Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- [PATCH 2/4] netfilter: nft_set_rbtree: handle element re-addition after deletion, (continued)
- [PATCH] netfilter: nf_nat: fix race when unloading protocol modules,
Florian Westphal
- [libnftables PATCH 0/5] XML works,
Arturo Borrero
- [PATCH] iptables manpage: Update SNAT target,
Mart Frauenlob
- [PATCH] iptables manpage: Update NETMAP target,
Mart Frauenlob
- [PATCH] iptables manpage: Update REDIRECT target,
Mart Frauenlob
- [PATCH] iptables manpage: Update LOG target,
Mart Frauenlob
- [PATCH] iptables manpage: Update DNAT target,
Mart Frauenlob
- [PATCH] iptables manpage: Update MASQUERADE target,
Mart Frauenlob
- Fwd: Re: [BUG] Fatal exception in interrupt - nf_nat_cleanup_conntrack during IPv6 tests,
Florian Westphal
- Netfilter's tree at git.kernel.org,
Pablo Neira Ayuso
- [PATCH 00/15] ipset patches for nf-next,
Jozsef Kadlecsik
- [PATCH 01/15] netfilter: ipset: list:set: fix reference counter update, Jozsef Kadlecsik
- [PATCH 14/15] netfilter: ipset: The list:set type with counter support, Jozsef Kadlecsik
- [PATCH 04/15] netfilter: ipset: Move often used IPv6 address masking function to header file, Jozsef Kadlecsik
- [PATCH 09/15] netfilter: ipset: Hash types using the unified code base, Jozsef Kadlecsik
- [PATCH 08/15] netfilter: ipset: Unified hash type generation, Jozsef Kadlecsik
- [PATCH 03/15] netfilter: ipset: Make possible to test elements marked with nomatch, Jozsef Kadlecsik
- [PATCH 13/15] netfilter: ipset: The hash types with counter support, Jozsef Kadlecsik
- [PATCH 02/15] netfilter: ipset: hash:*net*: nomatch flag not excluded on set resize, Jozsef Kadlecsik
- [PATCH 10/15] netfilter: ipset: list:set type using the extension interface, Jozsef Kadlecsik
- [PATCH 07/15] netfilter: ipset: Bitmap types using the unified code base, Jozsef Kadlecsik
- [PATCH 15/15] netfilter: ipset: set match: add support to match the counters, Jozsef Kadlecsik
- [PATCH 12/15] netfilter: ipset: The bitmap types with counter support, Jozsef Kadlecsik
- [PATCH 06/15] netfilter: ipset: Unified bitmap type generation, Jozsef Kadlecsik
- [PATCH 05/15] netfilter: ipset: Introduce extensions to elements in the core, Jozsef Kadlecsik
- [PATCH 11/15] netfilter: ipset: Introduce the counter extension in the core, Jozsef Kadlecsik
- Re: [PATCH 00/15] ipset patches for nf-next, Jozsef Kadlecsik
- <Possible follow-ups>
- [PATCH 00/15] ipset patches for nf-next, Jozsef Kadlecsik
- [PATCH 01/15] netfilter: ipset: Use MSEC_PER_SEC consistently, Jozsef Kadlecsik
- [PATCH 08/15] netfilter: ipset: Fix parallel resizing and listing of the same set, Jozsef Kadlecsik
- [PATCH 02/15] netfilter: ipset: Use SET_WITH_*() helpers to test set extensions, Jozsef Kadlecsik
- [PATCH 06/15] netfilter: ipset: Check CIDR value only when attribute is given, Jozsef Kadlecsik
- [PATCH 03/15] netfilter: ipset: Check extensions attributes before getting extensions., Jozsef Kadlecsik
- [PATCH 07/15] netfilter: ipset: Fix cidr handling for hash:*net* types, Jozsef Kadlecsik
- [PATCH 04/15] netfilter: ipset: Permit CIDR equal to the host address CIDR in IPv6, Jozsef Kadlecsik
- [PATCH 11/15] netfilter: ipset: Prepare the ipset core to use RCU at set level, Jozsef Kadlecsik
- [PATCH 05/15] netfilter: ipset: Make sure we always return line number on batch, Jozsef Kadlecsik
- [PATCH 13/15] netfilter: ipset: Introduce RCU locking in hash:* types, Jozsef Kadlecsik
- [PATCH 09/15] netfilter: ipset: Make sure listing doesn't grab a set which is just being destroyed., Jozsef Kadlecsik
