Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
[PATCH nf-next 0/2] netfilter: nft_set_pipapo: speed up insertions,
Florian Westphal
[PATCH] netfilter: ebtables: Use vmalloc_array() to improve code, Qianfeng Rong
[PATCH nft-testing v3 0/2] netfilter: nft_set_pipapo: Use nested-BH locking for nft_pipapo_scratch,
Sebastian Andrzej Siewior
[conntrack-tools PATCH] nfct: helper: Extend error message for EEXIST,
Phil Sutter
[PATCH nft] src: ensure chain policy evaluation when specified, Pablo Neira Ayuso
[nf-next v2] netfilter: ctnetlink: remove refcounting in dying list dumping, Florian Westphal
Re: modprobe returns 0 upon -EEXIST from insmod,
Christophe Leroy
[PATCH nf-next v6 0/2] Add IPIP flowtable SW acceleratio,
Lorenzo Bianconi
[nf PATCH] netfilter: conntrack: helper: Replace -EEXIST by -EBUSY, Phil Sutter
[PATCH nft,v2] src: ensure chain policy evaluation when specified, Pablo Neira Ayuso
[PATCH 2/6] setftests: net: netfilter: fix spelling mistakes in output,
Soham Metha
[PATCH net-next v2 0/7] net: Convert to skb_dstref_steal and skb_dstref_restore,
Stanislav Fomichev
[PATCH nf-next v2 0/3] netfilter: nft_set_pipapo: Use nested-BH locking for nft_pipapo_scratch,
Sebastian Andrzej Siewior
[PATCH net-next v2] netfilter: nft_payload: Use csum_replace4() instead of opencoding,
Christophe Leroy
[PATCH nft] fib: restore JSON output for relational expressions, Pablo Neira Ayuso
[PATCH net v2] netfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after confirm,
Wang Liang
[PATCH] netfilter: conntrack: drop expectations before freeing templates,
Qingjie Xing
[PATCH net] netfilter: br_netfilter: reread nf_conn from skb after confirm(),
Wang Liang
[syzbot] Monthly netfilter report (Aug 2025), syzbot
[PATCH nf-next v2 0/2] netfilter: nf_tables: avoid atomic allocations for set flush,
Florian Westphal
[PATCH nft 1/2] tests: shell: cover sets as set elems evaluation,
Pablo Neira Ayuso
[PATCH net] netfilter: nf_reject: don't leak dst refcount for loopback packets,
Florian Westphal
[PATCH nft] mnl: silence compiler warning,
Florian Westphal
[PATCH net-next 0/6] netfilter: updates for net-next,
Florian Westphal
[PATCH 1/2 libnftnl v4] tunnel: rework options,
Fernando Fernandez Mancera
[PATCH 1/7 nft v3] src: add tunnel template support,
Fernando Fernandez Mancera
[syzbot] [netfilter?] WARNING in nf_reject_fill_skb_dst, syzbot
[iptables PATCH] extensions: man: Add a note about route_localnet sysctl,
Łukasz Stelmach
[PATCH] doc: Add a note about route_localnet sysctl,
Łukasz Stelmach
[PATCH nft 1/2] evaluate: simplify set to list normalisation for device expressions,
Pablo Neira Ayuso
[PATCH nft,v2 00/11] replace compound_expr_*() by type safe function,
Pablo Neira Ayuso
- Re: [PATCH nft,v2 00/11] replace compound_expr_*() by type safe function, Pablo Neira Ayuso
- [PATCH nft,v2 07/11] expression: remove compound_expr_add(), Pablo Neira Ayuso
- [PATCH nft,v2 05/11] segtree: rename set_compound_expr_add() to set_expr_add_splice(), Pablo Neira Ayuso
- [PATCH nft,v2 10/11] expression: replace compound_expr_print() by type safe function, Pablo Neira Ayuso
