Linux TCP/IP Netfilter
[Prev Page][Next Page]
- Re: ulogd packet based logging with CT info
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: ulogd packet based logging with CT info
- From: Blažej Krajňák <blazej.krajnak@xxxxxxxxx>
- Re: ulogd packet based logging with CT info
- From: Blažej Krajňák <blazej.krajnak@xxxxxxxxx>
- Re: ulogd packet based logging with CT info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- ulogd packet based logging with CT info
- From: Blažej Krajňák <blazej.krajnak@xxxxxxxxx>
- nfnetlink_queue -- why linear lookup ?
- From: <alexandre.ferrieux@xxxxxxxxxx>
- Re: nftables - quota isn't working?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables - quota isn't working?
- From: pauloric@xxxxxxxxxxxxxxxx
- nftables - quota isn't working?
- From: pauloric@xxxxxxxxxxxxxxxx
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Harry <simonsharry@xxxxxxxxx>
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Harry <simonsharry@xxxxxxxxx>
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Florian Westphal <fw@xxxxxxxxx>
- Why aren't INPUT and FORWARD chains available to a locally-generated packet?
- From: Harry S <simonsharry@xxxxxxxxx>
- [ANNOUNCE] ipset 7.15 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- which example to use?
- From: Stéphane Charette <stephanecharette@xxxxxxxxx>
- Re: Dropping UDP packets to port 53 containing known domain string?
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Dropping UDP packets to port 53 containing known domain string?
- From: Tom <tom@xxxxxxxxxxx>
- Re: [nft] Regarding `tcp flags` (and a potential bug)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] Regarding `tcp flags` (and a potential bug)
- From: Tom Yan <tom.ty89@xxxxxxxxx>
- [ANNOUNCE] ipset 7.14 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.13 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.13 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.13 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [nft] Regarding `tcp flags` (and a potential bug)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] Regarding `tcp flags` (and a potential bug)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft] Regarding `tcp flags` (and a potential bug)
- From: Tom Yan <tom.ty89@xxxxxxxxx>
- [nft] Regarding `tcp flags` (and a potential bug)
- From: Tom Yan <tom.ty89@xxxxxxxxx>
- [ANNOUNCE] ipset 7.13 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: Dropping UDP packets to port 53 containing known domain string?
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Dropping UDP packets to port 53 containing known domain string?
- From: John Covici <covici@xxxxxxxxxxxxxx>
- Dropping UDP packets to port 53 containing known domain string?
- From: Tom <tom@xxxxxxxxxxx>
- Feature request on ip[6]tables-restore-translate
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: OK, IPv4 vs IPv6 is driving me crazy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: OK, IPv4 vs IPv6 is driving me crazy
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: OK, IPv4 vs IPv6 is driving me crazy
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- OK, IPv4 vs IPv6 is driving me crazy
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: manual : CONNTRACK EXPRESSIONS
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: H.225.0 NAT packet mangling module?
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- Re: H.225.0 NAT packet mangling module?
- From: Akshat Kakkar <akshat.1984@xxxxxxxxx>
- Re: nftables element not in set
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables element not in set
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- manual : CONNTRACK EXPRESSIONS
- From: pauloric@xxxxxxxxxxxxxxxx
- Criticism welcome: nftables rp_filtering in and out
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- OK, I give up.
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Handle a packet by netfilter after traversing a veth pair
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Need two routers in tandem to implement BGP38?