- [PATCH 10/15] netfilter:ipset Remove rbtree from hash:net,iface, Jozsef Kadlecsik
- [PATCH 12/15] netfilter: ipset: Introduce RCU locking in bitmap:* types, Jozsef Kadlecsik
- [PATCH 14/15] netfilter: ipset: Introduce RCU locking in list type, Jozsef Kadlecsik
- [PATCH 15/15] netfilter: ipset: Fix coding styles reported by checkpatch.pl, Jozsef Kadlecsik
- Re: [PATCH 00/15] ipset patches for nf-next, Pablo Neira Ayuso
- [PATCH 0/2] ipset bugfix patches,
Jozsef Kadlecsik
- [PATCH] libxt_multiport.man: Update list of valid protocols,
Mart Frauenlob
- documentation bug: missing nat targets in man,
Mart Frauenlob
- [PATCH] libipt6_mh.man: Correct command to display named mh types,
Mart Frauenlob
- [PATCH] iptables manpage: Update protocol list for MASQUERADE and REDIRECT, Mart Frauenlob
- [libnftables PATCH] src: rule: fix compat XML output,
Arturo Borrero
- [libnftables PATCH v2] Basic support for printing nft_data_reg in XML format.,
Arturo Borrero
- [PATCH] - libxt_bpf: use correct shell term in man page description,
Mart Frauenlob
- [PATCH] netfilter: add my copyright statements,
Patrick McHardy
- [PATCH 00/51] netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH 02/51] ipvs: prefer NETDEV_DOWN event to free cached dsts, Pablo Neira Ayuso
- [PATCH 08/51] ipvs: optimize dst usage for real server, Pablo Neira Ayuso
- [PATCH 01/51] ipvs: avoid routing by TOS for real server, Pablo Neira Ayuso
- [PATCH 12/51] ipvs: convert connection locking, Pablo Neira Ayuso
- [PATCH 11/51] ipvs: convert locks used in persistence engines, Pablo Neira Ayuso
- [PATCH 22/51] ipvs: convert nq scheduler to rcu, Pablo Neira Ayuso
- [PATCH 29/51] ipvs: do not expect result from done_service, Pablo Neira Ayuso
- [PATCH 17/51] ipvs: add ip_vs_dest_hold and ip_vs_dest_put, Pablo Neira Ayuso
- [PATCH 38/51] netfilter: make /proc/net/netfilter pernet, Pablo Neira Ayuso
- [PATCH 48/51] netfilter: implement RFC3168 5.3 (ecn protection) for ipv6 fragmentation handling, Pablo Neira Ayuso
- [PATCH 49/51] netfilter: ipv4: propagate routing errors from ip_route_me_harder(), Pablo Neira Ayuso
- [PATCH 46/51] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue, Pablo Neira Ayuso
- [PATCH 51/51] netfilter: nat: propagate errors from xfrm_me_harder(), Pablo Neira Ayuso
- [PATCH 50/51] netfilter: ipv6: propagate routing errors from ip6_route_me_harder(), Pablo Neira Ayuso
- [PATCH 47/51] netfilter: remove unneeded variable proc_net_netfilter, Pablo Neira Ayuso
- [PATCH 27/51] ipvs: convert wrr scheduler to rcu, Pablo Neira Ayuso
- [PATCH 43/51] netfilter: ipt_ULOG: add net namespace support for ipt_ULOG, Pablo Neira Ayuso
- [PATCH 44/51] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log, Pablo Neira Ayuso
- [PATCH 45/51] netfilter: enable per netns support for nf_loggers, Pablo Neira Ayuso
- [PATCH 42/51] netfilter: ebt_ulog: add net namespace support for ebt_ulog, Pablo Neira Ayuso
- [PATCH 40/51] netfilter: ebt_log: add net namespace support for ebt_log, Pablo Neira Ayuso
- [PATCH 39/51] netfilter: nf_log: prepare net namespace support for loggers, Pablo Neira Ayuso
- [PATCH 41/51] netfilter: xt_LOG: add net namespace support for xt_LOG, Pablo Neira Ayuso
- [PATCH 33/51] ipvs: do not disable bh for long time, Pablo Neira Ayuso
- [PATCH 36/51] netfilter: xt_NFQUEUE: coalesce IPv4 and IPv6 hashing, Pablo Neira Ayuso
- [PATCH 37/51] netfilter: fix struct ip6t_frag field description, Pablo Neira Ayuso
- [PATCH 34/51] netfilter: use IS_ENABLE to replace if defined in TRACE target, Pablo Neira Ayuso
- [PATCH 35/51] netfilter: xt_NFQUEUE: introduce CPU fanout, Pablo Neira Ayuso
