Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- iptables fixes 20110705
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Too short harmony-maker? Desire BIG?!
- From: torki@xxxxxxxxxxxxxxx
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH next] netfilter: nfqueue: batch verdict support
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 00/12] net switch/case reformatting
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 00/12] net switch/case reformatting
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 02/12] decnet: Reduce switch/case indent
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH 05/12] netfilter: Reduce switch/case indent
- From: Joe Perches <joe@xxxxxxxxxxx>
- Send Packets In Prerouting?
- From: Nader Al-Naji <nbal@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- [PATCH] netfilter: add per-namespace logging to nfnetlink_log.c
- From: Rainer Weikusat <rweikusat@xxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 2/2] nfnetlink_queue: provide rcu enabled callbacks
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- [PATCH 1/2] nfnetlink: add RCU in nfnetlink_rcv_msg()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: xt_AUDIT additions
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [RFC] nfnetlink_queue not scalable
- From: Florian Westphal <fw@xxxxxxxxx>
- [RFC] nfnetlink_queue not scalable
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- xt_AUDIT additions
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Leblond <eric@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Stephen Clark <sclark46@xxxxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Suggestion required in extending xt_RAWNAT.c to handle ICMP messages
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Pending fixes, global var reduction
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Kuzin Andrey <kuzinandrey@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Kuzin Andrey <kuzinandrey@xxxxxxxxx>
- Re: [Ebtables configuration] CONFIG_BRIDGE_NETFILTER ebtables dependency
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- Re: netfilter queue throughput slowdown
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- netfilter queue throughput slowdown
- From: Anders Nilsson Plymoth <lanilsson@xxxxxxxxx>
- [Ebtables configuration] CONFIG_BRIDGE_NETFILTER ebtables dependency
- From: Sébastien LAVEZE <slaveze@xxxxxxxxx>
- Re: Issue with conntrack on machine start-up
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Issue with conntrack on machine start-up
- From: Hai-Long Nguyen <hlnguyen21@xxxxxxxxx>
- Suggestion required in extending xt_RAWNAT.c to handle ICMP messages
- From: "G A, Pramodh (NSN - IN/Bangalore)" <pramodh.g_a@xxxxxxx>
- Fwd: more grokking of iptables, qdiscs, filters, etc
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [PATCH 2/2] Improve security for xt_SYSRQ
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/2] Use %pI4/%pI6c instead of NIPQUAD_FMT/NIP6_FMT and make IPv6 work
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/2] Security improvements for xt_SYSRQ
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/2] Security improvements for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 1/2] Use %pI4/%pI6c instead of NIPQUAD_FMT/NIP6_FMT and make IPv6 work
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 2/2] Improve security for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- [PATCH 0/2] Security improvements for xt_SYSRQ
- From: John Haxby <john.haxby@xxxxxxxxxx>
- Re: [PATCH] ebtables: Possible problems found by static analysis of code
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- Re: [PATCH 8/8] iptables: Coverity: RESOURCE_LEAK
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 6/8] iptables: Coverity: VARARGS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 4/8] iptables: Coverity: REVERSE_INULL
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3/8] iptables: Coverity: NEGATIVE_RETURNS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/8] iptables: Coverity: DEADCODE
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] Remove redundant linux/version.h includes from net/
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 7/7] libxt_RATEEST: abolish global variables
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 6/7] libxt_rateest: abolish global variables
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/7] extensions: support for per-extension instance "global" variable space
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/7] iptables: consolidate target/match init call
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/7] libxt_RATEEST: use guided option parser
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/7] libipt_LOG: fix ignoring all but last flags
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/7] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Pending fixes, global var reduction
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [netfilter-core] [PATCH] Remove redundant linux/version.h includes from net/
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH] Remove redundant linux/version.h includes from net/
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: ebtables-2.0.9-2 libebetc PHONY
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 4th revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/20] netfilter: netfilter update
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 0/8] netfilter: netfilter fixes for -rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Does ip_conntrack_tcp_be_liberal have security or other issues when used?
- From: Dale Floer <dfloer@xxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 04/20] IPVS: labels at pos 0
- [PATCH 05/20] IPVS: remove unused init and cleanup functions.
