Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [nft PATCH v2 1/3] expression: Introduce is_symbol_value_expr() macro
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 3/3] evaluate: Fix for 'meta hour' ranges spanning date boundaries
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/3] parser_json: Parse into symbol range expression if possible
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 0/3] evaluate: Fix for 'meta hour' ranges spanning date boundaries
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v5 0/2] Add IPIP flowtable SW acceleratio
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [nft PATCH] evaluate: Fix for 'meta hour' ranges spanning date boundaries
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 net] ipvs: Fix estimator kthreads preferred affinity
- From: Frederic Weisbecker <frederic@xxxxxxxxxx>
- [PATCH net] ipvs: Fix estimator kthreads preferred affinity
- From: Frederic Weisbecker <frederic@xxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [no subject]
- Re: [PATCH bpf-next v3 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- Re: [PATCH bpf-next v3 0/4] bpf: add icmp_send_unreach kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- Re: [PATCH bpf-next v3 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- Wstrzymanie rat
- From: "Jolanta Borowczyk" <jolanta.borowczyk@xxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH v6 2/2] Add test for nft_max_table_jumps_netns sysctl
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- Re: [PATCH v3 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Lance Yang <lance.yang@xxxxxxxxx>
- Re: [PATCH bpf-next v3 0/4] bpf: add icmp_send_unreach kfunc
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH bpf-next v3 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH bpf-next v3 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: Martin KaFai Lau <martin.lau@xxxxxxxxx>
- Re: [PATCH v3 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Introduce NFTA_DEVICE_WILDCARD
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [REGRESSION] v6.16 system hangs (bisected to nf_conntrack fix)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v6 2/2] Add test for nft_max_table_jumps_netns sysctl
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [REGRESSION] v6.16 system hangs (bisected to nf_conntrack fix)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] evaluate: Fix for 'meta hour' ranges spanning date boundaries
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [REGRESSION] v6.16 system hangs (bisected to nf_conntrack fix)
- From: Dan Moulding <dan@xxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH bpf-next v3 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- Re: [PATCH bpf-next v3 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Yonghong Song <yonghong.song@xxxxxxxxx>
- [PATCH v3 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Lance Yang <lance.yang@xxxxxxxxx>
- [PATCH bpf-next v3 1/4] net: move netfilter nf_reject_fill_skb_dst to core ipv4
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v3 0/4] bpf: add icmp_send_unreach kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v3 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v3 2/4] net: move netfilter nf_reject6_fill_skb_dst to core ipv6
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v3 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- Re: [PATCH v6 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v5 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- [PATCH v6 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- [PATCH v6 2/2] Add test for nft_max_table_jumps_netns sysctl
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- Re: [PATCH bpf-next v2 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net v2] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [syzbot] [netfilter?] WARNING in nft_socket_init (2)
- From: syzbot <syzbot+a225fea35d7baf8dbdc3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next 01/19] netfilter: conntrack: table full detailed log
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net-next 13/19] netfilter: nft_set: remove one argument from lookup and update functions
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net-next 13/19] netfilter: nft_set: remove one argument from lookup and update functions
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Introduce NFTA_DEVICE_WILDCARD
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH] evaluate: Fix for 'meta hour' ranges spanning date boundaries
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v2 4/4] selftests/bpf: add icmp_send_unreach kfunc tests
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v2 3/4] bpf: add bpf_icmp_send_unreach cgroup_skb kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v2 2/4] net: move netfilter nf_reject6_fill_skb_dst to core ipv6
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v2 1/4] net: move netfilter nf_reject_fill_skb_dst to core ipv4
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH bpf-next v1 0/4] bpf: add icmp_send_unreach kfunc
- From: Mahe Tardy <mahe.tardy@xxxxxxxxx>
- [PATCH net-next 18/19] selftests: netfilter: Ignore tainted kernels in interface stress test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 16/19] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 19/19] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 14/19] netfilter: nft_set: remove indirection from update API call
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 17/19] netfilter: xt_nfacct: don't assume acct name is null-terminated
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 11/19] netfilter: nfnetlink_hook: Dump flowtable info
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 13/19] netfilter: nft_set: remove one argument from lookup and update functions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 15/19] netfilter: nft_set_pipapo: merge pipapo_get/lookup
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 09/19] ipvs: Rename del_timer in comment in ip_vs_conn_expire_now()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 12/19] netfilter: nft_set_pipapo: remove unused arguments
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 08/19] selftests: netfilter: Enable CONFIG_INET_SCTP_DIAG
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 10/19] netfilter: nfnetlink: New NFNLA_HOOK_INFO_DESC helper