- [PATCH nft,v2 09/11] expression: replace compound_expr_destroy() by type safe funtion, Pablo Neira Ayuso
- [PATCH nft,v2 06/11] expression: replace compound_expr_clone() by type safe function, Pablo Neira Ayuso
- [PATCH nft,v2 01/11] src: add expr_type_catchall() helper and use it, Pablo Neira Ayuso
- [PATCH nft,v2 08/11] expression: replace compound_expr_remove() by type safe function, Pablo Neira Ayuso
- [PATCH nft,v2 11/11] src: replace compound_expr_alloc() by type safe function, Pablo Neira Ayuso
- [PATCH nft,v2 04/11] src: replace compound_expr_add() by type safe list_expr_add(), Pablo Neira Ayuso
- [PATCH nft,v2 03/11] src: replace compound_expr_add() by type safe concat_expr_add(), Pablo Neira Ayuso
- [PATCH nft,v2 02/11] src: replace compound_expr_add() by type safe set_expr_add(), Pablo Neira Ayuso
[ipset] Can't resolve domain names containing an hyphen "-",
Pierre Mazière
[nft PATCH] tests: monitor: Fix for flag arrays in JSON output,
Phil Sutter
Re: repeated 'add chain'/'delete chain' 5x and ..., Florian Westphal
[PATCH xtables] man: iptables-restore.8: document flush behaviour for user-defined chains,
Florian Westphal
[PATCH] icmp: fix icmp_ndo_send address translation for reply direction,
Fabian Bläse
[nft PATCH] Makefile: Fix for 'make distcheck',
Phil Sutter
[PATCH nft] libnftables: continue on ENOBUFS errors when processing batch, Pablo Neira Ayuso
[PATCH nft,v2] mnl: continue on ENOBUFS errors when processing batch, Pablo Neira Ayuso
[PATCH nft,v3] mnl: continue on ENOBUFS errors when processing batch, Pablo Neira Ayuso
[conntrack-tools PATCH v2] nfct: helper: Extend error message for EBUSY,
Phil Sutter
[PATCH nf-next] netfilter: nft_payload: extend offset to 65535 bytes,
Fernando Fernandez Mancera
[PATCH nft,v4] mnl: continue on ENOBUFS errors when processing batch, Pablo Neira Ayuso
[nft PATCH] trace: Fix for memleak in trace_alloc_list() error path,
Phil Sutter
[PATCH net 0/2] netfilter updates for net,
Florian Westphal
[PATCH nft] build: disable --with-unitdir by default,
Pablo Neira Ayuso
[PATCH net] netfilter: nft_flowtable.sh: re-run with random mtu sizes,
Florian Westphal
[PATCH nf] selftests: netfilter: fix udpclash tool hang, Florian Westphal
nftables monitor json mode is broken,
Florian Westphal
[PATCH nf-next] netfilter: nft_set_pipapo: remove redundant test for avx feature bit,
Florian Westphal
[PATCH] netfilter: nft_ct: reject ambiguous conntrack expressions in inet tables,
Nikolaos Gkarlis
[ANNOUNCE] nftables 1.1.5 release, Pablo Neira Ayuso
[PATCH] netfilter: ipset: Remove unused htable_bits in macro ahash_region,
Zhen Ni
[PATCH] netfilter: xt_hashlimit: fix inconsistent return type in hashlimit_mt_*,
Miaoqian Lin
[nft PATCH 0/5] Fixes (and fallout) from running tests/monitor in JSON mode,
Phil Sutter
[PATCH nf-next] netfilter: nf_reject_ipv4: remove unneeded exports, Florian Westphal
[PATCH nf-next] netfilter: nf_reject: don't reply to icmp error messages, Florian Westphal
[nft PATCH v2 0/7] Run all test suites via 'make check',
Phil Sutter
[PATCH nft] gitignore: ignore "tools/nftables.service",
Fernando Fernandez Mancera
Re: [PATCH net-next 5/8] netfilter: nf_tables: Introduce NFTA_DEVICE_PREFIX, Paolo Abeni