- [PATCH 32/51] ipvs: convert services to rcu, Pablo Neira Ayuso
- [PATCH 28/51] ipvs: reorganize dest trash, Pablo Neira Ayuso
- [PATCH 26/51] ipvs: convert wlc scheduler to rcu, Pablo Neira Ayuso
- [PATCH 30/51] ipvs: convert sched_lock to spin lock, Pablo Neira Ayuso
- [PATCH 31/51] ipvs: convert dests to rcu, Pablo Neira Ayuso
- [PATCH 25/51] ipvs: convert sh scheduler to rcu, Pablo Neira Ayuso
- [PATCH 23/51] ipvs: convert rr scheduler to rcu, Pablo Neira Ayuso
- [PATCH 21/51] ipvs: convert lc scheduler to rcu, Pablo Neira Ayuso
- [PATCH 24/51] ipvs: convert sed scheduler to rcu, Pablo Neira Ayuso
- [PATCH 10/51] ipvs: remove rs_lock by using RCU, Pablo Neira Ayuso
- [PATCH 20/51] ipvs: convert lblcr scheduler to rcu, Pablo Neira Ayuso
- [PATCH 18/51] ipvs: convert dh scheduler to rcu, Pablo Neira Ayuso
- [PATCH 19/51] ipvs: convert lblc scheduler to rcu, Pablo Neira Ayuso
- [PATCH 09/51] ipvs: convert app locks, Pablo Neira Ayuso
- [PATCH 15/51] ipvs: change ip_vs_sched_lock to mutex, Pablo Neira Ayuso
- [PATCH 04/51] ipvs: rename functions related to dst_cache reset, Pablo Neira Ayuso
- [PATCH 16/51] ipvs: preparations for using rcu in schedulers, Pablo Neira Ayuso
- [PATCH 13/51] ipvs: reorder keys in connection structure, Pablo Neira Ayuso
- [PATCH 07/51] ipvs: consolidate all dst checks on transmit in one place, Pablo Neira Ayuso
- [PATCH 14/51] ipvs: avoid kmem_cache_zalloc in ip_vs_conn_new, Pablo Neira Ayuso
- [PATCH 03/51] ipvs: convert the IP_VS_XMIT macros to functions, Pablo Neira Ayuso
- [PATCH 06/51] ipvs: do not use skb_share_check, Pablo Neira Ayuso
- [PATCH 05/51] ipvs: no need to reroute anymore on DNAT over loopback, Pablo Neira Ayuso
- Re: [PATCH 00/51] netfilter updates for net-next, Julian Anastasov
- Re: [PATCH 00/51] netfilter updates for net-next, David Miller
- [PATCH] xtables: Update copyright time range in license header, Mart Frauenlob
- [PATCH] iptables: Update copyright time range in license header,
Mart Frauenlob
- [PATCH] iptables manpage: Fix missing space for recent match --mask option,
Mart Frauenlob
- [PATCH] netfilter: don't reset nf_trace in nf_reset(),
Patrick McHardy
- [PATCH] netfilter: nf_conntrack_sip: don't drop packets with offsets pointing outside the packet,
Patrick McHardy
- [PATCH 0/3] netfilter: propagate routing and XFRM errors,
Patrick McHardy
- [Ulog2 PATCH] Exec libmnl config check only if nfacct is enabled,
Victor Julien
- [ulogd2] lower netfilter library requirements,
Victor Julien
- [libnftables PATCH] Basic support for printing nft_data_reg in XML format.,
Arturo Borrero
- [PATCH 0/5] netfilter updates for net,
Pablo Neira Ayuso
- [PATCH RFC 0/2] icmpv6: match any ICMPv6 error/informational type,
holger
- How to modify conntrack accounting?,
Ed W
- [libnftables] git repository,
Arturo Borrero Gonzalez
- [nf-next] netfilter: fix struct ip6t_frag field description,
Michal Kubecek
- [libnftables PATCH] src: get and set NFT_*_ATTR_FAMILY,
Arturo Borrero
- [PATCH] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths,
Matthias Schiffer
- [libnftables PATCH 0/2],
Arturo Borrero
- [PATCH iptables] nfnl_osf: use the right nfnetlink lib,
Nicolas Dichtel
- [GIT PULL nf-next] IPVS optimisations for v3.10,
Simon Horman
- [PATCH 03/34] ipvs: prefer NETDEV_DOWN event to free cached dsts, Simon Horman
- [PATCH 31/34] ipvs: convert sched_lock to spin lock, Simon Horman
- [PATCH 32/34] ipvs: convert dests to rcu, Simon Horman
- [PATCH 29/34] ipvs: reorganize dest trash, Simon Horman
- [PATCH 30/34] ipvs: do not expect result from done_service, Simon Horman
- [PATCH 33/34] ipvs: convert services to rcu, Simon Horman