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 06/19] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 07/19] selftests: net: Enable legacy netfilter legacy options.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 04/19] netfilter: nf_tables: Remove unused nft_reduce_is_readonly()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 05/19] netfilter: conntrack: Remove unused net in nf_conntrack_double_lock()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 03/19] netfilter: x_tables: Remove unused functions xt_{in|out}name()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 02/19] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 00/19] Netfilter/IPVS updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 01/19] netfilter: conntrack: table full detailed log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [syzbot] [netfilter?] WARNING in nft_socket_init (2)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [syzbot] [netfilter?] WARNING in nft_socket_init (2)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Introduce NFTA_DEVICE_WILDCARD
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] WARNING in nft_socket_init (2)
- From: syzbot <syzbot+a225fea35d7baf8dbdc3@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2] netfilter: nf_conntrack: table full detailed log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] netfilter: nf_conntrack: table full detailed log
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] netfilter: nf_conntrack: table full detailed log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf-next RFC] netfilter: nf_tables: Introduce NFTA_DEVICE_WILDCARD
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next 0/3] netfilter: nft_set_pipapo: Use nested-BH locking for nft_pipapo_scratch
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] netfilter: nf_conntrack: table full detailed log
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Lance Yang <lance.yang@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/5] netfilter: nft_set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: fix memory leak in anon chain error handling
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] parser_bison: fix memory leak when parsing flowtable hook declaration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net v2] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0
- From: Hangbin Liu <liuhangbin@xxxxxxxxx>
- [PATCH] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH v2 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: Subject: [nftables] Bug: dup rule fails to modify MAC address on netdev/ingress hook
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf PATCH] selftests: netfilter: Ignore tainted kernels in interface stress test
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] parser_bison: fix memory leak when parsing flowtable hook declaration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v2 0/5] netfilter: nft_set updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Phil Sutter <phil@xxxxxx>
- Subject: [nftables] Bug: dup rule fails to modify MAC address on netdev/ingress hook
- From: "zs@xxxxxxxx" <zs@xxxxxxxx>
- Re: [PATCH v5 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- Re: [PATCH v2 net] selftests: netfilter: tone-down conntrack clash test
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH nf-next v2 0/5] netfilter: nft_set updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH V2] netfilter: nf_conntrack: table full detailed log
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [iptables PATCH 1/2] Revert "libxtables: Promote xtopt_esize_by_type() as xtopt_psize getter"
- From: Phil Sutter <phil@xxxxxx>
- [ipset PATCH] tests: Fix for standalone calls to setlist_resize.sh
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 2/2] xtables-monitor: Print -X command for base chains, too
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH 1/2] Revert "libxtables: Promote xtopt_esize_by_type() as xtopt_psize getter"
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [iptables PATCH] libxtables: Promote xtopt_esize_by_type() as xtopt_psize getter
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH RESEND] ipvs: ip_vs_conn_expire_now: Rename del_timer in comment
- From: WangYuli <wangyuli@xxxxxxxxxxxxx>
- Re: [PATCH RESEND] ipvs: ip_vs_conn_expire_now: Rename del_timer in comment
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v5 1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: maps: check element data mapping matches set data definition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_json: fix assert due to empty interface name
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_json: reject non-concat expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2 net] selftests: netfilter: tone-down conntrack clash test
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v5 2/2] selftests: netfilter: nft_flowtable.sh: Add IPIP flowtable selftest
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v5 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v5 0/2] Add IPIP flowtable SW acceleratio
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [iptables PATCH] libxtables: Promote xtopt_esize_by_type() as xtopt_psize getter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] parser_json: fix assert due to empty interface name
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] parser_json: reject non-concat expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: maps: check element data mapping matches set data definition
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH bpf-next] netfilter: bpf: Disable migrate before bpf_prog run
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [syzbot] Monthly netfilter report (Jul 2025)
- From: syzbot <syzbot+lista2316b751ebb20114d19@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next] netfilter: bpf: Disable migrate before bpf_prog run
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH bpf-next] netfilter: bpf: Disable migrate before bpf_prog run
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [iptables PATCH] libxtables: Promote xtopt_esize_by_type() as xtopt_psize getter
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: xt_nfacct: don't assume acct name is null-terminated
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v4 2/2] selftests: netfilter: nft_flowtable.sh: Add IPIP flowtable selftest
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v4 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v4 0/2] Add IPIP flowtable SW acceleratio
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [syzbot] [netfilter?] KASAN: slab-out-of-bounds Read in nfacct_mt_checkentry
- From: syzbot <syzbot+4ff165b9251e4d295690@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [syzbot] [netfilter?] KASAN: slab-out-of-bounds Read in nfacct_mt_checkentry
- From: Aleksandr Nogikh <nogikh@xxxxxxxxxx>
- [syzbot] [netfilter?] KASAN: slab-out-of-bounds Read in nfacct_mt_checkentry
- From: syzbot <syzbot+4ff165b9251e4d295690@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v1 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- Re: [PATCH v1 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v1 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Alexei Starovoitov <alexei.starovoitov@xxxxxxxxx>
- [PATCH v1 bpf] bpf: Disable migration in nf_hook_run_bpf().
