Linux TCP/IP Netfilter
[Prev Page][Next Page]
- [ANNOUNCE] iptables 1.8.7 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.8 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.9 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables: counters in sets missing from nft --json output
- From: Julian Somers <juliansomers@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: NFULNL_CFG_F_CONNTRACK and IPv6
- From: Florian Westphal <fw@xxxxxxxxx>
- NFULNL_CFG_F_CONNTRACK and IPv6
- From: "Rafael David Tinoco" <rafaeldtinoco@xxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- RE: Matching streaming services
- From: "Eliezer Croitoru" <ngtech1ltd@xxxxxxxxx>
- Re: Matching streaming services
- From: pauloric@xxxxxxxxxxxxxxxx
- Re: Matching streaming services
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- Re: Matching streaming services
- From: "david@xxxxxxxxx" <david@xxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Matching streaming services
- From: "david@xxxxxxxxx" <david@xxxxxxxxx>
- Re: Matching streaming services
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Matching streaming services
- From: Nikolai Lusan <nikolai@xxxxxxxxxxx>
- Re: nftables with dinamic ip6
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables with dinamic ip6
- From: Paulo Ricardo Bruck <paulobruck1@xxxxxxxxx>
- BUG: IPv4 conntrack reassembles forwarded packets
- From: Christian Perle <christian.perle@xxxxxxxxxxx>
- Re: nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- How to edit nftables wiki pages?
- From: Jay Tuckey <jay@tuckey.email>
- [PATCH libnetfilter_conntrack] examples: check return value of nfct_nlmsg_build()
- From: Eyal Birger <eyal.birger@xxxxxxxxx>
- Re: Correction to nftables wiki
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- Re: Correction to nftables wiki
- From: "" <kfm@xxxxxxxxxxxxx>
- Correction to nftables wiki
- From: Brian Pond <brian@xxxxxxxxxxxxx>
- Re: First packet NAT flow
- From: Rafael Ganascim <rganascim@xxxxxxxxx>
- Re: First packet NAT flow
- From: Florian Westphal <fw@xxxxxxxxx>
- [ANNOUNCE] ipset 7.10 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- First packet NAT flow
- From: Rafael Ganascim <rganascim@xxxxxxxxx>
- Re: ipset 7.9 compilation fix on kernel 4.14
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- nftables Set Bug with interval & timeout Flags
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Flowtable in a load balancer
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Ed W <lists@xxxxxxxxxxxxxx>
- Assistance to troubleshoot nf_nat bug
- From: Mathew Heard <mat999@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: NAT table seems to be skipped for TCP traffic
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: NAT table seems to be skipped for TCP traffic
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- NAT table seems to be skipped for TCP traffic
- From: Nicholas Amon <nicholasamon@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- RE: re-routing multicast pkts after mangle table marking
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- Re: re-routing multicast pkts after mangle table marking
- From: Marcin Szewczyk <marcin.szewczyk@xxxxxxxxx>
- [FYI] summary of Netfilter workshop 2020 virtual
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: nftables "meta priority set" not working
- From: Daniel Lakeland <dlakelan@xxxxxxxxxxxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: FTFW with multicast not working properly
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- FTFW with multicast not working properly
- From: Jean-Sébastien Frerot <jsfrerot@xxxxxxxxx>
- Re: How to Unblock IP Address of Email Client in Linux iptables Firewall in Linux Mail Server
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- nftables "meta priority set" not working
- From: Daniel Lakeland <dlakelan@xxxxxxxxxxxxxxxxxx>
- Re: mistakes on wiki
- From: Florian Westphal <fw@xxxxxxxxx>
- mistakes on wiki
- From: bbmt <bbmt@xxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] frame rate limiting per day/minute not working (bug ?)
- From: "" <kfm@xxxxxxxxxxxxx>
- Aw: connlimit allows more established conns than the limit set
- From: Hildegard Meier <daku8938@xxxxxx>
- Re: FYI - how to use libnftables in python
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- FYI - how to use libnftables in python
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Neutron Soutmun <neo.neutron@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 7.8 released
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [ANNOUNCE] ipset 7.8 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [nftables] cross compiling for arm-linux-gnueabihf?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] cross compiling for arm-linux-gnueabihf?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] frame rate limiting per day/minute not working (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] frame rate limiting clashing with log rate limiting (bug ?)