- [PATCH 07/20] netfilter: ipset: whitespace fixes: some space before tab slipped in
- [PATCH 08/20] netfilter: ipset: options and flags support added to the kernel API
- [PATCH 09/20] netfilter: ipset: support listing setnames and headers too
- [PATCH 13/20] netfilter: ipset: adding ranges to hash types with timeout could still fail, fixed
- [PATCH 10/20] netfilter: ipset: fix adding ranges to hash types
- [PATCH 11/20] netfilter: ipset: set type support with multiple revisions added
- [PATCH 12/20] netfilter: ipset: support range for IPv4 at adding/deleting elements for hash:*net* types
- [PATCH 14/20] netfilter: ipset: take into account cidr value for the from address when creating the set
- [PATCH 17/20] netfilter: ipset: fix return code for destroy when sets are in use
- [PATCH 15/20] netfilter: ipset: use unified from/to address masking and check the usage
- [PATCH 16/20] netfilter: ipset: add xt_action_param to the variant level kadt functions, ipset API change
- [PATCH 18/20] netfilter: ipset: use the stored first cidr value instead of '1'
- [PATCH 20/20] netfilter: ipset: whitespace and coding fixes detected by checkpatch.pl
- [PATCH 19/20] netfilter: ipset: hash:net,iface type introduced
- [PATCH 06/20] netfilter: ipset: timeout can be modified for already added elements
- [PATCH 03/20] IPVS: rename of netns init and cleanup functions.
- [PATCH 02/20] IPVS remove unused var from migration to netns
- [PATCH 01/20] ipvs: support more FTP PASV responses
- [PATCH 00/20] netfilter: netfilter update
- [PATCH 5/6] netfilter: fix looped (broad|multi)cast's MAC handling
- [PATCH 6/6] netfilter: nf_nat: avoid double seq_adjust for loopback
- [PATCH 0/8] netfilter: netfilter fixes for -rc1
- [PATCH 2/6] netfilter: ip_tables: fix compile with debug
- [PATCH 1/6] IPVS netns exit causes crash in conntrack
- [PATCH 4/6] netfilter: ipt_ecn: fix inversion for IP header ECN match
- [PATCH 3/6] netfilter: ipt_ecn: fix protocol check in ecn_mt_check()
- Re: [PATCH 15/15] netfilter: ipset: Whitespace and coding fixes detected by checkpatch.pl
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 14/15] netfilter: ipset: hash:net,iface type introduced
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 13/15] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 12/15] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 11/15] netfilter: ipset: Add xt_action_param to the variant level kadt functions, ipset API change
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 10/15] netfilter: ipset: Use unified from/to address masking and check the usage
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 09/15] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 08/15] netfilter: ipset: Adding ranges to hash types with timeout could still fail, fixed
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 07/15] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 06/15] netfilter: ipset: Set type support with multiple revisions added
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 05/15] netfilter: ipset: Fix adding ranges to hash types
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 04/15] netfilter: ipset: Support listing setnames and headers too
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 03/15] netfilter: ipset: Options and flags support added to the kernel API
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 02/15] netfilter: ipset: Whitespace fixes: some space before tab slipped in.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 01/15] netfilter: ipset: Timeout can be modified for already added elements
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: avoid double seq_adjust for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter/ip_tables: fix compile with debug
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [GIT PULL nf-2.6] IPVS
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [GIT PULL net-next-2.6] IPVS
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [patch] iptables-1.4.11.1: Fix man page generation
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [patch] iptables-1.4.11.1: Fix man page generation
- From: Peter Volkov <pva@xxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] iptables: document IPv6 TOS mangling bug in old Linux kernels
- From: Fernando Luis Vazquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH conntrack] conntrack: add missing break when parsing --id/--secmark options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] ebtables: Possible problems found by static analysis of code
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH conntrack-tools] testsuite: add tests for --mark option
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter/ip_tables: fix compile with debug
- From: Sebastian Andrzej Siewior <sebastian@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- Re: [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 2/2] conntrack: -U: skip sending conntrack update message if conntrack is unchanged
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/2] conntrack: add support for mark mask
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 0/2] conntrack: permit updating only a part of the ctmark
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- [PATCH 4/5] IPVS: labels at pos 0
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL net-next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/5] IPVS: rename of netns init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/5] ipvs: support more FTP PASV responses
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 5/5] IPVS: remove unused init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/5] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [GIT PULL next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- BUG: scheduling while atomic: expect_create_u
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- [PATCH] ebtables: Possible problems found by static analysis of code
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: "Hans Schillstrom" <hans@xxxxxxxxxxxxxxx>
- Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] MAINTAINERS: Update EBTABLES mailing list
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next 2/2] net: netfilter: Remove casts of void *
- From: Joe Perches <joe@xxxxxxxxxxx>
- [PATCH net-next 0/2] net: remove casts of void *
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: "Hans Schillstrom" <hans@xxxxxxxxxxxxxxx>
- Re: [PATCH 0/2] rework of userspace expectation support
- From: Sam Roberts <vieuxtech@xxxxxxxxx>
- Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] libnfnetlink: BAD_SIZEOF
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] libnetfilter_conntrack: conntrack/objopt: NO_EFFECT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/2] IPVS: labels at pos 0
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 0/2] IPVS: init and cleanup.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 2/2] IPVS: remove unused init and cleanup functions.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [RFC PATCH 1/1] IPVS netns shutdown/startup dead-lock
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH] IPVS netns exit causes crash in conntrack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL nf-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 3/3] IPVS: rename of netns init and cleanup functions.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL next-2.6] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/3] ipvs: support more FTP PASV responses
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 2/3] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [v2 PATCH 0/6] IPVS: init and cleanup.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS netns exit causes crash in conntrack
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS remove unused var from migration to netns
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 1/1] IPVS netns exit causes crash in conntrack
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: option "--state" cannot be inverted
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- option "--state" cannot be inverted
- From: Sergei Zhirikov <sfzhi@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Avi Kivity <avi@xxxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH 0/8] Possible problems found by static analysis of code
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 7/8] iptables: Coverity: OVERRUN_STATIC
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Henrique de Moraes Holschuh <hmh@xxxxxxxxxx>
- Re: [PATCH 0/8] Possible problems found by static analysis of code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 8/8] iptables: Coverity: RESOURCE_LEAK
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 7/8] iptables: Coverity: OVERRUN_STATIC
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 6/8] iptables: Coverity: VARARGS
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 5/8] iptables: Coverity: UNINIT
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 4/8] iptables: Coverity: REVERSE_INULL
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 3/8] iptables: Coverity: NEGATIVE_RETURNS
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 2/8] iptables: Coverity: FORWARD_NULL
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 1/8] iptables: Coverity: DEADCODE
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH 0/8] Possible problems found by static analysis of code
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Mark Lord <kernel@xxxxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- [PATCH] libnetfilter_conntrack: conntrack/objopt: NO_EFFECT
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- [PATCH] libnfnetlink: BAD_SIZEOF
- From: Jiri Popelka <jpopelka@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH 1/1] IPVS remove unused var from migration to netns
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- [PATCH] net: netfilter: ipvs: clean up the dead code
- From: Changli Gao <xiaosuo@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Simon Horman <horms@xxxxxxxxxxxx>
- ebtables-2.0.9-2 libebetc PHONY
- From: Bertrand Jacquin <beber@xxxxxxxxxxxx>
- [PATCH next] netfilter: nfqueue: batch verdict support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH 4/4] netfilter: xtables: collapse conditions in xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/4] netfilter: xtables: give xt_ecn its own name
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/4] netfilter: xtables: add an IPv6 capable version of the ECN match
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/4] netfilter: xtables: move ipt_ecn to xt_ecn
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- xt_ecn in smaller pieces
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans@xxxxxxxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Nadeem Douba <ndouba@xxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 1/4] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/4] ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/4] netfilter: nf_conntrack: provide config option to disable ancient procfs parts
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/4] netfilter patches for nf-next-2.6
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/4] netfilter: nf_conntrack: remove one synchronize_net()
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's MAC handling.
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Pierre Chifflier <chifflier@xxxxxxxxxxx>
- [PATCH] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 0/1] doc: include matches/targets in manpage again
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [NEW SOFTWARE] FIRO - Iptables optimization
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [NEW SOFTWARE] FIRO - Iptables optimization
- From: Tihomir Katic <tihomir.katic@xxxxxxxxx>
- Re: [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ipvs netns exit causes crash in conntrack.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- ipvs netns exit causes crash in conntrack.