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- ip[6]tables implementation of rf_filter
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Handle a packet by netfilter after traversing a veth pair
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: Netfilter rules to replicate, consume ingress packet locally and forward clone packet
- From: rakesh goyal <goyal.rakesh@xxxxxxxxx>
- Re: Redirect all traffic or range of ports to an IP
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Netfilter rules to replicate, consume ingress packet locally and forward clone packet
- From: rakesh goyal <goyal.rakesh@xxxxxxxxx>
- Re: Redirect all traffic or range of ports to an IP
- From: Daniel <tech@xxxxxxxxxx>
- Redirect all traffic or range of ports to an IP
- From: Daniel <tech@xxxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: Reload IPtables
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Strange behavior of the ctdir option
- From: CoD DoC <coddoc37@xxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: libnetfilter_queue: Access conntrack info
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Reload IPtables
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Re: IP Addresses Changed to Hostnames in IPTables
- Re: IP Addresses Changed to Hostnames in IPTables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: IP Addresses Changed to Hostnames in IPTables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: IP Addresses Changed to Hostnames in IPTables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: IP Addresses Changed to Hostnames in IPTables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- IP Addresses Changed to Hostnames in IPTables
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Alessandro Vesely <vesely@xxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Alessandro Vesely <vesely@xxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Alessandro Vesely <vesely@xxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Alessandro Vesely <vesely@xxxxxxx>
- libnetfilter_queue: Access conntrack info
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Reload IPtables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- Re: Reload IPtables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Reload IPtables
- From: Kerin Millar <kfm@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: Reload IPtables
- Re: Reload IPtables
- From: David Hajes <david@xxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: David Hajes <david@xxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: David Hajes <david@xxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Reload IPtables
- Re: Reload IPtables
- Re: Reload IPtables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Reload IPtables
- Re: Reload IPtables
- From: David Hajes <david@xxxxxxxxx>
- Reload IPtables
- Problem when routing UDP port 53
- From: Pierre Couderc <pierre@xxxxxxxxxx>
- Thanks
- Re: Rules
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Legacy?
- From: Florian Westphal <fw@xxxxxxxxx>
- Legacy?
- Rules
- How to rewrite dest.IP of UDP packets, cloned by TEE target?
- From: Thomas Conrath <conrath@xxxxxxxxx>
- Question regarding licensing terms and compliance
- From: 洪湘晴 <susan60628@xxxxxxxxx>
- Re: Fail-closed option? (Make all policies "drop" by default for newly created namespaces)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables CONFIG_NFT_OBJREF "ct helper set"
- From: Stefan Hartmann <stefanh@xxxxxxxxxxxx>
- #netfilter IRC channel now on libera.chat
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.2.0 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: libnetfilter_conntrack: ABI breakage error
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: libnetfilter_conntrack: ABI breakage error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: libnetfilter_conntrack: ABI breakage error
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: libnetfilter_conntrack: ABI breakage error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- libnetfilter_conntrack: ABI breakage error
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: Possible to load balance (nftlb) mostly NFS traffic with important connections?
- From: Laura García Liébana <nevola@xxxxxxxxx>
- Re: Fail-closed option? (Make all policies "drop" by default for newly created namespaces)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Possible to load balance (nftlb) mostly NFS traffic with important connections?
- From: Carsten Aulbert <carsten.aulbert@xxxxxxxxxx>
- Re: Commas or Spaces?
- From: "" <kfm@xxxxxxxxxxxxx>
- Commas or Spaces?
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Paul Robert Marino <prmarino1@xxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Paul Robert Marino <prmarino1@xxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Re: Running an active/active firewall/router (xt_cluster?)
- From: Paul Robert Marino <prmarino1@xxxxxxxxx>
- Aw: Re: Re: Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Aw: Re: Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Running an active/active firewall/router (xt_cluster?)
- From: Oliver Freyermuth <freyermuth@xxxxxxxxxxxxxxxxxx>
- Forcing SNAT to preserve the original source port
- From: Carsten <abcdmail@xxxxxxxxxx>
- Re: wiki.nftables.org down
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: wiki.nftables.org down
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: wiki.nftables.org down
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- wiki.nftables.org down
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Aw: Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Commas or Spaces?
- nf does not DNAT, but also does not not-NAT
- From: Przemysław Kowalczyk <pkowalczyk@xxxxxxxxxxxx>
- Aw: Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Aw: Re: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: conntrackd inverted NAT address, endianness issue?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Aw: Re: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Aw: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: nftables auto-merge on combined sets
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Aw: Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: nftables equivalent for iptable rules.
- From: R C <cjvijf@xxxxxxxxx>
- Re: nftables equivalent for iptable rules.
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: Why is it impossible to DNAT 127.0.0.0/8?
- From: Paul Robert Marino <prmarino1@xxxxxxxxx>
- nftables equivalent for iptable rules.
- From: R C <cjvijf@xxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Why is it impossible to DNAT 127.0.0.0/8?