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Filtering and counting traffic based on the ethernet address
- From: Jonathan Horn <jonathan.horn97@xxxxxxxxxxxxxx>
- vmap declaration style
- From: Kyle Rose <krose@xxxxxxxxx>
- connlimit allows more established conns than the limit set
- From: Hildegard Meier <daku8938@xxxxxx>
- Re: Trying to provision flowtable returns error
- From: Gordon Fisher <gordfisherman@xxxxxxxxx>
- Ethernet headers in pcap files generated by ulogd2
- From: "Ririsoft" <riri@xxxxxxxxxxxx>
- How to update timeout of a map element?
- From: Piotr Jurkiewicz <piotr.jerzy.jurkiewicz@xxxxxxxxx>
- IP MASQUERADE isn't being applied on all outgoing packets.
- From: Ameen Al-Azzawi <ameen.azzawi@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: Trying to provision flowtable returns error
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Trying to provision flowtable returns error
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Pure iptables solution for DNS/socks5/http forwarding/transparent proxy in docker environment.
- From: Hongyi Zhao <hongyi.zhao@xxxxxxxxx>
- RE: Use the socks5 proxy sever running in the host network from the docker container.
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Use the socks5 proxy sever running in the host network from the docker container.
- From: Hongyi Zhao <hongyi.zhao@xxxxxxxxx>
- [ANNOUNCE] iptables 1.8.6 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Wiki inaccuracy regarding the 'redirect' statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftable rule for VRRP traffic
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftable rule for VRRP traffic
- From: "Wang, Lihua" <lwang2@xxxxxxxxxxx>
- Wiki inaccuracy regarding the 'redirect' statement
- From: dirdi <lists@xxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.7 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.8 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [UPDATES] Renewing Netfilter coreteam PGP keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables iifname and currently unknown interfaces
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables iifname and currently unknown interfaces
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "Ramsay, Lincoln" <Lincoln.Ramsay@xxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot use != with ct status
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- cannot use != with ct status
- From: "Ramsay, Lincoln" <Lincoln.Ramsay@xxxxxxxx>
- Re: [nftables] Log to DNAT rule
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables] Log to DNAT rule
- From: Alberto <alberto@xxxxxxxxxxx>
- RE: [nftables] Log to DNAT rule
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- [nftables] Log to DNAT rule
- From: Alberto <alberto@xxxxxxxxxxx>
- RE: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: <paul.guijt@xxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Bernd Naumann <bena@xxxxxxxxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Bernd Naumann <bena@xxxxxxxxxxxxxxx>
- Re: Newbie: IPv6 equivalent of 192.168.178.0/24
- From: Florian Westphal <fw@xxxxxxxxx>
- Newbie: IPv6 equivalent of 192.168.178.0/24
- From: <paul.guijt@xxxxxxxxx>
- RE: [nftables] granular rule for combined tcp & udp sports?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- ulogd2 Error while running
- From: Amiq Nahas <m992493@xxxxxxxxx>
- [nftables] frame logging with vmap?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] granular rule for combined tcp & udp sports?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: nftables cgroup accounting problem
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: nftables cgroup accounting problem
- From: Daniel <tech@xxxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Laura García Liébana <nevola@xxxxxxxxx>
- Re: nftables cgroup accounting problem
- From: Daniel <tech@xxxxxxxxxx>
- Re: nftables cgroup accounting problem
- Re: end iptables support
- From: Emilio Augusto Lazo Zaia <emiliolazozaia@xxxxxxxxx>
- stress testing 40Gbps linux bridge with Mpps - is HFSC a bottleneck?
