Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [libnftables PATCH 17/21] exthdr: xml: use string for type node, (continued)
- [GIT PULL 0/8] IPVS updates for v3.11 #2,
Simon Horman
- [PATCH 1/2] nft: print counter issues,
Giuseppe Longo
- [PATCH 4/5] netfilter: ctnetlink: send event when conntrack label was modified,
Pablo Neira Ayuso
- [PATCH 0/5] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- Re: v3.10-rc7 oops soon after boot,
Pablo Neira Ayuso
- [PATCH conntrack-tools 1/2] conntrackd: support replication of connlabels,
Florian Westphal
- [PATCH lnf-ct 1/2] conntrack: labels: skip labels with non-alnum characters,
Florian Westphal
- [PATCHv2] nft: netlink: fix network address prefix, Pablo Neira Ayuso
- [nft] netlink: fix network address prefix, Pablo Neira Ayuso
- [PATCH] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization,
gapsf
- [PATCH ] nftables kernel tree: nf_tables_ipv4.c: typo in struct filter_ipv4 initialization, gapsf
- [PATCH] ip6tables: don't print out /128,
Phil Oester
- [PATCH] iptables: iptables-xml: Fix various parsing bugs,
Phil Oester
- [PATCH 1/1] netfilter: ctnetlink: send event when conntrack label was modified,
Florian Westphal
- [PATCH 1/5] src: get it sync with current include/linux/netfilter/nf_tables.h,
Pablo Neira Ayuso
- [PATCH 0/2] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH] netfilter: remove redundant skb check in nf_conntrack_put_reasm,
Phil Oester
- [PATCH] netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling,
Phil Oester
- [PATCH] nft: loop optimization,
Giuseppe Longo
- [RFC PATCH 0/1] add insert after to nf_tables,
Eric Leblond
- [PATCH] fix filenames typo in print_usage and file header,
gapsf
- [GIT PULL nf] IPVS fix for v3.10,
Simon Horman
- [libnftables PATCH] test: add testbench for XML,
Arturo Borrero Gonzalez
- [PATCH lnfct-ct 1/2] conntrack: snprintf: add labels in hex representation by default,
Florian Westphal
- Bridge-nf and iptables SNAT,
Tsachi
- [patch] netfilter: prevent harmless integer overflow,
Dan Carpenter
- [PATCH v3] iptables-nftables: function nft_chain_zero_counters added.,
Giuseppe Longo
- [PATCH 0/3] netfilter fixes for net,
Pablo Neira Ayuso
- [PATCH 1/3] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr(), Pablo Neira Ayuso
- [PATCH 3/3] netfilter: xt_TCPMSS: Fix missing fragmentation handling, Pablo Neira Ayuso
- [PATCH 2/3] netfilter: xt_TCPMSS: Fix IPv6 default MSS too, Pablo Neira Ayuso
- Re: [PATCH 0/3] netfilter fixes for net, David Miller
- <Possible follow-ups>
- [PATCH 0/3] netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH 0/3] Netfilter fixes for net, Pablo Neira Ayuso
- [PATCH v3 1/2] iptables-nftables: function nft_chain_zero_counters added.,
Giuseppe Longo
- [PATCH v2 5/5] iptables (userspace): add set match "inner" flag support, Dash Four
- [PATCH v2 4/5] iptables: add set match "inner" flag support, Dash Four
- [PATCH v2 3/5] ipset: add set match "inner" flag support, Dash Four
- [PATCH v2 2/5] ipset: add "inner" flag implementation,
Dash Four
- [PATCH v2 1/5] iptables: bugfix: prevent wrong syntax being accepted by the set match, Dash Four
- [PATCH v2 0/5] ipset: add "inner" flag support, Dash Four
- libnetfilter_queue: Another Valgrind complaint with nfq_set_mode, Tamas Lengyel
- [libnftables PATCH 1/3] nat: xml: fix xml_snprintf buffer offset,
Arturo Borrero
- [libnftables PATCH] expr: bitwise: xml_parse: fix casting,
Arturo Borrero
- [libnftables PATCH 0/2] Series to add JSON output support for rules,
Alvaro Neira
- [PATCH next] netfilter: conntrack: avoid large timeout for mid-stream pickup,
Florian Westphal
- Huge timeout with loose=1 pickup tcp connections,
Florian Westphal
