter: SYNPROXY core: fix warning in __nf_ct_ext_add_length(),
Patrick McHardy
- [nftables tool PATCH] INSTALL: Update dependency list and repository URLs,
Tomasz Bursztyka
- [nf-next PATCH] netfilter: Extend SYNPROXY with a --continue option,
Jesper Dangaard Brouer
- [nf-next PATCH] netfilter: more strict TCP flag matching in SYNPROXY,
Jesper Dangaard Brouer
- [nftables tool PATCH 0/5] Easier base chain declaration,
Tomasz Bursztyka
- [PATCH] tcp: tcp_make_synack() should use sock_wmalloc,
Phil Oester
- [PATCH 0/8] netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 1/8] netfilter: ip[6]t_REJECT: tcp-reset using wrong MAC source if bridged, Pablo Neira Ayuso
- [PATCH 2/8] netfilter: nf_defrag_ipv6.o included twice, Pablo Neira Ayuso
- [PATCH 8/8] netfilter: ctnetlink: fix uninitialized variable, Pablo Neira Ayuso
- [PATCH 6/8] net: syncookies: export cookie_v6_init_sequence/cookie_v6_check, Pablo Neira Ayuso
- [PATCH 4/8] net: syncookies: export cookie_v4_init_sequence/cookie_v4_check, Pablo Neira Ayuso
- [PATCH 7/8] netfilter: add IPv6 SYNPROXY target, Pablo Neira Ayuso
- [PATCH 5/8] netfilter: add SYNPROXY core/target, Pablo Neira Ayuso
- [PATCH 3/8] netfilter: nf_conntrack: make sequence number adjustments usuable without NAT, Pablo Neira Ayuso
- Re: [PATCH 0/8] netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 0/8] netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 0/8] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 0/8] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 0/8] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 0/8] Netfilter updates for net-next, Pablo Neira Ayuso
- Netfilter owner match breakage,
Phil Oester
- spurious errors with protocol names used as chain names, Laurence J. Lane
- [libnftables PATCH 1/4] tests: remove unnecessary variable initialization,
Alvaro Neira
- [PATCH next] netfilter: ctnetlink: fix uninitialized variable,
Florian Westphal
- [PATCH] extensions: add SYNPROXY extension, Patrick McHardy
- [PATCH 0/5] netfilter: SYNPROXY target v3,
Patrick McHardy
- [PATCH] iptables: libxt_recent.{c,man} dead URL,
Laurence J. Lane
- travelling...,
David Miller
- [PATCH] netfilter: avoid array overflow in nf_register_hook,
Dong Fang
- [libnftables PATCH] rule: complete print/parse position attr, Arturo Borrero Gonzalez
- [PATCH RFC 0/6] SYNPROXY target v2,
Patrick McHardy
- [PATCH] iptables: libxt_string.man add example,
Laurence J. Lane
- [PATCH] netfilter: nf_defrag_ipv6.o included twice,
Nathan Hintz
- [PATCH] [RFC] Add hash:net,net ipset for storage of v4/v6 CIDR pairs.,
Oliver
- [PATCH nft] src: allow to specify the base chain type,
Pablo Neira Ayuso
- [PATCH lnf-queue] api: add nfq_nlmsg_get_timestamp helper,
Florian Westphal
- [libnftables PATCH] src: constify nft_*_parse input data,
Arturo Borrero Gonzalez
- [libnftables PATCH 1/3] rule: Add json parser support,
Alvaro Neira
- ipvsadm: One-packet scheduling with UDP service is unstable,
Drunkard Zhang
- [PATCH 00/19] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 13/19] ipvs: fixed spacing at for statements, Pablo Neira Ayuso
- [PATCH 10/19] netfilter: nf_nat: change sequence number adjustments to 32 bits, Pablo Neira Ayuso
- [PATCH 07/19] netfilter: tproxy: remove nf_tproxy_core.h, Pablo Neira Ayuso
- [PATCH 04/19] netfilter: connlabels: remove unneeded includes, Pablo Neira Ayuso