[PATCH nf-next] netfilter: nft_meta_bridge: introduce NFT_META_BRI_IIFHWADDR support,
Fernando Fernandez Mancera
[PATCH libnftnl] expr: meta: introduce ibrhwdr meta expression, Fernando Fernandez Mancera
Re: [PATCH net-next 0/8] netfilter: updates for net-next, Florian Westphal
[PATCH v2 net-next 0/7] netfilter: updates for net-next,
Florian Westphal
[PATCH net 0/2] netfilter: updates for net,
Florian Westphal
[nft PATCH v3 00/11] Run all test suites via 'make check',
Phil Sutter
- Re: [nft PATCH v3 00/11] Run all test suites via 'make check', Phil Sutter
- [nft PATCH v3 01/11] tests: monitor: Label diffs to help users, Phil Sutter
- [nft PATCH v3 10/11] tests: build: Do not assume caller's CWD, Phil Sutter
- [nft PATCH v3 08/11] tests: json_echo: Skip if run as non-root, Phil Sutter
- [nft PATCH v3 09/11] tests: shell: Skip packetpath/nat_ftp in fake root env, Phil Sutter
- [nft PATCH v3 02/11] tests: monitor: Fix regex collecting expected echo output, Phil Sutter
- [nft PATCH v3 04/11] tests: monitor: Extend debug output a bit, Phil Sutter
- [nft PATCH v3 03/11] tests: monitor: Test JSON echo mode as well, Phil Sutter
- [nft PATCH v3 06/11] tests: py: Enable JSON and JSON schema by default, Phil Sutter
- [nft PATCH v3 11/11] Makefile: Enable support for 'make check', Phil Sutter
- [nft PATCH v3 07/11] tests: Prepare exit codes for automake, Phil Sutter
- [nft PATCH v3 05/11] tests: monitor: Excercise all syntaxes and variants by default, Phil Sutter
[PATCH v2 net 0/2] netfilter: updates for net,
Florian Westphal
[nft PATCH v4 0/8] Run all test suites via 'make check',
Phil Sutter
[PATCH nft 0/7] prepare for EXPR_SET_ELEM removal,
Pablo Neira Ayuso
[PATCH 1/1] IPVS: Fix use-after-free issue in ip_vs_unbind_app(),
Slavin Liu
[PATCH] netfilter: Set expressions out of range in nft_add_set_elem(),
Chen Yufeng
[nft PATCH] Makefile: Fix for 'make CFLAGS=...',
Phil Sutter
[syzbot] [bridge?] [netfilter?] WARNING in br_nf_local_in,
syzbot
[PATCH net 0/7] netfilter: updates for net,
Florian Westphal
[PATCH nf-next v2 defer] netfilter: nft_byteorder: remove multi-register support, Florian Westphal
[PATCH nf] netfilter: nft_set_bitmap: fix lockdep splat due to missing annotation, Florian Westphal
[nft PATCH] fib: Fix for existence check on Big Endian,
Phil Sutter
[PATCH nf 0/5] netfilter: nf_tables: fix false negative lookups with ongoing transaction,
Florian Westphal
[libnftnl RFC] data_reg: Improve data reg value printing,
Phil Sutter
[PATCH net-next 0/5] netfilter: updates for net-next,
Florian Westphal
[PATCH RFC nf-next 1/2] netfilter: nft_set_pipapo_avx2: fix skip of expired entries,
Florian Westphal
[PATCH net-next RFC] netfilter: flowtable: add CT metadata action for nft flowtables,
Elad Yifee
[PATCH nf-next] netfilter: ctnetlink: remove refcounting in dying list dumping,
Florian Westphal
[PATCH nf] netfilter: nf_reject: don't leak dst refcount for loopback packets, Florian Westphal
netfilter: br_netfilter:NS packet was incorrectly matched by the nftables rule,
gaoxingwang
[PATCH 1/7 nft v2] src: add tunnel template support,