- Re: end iptables support
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- end iptables support
- From: Emilio Augusto Lazo Zaia <emiliolazozaia@xxxxxxxxx>
- nftables cgroup accounting problem
- Re: Redirect traffic to openvpn (client)
- From: alberto bersol <alberto@xxxxxxxxxxx>
- Re: Redirect traffic to openvpn (client)
- From: VDRU VDRU <user.vdr@xxxxxxxxx>
- [nftables] multi-level rate limiting with dynamic set
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Redirect traffic to openvpn (client)
- From: Alberto <alberto@xxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: NFTables: Can not add logs
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- [nftables] icmp type rate limiting - cumulative for the daddr or selectively per saddr?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: NFTables: Can not add logs
- From: Florian Westphal <fw@xxxxxxxxx>
- NFTables: Can not add logs
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- [nftables] packet (filtering) flow NIC vs. PPPoE?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Eric Peterson <netminder@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: meter directive
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Compiling nft-0.9.6
- From: "Rob Sterenborg (Lists)" <lists@xxxxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Compiling nft-0.9.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Compiling nft-0.9.6
- From: "Rob Sterenborg (Lists)" <lists@xxxxxxxxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- rate limit SIP INVITES
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] sets update concatenation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] sets update concatenation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] possible to utilise sets across different tables?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
- Re: [nftables] possible to utilise sets across different tables?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] log flood protection?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nftables] log flood protection?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: Surprising CONNMARK behaviors
- From: Glen Huang <heyhgl@xxxxxxxxx>
- Surprising CONNMARK behaviors
- From: Glen Huang <heyhgl@xxxxxxxxx>
- Re: Howto 2 ipv6 nets, one through ipv4 tun vpn
- From: Daniel <tech@xxxxxxxxxx>
- RE: nftables map with numgen type, not sure if it was implemented?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Rule Count limit
- From: "Neal P. Murphy" <neal.p.murphy@xxxxxxxxxxxx>
- Rule Count limit
- From: Jevin Gala <jevin@xxxxxxxxxxxxxxx>
- nftables: Define variable with IPv6 suffix match in nft script
- From: Fred F <frederik.vogelsang@xxxxxxxxx>
- [nftables] possible to utilise sets across different tables?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables] netdev rate limiting | timeouts rfq
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nftables] netdev rate limiting | timeouts rfq
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Howto 2 ipv6 nets, one through ipv4 tun vpn
- From: Daniel <tech@xxxxxxxxxx>
- Re: HELP rules nftables conntrack works
- From: "" <kfm@xxxxxxxxxxxxx>
- HELP rules nftables conntrack works
- From: Luis Mario Niedas Hernández <lmniedas@xxxxxxxxx>
- Re: nft snat with maps for port ranges?
- From: Jacek Kowalski <jacek@xxxxxxxxxxx>
- nft snat with maps for port ranges?
- From: Jacek Kowalski <jacek@xxxxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- Re: No interval possible on Concatenation-Sets
- From: Florian Westphal <fw@xxxxxxxxx>
- No interval possible on Concatenation-Sets
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- 'meta mark' and 'meta mark set' -- any restrictions on their use ?
- From: Chris Hall <nftables@xxxxxxx>
- Re: Error adding a DNAT rule
- From: Daniel <tech@xxxxxxxxxx>
- Error adding a DNAT rule
- From: vikaig <vikaig99@xxxxxxxxx>
- Is the concept of BROUTING deprecated and what is the modern alternative?
- From: Pyry Kontio <pyry.kontio@xxxxxxxx>
- Re: Filter based on string (or other content)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: "K. de Jong" <kees.dejong@xxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: Filter based on string (or other content)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Filter based on string (or other content)
- From: "K. de Jong" <kees.dejong@xxxxxxxxxx>
- nftable - set in diffrent file
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- nftable with sets in diffrent files
- From: Siebzehn <siebzehntausend@xxxxxxxxx>
- synproxy with NAT
- From: Devin Bayer <dev@xxxxxxxxx>
- meter directive
- From: Devin Bayer <dev@xxxxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <nftables@xxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <nftables@xxxxxxx>
- Re: Failing to construct a 'set' for TCP Flag filtering.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Failing to construct a 'set' for TCP Flag filtering.
- From: Chris Hall <netfilter@xxxxxxx>
- Re: netfilter_queue tutorial
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Mikhail Morfikov <mmorfikov@xxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: Nftables rules change when network interfaces disappear
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Nftables rules change when network interfaces disappear
- From: Mikhail Morfikov <mmorfikov@xxxxxxxxx>
- netfilter_queue tutorial
- From: Tomasz W <tomaszw104@xxxxxxxxx>
- inserting rule at the top of the chain using libnftnl
- From: JM <jeevhi@xxxxxxxxx>
- Re: Nftables src NAT with port range allocation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables map with numgen type, not sure if it was implemented?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Re: nftables destination ip rewrite - checksum recalculation
- From: "Greenberg, Paul" <greenbergp@xxxxxxx>
- integrating netfilter_queue
- From: Tomasz W <tomaszw104@xxxxxxxxx>
- Re: nftables destination ip rewrite - checksum recalculation
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables destination ip rewrite - checksum recalculation
- From: "Greenberg, Paul" <greenbergp@xxxxxxx>
- Nftables src NAT with port range allocation
- From: Joshua Moore <ridgebacktech@xxxxxxxxx>
- Nftables src NAT with port range allocation
- From: Joshua Moore <ridgebacktech@xxxxxxxxx>
- nftables map with numgen type, not sure if it was implemented?
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Multiple labels with connlabel
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: How deactivate a rule using nft cli?
- From: "" <kfm@xxxxxxxxxxxxx>
- How deactivate a rule using nft cli?