- From: Hans Schillstrom <hans@xxxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] iptables: extensions: add IPv6 capable ECN match extension
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Dave Taht <dave.taht@xxxxxxxxx>
- [PATCH 3/3] netfilter: xtables: add an IPv6 capable version of the ECN match
- [PATCH 0/3] netfilter: ecn match fixes and IPv6 capable xtables port
- [PATCH 2/3] netfilter: ipt_ecn: fix inversion for IP header ECN match
- [PATCH 1/3] netfilter: ipt_ecn: fix protocol check in ecn_mt_check()
- Re: netfilter release signing keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- netfilter release signing keys
- From: Adam Sampson <ats@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: FTP Packet Mangling & NAT
- From: Amos Jeffries <squid3@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- FTP Packet Mangling & NAT
- From: Nadeem Douba <ndouba@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Eric Paris <eparis@xxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [RFC] ecn match ported to ipv6
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Fwd: [RFC] ecn match ported to ipv6
- From: Dave Taht <dave.taht@xxxxxxxxx>
- Re: [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: fix looped (broad|multi)cast's bogus MACs in NFQUEUE
- From: Nicolas Cavallari <Nicolas.Cavallari@xxxxxx>
- [RFC] ecn match ported to ipv6
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- [ANNOUNCE]: Release of iptables-1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] iptables: fix MASQUERADE section of man page
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] iptables: fix MASQUERADE section of man page
- From: Vlad Dogaru <ddvlad@xxxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Compile fix
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH] build: re-add missing CPPFLAGS for libiptc
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Compile fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Installer, option fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Installer, option fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: Sebastian Siewior <sebastian@xxxxxxxxxxxxx>
- Re: [PATCH 4/5] tests: add some sample rulesets to test save-restore cycle
- From: Konstantin Khorenko <khorenko@xxxxxxxxxx>
- [PATCH v2] netfilter: avoid double seq_adjust for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11.1
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Olaf <mailinglists@xxxxxxxxxxxx>
- Re: [RFC] SLOB breaks netfilter
- From: David Miller <davem@xxxxxxxxxxxxx>
- [RFC] SLOB breaks netfilter
- From: Sebastian Andrzej Siewior <sebastian@xxxxxxxxxxxxx>
- [PATCH 3/5] Looks like the MTA ate this
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/5] option: fix ignored negation before implicit extension loading
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/5] tests: add some sample rulesets to test save-restore cycle
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/5] src: move all libiptc pieces into its directory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/5] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Installer, option fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Iptables 1.4.11.1
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- [PATCH 13/15] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/15] netfilter: ipset: Add xt_action_param to the variant level kadt functions, ipset API change
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/15] netfilter: ipset: Use unified from/to address masking and check the usage
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/15] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/15] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 01/15] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/15] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/15] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 15/15] netfilter: ipset: Whitespace and coding fixes detected by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 14/15] netfilter: ipset: hash:net,iface type introduced
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/15] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/15] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/15] netfilter: ipset: Adding ranges to hash types with timeout could still fail, fixed
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/15] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/15] ipset patches against nf-next-2.6, next try
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/15] netfilter: ipset: Whitespace fixes: some space before tab slipped in.