- From: Kuniyuki Iwashima <kuniyu@xxxxxxxxxx>
- [syzbot] [netfilter?] [sctp?] BUG: assuming non migratable context at ./include/linux/filter.h:LINE
- From: syzbot <syzbot+92c5daf9a23f04ccfc99@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] asn: fix missing quiet checks in xt_asn_build
- From: Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH net 2/7] selftests: netfilter: add conntrack clash resolution test case
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net,v2 0/7] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2 0/7] Netfilter fixes for net
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net 2/7] selftests: netfilter: add conntrack clash resolution test case
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH net,v2 0/7] Netfilter fixes for net
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/7] selftests: netfilter: conntrack_resize.sh: extend resize test
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net,v2 0/7] Netfilter fixes for net
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Phil Sutter <phil@xxxxxx>
- [PATCH net,v2 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 7/7] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 5/7] netfilter: nf_tables: hide clash bit from userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 6/7] Revert "netfilter: nf_tables: Add notifications for hook changes"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/7] selftests: netfilter: nft_concat_range.sh: send packets to empty set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/7] selftests: netfilter: add conntrack clash resolution test case
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/7] selftests: netfilter: conntrack_resize.sh: extend resize test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/7] selftests: netfilter: conntrack_resize.sh: also use udpclash tool
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/7] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH iptables v2] extensions: libebt_redirect: prevent translation
- From: Miao Wang via B4 Relay <devnull+shankerwangmiao.gmail.com@xxxxxxxxxx>
- [nft PATCH v4 0/3] Support wildcard netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v4 2/3] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v4 3/3] tests: shell: Test ifname-based hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v4 1/3] mnl: Support simple wildcards in netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v2 nf] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: __nf_ct_delete_from_lists crash, with bisected guilty commit found
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: __nf_ct_delete_from_lists crash, with bisected guilty commit found
- From: Razvan Cojocaru <rzvncj@xxxxxxxxx>
- __nf_ct_delete_from_lists crash, with bisected guilty commit found
- From: Razvan Cojocaru <rzvncj@xxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH v3 1/4] mnl: Call mnl_attr_nest_end() just once
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH v3] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v3 2/4] mnl: Support simple wildcards in netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH v3] utils: Add helpers for interface name wildcards
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v3 2/4] mnl: Support simple wildcards in netdev hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH v3 1/4] mnl: Call mnl_attr_nest_end() just once
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH v3 0/4] Support wildcard netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v3 2/4] mnl: Support simple wildcards in netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v3 4/4] tests: shell: Test ifname-based hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v3 3/4] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v3 1/4] mnl: Call mnl_attr_nest_end() just once
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH v3] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 1/3] mnl: Support simple wildcards in netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH v2 1/3] mnl: Support simple wildcards in netdev hooks
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [syzbot] [net?] INFO: task hung in inet_rtm_newaddr
- From: syzbot <syzbot+adeb8550754921fece20@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [nft PATCH v2 3/3] tests: shell: Test ifname-based hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 1/3] mnl: Support simple wildcards in netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 2/3] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH v2 0/3] Support wildcard netdev hooks
- From: Phil Sutter <phil@xxxxxx>
- [libnftnl PATCH v2] utils: Add helpers for interface name wildcards
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] mnl: Support NFNL_HOOK_TYPE_NFT_FLOWTABLE
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] tests: shell: add type route chain test case
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] tests: shell: add type route chain test case
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v13 nf-next 1/3] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf PATCH] Revert "netfilter: nf_tables: Add notifications for hook changes"
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: hide clash bit from userspace
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] json: BASECHAIN flag no longer implies presence of priority expression
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] doc: expand on gc-interval, size and a few other set/map keywords
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
- From: Lance Yang <lance.yang@xxxxxxxxx>
- Who's focused on dynamic 'nft' autocomplete?