- [PATCH 34/34] ipvs: do not disable bh for long time, Simon Horman
- [PATCH 26/34] ipvs: convert sh scheduler to rcu, Simon Horman
- [PATCH 28/34] ipvs: convert wrr scheduler to rcu, Simon Horman
- [PATCH 21/34] ipvs: convert lblcr scheduler to rcu, Simon Horman
- [PATCH 04/34] ipvs: convert the IP_VS_XMIT macros to functions, Simon Horman
- [PATCH 19/34] ipvs: convert dh scheduler to rcu, Simon Horman
- [PATCH 20/34] ipvs: convert lblc scheduler to rcu, Simon Horman
- [PATCH 17/34] ipvs: preparations for using rcu in schedulers, Simon Horman
- [PATCH 25/34] ipvs: convert sed scheduler to rcu, Simon Horman
- [PATCH 27/34] ipvs: convert wlc scheduler to rcu, Simon Horman
- [PATCH 24/34] ipvs: convert rr scheduler to rcu, Simon Horman
- [PATCH 16/34] ipvs: change ip_vs_sched_lock to mutex, Simon Horman
- [PATCH 18/34] ipvs: add ip_vs_dest_hold and ip_vs_dest_put, Simon Horman
- [PATCH 23/34] ipvs: convert nq scheduler to rcu, Simon Horman
- [PATCH 02/34] ipvs: avoid routing by TOS for real server, Simon Horman
- [PATCH 14/34] ipvs: reorder keys in connection structure, Simon Horman
- [PATCH 08/34] ipvs: consolidate all dst checks on transmit in one place, Simon Horman
- [PATCH 13/34] ipvs: convert connection locking, Simon Horman
- [PATCH 22/34] ipvs: convert lc scheduler to rcu, Simon Horman
- [PATCH 15/34] ipvs: avoid kmem_cache_zalloc in ip_vs_conn_new, Simon Horman
- [PATCH 01/34] net: add skb_dst_set_noref_force, Simon Horman
- [PATCH 10/34] ipvs: convert app locks, Simon Horman
- [PATCH 09/34] ipvs: optimize dst usage for real server, Simon Horman
- [PATCH 12/34] ipvs: convert locks used in persistence engines, Simon Horman
- [PATCH 11/34] ipvs: remove rs_lock by using RCU, Simon Horman
- [PATCH 07/34] ipvs: do not use skb_share_check, Simon Horman
- [PATCH 06/34] ipvs: no need to reroute anymore on DNAT over loopback, Simon Horman
- [PATCH 05/34] ipvs: rename functions related to dst_cache reset, Simon Horman
- Re: [GIT PULL nf-next] IPVS optimisations for v3.10, Pablo Neira Ayuso
- [PATCH 0/2] nf_tables: atomic transactional updates (v2),
pablo
- [PATCH 00/15 v3] IPVS optimizations (repost),
Simon Horman
- [PATCH 03/15] ipvs: prefer NETDEV_DOWN event to free cached dsts, Simon Horman
- [PATCH 14/15] ipvs: reorder keys in connection structure, Simon Horman
- [PATCH 13/15] ipvs: convert connection locking, Simon Horman
- [PATCH 12/15] ipvs: convert locks used in persistence engines, Simon Horman
- [PATCH 11/15] ipvs: remove rs_lock by using RCU, Simon Horman
- [PATCH 15/15] ipvs: avoid kmem_cache_zalloc in ip_vs_conn_new, Simon Horman
- [PATCH 10/15] ipvs: convert app locks, Simon Horman
- [PATCH 07/15] ipvs: do not use skb_share_check, Simon Horman
- [PATCH 08/15] ipvs: consolidate all dst checks on transmit in one place, Simon Horman
- [PATCH 09/15] ipvs: optimize dst usage for real server, Simon Horman
- [PATCH 01/15] net: add skb_dst_set_noref_force, Simon Horman
- [PATCH 05/15] ipvs: rename functions related to dst_cache reset, Simon Horman
- [PATCH 06/15] ipvs: no need to reroute anymore on DNAT over loopback, Simon Horman
- [PATCH 04/15] ipvs: convert the IP_VS_XMIT macros to functions, Simon Horman
- [PATCH 02/15] ipvs: avoid routing by TOS for real server, Simon Horman
- Re: [PATCH 00/15 v3] IPVS optimizations (repost), Simon Horman
- [PATCH v2] net: add ETH_P_802_3_MIN,
Simon Horman
- [PATCH -next] netfilter: nf_conntrack_standalone: fix error return code,
Wei Yongjun
- Question about xt_ipp2p module, Dmitry Korzhevin
- [PATCH] libmnl: Add filtering support to library as a convienience,
Neil Horman