- [PATCH nf-next] netfilter: ct: check return code from nla_parse_tested,
Daniel Borkmann
- [PATCH] netfilter: xt_TCPMSS: Add IPv6 default MSS,
Phil Oester
- [PATCH] iptables: Fix connlabel.conf install location,
Phil Oester
- [PATCH] netfilter: xt_TCPOPTSTRIP: don't use tcp_hdr(), Pablo Neira Ayuso
- [PATCH] netfilter: xt_TCPMSS: Add safe fragmentation handling,
Phil Oester
- [PATCH] Remove redundant TCP header checks from xt_TCPOPTSTRIP,
Phil Oester
- [PATCH 0/5] netfilter fixes for 3.10-rc5,
Pablo Neira Ayuso
- [nftables PATCH 0/2] work on restoration,
Eric Leblond
- [libnftables PATCH] data_reg: xml: delete unreachable code in _veredict_xml_parse(),
Arturo Borrero
- [PATCH] fix leak of iter in nft_rule_list,
Giuseppe Longo
- [PATCH v2] nft: fix leak of iterators,
Giuseppe Longo
- [libnftables PATCH] src: xml: implement helper function nft_strtol, Arturo Borrero
- [PATCH] netfilter: nfnetlink_queue: fix missing HW protocol, Pablo Neira Ayuso
- [libnftables PATCH v3] src: add _unset functions,
Arturo Borrero
- [libnftables PATCH 0/2] Series short description,
Alvaro Neira
- [libnftables PATCH v2] src: add _unset functions, Arturo Borrero
- [libnftables PATCH 1/4] Add functions for to export tables to JSON format,
Alvaro Neira
- [libnftables PATCH 0/4] Series short description, Alvaro Neira
- [PATCH] datatype: concat expression only releases dynamically allocated datatype,
Pablo Neira Ayuso
- [libnftables PATCH 1/2] src: add _unset functions,
Arturo Borrero
- [PATCH 09/12] netfilter: nfnetlink_queue: avoid peer_portid test, Pablo Neira Ayuso
- [PATCH 00/12] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH 01/12] netfilter: xt_CT: optimize XT_CT_NOTRACK, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation, Pablo Neira Ayuso
- [PATCH 06/12] sched: add cond_resched_rcu() helper, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed, Pablo Neira Ayuso
- [PATCH 08/12] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: nfnetlink_queue: cleanup copy_range usage, Pablo Neira Ayuso
- [PATCH 07/12] ipvs: use cond_resched_rcu() helper when walking connections, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: Implement RFC 1123 for FTP conntrack, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: don't panic on error while walking through the init path, Pablo Neira Ayuso
- [PATCH 03/12] bridge: netfilter: using strlcpy() instead of strncpy(), Pablo Neira Ayuso
- [PATCH 02/12] netfilter: xt_socket: use IP early demux, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter/IPVS updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/12] netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: avoid get_random_bytes calls, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nf_nat: add full port randomization support, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_conntrack: remove dead code, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: add IPv4/6 IPComp extension match support, Pablo Neira Ayuso
- [PATCH 05/12] ipvs: Remove unused variable ret from sync_thread_master(), Pablo Neira Ayuso
- [PATCH 09/12] netfilter: xt_CT: fix error value in xt_ct_tg_check(), Pablo Neira Ayuso
- [PATCH 11/12] net: netprio: rename config to be more consistent with cgroup configs, Pablo Neira Ayuso
- [PATCH 10/12] net: net_cls: move cgroupfs classid handling into core, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: x_tables: lightweight process control group matching, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: ipset: remove unused code, Pablo Neira Ayuso
- Re: [PATCH 00/12] netfilter/IPVS updates for net-next, David Miller
- [PATCH 00/12] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: introduce support for reject at prerouting stage, Pablo Neira Ayuso