- From: S Egbert <s.egbert@xxxxxxxxxxxxx>
- Re: [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: Feedback on variable sized set elements
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- Re: [PATCH bpf-next v4 0/7] Move attach_type into bpf_link
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH bpf-next v4 1/7] bpf: Add attach_type in bpf_link
- From: Andrii Nakryiko <andrii.nakryiko@xxxxxxxxx>
- Re: [PATCH bpf-next v4 3/7] bpf: Remove attach_type in sockmap_link
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- Re: [PATCH bpf-next v4 4/7] bpf: Remove location field in tcx_link
- From: John Fastabend <john.fastabend@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- [no subject]
- Re: Feedback on variable sized set elements
- From: Florian Westphal <fw@xxxxxxxxx>
- Feedback on variable sized set elements
- From: Shaun Brady <brady.1345@xxxxxxxxx>
- Re: [PATCH net-next 1/4] netfilter: conntrack: remove DCCP protocol support
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: Netfilter updates for net-next (v2)
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto()
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH net] netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nf PATCH] Revert "netfilter: nf_tables: Add notifications for hook changes"
- From: Phil Sutter <phil@xxxxxx>
- add_cmd non-terminal symbol in Bison parser needs to go on a diet
- From: S Egbert <s.egbert@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v4 7/7] netkit: Remove location field in netkit_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 6/7] bpf: Remove attach_type in bpf_tracing_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 5/7] bpf: Remove attach_type in bpf_netns_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 4/7] bpf: Remove location field in tcx_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 3/7] bpf: Remove attach_type in sockmap_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 2/7] bpf: Remove attach_type in bpf_cgroup_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 1/7] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v4 0/7] Move attach_type into bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH net-next 1/4] netfilter: conntrack: remove DCCP protocol support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/4] netfilter: nf_tables: adjust lockdep assertions handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/4] netfilter: nf_tables: Reintroduce shortened deletion notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/4] netfilter: nf_tables: Drop dead code from fill_*_info routines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Netfilter updates for net-next (v2)
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/4] netfilter: conntrack: remove DCCP protocol support
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/4] netfilter: nf_tables: adjust lockdep assertions handling
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/4] netfilter: nf_tables: Reintroduce shortened deletion notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/4] netfilter: nf_tables: Drop dead code from fill_*_info routines
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/4] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] doc: expand on gc-interval, size and a few other set/map keywords
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] Typo in contrackd-conf manpage
- From: Xavier Claude <contact@xxxxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] Typo in contrackd-conf manpage
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools] Typo in contrackd-conf manpage
- From: Xavier Claude <contact@xxxxxxxxxxxxxxx>
- [PATCH nf-next v2 5/5] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 4/5] netfilter: nft_set_pipapo: merge pipapo_get/lookup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 3/5] netfilter: nft_set: remove indirection from update API call
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 2/5] netfilter: nft_set: remove one argument from lookup and update functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 1/5] netfilter: nft_set_pipapo: remove unused arguments
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v2 0/5] netfilter: nft_set updates
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/4] detach concat, list and set expression layouts
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] rule: print chain and flowtable devices in quotes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH bpf-next v3 1/7] bpf: Add attach_type in bpf_link
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 3/7] bpf: Remove attach_type in sockmap_link
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 2/7] bpf: Remove attach_type in bpf_cgroup_link
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/7] netkit: Remove location field in netkit_link
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 4/7] bpf: Remove location field in tcx_link
- From: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/7] bpf: Remove attach_type in bpf_netns_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- Re: [PATCH bpf-next v3 0/7] Add attach_type in bpf_link
- From: Jakub Sitnicki <jakub@xxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 5/7] bpf: Remove attach_type in bpf_netns_link
- From: Jakub Sitnicki <jakub@xxxxxxxxxxxxxx>
- Re: [PATCH bpf-next v3 7/7] netkit: Remove location field in netkit_link
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- [PATCH bpf-next v3 7/7] netkit: Remove location field in netkit_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 6/7] bpf: Remove attach_type in bpf_tracing_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 4/7] bpf: Remove location field in tcx_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 5/7] bpf: Remove attach_type in bpf_netns_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 3/7] bpf: Remove attach_type in sockmap_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 2/7] bpf: Remove attach_type in bpf_cgroup_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 1/7] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v3 0/7] Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- Re: [PATCH bpf-next v2 1/7] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH nft 4/4] src: detach set, list and concatenation expression layout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] src: convert set to list expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] evaluate: mappings require set expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] evaluate: validate set expression type before accessing flags
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] detach concat, list and set expression layouts
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] rule: print chain and flowtable devices in quotes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v14 nf-next 2/3] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next 4/5] netfilter: nft_set_pipapo: merge pipapo_get/lookup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v14 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v14 nf-next 1/3] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v14 nf-next 2/3] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v14 nf-next 0/3] conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH bpf-next v2 0/7] Add attach_type in bpf_link
- From: Jiri Olsa <olsajiri@xxxxxxxxx>
- Re: [PATCH bpf-next v2 1/7] bpf: Add attach_type in bpf_link
- From: Jiri Olsa <olsajiri@xxxxxxxxx>
- Re: [nft PATCH] mnl: Support NFNL_HOOK_TYPE_NFT_FLOWTABLE
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 2/2] netfilter: nfnetlink hook: Dump flowtable info
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 1/2] netfilter: nfnetlink: New NFNLA_HOOK_INFO_DESC helper
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] mnl: Support NFNL_HOOK_TYPE_NFT_FLOWTABLE
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 2/2] netfilter: nfnetlink hook: Dump flowtable info
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 1/2] netfilter: nfnetlink: New NFNLA_HOOK_INFO_DESC helper
- From: Phil Sutter <phil@xxxxxx>