- From: Luis Mario Niedas Hernández <lmniedas@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Multiple labels with connlabel
- From: Amiq Nahas <m992493@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: "" <kfm@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Balazs Scheidler <bazsi77@xxxxxxxxx>
- Load Balancing WAN connections with nftables
- From: "Eliezer Croitor" <ngtech1ltd@xxxxxxxxx>
- Re: Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Explanation of 2 Rules
- From: Thomas Luening <toml@xxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: 50k rules and performance issue in nft list table AND iptables-nft
- From: Ricardo Katz <ricardo.katz@xxxxxxxxx>
- Re: 50k rules and performance issue in nft list table AND iptables-nft
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Fwd: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
- Re: Grammar in a bash script
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
- Re: Grammar in a bash script
- From: A L <mail@xxxxxxxxxxxxxx>
- Re: Issue migrating "iptables -m socket --transparent" into nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Use ipset and conntrack with nftables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Use ipset and conntrack with nftables
- From: Amiq Nahas <m992493@xxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario V Guenzi <jclark@xxxxxxxxxx>
- Re: Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: Issue migrating "iptables -m socket --transparent" into nftables
- From: Florian Westphal <fw@xxxxxxxxx>
- Issue migrating "iptables -m socket --transparent" into nftables
- From: Nirgal Vourgère <contact_vgernf@xxxxxxxxxx>
- Re: error using variable for network device name in 'hook ingress device $external_interface'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: error using variable for network device name in 'hook ingress device $external_interface'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: error using variable for network device name in 'hook ingress device $external_interface'
- From: Daniel <tech@xxxxxxxxxx>
- Re: Grammar in a bash script
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Grammar in a bash script
- From: Mario V Guenzi <jclark@xxxxxxxxxx>
- Grammar in a bash script
- From: Mario V Guenzi <jclark@xxxxxxxxxx>
- error using variable for network device name in 'hook ingress device $external_interface'
- From: Grant C <grant@xxxxxxx>
- Re: Nftables 2 WAN
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Nftables 2 WAN
- From: Daniel <tech@xxxxxxxxxx>
- Re: Nftables 2 WAN
- From: Daniel <tech@xxxxxxxxxx>
- Re: Nftables 2 WAN
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- 50k rules and performance issue in nft list table AND iptables-nft
- From: Ricardo Katz <ricardo.katz@xxxxxxxxx>
- Re: Nftables 2 WAN
- From: Daniel <tech@xxxxxxxxxx>
- Nftables 2 WAN
- From: Daniel <tech@xxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Daniel <tech@xxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: Is it possible to change a chains default policy when rules are already present?
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Florian Westphal <fw@xxxxxxxxx>
- RE: Is it possible to change a chains default policy when rules are already present?
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Daniel <tech@xxxxxxxxxx>
- RE: Is it possible to change a chains default policy when rules are already present?
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Daniel <tech@xxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ingress hook on interface with multiple addresses ?
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- RE: Is it possible to change a chains default policy when rules are already present?
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Is it possible to change a chains default policy when rules are already present?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Is it possible to change a chains default policy when rules are already present?
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: ingress hook on interface with multiple addresses ?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: ingress hook on interface with multiple addresses ?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ingress hook on interface with multiple addresses ?
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: ingress hook on interface with multiple addresses ?
- From: Florian Westphal <fw@xxxxxxxxx>
- ingress hook on interface with multiple addresses ?
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Re: Correct syntax for dnat in inet table?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Correct syntax for dnat in inet table?
- From: "" <kfm@xxxxxxxxxxxxx>
- Correct syntax for dnat in inet table?