Fernando Fernandez Mancera
[PATCH 1/2 libnftnl v3] tunnel: rework options,
Fernando Fernandez Mancera
[nft PATCH 00/14] json: Do not reduce single-item arrays on output,
Phil Sutter
- [nft PATCH 05/14] tests: py: Drop duplicate test from inet/gre.t, Phil Sutter
- [nft PATCH 09/14] tests: py: Drop redundant payloads for ip/ip.t, Phil Sutter
- [nft PATCH 13/14] tests: py: Fix tests added for 'icmpv6 taddr' support, Phil Sutter
- [nft PATCH 10/14] tests: py: Drop stale entry from ip/snat.t.json, Phil Sutter
- [nft PATCH 02/14] tests: py: Drop stale entries since redundant test case removal, Phil Sutter
- [nft PATCH 04/14] tests: py: Drop duplicate test from inet/geneve.t, Phil Sutter
- [nft PATCH 11/14] tests: py: Drop stale entries from ip6/{ct,meta}.t.json, Phil Sutter
- [nft PATCH 12/14] tests: py: Drop stale entry from ip/snat.t.payload, Phil Sutter
- [nft PATCH 06/14] tests: py: Drop duplicate test from inet/gretap.t, Phil Sutter
- [nft PATCH 01/14] tests: py: Drop duplicate test in any/meta.t, Phil Sutter
- [nft PATCH 07/14] tests: py: Drop stale entry from inet/tcp.t.json, Phil Sutter
- [nft PATCH 14/14] json: Do not reduce single-item arrays on output, Phil Sutter
- [nft PATCH 03/14] tests: py: Drop stale payload from any/rawpayload.t.payload, Phil Sutter
- [nft PATCH 08/14] tests: py: Drop duplicate test from inet/vxlan.t, Phil Sutter
- Re: [nft PATCH 00/14] json: Do not reduce single-item arrays on output, Pablo Neira Ayuso
[libnftnl PATCH] udata: Introduce NFTNL_UDATA_TABLE_NFT{VER,BLD},
Phil Sutter
[PATCH nft 00/12] replace compound_expr_*() by type safe function,
Pablo Neira Ayuso
- [PATCH nft 02/12] src: add expr_type_catchall() helper and use it, Pablo Neira Ayuso
- [PATCH nft 04/12] src: replace compound_expr_add() by type safe function, Pablo Neira Ayuso
- [PATCH nft 06/12] segtree: rename set_compound_expr_add() to set_expr_add_splice(), Pablo Neira Ayuso
- [PATCH nft 05/12] src: replace compound_expr_add() by type safe function, Pablo Neira Ayuso
- [PATCH nft 08/12] expression: remove compound_expr_add(), Pablo Neira Ayuso
- [PATCH nft 07/12] expression: replace compound_expr_clone() by type safe function, Pablo Neira Ayuso
- [PATCH nft 01/12] segtree: incorrect type when aggregating concatenated set ranges, Pablo Neira Ayuso
- [PATCH nft 03/12] src: replace compound_expr_add() by type safe function, Pablo Neira Ayuso
- [PATCH nft 09/12] expression: replace compound_expr_remove() by type safe function, Pablo Neira Ayuso
- [PATCH nft 10/12] expression: replace compound_expr_destroy() by type safe funtion, Pablo Neira Ayuso
- [PATCH nft 11/12] expression: replace compound_expr_print() by type safe function, Pablo Neira Ayuso
- [PATCH nft 12/12] src: replace compound_expr_alloc() by type safe function, Pablo Neira Ayuso
- Re: [PATCH nft 00/12] replace compound_expr_*() by type safe function, Phil Sutter
[PATCH nf] netfilter: nf_tables: reject duplicate device on updates,
Pablo Neira Ayuso
[PATCH net-next 0/7] net: Convert to skb_dst_reset and skb_dst_restore,
Stanislav Fomichev
[PATCH net-next] netfilter: nft_payload: Use csum_replace4() instead of opencoding,
Christophe Leroy