- [PATCH bpf-next v2 7/7] netkit: Remove location field in netkit_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 4/7] bpf: Remove location field in tcx_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 5/7] bpf: Remove attach_type in bpf_netns_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 3/7] bpf: Remove attach_type in sockmap_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 6/7] bpf: Remove attach_type in bpf_tracing_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 1/7] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 2/7] bpf: Remove attach_type in bpf_cgroup_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next v2 0/7] Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH nf-next 4/5] netfilter: nft_set_pipapo: merge pipapo_get/lookup
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 5/5] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf-next 1/5] netfilter: nft_set_pipapo: remove unused arguments
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH bpf-next 1/6] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- Re: [PATCH bpf-next 1/6] bpf: Add attach_type in bpf_link
- From: Jiri Olsa <olsajiri@xxxxxxxxx>
- Re: [PATCH nft v3] src: add conntrack information to trace monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v3] src: add conntrack information to trace monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: hide clash bit from userspace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/2] src: add conntrack information to trace monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] src: split monitor trace code into new trace.c
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/2] src: add conntrack information to trace monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/2] src: add conntrack information to trace monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH bpf-next 6/6] bpf: Remove attach_type in bpf_tracing_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 5/6] bpf: Remove attach_type in bpf_netns_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 3/6] bpf: Remove attach_type in bpf_sockmap_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 4/6] bpf: Remove location field in tcx_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 2/6] bpf: Remove attach_type in bpf_cgroup_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 1/6] bpf: Add attach_type in bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH bpf-next 0/6] Move attach_type into bpf_link
- From: Tao Chen <chen.dylane@xxxxxxxxx>
- [PATCH net] netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto()
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [syzbot] [netfilter?] KMSAN: uninit-value in nf_flow_offload_inet_hook (2)
- From: syzbot <syzbot+bf6ed459397e307c3ad2@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH nft 2/2] src: add conntrack information to trace monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] src: split monitor trace code into new trace.c
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 0/2] src: add conntrack information to trace monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 1/1] asn: fix missing quiet checks in xt_asn_build
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v13 nf-next 1/3] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH v13 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v13 nf-next 1/3] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v13 nf-next 3/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v13 nf-next 2/3] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v13 nf-next 1/3] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v13 nf-next 0/3] conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft 2/3] src: do not print unnecessary space for the synproxy object
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH nft 1/3] src: make the mss and wscale fields optional for synproxy object
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 0/3] netfilter: nf_tables: Report found devices when creating a netdev hook
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo.bianconi@xxxxxxxxxx>
- Re: [iptables PATCH] extensions: sctp: Translate bare '-m sctp' match
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- [nf-next 2/2] netfilter: nf_tables: all transaction allocations can now sleep
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next 1/2] netfilter: nf_tables: allow iter callbacks to sleep
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next 0/2] netfilter: nf_tables: make set flush more resistant to memory pressure
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 1/3] src: make the mss and wscale fields optional for synproxy object
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: only print the mss and wscale of synproxy if they are present
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: only print the mss and wscale of synproxy if they are present
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH nft 3/3] src: only print the mss and wscale of synproxy if they are present
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/3] src: only print the mss and wscale of synproxy if they are present
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH nft 2/3] src: do not print unnecessary space for the synproxy object
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH nft 1/3] src: make the mss and wscale fields optional for synproxy object
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH nft 0/3] make the mss and wscale fields optional for synproxy object
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH RESEND] ipvs: ip_vs_conn_expire_now: Rename del_timer in comment
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH nft] src: add conntrack information to trace monitor mode
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH RESEND] ipvs: ip_vs_conn_expire_now: Rename del_timer in comment
- From: WangYuli <wangyuli@xxxxxxxxxxxxx>
- Re: [iptables PATCH] extensions: sctp: Translate bare '-m sctp' match
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next PATCH 0/3] netfilter: nf_tables: Report found devices when creating a netdev hook
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: add conntrack information to trace monitor mode
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl v2] trace: add support for TRACE_CT information
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2] tests: py: re-enables nft-test.py to load the local nftables.py
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH nft] tests: py: correct the py utils path in the source tree
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next 2/5] netfilter: nft_set: remove one argument from lookup and update functions
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] tests: py: correct the py utils path in the source tree
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next v3 2/2] selftests: netfilter: nft_flowtable.sh: Add IPIP flowtable selftest
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v3 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH nf-next v3 0/2] Add IPIP flowtable SW acceleratio
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH nft] tests: py: correct the py utils path in the source tree
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: shell: use the given NFT instead of the one in the search path
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: py: correct the py utils path in the source tree
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH nft] tests: shell: use the given NFT instead of the one in the search path
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- [no subject]
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH net-next v2 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- Re: [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next RFC] netfilter: nf_tables: Feature ifname-based hook registration
- From: Phil Sutter <phil@xxxxxx>
- [iptables PATCH] extensions: sctp: Translate bare '-m sctp' match
- From: Phil Sutter <phil@xxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxx>