- From: Frank-Ulrich Sommer <orofuhin@xxxxxxxxx>
- nft arp
- From: Dennis G <omj2kv@xxxxxxxxx>
- Re: usings sets as input to sets
- From: harald@xxxxxxxxxxxxxxxxxxxxx
- Re: usings sets as input to sets
- From: Florian Westphal <fw@xxxxxxxxx>
- iptables: Log dropped packages due to missing ports when using masquerading
- From: Janosch Maier <janosch@xxxxxxxxxxxxxxxxxxxxxx>
- iptables: Log dropped packages due to missing ports when using masquerading
- From: Janosch Maier <janosch@xxxxxxxxxxxxxxxxxxxxxx>
- usings sets as input to sets
- From: harald@xxxxxxxxxxxxxxxxxxxxx
- iptables by cgroup path no longer works after starting Docker or KVM
- From: Outvi V <i@xxxxxxx>
- No packets appear in ulogd.log
- From: "Austin Chamberlin" <austinchamberlin@xxxxxxxxxxxx>
- RE: not able to set ct state rule
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: not able to set ct state rule
- From: Florian Westphal <fw@xxxxxxxxx>
- not able to set ct state rule
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: "Timo Sigurdsson" <public_timo.s@xxxxxxxxxxxxxx>
- Raw table on NFT
- From: Cristian Cardoso <cristian.cardoso11@xxxxxxxxx>
- sets must have more than 2 elements , and can't "include" a set
- From: sean darcy <seandarcy2@xxxxxxxxx>
- Plan B on BCP-38 implementation in NFTABLES
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: nftables: masquerading not applied consistently
- From: Thilo-Alexander Ginkel <thilo@xxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: masquerading not applied consistently
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: nftables: masquerading not applied consistently
- From: Thilo-Alexander Ginkel <thilo@xxxxxxxxxx>
- Re: nftables: masquerading not applied consistently
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables: masquerading not applied consistently
- From: Thilo-Alexander Ginkel <thilo@xxxxxxxxxx>
- RE: libnftnl vlan type filter
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Re: nftables: Counters Not Working with Sets of Type Interval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables: Set Elements Listing: One Per Line
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- nftables: Counters Not Working with Sets of Type Interval
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- iptables-nft and unsused default chains
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: iptables-nft replacement for /proc/net/ip_tables_names
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: libnftnl vlan type filter
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: iptables-nft replacement for /proc/net/ip_tables_names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: IP masquerading not applied in TCP retransmission packets
- From: Aleksander Morgado <aleksander@xxxxxxxxxxxxx>
- Re: IP masquerading not applied in TCP retransmission packets
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- IP masquerading not applied in TCP retransmission packets
- From: Aleksander Morgado <aleksander@xxxxxxxxxxxxx>
- Re: iptables-nft replacement for /proc/net/ip_tables_names
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- iptables-nft replacement for /proc/net/ip_tables_names
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Moving from ipset to nftables: Sets not ready for prime time yet?
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- libnftnl vlan type filter
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxxxxxxxxxxxxxx>
- Moving from ipset to nftables: Sets not ready for prime time yet?
- From: "Timo Sigurdsson" <public_timo.s@xxxxxxxxxxxxxx>
- Re: nftables and connection tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: Filter source IP with UDP/514 destination port and change to UDP/9000
- From: Alessandro Vesely <vesely@xxxxxxx>
- Re: nftables and connection tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Filter source IP with UDP/514 destination port and change to UDP/9000
- From: Roberto Carna <robertocarna36@xxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: Hooman Mohajeri <mailinglister.hooman@xxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: Hooman <mailinglister.hooman@xxxxxxxxx>
- iptables hashlimit scrip and srcport
- From: jamez <djamez@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Is it possible to get a transparent proxy with Redsocks when using the new nftables?
- From: Verachten Bruno <gounthar@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- RE: callback on adding tables from mnl_cb_run for nftables
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxx>
- callback on adding tables from mnl_cb_run for nftables
- From: Andreas Hoefler <andreas.hoefler@xxxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [nft | wiki] List of updates since Linux kernel 3.13
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- [nft | wiki] List of updates since Linux kernel 3.13
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft 0.9.3 | kernel 5.4.48] cannot get NAT to work
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- "Operation not supported" when using ct mark
- From: Adam Degenhardt <degenhardt.adam@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Address List
- From: Mario Vittorio Guenzi <jclark@xxxxxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: nftables and connection tracking
- From: Florian Westphal <fw@xxxxxxxxx>
- nftables and connection tracking
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: Alex Buie <alex.buie@xxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: Hooman <mailinglister.hooman@xxxxxxxxx>
- Re: ipsec matching in postrouting nat
- From: Florian Westphal <fw@xxxxxxxxx>
- ipsec matching in postrouting nat
- From: Marek Greško <mgresko8@xxxxxxxxx>
- Re: WiFi Hotspot Disable Neighbor discovery,Ask
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- WiFi Hotspot Disable Neighbor discovery,Ask
- From: Hooman <mailinglister.hooman@xxxxxxxxx>
- [ANNOUNCE] nftables 0.9.6 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: "Carrier Grade" NAT44 setup
- Re: "Carrier Grade" NAT44 setup
- From: Maximilian Wilhelm <max@xxxxxxxxxxx>
- loadbalance 2 internet links
- From: paulo bruck <paulobruck1@xxxxxxxxx>
- Re: Difficulties with ulog / NFCT
- From: Alessandro Vesely <vesely@xxxxxxx>
- Re: nftables drops related traffic
- From: Robin Kuiper <kuiper.robin@xxxxxxxxx>
- Re: nftables drops related traffic
- From: "" <kfm@xxxxxxxxxxxxx>
- nftables drops related traffic
- From: Robin Kuiper <kuiper.robin@xxxxxxxxx>
- [ANNOUNCE] libnetfilter_queue 1.0.5 release
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Simplifying DNAT Rules using Maps
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: "Carrier Grade" NAT44 setup
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Looking to contribute to the nftables wiki
- From: "Gaelan Lloyd" <gaelan@xxxxxxxxxxx>
- Re: Documentation.