- Android netfilter patches (xt_IDLETIMER) [3/3],
dmitry pervushin
- Android netfilter patches (xt_IDLETIMER) [2/3],
dmitry pervushin
- Android netfilter patches (xt_IDLETIMER) [1/3],
dmitry pervushin
- Android netfilter patches (xt_IDLETIMER) [0/3], dmitry pervushin
- [PATCH 00/12] Netfilter updates for net-next,
pablo
- [PATCH 01/12] netfilter: ip6t_NPT: Use csum_partial(), pablo
- [PATCH 02/12] ipv4: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR, pablo
- [PATCH 03/12] bridge: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR, pablo
- [PATCH 04/12] netfilter: nf_ct_ipv6: use ipv6_iface_scope_id in conntrack to return scope id, pablo
- [PATCH 08/12] ipvs: fix some sparse warnings, pablo
- [PATCH 07/12] ipvs: fix hashing in ip_vs_svc_hashkey, pablo
- [PATCH 09/12] netfilter: ctnetlink: allow to dump expectation per master conntrack, pablo
- [PATCH 10/12] netfilter: nfnetlink_queue: zero copy support, pablo
- [PATCH 12/12] netfilter: nf_conntrack: speed up module removal path if netns in use, pablo
- [PATCH 11/12] netfilter: nf_conntrack: add include to fix sparse warning, pablo
- [PATCH 05/12] netfilter: ebt_ulog: remove unnecessary spin lock protection, pablo
- [PATCH 06/12] netfilter: nfnetlink_queue: use xor hash function to distribute instances, pablo
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- <Possible follow-ups>
- [PATCH 00/12] netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: check return code from nla_parse_tested, Pablo Neira Ayuso
- [PATCH 05/12] ipvs: sloppy TCP and SCTP, Pablo Neira Ayuso
- [PATCH 10/12] kernel: remove unnecessary head file, Pablo Neira Ayuso
- [PATCH 11/12] netns: exclude ipvs from struct net when IPVS disabled, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag, Pablo Neira Ayuso
- [PATCH 09/12] ipvs: add sync_persist_mode flag, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag, Pablo Neira Ayuso
- [PATCH 06/12] ipvs: replace the SCTP state machine, Pablo Neira Ayuso
- [PATCH 08/12] ipvs: SH fallback and L4 hashing, Pablo Neira Ayuso
- [PATCH 07/12] ipvs: drop SCTP connections depending on state, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: nf_conntrack: avoid large timeout for mid-stream pickup, Pablo Neira Ayuso
- [PATCH 04/12] ipvs: provide iph to schedulers, Pablo Neira Ayuso
- Re: [PATCH 00/12] netfilter updates for net-next, David Miller
- [PATCH 00/12] netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: ctnetlink: honor CTA_MARK_MASK when setting ctmark, Pablo Neira Ayuso
- [PATCH 05/12] ipvs: Remove unused variable ret from sync_thread_master(), Pablo Neira Ayuso
- [PATCH 10/12] net: net_cls: move cgroupfs classid handling into core, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: x_tables: lightweight process control group matching, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: xt_CT: fix error value in xt_ct_tg_check(), Pablo Neira Ayuso
- [PATCH 11/12] net: netprio: rename config to be more consistent with cgroup configs, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: ipset: remove unused code, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nf_nat: add full port randomization support, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_conntrack: remove dead code, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nfnetlink_queue: enable UID/GID socket info retrieval, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: add IPv4/6 IPComp extension match support, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: avoid get_random_bytes calls, Pablo Neira Ayuso