- [PATCH nf-next 3/3] netfilter: nft_set_pipapo: Use nested-BH locking for nft_pipapo_scratch
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH nf-next 2/3] netfilter: nft_set_pipapo_avx2: Drop the comment regarding protection
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH nf-next 0/3] netfilter: nft_set_pipapo: Use nested-BH locking for nft_pipapo_scratch
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH nf-next 1/3] netfilter: nft_set_pipapo: Store real pointer, adjust later.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 5/5] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 4/5] netfilter: nft_set_pipapo: merge pipapo_get/lookup
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 3/5] netfilter: nft_set: remove indirection from update API call
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 1/5] netfilter: nft_set_pipapo: remove unused arguments
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 2/5] netfilter: nft_set: remove one argument from lookup and update functions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf-next 0/5] netfilter: nft_set updates
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] selftests: netfilter: nft_concat_range.sh: send packets to empty set
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v12 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v5 0/3] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxx>
- [PATCH v5 3/3] selftests: netfilter: Enable CONFIG_INET_SCTP_DIAG
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH v5 2/3] selftests: net: Enable legacy netfilter legacy options.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH v5 1/3] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH v5 0/3] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH nft] doc: Clarify cgroup meta variable
- From: Michal Koutný <mkoutny@xxxxxxxx>
- More json files pushed to nftables.git
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v12 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH v12 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: conntrack: Remove unused net in nf_conntrack_double_lock()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] netfilter: conntrack: Remove unused net in nf_conntrack_double_lock()
- From: Yue Haibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH net-next v2 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo.bianconi@xxxxxxxxxx>
- Re: [PATCH net-next v2 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf 4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/4] selftests: netfilter: conntrack_resize.sh: also use udpclash tool
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 2/4] selftests: netfilter: add conntrack clash resolution test case
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 0/4] netfilter: conntrack: fix obscure confirmed race
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/4] selftests: netfilter: conntrack_resize.sh: extend resize test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next v2 2/2] selftests: netfilter: nft_flowtable.sh: Add IPIP flowtable selftest
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH net-next v2 1/2] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- [PATCH net-next v2 0/2] Add IPIP flowtable SW acceleratio
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: provide elem_stmt structure to shrink compact counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: provide elem_stmt structure to shrink compact counters
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: check element key vs. set definition
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix ifname_based_hooks feature check
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests: shell: Fix ifname_based_hooks feature check
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: prevent merge of sets with incompatible keys
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: prevent merge of sets with incompatible keys
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] evaluate: check that set type is identical before merging
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] json: reject too long interface names
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: make sure chain jump name comes with a null byte
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: avoid double-free on error handling of bogus objref maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] tests: shell: Fix ifname_based_hooks feature check
- From: Phil Sutter <phil@xxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxx>
- Re: Cannot allocate memory delete table inet filter
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Cannot allocate memory delete table inet filter
- From: Sven Auhagen <Sven.Auhagen@xxxxxxxxxx>
- [no subject]
- Re: [PATCH net-next] net: netfilter: Add IPIP flowtable SW acceleration
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH nft] json: reject too long interface names
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: avoid double-free on error handling of bogus objref maps
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: make sure chain jump name comes with a null byte
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft,v2 1/2] fib: allow to check if route exists in maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/2] fib: allow to use it in set statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] fib: allow to check if route exists in maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] fib: allow to use it in set statements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/2] fib expression fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: When routed to VRF, NF _output_ hook is run unexpectedly
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: adjust lockdep assertions handling
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: adjust lockdep assertions handling
- From: Fedor Pchelkin <pchelkin@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: nf_tables: Remove unused nft_reduce_is_readonly()
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH v12 nf-next 2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH net-next] netfilter: nf_tables: Remove unused nft_reduce_is_readonly()
- From: Yue Haibing <yuehaibing@xxxxxxxxxx>
- [PATCH net-next] netfilter: x_tables: Remove unused functions xt_{in|out}name()
- From: Yue Haibing <yuehaibing@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: refuse to merge set and map
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] evaluate: check that set type is identical before merging
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/3] memory reduction in concatenation and maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/5] assorted updates and fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: refuse to merge set and map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: refuse to merge set and map
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net-next] net: netfilter: Add IPIP flowtable SW acceleration
- From: Lorenzo Bianconi <lorenzo@xxxxxxxxxx>
- Re: [RFC PATCH v2 nf-next] selftests: netfilter: Add bridge_fastpath.sh
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH conntrack-tools v3 0/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools v3 1/2] conntrack: move label parsing to after argument parsing
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- [PATCH conntrack-tools v3 2/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- [PATCH conntrack-tools v3 0/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- Re: [PATCH v12 nf-next 2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v12 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 3/4] test: shell: Add wait_local_port_listen() helper to lib.sh
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH v2 3/4] test: shell: Add wait_local_port_listen() helper to lib.sh
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 3/4] test: shell: Add wait_local_port_listen() helper to lib.sh
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH v2 4/4] test: shell: Add rate_limit test case for 'limit statement'.
