Linux TCP/IP Netfilter Devel
[Prev Page][Next Page]
- [PATCH v11 nf-next 4/6] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 2/6] net: core: dev: Add dev_fill_bridge_path()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 0/6] netfilter: Add bridge-fastpath
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 1/2] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 6/6] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 1/3] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 3/3] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 0/3] netfilter: fastpath fixes
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 0/2] conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 0/2] Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [RFC PATCH v1 nf-next] selftests: netfilter: Add bridge_fastpath.sh
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 2/2] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v11 nf-next 1/2] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v2 nftables 3/4] src: print count variable in normal set listings
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nftables 1/4] tests/py: prepare for set debug change
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nftables 4/4] tests: shell: add feature check for count output change
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nftables 2/4] debug: include kernel set information on cache fill
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nftables 0/4] src: print count variable in normal set listings
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH V2] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next] netfilter: nf_tables: export set count and backend name to userspace
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf 3/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf-next] docs: tproxy: fix formatting for nft code block
- From: Bagas Sanjaya <bagasdotme@xxxxxxxxx>
- Re: [PATCH V2] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3 nf 3/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf-next] docs: tproxy: fix formatting for nft code block
- From: Chen Linxuan <chenlinxuan@xxxxxxxxxxxxx>
- Re: [PATCH v3 nf 3/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH] docs: tproxy: fix formatting for nft code block
- From: Bagas Sanjaya <bagasdotme@xxxxxxxxx>
- [PATCH v3 nf 2/3] selftests: netfilter: add test case for recent mismatch bug
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf 0/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf 3/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 nf 1/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] docs: tproxy: fix formatting for nft code block
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: bail out if ct saddr/daddr dependency cannot be inserted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v4] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH 1/1] netfilter: Exclude LEGACY TABLES on PREEMPT_RT.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2 nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH v2 nf 2/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 3/3] selftests: netfilter: add test case for recent mismatch bug
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 nf 0/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: Remove redundant NFCT_ALIGN call
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 3/3] selftests: netfilter: add test case for recent mismatch bug
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- Re: [PATCH nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf-next] netfilter: Remove redundant NFCT_ALIGN call
- From: Xuanqiang Luo <xuanqiang.luo@xxxxxxxxx>
- Re: [PATCH nf 2/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Stefano Brivio <sbrivio@xxxxxxxxxx>
- [PATCH nf 2/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 0/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 3/3] selftests: netfilter: add test case for recent mismatch bug
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf 1/3] nft_set_pipapo: add avx register usage tracking for NET_DEBUG builds
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: nft_set_hash: GC reaps elements with conncount for dynamic sets only
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft] evaluate: bail out early if referenced set is invalid
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_tables: don't unregister hook when table is dormant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nft_set_hash: GC reaps elements with conncount for dynamic sets only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: "Lin Ma" <linma@xxxxxxxxxx>
- [PATCH net v1] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Lin Ma <linma@xxxxxxxxxx>
- [PATCH nft] evaluate: bail out if ct saddr/daddr dependency cannot be inserted
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net] netfilter: nft_tunnel: fix geneve_opt type confusion addition
- From: Lin Ma <linma@xxxxxxxxxx>
- [PATCH nft 1/2] evaluate: rename recursion counter to recursion.binop
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] evaluate: restrict allowed subtypes of concatenations
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf,v2] netfilter: nf_tables: don't unregister hook when table is dormant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: don't unregister hook when table is dormant
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: don't unregister hook when table is dormant
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation oddity.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: doc: Fix spelling and function name (x2)
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] parser_json: only allow concatenations with 2 or more expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: IPSET create exists issue
- From: Rob Bloemers <rob@xxxxxxxxxxxxxxxxxxx>
- Re: [PATCH v3 0/3] netfilter: Make xt_cgroup independent from net_cls