- [PATCH 09/19] netfilter: nf_nat: fix locking in nf_nat_seq_adjust(), Pablo Neira Ayuso
- [PATCH 14/19] ipvs: ip_vs_sh: ip_vs_sh_get_port: check skb_header_pointer for NULL, Pablo Neira Ayuso
- [PATCH 11/19] netfilter: nf_nat: use per-conntrack locking for sequence number adjustments, Pablo Neira Ayuso
- [PATCH 18/19] netfilter: export xt_rpfilter.h to userland, Pablo Neira Ayuso
- [PATCH 17/19] netfilter: nfnetlink_queue: allow to attach expectations to conntracks, Pablo Neira Ayuso
- [PATCH 19/19] netfilter: export xt_HMARK.h to userland, Pablo Neira Ayuso
- [PATCH 12/19] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n, Pablo Neira Ayuso
- [PATCH 16/19] netfilter: ctnetlink: refactor ctnetlink_create_expect, Pablo Neira Ayuso
- [PATCH 08/19] netfilter: nf_conntrack: remove duplicate code in ctnetlink, Pablo Neira Ayuso
- [PATCH 15/19] netfilter: nf_conntrack: don't send destroy events from iterator, Pablo Neira Ayuso
- [PATCH 02/19] netfilter: nf_conntrack: remove net_ratelimit() for LOG_INVALID(), Pablo Neira Ayuso
- [PATCH 06/19] netfilter: tproxy: remove nf_tproxy_core, keep tw sk assigned to skb, Pablo Neira Ayuso
- [PATCH 03/19] netfilter: nf_conntrack: constify sk_buff argument to nf_ct_attach(), Pablo Neira Ayuso
- [PATCH 05/19] netfilter: nf_queue: relax NFQA_CT attribute check, Pablo Neira Ayuso
- [PATCH 01/19] netfilter: xt_addrtype: fix trivial typo, Pablo Neira Ayuso
- Re: [PATCH 00/19] Netfilter/IPVS updates for net-next, David Miller
- heavily backlogged..., David Miller
- [PATCH] iptables: iptables-xm1.1 correct man section,
Laurence J. Lane
- [PATCH] iptables: extensions/GNUMakefile.in use CPPFLAGS,
Laurence J. Lane
- [libnftables PATCH] utils: fix error path for nft_strtoi,
Arturo Borrero Gonzalez
- [iptables-nftables PATCH 0/5] Centralizes rule parsing,
Tomasz Bursztyka
- Fastest way to send a packet from a target module, Lorraine Hall
- [PATCH] iptables: libip(6)t_REJECT.man default icmp types,
Laurence J. Lane
- [PATCH] iptables: libxt_conntrack.man extraneous commas,
Laurence J. Lane
- Re: NAT stops forwarding ACKs after PMTU discovery,
Eric Dumazet
- [PATCH] iptables: libxt_hashlimit.man: correct address,
Laurence J. Lane
- [PATCH] nftables: add additional --numeric level,
Phil Oester
- [PATCH] nftables: allow protocols by number in inet_protocol_type_parse,
Phil Oester
- [PATCH] nftables: validate port number in inet_service_type_parse,
Phil Oester
- Reset connection state to NEW, Iain Fraser
- [PATCHv2] iptables: link against libnetfilter_conntrack,
Gustavo Zacarias
- [PATCH] iptables: link libxtables against libnetfilter_conntrack,
Gustavo Zacarias
- [PATCH 1/2] netfilter: export xt_rpfilter.h to userland,
Nicolas Dichtel
- [PATCH lnf-queue] build: avoid sym namespace pollution,
Florian Westphal
- [libnftables PATCH] xml: expr: fix mem leak in the expr parser,
Arturo Borrero Gonzalez
- [libnftables PATCH] nat: xml: fix wrong node name in snprintf,
Arturo Borrero Gonzalez
- [libnftables PATCH] chain: xml: delete <use> node,
Arturo Borrero Gonzalez
- [libnftables PATCH] tests: xml: reorder XML elements in sets,
Arturo Borrero Gonzalez
- [libnftables PATCH] xml: expr: limit: fix wrong assignation when parsing,
Arturo Borrero Gonzalez
- [libnftables PATCH 1/2] src: expr: use the function base2str in payload.,
Alvaro Neira
- [PATCH 0/4] netfilter fixes for 3.11-rc4,
Pablo Neira Ayuso
- [PATCH] netfilter: nf_conntrack: fix tcp_in_window for Fast Open,