- From: "Quentin, Lars" <lars.quentin@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Flowtable with ppp/bridge
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Flowtable with ppp/bridge
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- nftables auto-merge on combined sets
- From: Frömmel, Christian <christian.froemmel@xxxxxxxxxx>
- Re: conntrackd inverted NAT address, endianness issue?
- From: Tao Gong <gongtao0607@xxxxxxxxx>
- Re: nftables support for cgroup v2 filtering by path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: device list reversed
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: device list reversed
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: conntrackd inverted NAT address, endianness issue?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables port forward on DHCP interface to static IP
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables port forward on DHCP interface to static IP
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables port forward on DHCP interface to static IP
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- conntrackd inverted NAT address, endianness issue?
- From: Tao Gong <gongtao0607@xxxxxxxxx>
- Re: nftables port forward on DHCP interface to static IP
- From: Pekka Järvinen <pekka.jarvinen@xxxxxxxxx>
- nftables support for cgroup v2 filtering by path
- From: Yves Perrenoud <yves-netfilter@xxxxxxxxx>
- Re: nftables port forward on DHCP interface to static IP
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- nftables port forward on DHCP interface to static IP
- From: Pekka Järvinen <pekka.jarvinen@xxxxxxxxx>
- Fail-closed option? (Make all policies "drop" by default for newly created namespaces)
- From: mose@xxxxxxxxxxxxxx
- ebtables rules for specific bridge
- From: Ian Pilcher <arequipeno@xxxxxxxxx>
- device list reversed
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- [PATCH nft] evaluate: check if nat statement map specifies a transport header expr
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: List and reimport Ruleset fails with "Error: transport protocol mapping is only valid after transport protocol match"
- From: Florian Westphal <fw@xxxxxxxxx>
- List and reimport Ruleset fails with "Error: transport protocol mapping is only valid after transport protocol match"
- From: Henning Reich <henning.reich@xxxxxxxxx>
- Re: nftables "stateful object" nomenclature
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables "stateful object" nomenclature
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables "stateful object" nomenclature
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nft show counter
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nft show counter
- From: Anton Rieger <rieger@xxxxxxxxx>
- Re: nft show counter
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: nft show counter
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: Aw: Re: Re: nft show counter
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Aw: Re: Re: nft show counter
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Re: nft show counter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft show counter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Re: nft show counter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Re: nft show counter
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: nft show counter
- From: Anton Rieger <rieger@xxxxxxxxx>
- Aw: Re: nft show counter
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- SNAT/Masquerade not modifying the Source IP randomly
- From: Pavan Amancherla <pavan.ramanaiah@xxxxxxxxx>
- Re: nft show counter
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nft show counter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft show counter
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- nft show counter
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: bridge-nf-call-iptables: checking bridge vs. IP context?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: bridge-nf-call-iptables: checking bridge vs. IP context?
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- Re: bridge-nf-call-iptables: checking bridge vs. IP context?
- From: Florian Westphal <fw@xxxxxxxxx>
- bridge-nf-call-iptables: checking bridge vs. IP context?
- From: Linus Lüssing <linus.luessing@xxxxxxxxx>
- RE: Creating named set
- From: <paul.guijt@xxxxxxxxx>
- Re: Creating named set
- From: Florian Westphal <fw@xxxxxxxxx>
- Creating named set
- From: <paul.guijt@xxxxxxxxx>
- Aw: hw flow offload - nft crosscompile
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Script to manage a simple DynDNS whitelist based firewall using nftables
- From: "etkaar" <lists.netfilter.org@xxxxxxx>
- Aw: hw flow offload - nft crosscompile
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- hw flow offload - nft crosscompile
- From: Frank Wunderlich <frank-w@xxxxxxxxxxxxxxx>
- Re: Traffic drops when using flow offload for nftables based NAT
- From: tech <tech@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Startup script for ssdp helper app
- From: Budge <ajebay@xxxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: nfqueue ethernet packet frame capture
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: nfqueue ethernet packet frame capture
- From: ilker <ilkery@xxxxxxxxx>
- Re: nfqueue ethernet packet frame capture
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue ethernet packet frame capture
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nfqueue ethernet packet frame capture
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nfqueue ethernet packet frame capture
- From: ilker <ilkery@xxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Traffic drops when using flow offload for nftables based NAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: How to concatenate subnet with port in a set?