- [PATCH 00/12] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: ipset: Alignment problem between 64bit kernel 32bit userspace, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: ipset: Simplify cidr handling for hash:*net* types, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: ipset: Explicitly add padding elements to hash:net, net and hash:net, port, net, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: ipset: Support updating extensions when the set is full, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: ipset: Indicate when /0 networks are supported, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nf_log_ipv6: correct typo in module description, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: ipset: Allocate the proper size of memory when /0 networks are supported, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: combine IPv4 and IPv6 nf_nat_redirect code in one module, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: xt_recent: relax ip_pkt_list_tot restrictions, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: nf_tables_bridge: set the pktinfo for IPv4/IPv6 traffic, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: conntrack: avoid zeroing timer, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nf_tables_bridge: export nft_reject_ip*hdr_validate functions, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- [PATCH 00/12] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: nf_tables: consolidate Kconfig options, Pablo Neira Ayuso
- [PATCH 09/12] bridge: move mac header copying into br_netfilter, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: bridge: move nf_bridge_update_protocol to where its used, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: bridge: move DNAT helper to br_netfilter, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: bridge: refactor conditional in br_nf_dev_queue_xmit, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_tables: limit maximum table name length to 32 bytes, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: nf_tables: consolidate tracing invocations, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nf_tables: cleanup nf_tables.h, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: bridge: rework reject handling, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: nf_tables: minor tracing cleanups, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: ipt_CLUSTERIP: deprecate it in favour of xt_cluster, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: reject: don't send icmp error if csum is invalid, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- [PATCH 00/12] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: nfnetlink_queue: add security context information, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: don't pull include/linux/netfilter.h from netns headers, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: xtables: fix warnings on 32bit platforms, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: Remove spurios included of netfilter.h, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: x_tables: align per cpu xt_counter, Pablo Neira Ayuso
- [PATCH 07/12] net: sched: Simplify em_ipset_match, Pablo Neira Ayuso