- From: Tejun Heo <tj@xxxxxxxxxx>
- [PATCH nft] parser_json: only allow concatenations with 2 or more expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 2/2] evaluate: fix crash when generating reject statement error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] evaluate: reject: remove unused expr function argument
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] optimize: expand expression list when merging into concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: prevent possible crash rule filter is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] cache: don't crash when filter is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/2] parser_json: allow statement stateful statement only in set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] parser_json: bail out on malformed statement in set
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] cache: don't crash when filter is NULL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] cache: don't crash when filter is NULL
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nft_set_hash: GC reaps elements with conncount for dynamic sets only
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: don't unregister hook when table is dormant
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v3 2/3] cgroup: Guard users of sock_cgroup_classid()
- From: Michal Koutný <mkoutny@xxxxxxxx>
- [PATCH v3 1/3] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- [PATCH v3 0/3] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- Re: [PATCH v2 net-next] netlink: specs: add conntrack dump and stats dump support
- From: Donald Hunter <donald.hunter@xxxxxxxxx>
- [PATCH nft] expression: incorrect assert() list_expr_to_binop
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 1/2] evaluate: compact STMT_F_STATEFUL checks
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2] parser_json: reject empty jump/goto chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] evaluate: only allow stateful statements in set and map definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [syzbot] [netfilter?] WARNING in __nf_unregister_net_hook (8)
- From: syzbot <syzbot+53ed3a6440173ddbf499@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH nft 2/2] evaluate: only allow stateful statements in set and map definitions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] parser_json: reject empty jump/goto chain
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: don't try to import empty string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] expression: initialize list of expression to silence gcc compile warning
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/2] evaluate: only allow stateful statements in set and map definitions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] evaluate: compact STMT_F_STATEFUL checks
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 2/2] evaluate: fix crash when generating reject statement error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] evaluate: reject: remove unused expr function argument
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] expression: don't try to import empty string
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] expression: don't try to import empty string
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] json: fix error protagation when parsing binop lhs/rhs
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2 1/2] ulog: remove input plugin
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH ulogd2 1/2] ulog: remove input plugin
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 1/2] ulog: remove input plugin
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ulogd2 2/2] ulogd: remove libipulog
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 1/2] ulog: remove input plugin
- From: Corubba Smith <corubba@xxxxxx>
- [iptables PATCH] extensions: icmp: Support info-request/-reply type names
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests: shell: Fix owner/0002-persist on aarch64
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] json: fix error protagation when parsing binop lhs/rhs
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [nft PATCH] tests: shell: Fix owner/0002-persist on aarch64
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] tests: shell: Fix owner/0002-persist on aarch64
- From: Phil Sutter <phil@xxxxxx>
- Re: [nft PATCH] tests: shell: Add socat availability feature test
- From: Phil Sutter <phil@xxxxxx>
- Re: Documentation oddity.
- From: "G.W. Haywood" <netfilter@xxxxxxxxxxxxxxxxxx>
- Re: [nft PATCH] tests: shell: Add socat availability feature test
- From: Florian Westphal <fw@xxxxxxxxx>
- [nft PATCH] tests: shell: Add socat availability feature test
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: David Laight <david.laight.linux@xxxxxxxxx>
- Re: [PATCH nft v2] json: don't BUG when asked to list synproxies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft v2] json: don't BUG when asked to list synproxies
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: Palmer Dabbelt <palmer@xxxxxxxxxxx>
- Re: [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- From: Palmer Dabbelt <palmer@xxxxxxxxxxx>
- Re: [PATCH nft] evaluate: tolerate empty concatenation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: tolerate empty concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] json: don't BUG when asked to list synproxies
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: tolerate empty concatenation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] evaluate: tolerate empty concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: tolerate empty concatenation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] expression: don't try to import empty string
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Phil Sutter <phil@xxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: Guo Ren <guoren@xxxxxxxxxx>