nft_flowtable.sh selftest failures,
Paolo Abeni
[PATCH nf] netfilter: nft_set_pipapo: fix null deref for empty set, Florian Westphal
[PATCH nft] tests: py: revert dccp python tests,
Florian Westphal
[nft PATCH] table: Embed creating nft version into userdata,
Phil Sutter
[nft PATCH] src: netlink: netlink_delinearize_table() may return NULL,
Phil Sutter
[nf-next PATCH] netfilter: nf_tables: Introduce NFTA_DEVICE_PREFIX, Phil Sutter
[PATCH nf] netfilter: nft_socket: remove WARN_ON_ONCE with giant cgroup tree,
Pablo Neira Ayuso
[netfilter-nf:main 37/38] ERROR: modpost: __ex_table+0x2280 references non-executable section '.data..Lubsan_type5', kernel test robot
[netfilter-nf:main 21/38] ERROR: modpost: __ex_table+0x15a8 references non-executable section '.bss.dfs_dir_mtd', kernel test robot
[nft PATCH] tests: shell: Fix packetpath/rate_limit for old socat,
Phil Sutter
[ANNOUNCE] nftables 1.1.4 release,
Pablo Neira Ayuso
[ANNOUNCE] libnftnl 1.3.0 release,
Pablo Neira Ayuso
[PATCH nft 1/2] evaluate: check XOR RHS operand is a constant value,
Florian Westphal
[PATCH net-next] netfilter: clean up returns in nf_conntrack_log_invalid_sysctl(),
Dan Carpenter
[PATCH nf] netfilter: nft_set_pipapo: don't return bogus extension pointer, Florian Westphal
[bug report] netfilter: nft_set: remove one argument from lookup and update functions, Dan Carpenter
[bug report] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid,
Dan Carpenter
[nft PATCH 0/6] Run all test suites via 'make check',
Phil Sutter
[PATCH nf 0/2] netfilter: ctnetlink: fix memory leak in ctnetlink dump,
Florian Westphal
[nft PATCH] doc: nft.8: Minor NAT STATEMENTS section review,
Phil Sutter
[PATCH bpf 1/4] bpf: Check flow_dissector ctx accesses are aligned,
Paul Chaignon
[nft PATCH v5 0/3] Support wildcard netdev hooks,
Phil Sutter
[libnftnl PATCH v4] utils: Add helpers for interface name wildcards, Phil Sutter
[RFC nf-next] netfilter: nf_tables: remove element flush allocation,
Florian Westphal
[nft PATCH v3 0/3] evaluate: Fix for 'meta hour' ranges spanning date boundaries,
Phil Sutter
[PATCH] netfilter: add back NETFILTER_XTABLES dependencies,
Arnd Bergmann
[syzbot] [netfilter?] WARNING in __nf_unregister_net_hook (9), syzbot
Re: linux-next: Tree for Jul 29 (net/ipv4/netfilter/arp_tables.o),
Randy Dunlap
[nft PATCH v2 0/3] evaluate: Fix for 'meta hour' ranges spanning date boundaries,
Phil Sutter
[PATCH v2 net] ipvs: Fix estimator kthreads preferred affinity,
Frederic Weisbecker
[PATCH net] ipvs: Fix estimator kthreads preferred affinity,
Frederic Weisbecker
[no subject], Unknown
Wstrzymanie rat, Jolanta Borowczyk
[REGRESSION] v6.16 system hangs (bisected to nf_conntrack fix),
Dan Moulding
[PATCH v3 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid,
Lance Yang
[PATCH v6 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate,
Shaun Brady
[nft PATCH] evaluate: Fix for 'meta hour' ranges spanning date boundaries,
Phil Sutter
[PATCH bpf-next v1 0/4] bpf: add icmp_send_unreach kfunc,
Mahe Tardy
[syzbot] [netfilter?] WARNING in nft_socket_init (2),
syzbot
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]