- [PATCH 08/12] net: include missing headers in net/net_namespace.h, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: use forward declaration instead of including linux/proc_fs.h, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: xt_socket: add XT_SOCKET_RESTORESKMARK flag, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: bridge: split ipv6 code into separated file, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: Kill unused copies of RCV_SKB_FAIL, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: bridge: rename br_netfilter.c to br_netfilter_hooks.c, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- [PATCH 00/12] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 01/12] netfilter: xt_multiport: Use switch case instead of multiple condition checks, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: nfnetlink_log: Use GFP_NOWARN for skb allocation, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nf_tables: allow expressions to return STOLEN, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: nft_numgen: start round robin from zero, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: nft_meta: permit pkttype mangling in ip/ip6 prerouting, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: nft_ct: add notrack support, Pablo Neira Ayuso
- [PATCH 11/12] netfilter: nf_tables: remove useless U8_MAX validation, Pablo Neira Ayuso
- [PATCH 09/12] netfilter: move socket lookup infrastructure to nf_socket_ipv{4,6}.c, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: nf_queue: place volatile data in own cacheline, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: nf_tables: introduce routing expression, Pablo Neira Ayuso
- [PATCH 07/12] netfilter: nf_tables: add fib expression, Pablo Neira Ayuso
- [PATCH 08/12] netfilter: nf_log: add packet logging for netdev family, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- [PATCH 00/12] Netfilter updates for net-next, Pablo Neira Ayuso
- [PATCH 02/12] netfilter: nf_tables: fix implicit include of module.h, Pablo Neira Ayuso
- [PATCH 03/12] netfilter: nf_tables: drop include of module.h from nf_tables.h, Pablo Neira Ayuso
- [PATCH 05/12] netfilter: use macros to create module aliases., Pablo Neira Ayuso
- [PATCH 09/12] netfilter: nft_ct: Add ct id support, Pablo Neira Ayuso
- [PATCH 12/12] netfilter: slightly optimize nf_inet_addr_mask, Pablo Neira Ayuso
- [PATCH 06/12] netfilter: add API to manage NAT helpers., Pablo Neira Ayuso
- [PATCH 07/12] netfilter: nf_nat: register NAT helpers., Pablo Neira Ayuso
- [PATCH 11/12] netfilter: xt_hashlimit: use struct_size() helper, Pablo Neira Ayuso
- [PATCH 10/12] netfilter: connlabels: fix spelling mistake "trackling" -> "tracking", Pablo Neira Ayuso
- [PATCH 08/12] openvswitch: load and reference the NAT helper., Pablo Neira Ayuso
- [PATCH 01/12] netfilter: nf_tables: relocate header content to consumer, Pablo Neira Ayuso
- [PATCH 04/12] netfilter: conntrack: limit sysctl setting for boolean options, Pablo Neira Ayuso
- Re: [PATCH 00/12] Netfilter updates for net-next, David Miller
- [PATCH nf-next v2 01/10] netfilter: make /proc/net/netfilter pernet,
Gao feng
- [PATCH nf-next v2 03/10] netfilter: ebt_log: add net namespace support for ebt_log, Gao feng
- [PATCH nf-next v2 05/10] netfilter: ebt_ulog: add net namesapce support for ebt_ulog, Gao feng
- [PATCH nf-next v2 04/10] netfilter: xt_LOG: add net namespace support for xt_LOG, Gao feng
- [PATCH nf-next v2 02/10] netfilter: nf_log: prepar net namespace support for nf_log, Gao feng
- [PATCH nf-next v2 06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog, Gao feng
- [PATCH nf-next v2 07/10] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log, Gao feng
- [PATCH nf-next v2 08/10] netfilter: nf_log: enable nflog in un-init net namespace, Gao feng
- [PATCH nf-next v2 10/10] netfilter: remove useless variable proc_net_netfilter, Gao feng
- [PATCH nf-next v2 09/10] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue, Gao feng