- Re: [RFC PATCH V3 31/43] rv64ilp32_abi: maple_tree: Use BITS_PER_LONG instead of CONFIG_64BIT
- From: Guo Ren <guoren@xxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Dan Winship <danwinship@xxxxxxxxxx>
- [PATCH ulogd2,v3 4/4] nfacct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v3 3/4] nflog: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v3 2/4] nfct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v3 1/4] ulogd: add linux namespace helper
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [net-next v3 0/3] Disable LEGACY iptables on PREEMPT_RT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] expression: add __EXPR_MAX and use it to define EXPR_MAX
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] expression: update EXPR_MAX to EXPR_RANGE_SYMBOL
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 4/4] src: remove flagcmp expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 4/4] src: remove flagcmp expression
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 3/4] src: transform flag match expression to binop expression from parser
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] optimize: compact bitmask matching in set/map
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] src: remove flagcmp expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] optimize: incorrect comparison for reject statement
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2,v2 3/4] nflog: add network namespace support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2,v2 1/4] ulogd: add linux namespace helper
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [net-next v3 1/3] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [net-next v3 1/3] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Phil Sutter <phil@xxxxxx>
- Re: IPSET create exists issue
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxx>
- Re: [RFC PATCH V3 25/43] rv64ilp32_abi: exec: Adapt 64lp64 env and argv
- From: Guo Ren <guoren@xxxxxxxxxx>
- IPSET create exists issue
- From: Rob Bloemers <rob@xxxxxxxxxxxxxxxxxxx>
- Re: [net-next v3 0/3] Disable LEGACY iptables on PREEMPT_RT
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: "Arnd Bergmann" <arnd@xxxxxxxx>
- Re: [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- From: Guo Ren <guoren@xxxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: Guo Ren <guoren@xxxxxxxxxx>
- Re: [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- From: Guo Ren <guoren@xxxxxxxxxx>
- Re: [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- From: Linus Torvalds <torvalds@xxxxxxxxxxxxxxxxxxxx>
- Re: [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [net-next v3 0/3] Disable LEGACY iptables on PREEMPT_RT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: "Liam R. Howlett" <Liam.Howlett@xxxxxxxxxx>
- Re: [RFC PATCH V3 31/43] rv64ilp32_abi: maple_tree: Use BITS_PER_LONG instead of CONFIG_64BIT
- From: "Liam R. Howlett" <Liam.Howlett@xxxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: David Hildenbrand <david@xxxxxxxxxx>
- Re: [RFC PATCH V3 25/43] rv64ilp32_abi: exec: Adapt 64lp64 env and argv
- From: Sergey Shtylyov <s.shtylyov@xxxxxx>
- [net-next v3 2/3] netfilter: Let IP6_NF_IPTABLES_LEGACY select IP6_NF_IPTABLES.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [net-next v3 3/3] netfilter: Introduce NETFILTER_LEGACY to group all legacy code.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [net-next v3 1/3] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [net-next v3 0/3] Disable LEGACY iptables on PREEMPT_RT
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH net-next 1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: "Arnd Bergmann" <arnd@xxxxxxxx>
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: Guo Ren <guoren@xxxxxxxxxx>
- [RFC PATCH V3 43/43] riscv: Fixup address space overlay of print_mlk
- [RFC PATCH V3 42/43] rv64ilp32_abi: memfd: Use vm_flag_t
- Re: [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- From: Peter Zijlstra <peterz@xxxxxxxxxxxxx>
- [RFC PATCH V3 41/43] rv64ilp32_abi: tty: Adapt ptr_to_compat
- [RFC PATCH V3 40/43] rv64ilp32_abi: tracepoint-defs: Using u64 for trace_print_flags.mask
- [RFC PATCH V3 38/43] rv64ilp32_abi: syscall: Use CONFIG_64BIT instead of BITS_PER_LONG
- [RFC PATCH V3 39/43] rv64ilp32_abi: sysinfo: Adapt sysinfo structure to lp64 uapi
- [RFC PATCH V3 37/43] rv64ilp32_abi: random: Adapt fast_pool struct
- [RFC PATCH V3 36/43] rv64ilp32_abi: printf: Use BITS_PER_LONG instead of CONFIG_64BIT
- [RFC PATCH V3 35/43] rv64ilp32_abi: net: Use BITS_PER_LONG in struct dst_entry
- [RFC PATCH V3 34/43] rv64ilp32_abi: mm: Adapt vm_flags_t struct
- [RFC PATCH V3 33/43] rv64ilp32_abi: mm/auxvec: Adapt mm->saved_auxv[] to Elf64
- [RFC PATCH V3 32/43] rv64ilp32_abi: mm: Remove _folio_nr_pages
- [RFC PATCH V3 31/43] rv64ilp32_abi: maple_tree: Use BITS_PER_LONG instead of CONFIG_64BIT
- [RFC PATCH V3 30/43] rv64ilp32_abi: kernel/smp: Disable CSD_LOCK_WAIT_DEBUG
- [RFC PATCH V3 29/43] rv64ilp32_abi: locking/atomic: Use BITS_PER_LONG for scripts
- [RFC PATCH V3 28/43] rv64ilp32_abi: iov_iter: Resize kvec to match iov_iter's size
- [RFC PATCH V3 26/43] rv64ilp32_abi: file_ref: Use 32-bit width for refcnt
- [RFC PATCH V3 27/43] rv64ilp32_abi: input: Adapt BITS_PER_LONG to dword
- [RFC PATCH V3 24/43] rv64ilp32_abi: compiler_types: Add "long long" into __native_word()
- [RFC PATCH V3 25/43] rv64ilp32_abi: exec: Adapt 64lp64 env and argv
- [RFC PATCH V3 23/43] rv64ilp32_abi: compat: Correct compat_ulong_t cast
- [RFC PATCH V3 22/43] rv64ilp32_abi: bpf: Change KERN_ARENA_SZ to 256MiB
- [RFC PATCH V3 21/43] rv64ilp32_abi: asm-generic: Add custom BITS_PER_LONG definition
- [RFC PATCH V3 20/43] rv64ilp32_abi: drivers/perf: Adapt xlen_t of sbiret
- [RFC PATCH V3 19/43] rv64ilp32_abi: irqchip: irq-riscv-intc: Use xlen_t instead of ulong
- [RFC PATCH V3 18/43] rv64ilp32_abi: riscv: kvm: Initial support