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Dave Jones <davej@xxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: iptables 1.4.11, cannot invert tcp flags
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- [PATCH 3rd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: Iptables 1.4.11 can not be compiled with 2.6.39.1 kernel Debian Squeeze
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Iptables 1.4.11 can not be compiled with 2.6.39.1 kernel Debian Squeeze
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: ip6tables functionality test is wanted
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- iptables 1.4.11, cannot invert tcp flags
- From: Olaf <mailinglists@xxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Fernando Luis Vázquez Cao <fernando@xxxxxxxxxxxxx>
- Re: [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- [PATCH] xtables-multi: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: ip6tables functionality test is wanted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Bart De Schuymer <bdschuym@xxxxxxxxxx>
- ip6tables functionality test is wanted
- From: Konstantin Khorenko <khorenko@xxxxxxxxxxxxx>
- Re: [stable] [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: Greg KH <greg@xxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Steve Grubb <sgrubb@xxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: "\"Oleg A. Arkhangelsky\"" <sysoleg@xxxxxxxxx>
- [PATCH 2/2] netfilter: IPv6: fix DSCP mangle code
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/2] netfilter: IPv6: initialize TOS field in REJECT target module
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 0/7] netfilter fixes for 3.0.0-rc1 (try 2)
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: use unsigned variables for packet lengths in ip[6]_queue.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 6/7] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 5/7] netfilter: nf_nat: fix crash in nf_nat_csum
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/7] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/7] netfilter: ipset: Fix return code for destroy when sets are in use
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/7] netfilter: add more values to enum ip_conntrack_info
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/7] ipvs: restore support for iptables SNAT
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/7] netfilter fixes for 3.0.0-rc1 (try 2)
- From: pablo@xxxxxxxxxxxxx
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH 20/20] netfilter: nf_conntrack: provide config option to disable ancient procfs parts
- From: pablo@xxxxxxxxxxxxx
- [PATCH 19/20] netfilter: use unsigned variables for packet lengths in ip[6]_queue.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 18/20] netfilter: nf_conntrack: fix ct refcount leak in l4proto->error()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 17/20] netfilter: nf_nat: fix crash in nf_nat_csum
- From: pablo@xxxxxxxxxxxxx
- [PATCH 16/20] netfilter: nf_conntrack: remove one synchronize_net()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 15/20] ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: pablo@xxxxxxxxxxxxx
- [PATCH 13/20] netfilter: ipset: hash:net,iface type introduced
- From: pablo@xxxxxxxxxxxxx
- [PATCH 14/20] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: pablo@xxxxxxxxxxxxx
- [PATCH 12/20] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: pablo@xxxxxxxxxxxxx
- [PATCH 11/20] netfilter: ipset: Fix return code for destroy when sets are in use
- From: pablo@xxxxxxxxxxxxx
- [PATCH 10/20] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: pablo@xxxxxxxxxxxxx
- [PATCH 08/20] netfilter: add more values to enum ip_conntrack_info
- From: pablo@xxxxxxxxxxxxx
- [PATCH 07/20] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: pablo@xxxxxxxxxxxxx
- [PATCH 06/20] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: pablo@xxxxxxxxxxxxx
- [PATCH 05/20] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: pablo@xxxxxxxxxxxxx
- [PATCH 04/20] netfilter: ipset: Set type support with multiple revisions added
- From: pablo@xxxxxxxxxxxxx
- [PATCH 03/20] netfilter: ipset: Fix adding ranges to hash types
- From: pablo@xxxxxxxxxxxxx
- [PATCH 01/20] netfilter: ipset: Options and flags support added to the kernel API
- From: pablo@xxxxxxxxxxxxx
- [PATCH 02/20] netfilter: ipset: Support listing setnames and headers too
- From: pablo@xxxxxxxxxxxxx
- [PATCH 00/20] netfilter updates for 3.0.0-rc1
- From: pablo@xxxxxxxxxxxxx
- Re: option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Avi Kivity <avi@xxxxxxxxxx>
- [PATCH 2nd revision] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- [PATCH] netfilter: nf_nat: avoid double nat for loopback
- From: Julian Anastasov <ja@xxxxxx>
- Re: Linux netfilter shuts down the server
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: KVM induced panic on 2.6.38[2367] & 2.6.39
- From: Brad Campbell <brad@xxxxxxxxxxxxxxx>
- Re: option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- Re: Problem with seq adjustment for NAT over loopback device
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Additional GOP fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- option to disable /proc/net/nf_conntrack procfs [was Re: netfilter patches for 3.0.0-rc1]
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: netfilter patches for 3.0.0-rc1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Additional GOP fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: David Miller <davem@xxxxxxxxxxxxx>
- Re: [PATCH] Use unsigned variables for packet lengths in ip[6]_queue.