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH v2 2/4] test: shell: Introduce $NFT_TEST_LIBRARY_FILE, helper/lib.sh
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH v2 1/4] test: shell: Don't use system nft binary
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fix typo in hash size macro
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [PATCH v2] tests: shell: Verify limit statement with new test case.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] tests: shell: Verify limit statement with new test case.
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH] tests: shell: Verify limit statement with new test case.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: When routed to VRF, NF _output_ hook is run unexpectedly
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- Re: When routed to VRF, NF _output_ hook is run unexpectedly
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: When routed to VRF, NF _output_ hook is run unexpectedly
- From: Nicolas Dichtel <nicolas.dichtel@xxxxxxxxx>
- When routed to VRF, NF _output_ hook is run unexpectedly
- From: Eugene Crosser <crosser@xxxxxxxxxxx>
- Re: [PATCH] tests: shell: Add a test case to verify the limit statement.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH] tests: shell: Add a test case to verify the limit statement.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] netfilter: ipset: fix typo in hash size macro
- From: RubenKelevra <rubenkelevra@xxxxxxxxx>
- Re: [PATCH] netfilter: ipset: fix typo in hash size macro
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools v2 1/2] conntrack: move label parsing after argument parsing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] netfilter: ipset: fix typo in hash size macro
- From: RubenKelevra <rubenkelevra@xxxxxxxxx>
- [syzbot] Monthly netfilter report (Jun 2025)
- From: syzbot <syzbot+listd62d23e3f9e32ca7ceb0@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] tests: shell: Add a test case to verify the limit statement.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH conntrack-tools v2 0/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evalute: don't BUG on unexpected base datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH v2 nf-next] selftests: netfilter: Add bridge_fastpath.sh
- From: Simon Horman <horms@xxxxxxxxxx>
- [PATCH conntrack-tools v2 2/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- [PATCH conntrack-tools v2 1/2] conntrack: move label parsing after argument parsing
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- [PATCH conntrack-tools v2 0/2] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- [PATCH] tests: shell: Add a test case to verify the limit statement.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [nft PATCH 3/7] monitor: Correctly print flowtable updates
- From: Phil Sutter <phil@xxxxxx>
- [PATCH v3 nf-next 3/3] netfilter: nf_flow_table_ip: don't follow fastpath when marked teardown
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v3 nf-next 2/3] netfilter: nf_flow_table_core: teardown direct xmit when destination changed
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v3 nf-next 1/3] netfilter: flow: Add bridge_vid member
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v3 nf-next 0/3] flow offload teardown when layer 2 roaming
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [RFC PATCH v2 nf-next] selftests: netfilter: Add bridge_fastpath.sh
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v12 nf-next 2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v12 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v12 nf-next 0/2] conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH nft 1/3,v2] src: use constant range expression for interval+concatenation sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/3] memory reduction in concatenation and maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/3] expression: constant range is not a singleton
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/3] src: use EXPR_RANGE_VALUE in interval maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evalute: don't BUG on unexpected base datatype
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 1/1] asn: fix missing quiet checks in xt_asn_build
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- [PATCH v2 1/1] asn: fix missing quiet checks in xt_asn_build
- From: "Philip Prindeville" <philipp@xxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: fix crash when set name is null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5] parser_bison: allow delete command with map via handle
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/5] cache: assert name is non-nul when looking up
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/5] parser_bison: only reset by name is supported by now
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/5] assorted updates and fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] cache: pass name to cache_add()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/5] rule: skip fuzzy lookup if object name is not available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 3/7] monitor: Correctly print flowtable updates
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evalute: don't BUG on unexpected base datatype
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evalute: don't BUG on unexpected base datatype
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evalute: don't BUG on unexpected base datatype
- From: Florian Westphal <fw@xxxxxxxxx>
- [nf-next PATCH v2 0/2] netfilter: nf_tables: Fix for extra data in delete notifications
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2 2/2] netfilter: nf_tables: Reintroduce shortened deletion notifications
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2 1/2] netfilter: nf_tables: Drop dead code from fill_*_info routines
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: "Christoph Heiss" <c.heiss@xxxxxxxxxxx>
- Re: [PATCH conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- From: Christoph Heiss <c.heiss@xxxxxxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Fix for extra data in delete notifications
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Antonio Ojea <antonio.ojea.garcia@xxxxxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [nf-next PATCH v2] netfilter: nf_tables: Fix for extra data in delete notifications