- [RFC PATCH V3 17/43] rv64ilp32_abi: riscv: Adapt kasan memory layout
- [RFC PATCH V3 16/43] rv64ilp32_abi: riscv: Support physical addresses >= 0x80000000
- [RFC PATCH V3 15/43] rv64ilp32_abi: riscv: mm: Adapt MMU_SV39 for 2GiB address space
- [RFC PATCH V3 14/43] rv64ilp32_abi: riscv: Adapt kernel module code
- [RFC PATCH V3 06/43] rv64ilp32_abi: riscv: csum: Utilize 64-bit width to improve the performance
- [RFC PATCH V3 11/43] rv64ilp32_abi: riscv: Introduce PTR_L and PTR_S
- [RFC PATCH V3 09/43] rv64ilp32_abi: riscv: Reuse LP64 SBI interface
- [RFC PATCH V3 12/43] rv64ilp32_abi: riscv: Introduce cmpxchg_double
- [RFC PATCH V3 10/43] rv64ilp32_abi: riscv: Update SATP.MODE.ASID width
- [RFC PATCH V3 13/43] rv64ilp32_abi: riscv: Correct stackframe layout
- [RFC PATCH V3 08/43] rv64ilp32_abi: riscv: bitops: Adapt ctzw & clzw of zbb extension
- [RFC PATCH V3 07/43] rv64ilp32_abi: riscv: arch_hweight: Adapt cpopw & cpop of zbb extension
- [RFC PATCH V3 05/43] rv64ilp32_abi: riscv: crc32: Utilize 64-bit width to improve the performance
- [RFC PATCH V3 04/43] rv64ilp32_abi: riscv: Introduce xlen_t to adapt __riscv_xlen != BITS_PER_LONG
- [RFC PATCH V3 03/43] rv64ilp32_abi: riscv: Adapt ULL & UL definition
- [RFC PATCH V3 02/43] rv64ilp32_abi: riscv: Adapt Makefile and Kconfig
- [RFC PATCH V3 00/43] rv64ilp32_abi: Build CONFIG_64BIT kernel-self with ILP32 ABI
- [RFC PATCH V3 01/43] rv64ilp32_abi: uapi: Reuse lp64 ABI interface
- Re: [PATCH ulogd2] nfct: fix counter-reset without hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2] nfct: fix counter-reset without hashtable
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH v10 nf-next 1/3] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH 5.10.y] ipvs: properly dereference pe in ip_vs_add_service
- From: Cliff Liu <donghua.liu@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] nfct: add flow end timestamp on hashtable purge
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 5.15.y] ipvs: properly dereference pe in ip_vs_add_service
- From: Cliff Liu <donghua.liu@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] nfct: fix counter-reset without hashtable
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Dan Winship <danwinship@xxxxxxxxxx>
- [PATCH ulogd2,v2 4/4] nfacct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 3/4] nflog: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 2/4] nfct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 1/4] ulogd: add linux namespace helper
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2] nfct: add flow end timestamp on hashtable purge
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2] nfct: fix counter-reset without hashtable
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- [PATCH nft] json: don't BUG when asked to list synproxies
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: tolerate empty concatenation
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH v10 nf-next 1/3] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH v4] selftests: netfilter: conntrack respect reject rules
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [no subject]
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 7/7] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 6/7] netfilter: socket: Lookup orig tuple for IPv6 SNAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 5/7] netfilter: xtables: Use strscpy() instead of strscpy_pad()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 3/7] netfilter: fib: avoid lookup if socket is available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 2/7] netfilter: conntrack: Bound nf_conntrack sysctl writes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 4/7] netfilter: nfnetlink_queue: Initialize ctx to avoid memory allocation error
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next 0/7] Netfilter updates for net-next
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v4] selftests: netfilter: conntrack respect reject rules
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft v2] evaluate: don't update cache for anonymous chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] tests: shell: missing ct count elements in new set_stmt test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH nft] evaluate: don't update cache for anonymous chains
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] evaluate: don't update cache for anonymous chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Arturo Borrero Gonzalez <arturo@xxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't update cache for anonymous chains
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] json: make sure timeout list is initialised
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] json: make sure timeout list is initialised
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: don't update cache for anonymous chains
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- [PATCH nf-next] netfilter: replace select by depends on for IP{6}_NF_IPTABLES_LEGACY
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Re-order gcc args so nf-queue.c compiles on Debian systems
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Re-order gcc args so nf-queue.c compiles on Debian systems
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: fix assertion failure with malformed map definitions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] rule: return error if table does not exist
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Phil Sutter <phil@xxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Phil Sutter <phil@xxxxxx>
- [PATCH nft] evaluate: fix assertion failure with malformed map definitions
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] rule: return error if table does not exist
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH 6.1.y 6.6.y 1/1] netfilter: nft_counter: Use u64_stats_t for statistic.