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: Simplifying DNAT Rules using Maps
- From: Max Ehrlich <max.ehr@xxxxxxxxx>
- Re: Simplifying DNAT Rules using Maps
- From: Max Ehrlich <max.ehr@xxxxxxxxx>
- Re: Simplifying DNAT Rules using Maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Documentation.
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: meta day not working
- From: pauloric@xxxxxxxxxxxxxxxx
- Re: meta day not working
- From: Florian Westphal <fw@xxxxxxxxx>
- meta day not working
- From: pauloric@xxxxxxxxxxxxxxxx
- [ANNOUNCE] nftables 0.9.5 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- "Carrier Grade" NAT44 setup
- From: Maximilian Wilhelm <max@xxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.7 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_queue 1.0.4 release
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [MAINTENANCE] Shutting down FTP services at netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [MAINTENANCE] Shutting down FTP services at netfilter.org
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [MAINTENANCE] Shutting down FTP services at netfilter.org
- From: Harald Welte <laforge@xxxxxxxxxxxx>
- Simplifying DNAT Rules using Maps
- From: Max Ehrlich <max.ehr@xxxxxxxxx>
- [ANNOUNCE] iptables 1.8.5 release
- From: Phil Sutter <phil@xxxxxxxxxxxxx>
- [MAINTENANCE] Shutting down FTP services at netfilter.org
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Expressive limitation: (daddr,dport) <--> (daddr',dport')
- From: Rick van Rein <rick@xxxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Value too large for defined data type
- From: "ad^2" <adsquaired@xxxxxxxxx>
- Re: Let me make sure I have this right (fib)
- From: Florian Westphal <fw@xxxxxxxxx>
- Let me make sure I have this right (fib)
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- nft filter cgroup
- From: Christian Schneider <cschneider@xxxxxxxxxxxxx>
- Re: Raw Expression for DNS name?
- From: "ad^2" <adsquaired@xxxxxxxxx>
- AW: Raw Expression for DNS name?
- From: Thomas Bätzler <t.baetzler@xxxxxxxxxx>
- Re: Raw Expression for DNS name?
- From: "ad^2" <adsquaired@xxxxxxxxx>
- Re: Raw Expression for DNS name?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Raw Expression for DNS name?
- From: "ad^2" <adsquaired@xxxxxxxxx>
- Re: iif versus meta fib iif
- From: Florian Westphal <fw@xxxxxxxxx>
- iif versus meta fib iif
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: WTF, over
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: WTF, over (reformatted)
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: WTF, over
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: WTF, over
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- WTF, over
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Is this a correct usage of the FIB facility of NFTABLES? (BCP-38)
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: nftables: defining variables containing ipv6 adresses
- From: Ede Wolf <listac@xxxxxxxxxxxxxxxx>
- Re: Timestamps, NFLOG, and ULOG
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Timestamps, NFLOG, and ULOG
- From: Korodev <korodev@xxxxxxxxx>
- Re: Timestamps, NFLOG, and ULOG
- From: Florian Westphal <fw@xxxxxxxxx>
- FIB filtering (comments, please) (reformatted)
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- FIB filtering (comments, please)
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Timestamps, NFLOG, and ULOG
- From: Korodev <korodev@xxxxxxxxx>
- Fwd: Raw Expression matching DNS Query?