- [PATCH 03/12] ipvs: register hooks only with services, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: nf_tables: expose enum nft_chain_flags through UAPI, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: nf_tables: add nft_chain_add(), Pablo Neira Ayuso
- [PATCH 12/12] netfilter: nf_tables: reject unsupported chain flags, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: nf_tables: add NFT_CHAIN_BINDING, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH 05/12] ipvs: allow connection reuse for unconfirmed conntrack, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nf_tables: add NFTA_CHAIN_ID attribute, Pablo Neira Ayuso
- [PATCH 04/12] ipvs: avoid expiring many connections from timer, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: nft_set_pipapo: Drop useless assignment of scratch map index on insert, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter/IPVS updates for net-next, David Miller
- [PATCH 1/2] conntrack: nfct_cmp: also compare labels,
Florian Westphal
- [PATCH] nft: fix leak of iterators, Giuseppe Longo
- Locally transmitted Multicast packets are being looped back, even if IP_MULTICAST_LOOP option is set to zero,
Vijay Tandeker
- [PATCH -next 1/2] netfilter: nf_queue: cleanup copy_range usage,
Florian Westphal
- [PATCH 1/2] netfilter: nfnetlink_acct: fix incomplete dumping of objects,
Pablo Neira Ayuso
- [libnftables] nft_*_attr_unset() functions, Arturo Borrero Gonzalez
- [RFC PATCH -next] netfilter: nfqueue: add ability to dump list of supported attributes,
Florian Westphal
- [PATCH] netfilter: xt_TCPMSS: Avoid violating RFC 879 in absence of MSS option,
Phil Oester
- [libnftables PATCH 0/3] small fixes,
Eric Leblond
- [PATCH nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag,
Eric Dumazet
- [libnftables PATCH 1/5] data_reg: xml: fix bytes movements,
Arturo Borrero
- [libnftables PATCH] data_reg: delete unreachable code,
Arturo Borrero
- [libnftables PATCH v3] src: xml: add versioning,
Arturo Borrero
- [PATCH 1/1] netfilter: nf_ct_tcp: extend CLOSE_WAIT timeout,
Zang MingJie
- [PATCH] xtables-addons: xt_DHCPMAC: correct mac setting and comparing, Boris Figovsky
- [PATCH 1/2] conntrackd: fix compiler warnings,
Florian Westphal
- [patch] ipvs: info leak in __ip_vs_get_dest_entries(),
Dan Carpenter
- [nftables PATCH 0/5] misc fixes,
Eric Leblond
- ulog: ulogd.conf.5 man page,
Chris Boot
- [PATCH lnf-conntrack 1/3] qa: add api test for nfct_cmp and nfct_exp functions,
Florian Westphal
- [PATCH] libnetfilter_queue: Fix Valgrind errors of unitialized byte(s) during call to nfq_unbind_pf,
Tamas Lengyel
- [PATCH v4] xtables: Add locking to prevent concurrent instances,
Phil Oester
- [PATCH net-next] sctp: Correct byte order of access to skb->{network, transport}_header,
Simon Horman
- [PATCH net-next v3] netfilter: Correct calculation using skb->tail and skb-network_header,
Simon Horman
- [PATCH v2] netfilter: Correct calculation using skb->tail and skb-network_header,
Simon Horman
- [PATCH] netfilter: Correct calculation using skb->tail and skb-network_header,
Simon Horman
- iptables-nftables: Invalid argument,
Giuseppe Longo
- [libnftables PATCH] data_reg: xml: fix invalid veredict validation,
Arturo Borrero
- [libnftables PATCH] data_reg: xml: fix using bad temp variable,
Arturo Borrero
- [PATCH 0/5] netfilter fixes for 3.10-rc3,
Pablo Neira Ayuso
- [ANNOUNCE] iptables 1.4.19 release,
Pablo Neira Ayuso
- [PATCH -next] netfilter: nfnetlink_queue: only add CAP_LEN attr when needed,
Florian Westphal
- [PATCH nf] netfilter: xt_LOG: fix mark logging for IPv6 packets,
Michal Kubecek
- [PATCH -next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk",
Florian Westphal