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: How to concatenate subnet with port in a set?
- From: "etkaar" <lists.netfilter.org@xxxxxxx>
- How to troubleshoot (suspected) flowtable lockups/packet drops?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- How to concatenate subnet with port in a set?
- From: "etkaar" <lists.netfilter.org@xxxxxxx>
- Re: wiki.nftables.org Certificate expired
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- wiki.nftables.org Certificate expired
- From: Philipp Rintz <philipp.rintz@xxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Traffic drops when using flow offload for nftables based NAT
- From: tech <tech@xxxxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Stefan Hartmann <stefanh@xxxxxxxxxxxx>
- Re: [HEADS UP] bugzilla.netfilter.org is under maintainance
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: [HEADS UP] bugzilla.netfilter.org is under maintainance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [HEADS UP] bugzilla.netfilter.org is under maintainance
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: when will nftables have ability to delete matching rule like iptables?
- From: Amish V <anon.amish@xxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Florian Westphal <fw@xxxxxxxxx>
- IP MASQUERADE isn't working properly
- From: Ameen Al-Azzawi <ameen.azzawi@xxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Stefan Hartmann <stefanh@xxxxxxxxxxxx>
- Re: when will nftables have ability to delete matching rule like iptables?
- From: "" <kfm@xxxxxxxxxxxxx>
- when will nftables have ability to delete matching rule like iptables?
- From: Amish <anon.amish@xxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Stefan Hartmann <stefanh@xxxxxxxxxxxx>
- Re: nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- nftables carefully open the related-flow: ct state related ct helper "ftp-21" ...
- From: Stefan Hartmann <stefanh@xxxxxxxxxxxx>
- nft_set_type
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: Matching l3mdev output interface in snat
- From: Daniele Orlandi <daniele@xxxxxxxxxxx>
- Matching l3mdev output interface in snat
- From: Daniele Orlandi <daniele@xxxxxxxxxxx>
- iptables masquerade source ip selection issue
- From: Derrick Lim <derrickltl@xxxxxxxxx>
- Re: 'Did not kill' written out when redirecting 'nft list ruleset' in 0.9.8
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- 'Did not kill' written out when redirecting 'nft list ruleset' in 0.9.8
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: libnetfilter_queue : Parsing payload
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- [ANNOUNCE] ipset 7.11 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxx>
- libnetfilter_queue : Parsing payload
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- libnetfilter_queue example
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- iptables-nft: masquerade choosing wrong source ip on lo
- From: Etienne Champetier <champetier.etienne@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Wildcards / large ranges in concatenations
- From: Florian Westphal <fw@xxxxxxxxx>
- Wildcards / large ranges in concatenations
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Initial loading of ruleset slower than subsequent tries
- From: Martin Bochenek <bochi2006@xxxxxxxxx>
- Re: traffic shaping with tc on Linux 5.4.x
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- traffic shaping with tc on Linux 5.4.x
- From: Lars Noodén <lars.nooden@xxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Unable to create a chain called "trace"
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Unable to create a chain called "trace"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Incoming Connections with IPv6 NETMAP for Multiple ISPs Only Work for 1 ISP at a time.
- From: Adam Goldberg <adam@xxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Constraints on nft expressions and statements in inet ingress chains
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Phil Sutter <phil@xxxxxx>
- Re: Constraints on nft expressions and statements in inet ingress chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Constraints on nft expressions and statements in inet ingress chains
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: Unable to create a chain called "trace"
- From: Florian Westphal <fw@xxxxxxxxx>
- Unable to create a chain called "trace"
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- [PATCH nft] trace: do not remove icmp type from packet dump
- From: Florian Westphal <fw@xxxxxxxxx>
- Where is the ICMP *type* information in nft 0.9.8 trace output?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: FTP behind NAT on a non-standard port
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- FTP behind NAT on a non-standard port
- From: mikhalich123 <mikhalich123@xxxxxxxxx>
- Re: nftables typeof concatenation support for vmap?
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables typeof concatenation support for vmap?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables typeof concatenation support for vmap?
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: nftables typeof concatenation support for vmap?