Yuchung Cheng
- [iptables-nftables RFC v3 PATCH 00/16] Xtables extensions: full support (pure nft or compat layer),
Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 01/16] xtables: Add support for injecting xtables target into nft rule, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 02/16] xtables: add support for injecting xtables matches into nft rule, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 03/16] nft: Add nft expressions translation engine as a library, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 04/16] nft: Integrate nft translator engine in current core, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 05/16] nft: Manage xtables target parsing through translation tree, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 06/16] nft: Manage xtables matches through nft translation tree, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 07/16] nft: Add support for xtables extensions callback to change cs, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 08/16] xtables: Add support for registering nft translation function for target, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 09/16] xtables: Add support for registering nft translation function for match, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 10/16] nft: Register all relevant xtables extensions into translation tree, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 11/16] nft: Refactor firewall printing so it reuses already parsed cs struct, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 12/16] nft: Refactor rule deletion so it compares both cs structure, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 13/16] xtables: nft: Complete refactoring on how rules are saved, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 14/16] xtables: Support pure nft expressions for DNAT extension, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 15/16] nft: Add a function to reset the counters of an existing rule, Tomasz Bursztyka
- [iptables-nftables RFC v3 PATCH 16/16] xtables: Support -Z options for a given rule number, Tomasz Bursztyka
- [libnftables PATCH 01/13] src: expr: missing commas in json output support,
Alvaro Neira
- [libnftables PATCH 02/13] src: expr: missing curly braces in json output support, Alvaro Neira
- [libnftables PATCH 03/13] src: expr: change wrong value in data_reg, Alvaro Neira
- [libnftables PATCH 04/13] src: fix display of compat_flag and compat_proto, Alvaro Neira
- [libnftables PATCH 05/13] expr: ct: optional output in ct, Alvaro Neira
- [libnftables PATCH 06/13] json: bitwise: add missing node len, Alvaro Neira
- [libnftables PATCH 07/13] src: json: delete unneeded JSON prefixes, Alvaro Neira
- [libnftables PATCH 08/13] expr: bytecode: add nft_str2ntoh function, Alvaro Neira
- [libnftables PATCH 09/13] expr: cmp: add nft_str2cmp function, Alvaro Neira
- [libnftables PATCH 10/13] expr: nat: add nft_str2nat function, Alvaro Neira
- [libnftables PATCH 11/13] expr: payload: add nft_str2base function, Alvaro Neira
- [libnftables PATCH 12/13] example: nft-rule-get: family parameter added, Alvaro Neira
- [libnftables PATCH 13/13] jansson: Add nft_jansson_family function, Alvaro Neira
- Re: [libnftables PATCH 01/13] src: expr: missing commas in json output support, Pablo Neira Ayuso
- [PATCH nftables 1/2] netfilter: nf_tables: don't delete table if in use,
Pablo Neira Ayuso