- From: "ad^2" <adsquaired@xxxxxxxxx>
- Re: nftables: defining variables containing ipv6 adresses
- From: "Oliver O'Boyle" <oliver.oboyle@xxxxxxxxx>
- nftables: defining variables containing ipv6 adresses
- From: Thomas Weberstaedt <thomas.weberstaedt@xxxxxxxxxxxxxxxx>
- Re: Systemd, nftables, and iptables
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- saddr, daddr type determination
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Systemd, nftables, and iptables
- From: Alexander Dahl <ada@xxxxxxxxxxx>
- Re: Systemd, nftables, and iptables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Systemd, nftables, and iptables
- From: "" <kfm@xxxxxxxxxxxxx>
- Systemd, nftables, and iptables
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Netdev conf 0x14 update
- From: Jamal Hadi Salim <jhs@xxxxxxxxxxxx>
- Re: Dynamic list for net's
- From: Іван Щербей <ivan@xxxxxxxxxxxx>
- Re: Dynamic list for net's
- From: Іван Щербей <ivan@xxxxxxxxxxxx>
- Re: Dynamic list for net's
- From: "" <kfm@xxxxxxxxxxxxx>
- Dynamic list for net's
- From: Іван Щербей <ivan@xxxxxxxxxxxx>
- POSTROUTING doesn't apply on all outgoing packets
- From: Walter Laub <walter.laub@xxxxxxxxxxx>
- Re: nftables NAT & Gaming Consoles
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- -m statistic does not work with 5.6.8
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Marc SCHAEFER <schaefer@xxxxxxxxxxx>
- Re: Correct usage of nf_ct_get
- From: b38911 Zxc <b38911@xxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Mauricio Tavares <raubvogel@xxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Sơn Đỗ <sondd1096@xxxxxxxxx>
- Re: nftables NAT & Gaming Consoles
- From: zrm <zrm@xxxxxxxxxxxxxxx>
- Re: nftables NAT & Gaming Consoles
- From: zrm <zrm@xxxxxxxxxxxxxxx>
- nftables NAT & Gaming Consoles
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: Firewall sometimes leaking [solved]
- From: Nick <netfilter@xxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Re: nftables: Strange Error When Adding Element to Named Set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- nftables: Strange Error When Adding Element to Named Set
- From: Mike Dillinger <miked@xxxxxxxxxxxxxx>
- Correct usage of nf_ct_get
- From: b38911 Zxc <b38911@xxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: Firewall sometimes leaking
- From: Nick <netfilter@xxxxxxxxxxx>
- Re: Firewall sometimes leaking
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Firewall sometimes leaking
- From: Nick <netfilter@xxxxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: John Haxby <john.haxby@xxxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Lazuardi Nasution <mrxlazuardin@xxxxxxxxx>
- Re: [Help] Allow website using iptables
- From: Alessandro Vesely <vesely@xxxxxxx>
- [Help] Allow website using iptables
- From: Sơn Đỗ <sondd1096@xxxxxxxxx>
- Using the fib to classify endpoints.
- From: Stephen Satchell <list@xxxxxxxxxxxx>
- Re: Documentation Error on http://wiki.nftables.org/wiki-nftables/index.php/GeoIP_matching
- From: "" <kfm@xxxxxxxxxxxxx>
- Documentation Error on http://wiki.nftables.org/wiki-nftables/index.php/GeoIP_matching
- From: Bob and Sally Public <bobandsally.public@xxxxxxxxxxx>
- Re: idempotent nft delete table? (or: why does "flush table" delete rules but keep chains?)
- From: John Haxby <john.haxby@xxxxxxxxxx>
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- idempotent nft delete table? (or: why does "flush table" delete rules but keep chains?)
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: nftables
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: nftables and traffic control utility to QoS
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: cannot create a nat type base (pre/post routing) chain
- From: Norbert van Bolhuis <nvbolhuis@xxxxxxxxxxxx>
- Re: cannot create a nat type base (pre/post routing) chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: cannot create a nat type base (pre/post routing) chain
- From: Norbert van Bolhuis <nvbolhuis@xxxxxxxxxxxx>
- cannot create a nat type base (pre/post routing) chain
- From: Norbert van Bolhuis <nvbolhuis@xxxxxxxxxxxx>
- Re: nftables
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: nftables
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- nftables
- From: Patrick Greiff <Patrick7878@xxxxxx>
- Multicast routed packets do not get SNAT translation performed
- From: Stephen Deiters <sdeiters@xxxxxxxxx>
- Questions around the use of timestamps
- From: Nikolaos Kakouros <nkak@xxxxxx>
- nftables and traffic control utility to QoS
- From: "d.gubin" <d.gubin@xxxxxxxxxxx>
- conntrack traffic statistics and connlabel
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: has somebody an idea what fills up the log (5050/udp)?
- From: zrm <zrm@xxxxxxxxxxxxxxx>
- has somebody an idea what fills up the log (5050/udp)?
- From: "Walter H." <Walter.H@xxxxxxxxxxxxxxxxx>
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- Re: query re dynamic set and limiting
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- possible error in HOWTO
- From: Fred Maranhão <fred.maranhao@xxxxxxxxx>
- Re: nfnetlink: This library is not meant as a public API for application developers.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- ARP confirmed timestamp update on TCP data flow vs keep-alive
- From: "Steffen Heil (Mailinglisten)" <lists@xxxxxxxxxxxxxxx>
- [PATCH v1 1/1] Update download script for DBIP database
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- [PATCH v1 1/1] update MaxMind URL's
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- [PATCH v1 1/1] Simplify unpacking start/end tuples from database
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- Is viewing a "candidate" ruleset in 'nft list ruleset' format possible?