- From: Felix Moessbauer <felix.moessbauer@xxxxxxxxxxx>
- [PATCH nft 4/5] parser_bison: consolidate last grammar rule for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/5] parser_bison: consolidate quota grammar rule for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/5] parser_bison: consolidate limit grammar rule for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/5] parser_bison: consolidate counter grammar rule for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 5/5] parser_bison: consolidate connlimit grammar rule for set elements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't allow nat map with specified protocol
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft v2] expression: tolerate named set protocol dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: don't allow nat map with specified protocol
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft v2] expression: tolerate named set protocol dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] expression: tolerate named set protocol dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] parser_bison: reject non-serializeable typeof expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink_delinerize: add more restrictions on meta nfproto removal
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] expression: tolerate named set protocol dependency
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [nftables PATCH v2] tools: add a systemd unit for static rulesets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] parser_bison: reject non-serializeable typeof expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next] netfilter: x_tables: Remove unnecessary strscpy() size arguments
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Re-order gcc args so nf-queue.c compiles on Debian systems
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH net-next] netfilter: x_tables: Remove unnecessary strscpy() size arguments
- From: Thorsten Blum <thorsten.blum@xxxxxxxxx>
- Re: [PATCH v10 nf-next 2/3] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH v10 nf-next 3/3] selftests: netfilter: Add conntrack_bridge.sh
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH v10 nf-next 2/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- [PATCH nft] tests: py: remove unknown fields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] parser_bison: reject non-serializeable typeof expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v2] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnftnl] expr: ct: print key name of id field
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 6.6 165/166] netfilter: nf_tables: bail out if stateful expression provides no .clone
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH 6.6 166/166] netfilter: nf_tables: allow clone callbacks to sleep
- From: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx>
- [PATCH libnftnl] expr: ct: print key name of id field
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH libnftnl] src: remove unused str2XXX helper
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- [PATCH net v2] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE
- From: WangYuli <wangyuli@xxxxxxxxxxxxx>
- [PATCH nft] netlink_delinerize: add more restrictions on meta nfproto removal
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH libnetfilter_queue] src: doc: Re-order gcc args so nf-queue.c compiles on Debian systems
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE
- From: WangYuli <wangyuli@xxxxxxxxxxxxx>
- [PATCH libnetfilter_queue] src: doc: Re-order gcc args so nf-queue.c compiles on Debian systems
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH -stable,6.6 0/2] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,6.6 v2 1/2] netfilter: nf_tables: bail out if stateful expression provides no .clone
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,6.6 2/2] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,6.6 v2 2/2] netfilter: nf_tables: allow clone callbacks to sleep
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH -stable,6.6 0/2] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,6.6 1/2] netfilter: nf_tables: allow clone callbacks to sleep
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net] netfilter: socket: Lookup orig tuple for IPv6 SNAT
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v4] selftests: netfilter: conntrack respect reject rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] netfilter: xtables: Use strscpy() instead of strscpy_pad()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net] netfilter: socket: Lookup orig tuple for IPv6 SNAT
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v10 nf-next 3/3] selftests: netfilter: Add conntrack_bridge.sh
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net-next] netfilter: xtables: Use strscpy() instead of strscpy_pad()
- From: Thorsten Blum <thorsten.blum@xxxxxxxxx>
- Re: [PATCH v10 nf-next 2/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH 6.6.y] netfilter: nf_tables: use timestamp to check for set element timeout
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnftnl] expr: fix new header name printing of payload expr
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v10 nf-next 2/3] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH -stable,6.6 v2 0/2] Netfilter fixes for -stable
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v4] selftests: netfilter: conntrack respect reject rules
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH net] netfilter: socket: Lookup orig tuple for IPv6 SNAT
- From: Maxim Mikityanskiy <maxtram95@xxxxxxxxx>
- [PATCH libnftnl] expr: fix new header name printing of payload expr
- From: Zhongqiu Duan <dzq.aishenghu0@xxxxxxxxx>
- Re: [PATCH nft] netlink: fix stack buffer overrun when emitting ranged expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] src: replace struct stmt_ops by type field in struct stmt
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] src: print set element with multi-word description in single one line
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink: fix stack buffer overrun when emitting ranged expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v3] selftests: netfilter: conntrack respect reject rules
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] netlink: fix stack buffer overrun when emitting ranged expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: move interval flag compat check after set key evaluation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v3] selftests: netfilter: conntrack respect reject rules
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- RE: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: "Chia-Yu Chang (Nokia)" <chia-yu.chang@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft] src: replace struct stmt_ops by type field in struct stmt
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- RE: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: "Chia-Yu Chang (Nokia)" <chia-yu.chang@xxxxxxxxxxxxxxxxxxx>
- [PATCH AUTOSEL 6.12 12/13] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Sasha Levin <sashal@xxxxxxxxxx>
- [PATCH AUTOSEL 6.13 15/16] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Sasha Levin <sashal@xxxxxxxxxx>
- Re: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v2] selftests: netfilter: conntrack respect reject rules