- From: David Miller <davem@xxxxxxxxxxxxx>
- [ANNOUNCE] IPTV-Analyzer project released v0.9.2
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- Re: [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Linux netfilter shuts down the server
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Linux netfilter shuts down the server
- From: Lutfi ODUNCUOGLU <lutfio@xxxxxxxxxxx>
- netfilter patches for 3.0.0-rc1
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Additional GOP fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: restore support for iptables SNAT
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] netfilter: nf_conntrack: remove one synchronize_net()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 12/12] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 11/12] netfilter: ipset: hash:net,iface type introduced
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 10/12] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 09/12] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 08/12] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] ipvs: restore support for iptables SNAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Iptables
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next-2.6] netfilter: add more values to enum ip_conntrack_info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] ipvs: restore support for iptables SNAT
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [GIT PULL pablo/nf-2.6-updates] IPVS
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 01/12] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 05/12] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 07/12] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 08/12] netfilter: ipset: Add xt_action_param to the variant level kadt functions
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 11/12] netfilter: ipset: hash:net,iface type introduced
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 12/12] netfilter: ipset: Whitespace and coding fixes, detected by checkpatch.pl
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 02/12] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 06/12] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 04/12] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 03/12] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 10/12] netfilter: ipset: Use the stored first cidr value instead of '1'
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 00/12] ipset patches against nf-next-2.6, updated again
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 09/12] netfilter: ipset: Fix return code for destroy when sets are in use
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Netfilter Module for NAT64 available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [ANNOUNCE] ipset 6.7 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Menyhart Zoltan <Zoltan.Menyhart@xxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Menyhart Zoltan <Zoltan.Menyhart@xxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 2/5] build: fix installation of symlinks
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 5/5] doc: iptables-xml should be in manpage section 1
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 4/5] doc: update GPL license text
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 3/5] build: fix absence of xml translator in IPv6-only builds
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 2/5] build: fix installation of symlinks
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 1/5] build: remove dead code parts
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- iptables fixes for 2011-05-30
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Arkadiusz Miskiewicz <a.miskiewicz@xxxxxxxxx>
- Re: linux-next: build warning in Linus' tree
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- linux-next: build warning in Linus' tree
- From: Stephen Rothwell <sfr@xxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH] netfilter: nf_nat: fix crash in nf_nat_csum
- From: Julian Anastasov <ja@xxxxxx>
- Problem with seq adjustment for NAT over loopback device
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH] netfilter, ipvs: Avoid undefined order of evaluation in assignments to struct nf_conn *
- From: Jesper Juhl <jj@xxxxxxxxxxxxx>
- [PATCH] libxt_owner: restore inversion support
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Additional GOP fix
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Possible iptables 4.4.11 issues
- From: Tom Eastep <teastep@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [TRIVIAL PATCH next 00/15] treewide: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- [TRIVIAL PATCH next 15/15] net: Convert vmalloc/memset to vzalloc
- From: Joe Perches <joe@xxxxxxxxxxx>
- Problems Compiling netfilter_queue on Fedora 14
- From: "Roth, Andrew" <andrew.roth@xxxxxxxxxx>
- Re: [PATCH 0/5] Netfilter updates for net-2.6
- From: David Miller <davem@xxxxxxxxxxxxx>
- [PATCH] netfilter: nf_conntrack: remove one synchronize_net()
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 5/5] IPVS: bug in ip_vs_ftp, same list heaad used in all netns.
- From: pablo@xxxxxxxxxxxxx
- [PATCH 3/5] netfilter: ipset: fix ip_set_flush return code
- From: pablo@xxxxxxxxxxxxx
- [PATCH 4/5] netfilter: Fix several warnings in compat_mtw_from_user().
- From: pablo@xxxxxxxxxxxxx
- [PATCH 2/5] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: pablo@xxxxxxxxxxxxx
- [PATCH 1/5] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: pablo@xxxxxxxxxxxxx
- [PATCH 0/5] Netfilter updates for net-2.6
- From: pablo@xxxxxxxxxxxxx
- Re: [netfilter-core] Cannot unload nf_conntrack
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Arkadiusz Miskiewicz <a.miskiewicz@xxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] ipset patches against net-next-2.6/nf-next-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/7] ipset patches against net-next-2.6/nf-next-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [ANNOUNCE]: Release of iptables-1.4.11
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 0/6] ipset patches against net-next-2.6/nf-next-2.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [ANNOUNCE]: Release of iptables-1.4.11
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH v3 resend] netfilter: nf_conntrack_sip: Handle Cisco 7941/7945 IP phones
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Add SELinux context support to AUDIT target
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: Fix several warnings in compat_mtw_from_user().
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 0/2] ipset patches against net-2.6/nf-2.6
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Simon Horman <horms@xxxxxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Maciej Żenczykowski <zenczykowski@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH] Provide family and protocol to make getaddrinfo happy
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Proposed fix for getaddrinfo() issue
- From: Lutz Jaenicke <ljaenicke@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: Doc/Option parser fixes
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: Force socket error on iptables reject with icmp semantics?