- From: Martin Gignac <martin.gignac@xxxxxxxxx>
- query re dynamic set and limiting
- From: James Bond <jb666531@xxxxxxxxx>
- WARNING: at net/sched/sch_generic.c - Reproducible crash & rcu stalls
- From: "Christopher S. Aker" <caker@xxxxxxxxxxxx>
- Re: nfnetlink: This library is not meant as a public API for application developers.
- From: Alessandro Vesely <vesely@xxxxxxx>
- marking/routing packets breaks the conntrack rule for NAT
- From: Mickael Bosch <mickael.bosch@xxxxxxxxxx>
- Re: nfnetlink: This library is not meant as a public API for application developers.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Hello, I have some questions about flowtable.
- From: James Bond <lfunwf@xxxxxxxxx>
- Re: [ANNOUNCE] nftlb 0.6 release
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- Re: validate IPsec outgoing packets using NFtables
- From: Florian Westphal <fw@xxxxxxxxx>
- validate IPsec outgoing packets using NFtables
- From: Olivier Alabeatrix <oalabeatrix@xxxxxxxxx>
- Re: extending element timeout
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: extending element timeout
- From: Alvaro Leiva <alvaroflmiranda@xxxxxxxxx>
- Re: extending element timeout
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: extending element timeout
- From: Alvaro Leiva <alvaroflmiranda@xxxxxxxxx>
- Re: extending element timeout
- From: Laura Garcia <nevola@xxxxxxxxx>
- extending element timeout
- From: Alvaro Leiva <alvaroflmiranda@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.4 release
- From: Brett Mastbergen <bmastbergen@xxxxxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.4 release
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.4 release
- From: Phil Sutter <phil@xxxxxx>
- Re: [ANNOUNCE] nftables 0.9.4 release
- From: sbezverk <sbezverk@xxxxxxxxx>
- Re: [ANNOUNCE] nftables 0.9.4 release
- From: Paweł Krawczyk <pawel.krawczyk@xxxxxxxx>
- [ANNOUNCE] conntrack-tools 1.4.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnetfilter_conntrack 1.0.8 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] libnftnl 1.1.6 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE] nftables 0.9.4 release
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE] nftlb 0.6 release
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: [ANNOUNCE] nftlb 0.6 release
- From: trentbuck@xxxxxxxxx (Trent W. Buck)
- [ANNOUNCE] nftlb 0.6 release
- From: Laura Garcia <nevola@xxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [nftables 0.9.2 | flow table] dynamic (soft) NETDEV
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Eric Garver <eric@xxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Daniel <tech@xxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Daniel <tech@xxxxxxxxxx>
- netem qdisc destroys traffic in other tc classes (HFSC classes)
- Re: What is the BEST GUI frontend to iptables firewall?
- From: Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx>
- batch update of conntrack?
- Re: [nftables 0.9.2 | flow table] dynamic (soft) NETDEV
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: What is the BEST GUI frontend to iptables firewall?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables 0.9.2 | flow table] check whether it works?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables 0.9.2 | flow table] check whether it works?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [libnftnl] documentation?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nftables 0.9.2 | flow table] check whether it works?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl] documentation?
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl] documentation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [libnftnl] documentation?
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl] documentation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [libnftnl] documentation?
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- [libnftnl] documentation?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: [nftables 0.9.2 | flow table] check whether it works?
- From: ѽ҉ᶬḳ℠ <vtol@xxxxxxx>
- Re: A question about priority in chains
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- Re: A question about priority in chains
- From: darius <dram@xxxxxxxxxxx>
- Re: A question about priority in chains
- From: Frank Myhr <fmyhr@xxxxxxxxxxx>
- A question about priority in chains
- From: darius <dram@xxxxxxxxxxx>
- Re: tc question about ingress bandwidth splitting
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: TCP and UDP dport in the same rule
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: TCP and UDP dport in the same rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: TCP and UDP dport in the same rule
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: TCP and UDP dport in the same rule
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: tc question about ingress bandwidth splitting
- From: Marc SCHAEFER <schaefer@xxxxxxxxxxx>
- Re: tc question about ingress bandwidth splitting
- From: Gáspár Lajos <swifty@xxxxxxxxx>
- Re: Ipv6tov4 address Dnat
- From: Fatih USTA <fatihusta86@xxxxxxxxx>
- Ipv6tov4 address Dnat
- From: Zheng konia <konianet@xxxxxxxxx>
- tc question about ingress bandwidth splitting
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: TCP and UDP dport in the same rule
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]