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: webmaster@xxxxxxxxxxx
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] netlink: Avoid crash upon missing NFTNL_OBJ_CT_TIMEOUT_ARRAY attribute
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 0/7] Misc fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] netlink: Avoid crash upon missing NFTNL_OBJ_CT_TIMEOUT_ARRAY attribute
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 0/7] Misc fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Klaus Frank <vger.kernel.org@xxxxxxxxx>
- Re: [nft PATCH 6/7] tests: shell: Adjust to ifname-based hooks
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH 0/7] Misc fixes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH 6/7] tests: shell: Adjust to ifname-based hooks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 2/2 libnftnl v2] tunnel: add support to geneve options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [nft PATCH] netlink: Avoid crash upon missing NFTNL_OBJ_CT_TIMEOUT_ARRAY attribute
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH v2] netfilter: nf_tables: Fix for extra data in delete notifications
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Antonio Ojea <antonio.ojea.garcia@xxxxxxxxx>
- [PATCH v2 nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH] netfilter: nf_tables: Fix for extra data in delete notifications
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 2/3] netfilter: nf_tables: Support enqueueing device notifications
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Antonio Ojea <antonio.ojea.garcia@xxxxxxxxx>
- [nf-next PATCH 3/3] netfilter: nf_tables: Extend chain/flowtable notifications
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 0/3] netfilter: nf_tables: Report found devices when creating a netdev hook
- From: Phil Sutter <phil@xxxxxx>
- [nf-next PATCH 1/3] netfilter: nf_tables: commit_notify: Support varying groups
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 2/2 libnftnl v2] tunnel: add support to geneve options
- From: Fernando Fernandez Mancera <fmancera@xxxxxxx>
- [nft PATCH 4/7] json: Dump flowtable hook spec only if present
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 1/7] netlink: Fix for potential crash parsing a flowtable
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 5/7] tests: monitor: Fix for single flag array avoidance
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 6/7] tests: shell: Adjust to ifname-based hooks
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 7/7] tests: py: Properly fix JSON equivalents for netdev/reject.t
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 2/7] netlink: Do not allocate a bogus flowtable priority expr
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 3/7] monitor: Correctly print flowtable updates
- From: Phil Sutter <phil@xxxxxx>
- [nft PATCH 0/7] Misc fixes
- From: Phil Sutter <phil@xxxxxx>
- Re: Status of native NAT64/NAT46 in Netfilter?
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] evaluate: fix crash when set name is null
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft] mnl: catch bogus expressions before crashing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] src: use constant range expression for interval+concatenation sets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nft PATCH] doc: Basic documentation of anonymous chains
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH 2/2 libnftnl v2] tunnel: add support to geneve options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] WARNING: refcount bug in nf_nat_masq_schedule
- From: syzbot <syzbot+e178f373ec62758ea18b@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH 2/2 libnftnl v2] tunnel: add support to geneve options
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH 2/2 libnftnl v2] tunnel: add support to geneve options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl,v2,WIP] tunnel: rework options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH libnftnl] tunnel: rework options
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Status of native NAT64/NAT46 in Netfilter?
- From: Klaus Frank <vger.kernel.org@xxxxxxxxx>
- Re: [PATCH 5.10 114/270] netfilter: nf_tables: do not defer rule destruction via call_rcu
- From: Alexey Khoroshilov <khoroshilov@xxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Yi Chen <yiche@xxxxxxxxxx>
- Re: [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 2/2] evaluate: restrict allowed subtypes of concatenations
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2 1/2] evaluate: rename recursion counter to recursion.binop
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: fix crash when set name is null
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft] mnl: catch bogus expressions before crashing
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] json: work around fuzzer-induced assert crashes
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/5] netfilter: nf_set_pipapo_avx2: fix initial map fill
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH v2] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH] tests: shell: Add a test case for FTP helper combined with NAT.
- From: Yi Chen <yiche@xxxxxxxxxx>
- [PATCH net 5/5] selftests: netfilter: nft_nat.sh: add test for reverse clash with nat
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 4/5] netfilter: nf_nat: also check reverse tuple to obtain clashing entry
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/5] selftests: netfilter: nft_concat_range.sh: add datapath check for map fill bug
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/5] selftests: netfilter: nft_concat_range.sh: prefer per element counters for testing
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/5] netfilter: nf_set_pipapo_avx2: fix initial map fill
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/5] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable,5.4 0/1] Netfilter fix for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.10 0/1] Netfilter fix for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.10 1/1] netfilter: nft_socket: fix sk refcount leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 1/1] netfilter: nft_socket: fix sk refcount leaks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,5.4 0/1] Netfilter fix for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]