- From: Laura García Liébana <nevola@xxxxxxxxx>
- nftables typeof concatenation support for vmap?
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- [ERROR] inject-add2: File exists / [ERROR] inject-upd2: Device or resource busy
- From: Bernd Naumann <bena@xxxxxxxxxxxxxxx>
- Re: parser problem in range map?
- From: Florian Westphal <fw@xxxxxxxxx>
- parser problem in range map?
- From: Andreas Schultz <andreas.schultz@xxxxxxxxxxxxxx>
- RE: Use case of nftables + Linux combination as network firewall
- From: "Eliezer Croitoru" <ngtech1ltd@xxxxxxxxx>
- libnetfilter_queue needs libnfnetlink?
- From: Psyspy 22 <psyspy2020@xxxxxxxxx>
- Re: Use case of nftables + Linux combination as network firewall
- From: Younwook Jang <younwook@xxxxxxxxx>
- Re: Use case of nftables + Linux combination as network firewall
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Use case of nftables + Linux combination as network firewall
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Use case of nftables + Linux combination as network firewall
- From: Younwook Jang <younwook@xxxxxxxxx>
- Re: Migrate ipsets to nftables
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Migrate ipsets to nftables
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- Re: Migrate ipsets to nftables
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: How to edit nftables wiki pages?
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Migrate ipsets to nftables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Migrate ipsets to nftables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Migrate ipsets to nftables
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- where in kernel is conntrack-matching done?
- From: linux-netfilter-list@xxxxxxxxxxxxxxxxxx
- [ANNOUNCE] iptables 1.8.7 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.8 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables: counters in sets missing from nft --json output
- From: Julian Somers <juliansomers@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- RE: Matching streaming services
- From: "Eliezer Croitoru" <ngtech1ltd@xxxxxxxxx>
- Re: Matching streaming services
- From: pauloric@xxxxxxxxxxxxxxxx
- Re: Matching streaming services
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- Re: Matching streaming services
- From: "david@xxxxxxxxx" <david@xxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Matching streaming services
- From: "david@xxxxxxxxx" <david@xxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Matching streaming services
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- Re: nftables with dinamic ip6
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables with dinamic ip6
- From: Paulo Ricardo Bruck <paulobruck1@xxxxxxxxx>
- BUG: IPv4 conntrack reassembles forwarded packets
- From: Christian Perle <christian.perle@xxxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- How to edit nftables wiki pages?
- From: Jay Tuckey <jay@tuckey.email>
- [PATCH libnetfilter_conntrack] examples: check return value of nfct_nlmsg_build()
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: Correction to nftables wiki
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: "" <kfm@xxxxxxxxxxxxx>
- Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- Re: First packet NAT flow
- From: Rafael Ganascim <rganascim@xxxxxxxxx>
- Re: First packet NAT flow
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ipset 7.10 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- First packet NAT flow
- From: Rafael Ganascim <rganascim@xxxxxxxxx>
- Re: ipset 7.9 compilation fix on kernel 4.14
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Flowtable in a load balancer
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Assistance to troubleshoot nf_nat bug
- From: Mathew Heard <mat999@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: NAT table seems to be skipped for TCP traffic
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: NAT table seems to be skipped for TCP traffic
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- NAT table seems to be skipped for TCP traffic
- From: Nicholas Amon <nicholasamon@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- [FYI] summary of Netfilter workshop 2020 virtual
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: nftables "meta priority set" not working
- From: Daniel Lakeland <dlakelan@xxxxxxxxxxxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: How to Unblock IP Address of Email Client in Linux iptables Firewall in Linux Mail Server
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- nftables "meta priority set" not working
- From: Daniel Lakeland <dlakelan@xxxxxxxxxxxxxxxxxx>
- Re: mistakes on wiki
- From: Florian Westphal <fw@xxxxxxxxx>
- mistakes on wiki
- From: bbmt <bbmt@xxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Aw: connlimit allows more established conns than the limit set
- From: Hildegard Meier <daku8938@xxxxxx>
- Re: FYI - how to use libnftables in python
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- FYI - how to use libnftables in python
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [nftables] cross compiling for arm-linux-gnueabihf?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] cross compiling for arm-linux-gnueabihf?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] frame rate limiting clashing with log rate limiting (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Filtering and counting traffic based on the ethernet address
- From: Jonathan Horn <jonathan.horn97@xxxxxxxxxxxxxx>
- vmap declaration style
- From: Kyle Rose <krose@xxxxxxxxx>
- connlimit allows more established conns than the limit set
- From: Hildegard Meier <daku8938@xxxxxx>
- Re: Trying to provision flowtable returns error
- From: Gordon Fisher <gordfisherman@xxxxxxxxx>
- Ethernet headers in pcap files generated by ulogd2
- From: "Ririsoft" <riri@xxxxxxxxxxxx>
- How to update timeout of a map element?