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: move interval flag compat check after set key evaluation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH 6.6.y] netfilter: nf_tables: use timestamp to check for set element timeout
- From: <jianqi.ren.cn@xxxxxxxxxxxxx>
- [PATCH v10 nf-next 3/3] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 2/3] netfilter: nft_flow_offload: No ingress_vlan forward info for dsa user port
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 1/3] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 0/3] netfilter: fastpath fixes
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 3/3] selftests: netfilter: Add conntrack_bridge.sh
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 2/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 1/3] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 0/3] conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 3/3] netfilter: flow: remove hw_outdev, out.hw_ifindex and out.hw_ifidx
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 2/3] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 1/3] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v10 nf-next 0/3] Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Replacing DJB2 Hash
- From: Phil Sutter <p.ozlabs@xxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Casey Schaufler <casey@xxxxxxxxxxxxxxxx>
- [PATCH nft] netlink: fix stack buffer overrun when emitting ranged expressions
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] selftests: netfilter: conntrack respect reject rules
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH] selftests: netfilter: conntrack respect reject rules
- From: Antonio Ojea <aojea@xxxxxxxxxx>
- [PATCH nft] src: print set element with multi-word description in single one line
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Replacing DJB2 Hash
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] net: Initialize ctx to avoid memory allocation error
- From: Chenyuan Yang <chenyuan0y@xxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH nft] expression: tolerate named set protocol dependency
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Minor memory leak at iptables/nft.c
- From: Florian Westphal <fw@xxxxxxxxx>
- Minor memory leak at iptables/nft.c
- From: Егор Будюкин <zhora.budyukin111@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Alexey Kashavkin <akashavkin@xxxxxxxxx>
- Re: [PATCH nft] evaluate: don't allow merging interval set/map with non-interval one
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation oddity.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH net 4/4] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/4] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/4] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net,v20/4] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] evaluate: don't allow merging interval set/map with non-interval one
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [bug] nft asserts with invalid expr_range_value key
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [bug] nft asserts with invalid expr_range_value key
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: fib: avoid lookup if socket is available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter/IPVS fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: fib: avoid lookup if socket is available
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net-next] net: revert to lockless TC_SETUP_BLOCK and TC_SETUP_FT
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- Re: [PATCH v2] netfilter: conntrack: Bound nf_conntrack sysctl writes
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf-next] netfilter: fib: avoid lookup if socket is available
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH ulogd2,v3] ulogd: raise error on unknown config key
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH ulogd2,v2 3/6] ulogd: raise error on unknown config key
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2,v2 3/6] ulogd: raise error on unknown config key
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH nf-next] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] net/netfilter: use kvfree_rcu to simplify the code
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2,v2 3/6] ulogd: raise error on unknown config key
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH ulogd2,v2 6/6] all: remove trivial configure hooks
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 5/6] ulogd: provide default configure implementation
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 4/6] ulogd: improve integer option parsing
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 3/6] ulogd: raise error on unknown config key
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 2/6] all: use config_parse_file function in all plugins
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2,v2 1/6] ulogd: add ulogd_parse_configfile public function
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH v2 net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH net v1] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Alexey Kashavkin <akashavkin@xxxxxxxxx>
- Re: [PATCH net-next] net: revert to lockless TC_SETUP_BLOCK and TC_SETUP_FT
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH libnetfilter_log] build: doc: Install latest build_man.sh from libnetfilter_queue
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH ulogd2] nfct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- Re: Signature for newly released iptables-1.8.11 package
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation oddity.
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- [PATCH libnetfilter_log] build: doc: Install latest build_man.sh from libnetfilter_queue
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Bug in ulogd2 when destroying a stack that failed to start (with fix attached)
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2] nfct: add network namespace support
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH ulogd2 2/8] ulogd: add ulogd_parse_configfile public function
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Documentation oddity.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: netfilter expected behavior for established connections
- Re: [PATCH nft] tests: shell: skip interval size tests on kernel that lack rbtree size fix
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: fix expression data corruption
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH v2 net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- [PATCH nft] evaluate: fix expression data corruption
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH v7 net-next 09/12] gro: prevent ACE field corruption & better AccECN handling
- From: Paolo Abeni <pabeni@xxxxxxxxxx>
- [PATCH nf] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: Documentation oddity.
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- Re: [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH libnetfilter_queue] build: doc: Fix silly error in test
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Documentation oddity.
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_log] autoconf: don't curl build script
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft] netlink_linearize: reduce register waste with non-constant binop expressions
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Documentation oddity.