- From: JP Abgrall <jpa@xxxxxxxxxx>
- Re: [PATCH 12/24] libxt_ipvs: restore network-byte order
- From: Simon Horman <horms@xxxxxxxxxxxx>
- [PATCH 24/24] libxt_time: deprecate --localtz option, document kernel TZ caveats
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 23/24] libxt_time: --utc and --localtz are mutually exclusive
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 22/24] libxt_time: always ignore libc timezone
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 21/24] libxt_NFQUEUE: add mutual exclusion between qnum and qbal
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 20/24] libxt_NFQUEUE: avoid double attempt at parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 19/24] libxtables: have xtopt_parse_mint interpret partially-spec'd ranges
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 18/24] libxtables: unclutter xtopt_parse_mint
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 17/24] libxtables: make multiint parser have greater range
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 16/24] libxtables: use uintmax for xtables_strtoul
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 15/24] libxtables: more detailed error message on multi-int parsing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 14/24] libip6t_rt: restore --rt-type storing
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 13/24] libxt_u32: --u32 option is required
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 12/24] libxt_ipvs: restore network-byte order
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 11/24] doc: remove redundant .IP calls in libxt_time
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 10/24] doc: use .IP list for TCPMSS
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 09/24] doc: clarify that -p all is a special keyword only
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 08/24] doc: make usage of libxt_rateest more obvious
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 07/24] doc: add some coded option examples to libxt_hashlimit
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 06/24] libxt_rateest: streamline case display of units
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 05/24] libxtables: check for negative numbers in xtables_strtou*
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 04/24] libxt_quota: make sure uint64 is not truncated
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 03/24] libxt_quota: readd missing XTOPT_PUT request
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 02/24] libipt_REDIRECT: "--to-ports" is not mandatory
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [PATCH 01/24] libxtables: retract _NE types and use a flag instead
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Doc/Option parser fixes
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [ANNOUNCE] IPTV-Analyzer project released v0.9.1
- From: Jesper Dangaard Brouer <hawk@xxxxxxx>
- Re: The glorious NFCT "none" helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: Netfilter Module for NAT IVI available
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: [PATCH 3/3] netfilter: ipset: fix ip_set_flush return code
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- Re: [PATCH 2/3] netfilter: ipset: remove unused variable from type_pf_tdel()
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 1/3] netfilter: ipset: Use proper timeout value to jiffies conversion
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: [PATCH 0/3] ipset patches against net-2.6/nf-2.6, updated
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: icmp_send function broken?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: EXPORT_SYMBOL missing in the kernel?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- Re: icmp_send function broken?
- From: Eric Dumazet <eric.dumazet@xxxxxxxxx>
- icmp_send function broken?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- EXPORT_SYMBOL missing in the kernel?
- From: Pierre Rondou <prondou@xxxxxxxxx>
- IPv6 reassembly in the FORWARD HOOK in Netfilter
- From: Pierre Rondou <prondou@xxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Patrick McHardy <kaber@xxxxxxxxx>
- Re: ipset and interfaces
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Anton VG <anton.vazir@xxxxxxxxx>
- Re: ipset and interfaces
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/1] IPVS : bug in ip_vs_ftp, same list heaad used in all netns.
- From: Hans Schillstrom <hans.schillstrom@xxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: ipset and interfaces
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- ipset and interfaces
- From: Oskar Berggren <oskar.berggren@xxxxxxxxx>
- Re: [ANNOUNCE] ipset 6.6 released
- From: Mr Dash Four <mr.dash.four@xxxxxxxxxxxxxx>
- Re: [PATCH 10/13] libxt_rateest: avoid optional arguments
- From: Jan Engelhardt <jengelh@xxxxxxxxxx>
- [ANNOUNCE] ipset 6.6 released
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 5/7] netfilter: ipset: Set type support with multiple revisions added
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 7/7] netfilter: ipset: Take into account cidr value for the from address when creating the set
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 4/7] netfilter: ipset: Fix adding ranges to hash types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 6/7] netfilter: ipset: Support range for IPv4 at adding/deleting elements for hash:*net* types
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 2/7] netfilter: ipset: Options and flags support added to the kernel API
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 1/7] netfilter: ipset: Timeout can be modified for already added elements
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- [PATCH 3/7] netfilter: ipset: Support listing setnames and headers too
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]