- [PATCH 4/4] iptables (userspace): add set match "inner" flag support, Dash Four
- [PATCH 3/4] iptables: add set match "inner" flag support, Dash Four
- [PATCH 2/4] ipset: add "inner" flag implementation,
Dash Four
- [PATCH 1/4] ipset: minor variable-naming corrections, Dash Four
- [PATCH 0/4] ipset: add "inner" flag support,
Dash Four
- [Ulogd PATCH] pgsql: add var to specify arbitrary conn params, Eric Leblond
- [libnftables PATCH] data_reg: Delete trailing space in snprintf_xml,
Arturo Borrero
- [libnftables PATCH] data_reg: Add generic interface for parsing: nft_data_reg_parse().,
Arturo Borrero
- [libnftables PATCH] data_reg: Fix conditional code in XML parsing functions,
Arturo Borrero
- [libnftables PATCH] data_reg: conditional XML code for snprintf_xml,
Arturo Borrero
- [libnftables PATCH] rule: fix table flag not being set at XML parsing,
Arturo Borrero
- [nftables] handle when adding new chain/rule, Arturo Borrero Gonzalez
- [libnftables PATCH] data_reg: fix XML operations,
Arturo Borrero
- [libnftables PATCH v2] src: xml: add versioning,
Arturo Borrero
- [PATCH] xtables: improve get_modprobe handling,
Phil Oester
- [PATCH v3] xtables: Add locking to prevent concurrent instances,
Phil Oester
- Re: [PATCH -resend 4/6] netfilter: Implement RFC 1123 for FTP conntrack, Pablo Neira Ayuso
- nfqueue: detect when packet has already been checksummed?,
Florian Westphal
- Negative value in /proc/net/netfilter/nfnetlink_queue,
Alex Maltinsky
- [GIT PULL nf-next v2] IPVS for v3.11,
Simon Horman
- [GIT PULL nf] IPVS fixes for v3.10,
Simon Horman
- [PATCH -next, resend] netfilter: nfnetlink_queue: avoid peer_portid test,
Florian Westphal
- [libnftables PATCH 0/2] small fixes for libnftables XML,
Arturo Borrero
- [PATCH 1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks,
Pablo Neira Ayuso
- [PATCH v2] xtables: Add locking to prevent concurrent instances, Phil Oester
- [PATCH net-next] netfilter: xt_socket: use IP early demux,
Eric Dumazet
- [PATCH] xtables: Add locking to prevent concurrent instances,
Phil Oester
- [libnftables PATCH v2] examples: XML parsing examples,
Arturo Borrero
- [GIT PULL nf-next] IPVS for v3.11,
Simon Horman
- [PATCH ipvs-next v3 0/2] sched: Add cond_resched_rcu_lock() helper,
Simon Horman
- [nftables PATCH] rule: display rule handle as comment,
Eric Leblond
- [RFC 1/2] netfilter: nfnetlink: add commit operation to nfnl_subsystems,
Pablo Neira Ayuso
- [PATCH] iptables: use autoconf to process .in man pages,
Andy Spencer
- [PATCH] doc: mention SNAT in INPUT chain since kernel 2.6.36,
Michael Roth
- [PATCH v2] netfilter: add and use nf_ipv6_ops in xt_addrtype,
Florian Westphal
- Re: [PATCH 1/2] ulogd: Perform nice() before giving up root, Eric Leblond
- [PATCH] ipv4: netfilter: always let NUL terminated string ended by '\0',
Chen Gang
- [PATCH] bridge: netfilter: using strlcpy() instead of strncpy(),
Chen Gang
- [PATCH next v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS,
Afschin Hormozdiary
- MSRP Protocol, twear
- [PATCH 0/4] Netfilter fixes for net (3.10-rc1),
Pablo Neira Ayuso
- [PATCH next] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS,
Afschin Hormozdiary
- Suspicious iptables snapshot in NF FTP,
Jan Engelhardt
- [PATCH v4] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary, Pablo Neira Ayuso
- [PATCH v3] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary, Pablo Neira Ayuso
- [PATCH v2] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary, Pablo Neira Ayuso
- [PATCH] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary,
Pablo Neira Ayuso
- [PATCH] netfilter: log: netns NULL ptr bug when calling from conntrack.,
Hans Schillstrom
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]