- From: "G.W. Haywood" <ged@xxxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: shell: skip interval size tests on kernel that lack rbtree size fix
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH xtables-addons 0/2] A couple of build fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Re: [PATCH libnetfilter_log] build: doc: Avoid autogen.sh contaminating the repository
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_log] autoconf: don't curl build script
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: Signature for newly released iptables-1.8.11 package
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] evaluate: don't crash if range has same start and end interval
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH libnetfilter_log] autoconf: don't curl build script
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] evaluate: don't crash if range has same start and end interval
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v2 net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- Re: [PATCH libnetfilter_log] autoconf: don't curl build script
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- [PATCH libnetfilter_log] build: doc: Avoid autogen.sh contaminating the repository
- From: Duncan Roe <duncan_roe@xxxxxxxxxxxxxxx>
- Re: [PATCH xtables-addons 0/2] A couple of build fixes
- From: Jan Engelhardt <ej@xxxxxxx>
- [PATCH xtables-addons 1/2] build: fix inclusion of Makefile.extra
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 2/2] build: clean `.*.oo.d` cpp dependency files
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH xtables-addons 0/2] A couple of build fixes
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- [PATCH net-next 07/18] netfilter: nft_inner: Use nested-BH locking for nft_pcpu_tun_ctx.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH net-next 08/18] netfilter: nf_dup_netdev: Move the recursion counter struct netdev_xmit.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- [PATCH libnetfilter_log] autoconf: don't curl build script
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net v1] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH net v1] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree()
- From: Kohei Enju <enjuk@xxxxxxxxxx>
- [syzbot] [netfilter?] KMSAN: uninit-value in __nf_conncount_add
- From: syzbot <syzbot+83fed965338b573115f7@xxxxxxxxxxxxxxxxxxxxxxxxx>
- [PATCH ulogd2] nfct: add network namespace support
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 8/8] all: remove trivial configure hooks
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 7/8] ulogd: default configure implementation
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 6/8] ulogd: improve integer option parsing
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 5/8] ulogd: ignore malformed config directives
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 4/8] ulogd: raise error on unknown config key
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 3/8] all: use config_parse_file function in all plugins
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 2/8] ulogd: add ulogd_parse_configfile public function
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 1/8] ulogd: fix config file fd leak
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2] ulogd: ignore private data on plugin stop
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 2/2] nfct: add icmpv6
- From: Corubba Smith <corubba@xxxxxx>
- [PATCH ulogd2 1/2] nfct: fix calloc argument order
- From: Corubba Smith <corubba@xxxxxx>
- Re: [PATCH net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: kernel test robot <lkp@xxxxxxxxx>
- [nftables PATCH v2] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>
- Re: [PATCH net-next] net: revert to lockless TC_SETUP_BLOCK and TC_SETUP_FT
- From: Stanislav Fomichev <stfomichev@xxxxxxxxx>
- Re: [PATCH net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Julian Anastasov <ja@xxxxxx>
- Re: [PATCH net-next] net: revert to lockless TC_SETUP_BLOCK and TC_SETUP_FT
- From: Eric Dumazet <edumazet@xxxxxxxxxx>
- [PATCH net-next] net: revert to lockless TC_SETUP_BLOCK and TC_SETUP_FT
- From: Stanislav Fomichev <sdf@xxxxxxxxxxx>
- [syzbot] [netfilter?] WARNING in dev_setup_tc
- From: syzbot <syzbot+0afb4bcf91e5a1afdcad@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: Signature for newly released iptables-1.8.11 package
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH net-next v2 0/3] Replace xt_recseq with u64_stats.
- From: Sebastian Andrzej Siewior <bigeasy@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: Signature for newly released iptables-1.8.11 package
- From: Jeremy Sowden <jeremy@xxxxxxxxxx>
- Signature for newly released iptables-1.8.11 package
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Reindl Harald <h.reindl@xxxxxxxxxxxxx>
- Re: Generated value for filtering from two arguments received from the command line
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Jan Engelhardt <ej@xxxxxxx>
- Re: [PATCH net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Jan Engelhardt <ej@xxxxxxx>
- [PATCH net] ipvs: prevent integer overflow in do_ip_vs_get_ctl()
- From: Dan Carpenter <dan.carpenter@xxxxxxxxxx>
- [PATCH iptables]: xtables: tolerate DNS lookup failures
- From: Guido Trentalancia <guido@xxxxxxxxxxxxxxxx>
- Re: [PATCH nft,v2 1/3] src: fix reset element support for interval set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: Generated value for filtering from two arguments received from the command line
- From: Alexey Kashavkin <akashavkin@xxxxxxxxx>
- Re: [PATCH nft,v2 1/3] src: fix reset element support for interval set type
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH net 1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template.
- From: patchwork-bot+netdevbpf@xxxxxxxxxx
- [PATCH nft,v2 3/3] tests: extend reset test case to cover interval set and map type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 2/3] segtree: incomplete output in get element command with maps
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft,v2 1/3] src: fix reset element support for interval set type
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 3/3] netfilter: nf_tables: make destruction work queue pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 0/3] Netfilter fixes for net
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 2/3] netfilter: nf_conncount: garbage collection is not skipped when jiffies wrap around
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH net 1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Eric Garver <eric@xxxxxxxxxxx>
- [PATCH nft 2/2] tests: extend reset test case to cover rbtree set type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft 1/2] src: fix reset element support for rbree set type
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nft] doc: add mptcp to tcp option matching list
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft] segtree: fix string data initialisation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf v2] netfilter: nf_tables: make destruction work queue pernet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: make destruction work queue pernet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: nft reset element crashes with error BUG: unhandled op 8
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH nft 0/4] add mptcp suboption mnemonics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- RE: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: "Chia-Yu Chang (Nokia)" <chia-yu.chang@xxxxxxxxxxxxxxxxxxx>
- [PATCH v7 net-next 12/12] tcp: Pass flags to __tcp_send_ack
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 09/12] gro: prevent ACE field corruption & better AccECN handling
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 10/12] tcp: AccECN support to tcp_add_backlog
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 11/12] tcp: add new TCP_TW_ACK_OOW state and allow ECN bits in TOS
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 08/12] gso: AccECN support
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 05/12] tcp: reorganize SYN ECN code
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 07/12] tcp: helpers for ECN mode handling
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 06/12] tcp: rework {__,}tcp_ecn_check_ce() -> tcp_data_ecn_check()
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 03/12] tcp: use BIT() macro in include/net/tcp.h
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 04/12] tcp: extend TCP flags to allow AE bit/ACE field
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 01/12] tcp: reorganize tcp_in_ack_event() and tcp_count_delivered()
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 02/12] tcp: create FLAG_TS_PROGRESS
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- Re: nft reset element crashes with error BUG: unhandled op 8
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] segtree: fix string data initialisation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nf] netfilter: nf_tables: make destruction work queue pernet
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template.