- Re: [PATCH nf-next v2 01/10] netfilter: make /proc/net/netfilter pernet, Pablo Neira Ayuso
- [PATCH net-next] netfilter: implement RFC3168 5.3 (ecn protection) for ipv6 fragmentation handling, Hannes Frederic Sowa
- ethernet filtering, Stephen Clark
- [PATCH] netfilter: xt_osf: fix inversion, pablo
- [PATCH 1/2] libxt_osf: fix missing --ttl and --log in save output,
pablo
- [PATCH v2 0/3] NFQUEUE: introduce CPU fanout,
Holger Eitzenberger
- [PATCH] netfilter: nfnetlink_acct: return -EINVAL if object name is empty, pablo
- [PATCH 3/3 nfacct] user space executable changes and additions,
Michael Zintakis
- [PATCH 2/3 libnetfilter_acct] numerous changes and improvements in the user space library, Michael Zintakis
- [PATCH 1/3 nfnetlink_acct] numerous changes and improvements to the kernel code,
Michael Zintakis
- [nftables] Git location for User space utilities,
Vidya Chowdary
- [PATCH -next] netfilter: nfnetlink_queue: fix error return code in nfnetlink_queue_init(),
Wei Yongjun
- [PATCH 1/2] netfilter: reset nf_trace in nf_reset,
Gao feng
- [PATCH] expr: match: fix typo in function name,
Arturo Borrero
- [BUG NFQUEUE] NFQUEUE readers get -PERM from sys_sendto() if !root,
Holger Eitzenberger
- [PATCH 1/2] libip6t_SNPT: add manpage,
pablo
- [announce] - Bash programmable completion for ip[6]tables, Bourne Without
- Drop a packet while keeping the conntrack alive,
Nicolas Maître
- Re: conntrackd: fix IPv6 address pattern, Pablo Neira Ayuso
- [PATCH] ip[6]tables: show --protocol instead of --proto in usage,
Mart Frauenlob
- [PATCH 0/7] netfilter fixes for 3.9-rc,
pablo
- [PATCH 1/2] libip6t_NETMAP: Use xtables_ip6mask_to_cidr and get rid of libip6tc dependency,
pablo
- [PATCH] netfilter: remove unused "config IP_NF_QUEUE",
Paul Bolle
- [PATCH] net: Add socket() system call self test.,
David Miller
- Can we rely on ethernet header padding?,
Michal Kubecek
- [PATCH RFC 0/3] NFQUEUE: introduce CPU fanout,
holger
- [GIT PULL nf-next] IPVS changes for v3.10,
Simon Horman
- [GIT PULL nf v2] IPVS fixes for v3.9,
Simon Horman
- [PATCH 1/2] man/send(2): add EPERM to the list of possible errors,
Fernando Luis Vázquez Cao
- [GIT PULL nf-next] IPVS enhancements for v3.10,
Simon Horman
- [GIT PULL nf] IPVS fixes for v3.9,
Simon Horman
- [PATCH] netfilter: ctnetlink: allow to dump expectation per master conntrack, pablo
- [PATCH nf-next] netfilter: nfnetlink_queue: zero copy support,
Eric Dumazet
- [Ulogd PATCH 0/4] Implement event loss prevention for db output,
Eric Leblond
- [PATCH] nf_conntrack: add include to fix sparse warning,
Stephen Hemminger
- strange result of iptables command under race condition, d tbsky
- [PATCH 1/2] netfilter: nfnetlink_queue: use xor hash function to distribute instances,
pablo
- [libmnl PATCH] doxygen: fix a variable name., Eric Leblond
- [PATCH] netfilter: nf_conntrack: Batch cleanup,
Vladimir Davydov
- Re:a bpf compilation tool for xt_bpf,
Roman Timofeev
- Need a way to match vlan / pcp fields in 802.1q header - from netfilter list, ggeorgiev
- [PATCH net-next] ipv6: use ipv6_iface_scope_id in conntrack to return scope id,
Hannes Frederic Sowa
- [PATCH] bridge: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR,
Silviu-Mihai Popescu
- [PATCH] ipv4: netfilter: use PTR_RET instead of IS_ERR + PTR_ERR,
Silviu-Mihai Popescu
- [PATCH] xtables-addons: build against 3.8.y,
Holger Eitzenberger
- Unable to get NPTv6 to work with kernel 3.8.2,
Matthias Schiffer
- conntrack-tools: dying and unconfirmed list not accessible,
Jan Engelhardt
- NAT64 - Netfilter module, Miguel Alejandro González
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]