- [PATCH] iptables: iptables calls setsockopt incorrectly,
Laurence J. Lane
- [PATCH v2 -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect,
Pablo Neira Ayuso
- [PATCH -next 1/2] netfilter: ctnetlink: refactor ctnetlink_create_expect,
Pablo Neira Ayuso
- [PATCH] iptables: state match incompatibilty across versions,
Phil Oester
- [PATCH RFC 0/5] netfilter: implement netfilter SYN proxy,
Patrick McHardy
- libnfnetlink license,
Thomas Woerner
- [PATCH v3, -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks,
Pablo Neira Ayuso
- [GIT PULL 0/2] IPVS enhancement for v3.12,
Simon Horman
- [iptables-nftables PATCH 0/3] Generalize nft_rule_list() (+ 2 fixes),
Tomasz Bursztyka
- [PATCH] iptables: correctly reference generated file,
Lutz Jaenicke
- [PATCH v3 00/11] Add namespace support for syslog,
Rui Xiang
- [PATCH v3 10/11] syslog_ns: implement ns_console_unlock for specific syslog_ns, Rui Xiang
- [PATCH v3 11/11] netfilter: use ns_printk in iptable context, Rui Xiang
- [PATCH v3 04/11] syslog_ns: make syslog handling per namespace, Rui Xiang
- [PATCH v3 09/11] syslog_ns: implement ns_printk_emit for specific syslog_ns, Rui Xiang
- [PATCH v3 05/11] syslog_ns: make permisiion check per user namespace, Rui Xiang
- [PATCH v3 03/11] syslog_ns: add init syslog_ns for global syslog, Rui Xiang
- [PATCH v3 08/11] syslog_ns: implement ns_printk for specific syslog_ns, Rui Xiang
- [PATCH v3 01/11] syslog_ns: add syslog_namespace and put/get_syslog_ns, Rui Xiang
- [PATCH v3 07/11] syslog_ns: implement function for creating syslog ns, Rui Xiang
- [PATCH v3 06/11] syslog_ns: use init syslog_ns for console action, Rui Xiang
- [PATCH v3 02/11] syslog_ns: add syslog_ns into user_namespace, Rui Xiang
- Re: [PATCH v3 00/11] Add namespace support for syslog, Eric W. Biederman
- state match incompatibilty across versions,
Laurence J. Lane
- [ANNOUNCE] conntrack-tools 1.4.2 release, Pablo Neira Ayuso
- [ANNOUNCE] iptables 1.4.20 release, Pablo Neira Ayuso
- [ANNOUNCE] libnetfilter_conntrack 1.0.4 release, Pablo Neira Ayuso
- [PATCH] (fix_led_parse_delay) value will now be set,
Florian Eckert
- [PATCH v2 -next] netfilter: ctnetlink: attach expectations to unconfirmed conntracks,
Pablo Neira Ayuso
- [PATCH v2 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header and options,
Pablo Neira Ayuso
- [PATCH] xtables: trivial spelling fix,
Stephen Hemminger
- [PATCH -next] netfilter: tproxy: fix build with IP6_NF_IPTABLES=n,
Florian Westphal
- [PATCH V3 0/3] networking: Use ETH_ALEN where appropriate,
Joe Perches
- [PATCH V2 0/3] networking: Use ETH_ALEN where appropriate,
Joe Perches
- [libnftables PATCH] table: add nft_table_list_del function,
Arturo Borrero Gonzalez
- [patch] netfilter: information leaks building packet message,
Dan Carpenter
- [PATCH v3] iptables: Sort table names in ip[6]tables-save,
Phil Oester
- [PATCH v3] iptables: allow service names in [DS]NAT targets, Phil Oester
- [PATCH 1/2] netfilter: xt_TCPMSS: fix handling of malformed TCP header,
Pablo Neira Ayuso
- [libnftables PATCH 1/7] chain: change policy2str function to nft_verdict2str function,
Alvaro Neira
- [iptables-nftables - PATCH] xtables: Do not dump before command parsing has been finished,
Tomasz Bursztyka
- PROBLEM: Netfilter time matching matches all packets when time start and time stop is the same,
Henry Lee
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]