- From: Piotr Jurkiewicz <piotr.jerzy.jurkiewicz@xxxxxxxxx>
- IP MASQUERADE isn't being applied on all outgoing packets.
- From: Ameen Al-Azzawi <ameen.azzawi@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Pure iptables solution for DNS/socks5/http forwarding/transparent proxy in docker environment.
- From: Hongyi Zhao <hongyi.zhao@xxxxxxxxx>
- RE: Use the socks5 proxy sever running in the host network from the docker container.
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Use the socks5 proxy sever running in the host network from the docker container.
- From: Hongyi Zhao <hongyi.zhao@xxxxxxxxx>
- [ANNOUNCE] iptables 1.8.6 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Wiki inaccuracy regarding the 'redirect' statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftable rule for VRRP traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftable rule for VRRP traffic
- From: "Wang, Lihua" <lwang2@xxxxxxxxxxx>
- Wiki inaccuracy regarding the 'redirect' statement
- From: dirdi <lists@xxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.7 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.8 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [UPDATES] Renewing Netfilter coreteam PGP keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables iifname and currently unknown interfaces
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "Ramsay, Lincoln" <Lincoln.Ramsay@xxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- cannot use != with ct status
- From: "Ramsay, Lincoln" <Lincoln.Ramsay@xxxxxxxx>
- Re: [nftables] Log to DNAT rule
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables] Log to DNAT rule
- From: Alberto <alberto@xxxxxxxxxxx>
- RE: [nftables] Log to DNAT rule
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- [nftables] Log to DNAT rule
- From: Alberto <alberto@xxxxxxxxxxx>
- RE: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: <paul.guijt@xxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Bernd Naumann <bena@xxxxxxxxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Bernd Naumann <bena@xxxxxxxxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Florian Westphal <fw@xxxxxxxxx>
- Newbie: IPv6 equivalent of 192.168.178.0/24
- From: <paul.guijt@xxxxxxxxx>
- RE: [nftables] granular rule for combined tcp & udp sports?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- ulogd2 Error while running
- From: Amiq Nahas <m992493@xxxxxxxxx>
- [nftables] frame logging with vmap?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: nftables cgroup accounting problem
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: nftables cgroup accounting problem
- From: Daniel <tech@xxxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Laura García Liébana <nevola@xxxxxxxxx>
- Re: nftables cgroup accounting problem
- From: Daniel <tech@xxxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Emilio Augusto Lazo Zaia <emiliolazozaia@xxxxxxxxx>
- stress testing 40Gbps linux bridge with Mpps - is HFSC a bottleneck?
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- end iptables support
- From: Emilio Augusto Lazo Zaia <emiliolazozaia@xxxxxxxxx>
- nftables cgroup accounting problem
- Re: Redirect traffic to openvpn (client)
- From: alberto bersol <alberto@xxxxxxxxxxx>
- Re: Redirect traffic to openvpn (client)
- From: VDRU VDRU <user.vdr@xxxxxxxxx>
- [nftables] multi-level rate limiting with dynamic set
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Redirect traffic to openvpn (client)
- From: Alberto <alberto@xxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: NFTables: Can not add logs
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: NFTables: Can not add logs
- From: Florian Westphal <fw@xxxxxxxxx>
- NFTables: Can not add logs
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Eric Peterson <netminder@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Compiling nft-0.9.6
- From: "Rob Sterenborg (Lists)" <lists@xxxxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Compiling nft-0.9.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Compiling nft-0.9.6
- From: "Rob Sterenborg (Lists)" <lists@xxxxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] possible to utilise sets across different tables?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
- Re: [nftables] possible to utilise sets across different tables?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] log flood protection?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: Surprising CONNMARK behaviors
- From: Glen Huang <heyhgl@xxxxxxxxx>
- Surprising CONNMARK behaviors
- From: Glen Huang <heyhgl@xxxxxxxxx>
- Re: Howto 2 ipv6 nets, one through ipv4 tun vpn
- From: Daniel <tech@xxxxxxxxxx>
- RE: nftables map with numgen type, not sure if it was implemented?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Rule Count limit
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Rule Count limit
- From: Jevin Gala <jevin@xxxxxxxxxxxxxxx>
- nftables: Define variable with IPv6 suffix match in nft script
- From: Fred F <frederik.vogelsang@xxxxxxxxx>
- [nftables] possible to utilise sets across different tables?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Howto 2 ipv6 nets, one through ipv4 tun vpn
- From: Daniel <tech@xxxxxxxxxx>
- Re: HELP rules nftables conntrack works
- From: "" <kfm@xxxxxxxxxxxxx>
- HELP rules nftables conntrack works
- From: Luis Mario Niedas Hernández <lmniedas@xxxxxxxxx>
- Re: nft snat with maps for port ranges?
- From: Jacek Kowalski <jacek@xxxxxxxxxxx>
- nft snat with maps for port ranges?
- From: Jacek Kowalski <jacek@xxxxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Florian Westphal <fw@xxxxxxxxx>
- No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- 'meta mark' and 'meta mark set' -- any restrictions on their use ?
- From: Chris Hall <nftables@xxxxxxx>
- Re: Error adding a DNAT rule
- From: Daniel <tech@xxxxxxxxxx>
- Error adding a DNAT rule
- From: vikaig <vikaig99@xxxxxxxxx>
- Is the concept of BROUTING deprecated and what is the modern alternative?
- From: Pyry Kontio <pyry.kontio@xxxxxxxx>
- Re: Filter based on string (or other content)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: "K. de Jong" <kees.dejong@xxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Filter based on string (or other content)
- From: "K. de Jong" <kees.dejong@xxxxxxxxxx>
- nftable - set in diffrent file
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- nftable with sets in diffrent files
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- synproxy with NAT
- From: Devin Bayer <dev@xxxxxxxxx>
- meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <nftables@xxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <nftables@xxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <netfilter@xxxxxxx>
- Re: netfilter_queue tutorial
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Mikhail Morfikov <mmorfikov@xxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Nftables rules change when network interfaces disappear
- From: Mikhail Morfikov <mmorfikov@xxxxxxxxx>
- netfilter_queue tutorial
- From: Tomasz W <tomaszw104@xxxxxxxxx>
- inserting rule at the top of the chain using libnftnl
- From: JM <jeevhi@xxxxxxxxx>
- Re: Nftables src NAT with port range allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables map with numgen type, not sure if it was implemented?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Re: nftables destination ip rewrite - checksum recalculation
- From: "Greenberg, Paul" <greenbergp@xxxxxxx>
- integrating netfilter_queue
- From: Tomasz W <tomaszw104@xxxxxxxxx>
- Re: nftables destination ip rewrite - checksum recalculation
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables destination ip rewrite - checksum recalculation
- From: "Greenberg, Paul" <greenbergp@xxxxxxx>
- Nftables src NAT with port range allocation
- From: Joshua Moore <ridgebacktech@xxxxxxxxx>
- Nftables src NAT with port range allocation
- From: Joshua Moore <ridgebacktech@xxxxxxxxx>
- nftables map with numgen type, not sure if it was implemented?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Multiple labels with connlabel
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: How deactivate a rule using nft cli?
- From: "" <kfm@xxxxxxxxxxxxx>
- How deactivate a rule using nft cli?
- From: Luis Mario Niedas Hernández <lmniedas@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Multiple labels with connlabel
- From: Amiq Nahas <m992493@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- Load Balancing WAN connections with nftables
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: 50k rules and performance issue in nft list table AND iptables-nft
- From: Ricardo Katz <ricardo.katz@xxxxxxxxx>
- Re: 50k rules and performance issue in nft list table AND iptables-nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]