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] Fix bug where garbage collection for nf_conncount is not skipped when jiffies wrap around
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] segtree: fix string data initialisation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] build: add hint for a2x error message
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH] tools: add a systemd unit for static rulesets
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: remove temporary file
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] tests: add atomic chain replace test
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft] payload: don't kill dependency for proto_th
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- Re: [PATCH nft 0/4] add mptcp suboption mnemonics
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH v2] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- [PATCH nft] segtree: fix string data initialisation
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH v9 nf 15/15] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 12/15] netfilter: nft_flow_offload: No ingress_vlan forward info for dsa user port
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 13/15] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 14/15] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW for bridge-fastpath
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 11/15] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 09/15] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 10/15] netfilter: nft_flow_offload: Add NFPROTO_BRIDGE to validate
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 08/15] netfilter :nf_flow_table_offload: Add nf_flow_rule_bridge()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 07/15] net: core: dev: Add dev_fill_bridge_path()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 05/15] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 06/15] bridge: Add filling forward path from port to port
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 04/15] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 03/15] netfilter: flow: remove hw_outdev, out.hw_ifindex and out.hw_ifidx
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 02/15] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 00/15] bridge-fastpath and related improvements
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v9 nf 01/15] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- Re: [PATCH v8 net-next 15/15] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH v8 net-next 11/15] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH v8 net-next 01/15] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH v8 net-next 04/15] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Nikolay Aleksandrov <razor@xxxxxxxxxxxxx>
- Re: [PATCH v8 net-next 00/15] bridge-fastpath and related improvements
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- Re: [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH v7 net-next 11/12] tcp: add new TCP_TW_ACK_OOW state and allow ECN bits in TOS
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 12/12] tcp: Pass flags to __tcp_send_ack
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 10/12] tcp: AccECN support to tcp_add_backlog
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 09/12] gro: prevent ACE field corruption & better AccECN handling
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 07/12] tcp: helpers for ECN mode handling
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 05/12] tcp: reorganize SYN ECN code
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 01/12] tcp: reorganize tcp_in_ack_event() and tcp_count_delivered()
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 03/12] tcp: use BIT() macro in include/net/tcp.h
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 00/12] AccECN protocol preparation patch series
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 06/12] tcp: rework {__,}tcp_ecn_check_ce() -> tcp_data_ecn_check()
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 02/12] tcp: create FLAG_TS_PROGRESS
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 08/12] gso: AccECN support
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH v7 net-next 04/12] tcp: extend TCP flags to allow AE bit/ACE field
- From: chia-yu.chang@xxxxxxxxxxxxxxxxxxx
- [PATCH nft] tests: remove temporary file
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH nf] netfilter: nf_tables: make destruction work queue pernet
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: Make xt_cgroup independent from net_cls
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] netfilter: Make xt_cgroup independent from net_cls
- From: kernel test robot <lkp@xxxxxxxxx>
- Re: [PATCH net-next 0/3] Converge on using secs_to_jiffies() part two
- From: Easwar Hariharan <eahariha@xxxxxxxxxxxxxxxxxxx>
- [PATCH nft] tests: add atomic chain replace test
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH][next] [NETFILTER]: nf_conntrack_h323: Fix spelling mistake "authenticaton" -> "authentication"
- From: Simon Horman <horms@xxxxxxxxxx>
- Re: [PATCH] src: fix deref of null.ret in rule.c
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] src: fix deref of null.ret in rule.c
- From: Anton Moryakov <ant.v.moryakov@xxxxxxxxx>
- [PATCH] src: fix DEREF_OF_NULL.EX in rule.c
- From: Anton Moryakov <ant.v.moryakov@xxxxxxxxx>
- [syzbot] [netfilter?] KASAN: slab-use-after-free Read in nf_tables_trans_destroy_work (2)
- From: syzbot <syzbot+5d8c5789c8cb076b2c25@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Re: [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Alexey Kashavkin <akashavkin@xxxxxxxxx>
- [PATCH] netfilter: nft_exthdr: fix offset with ipv4_find_option()
- From: Alexey Kashavkin <akashavkin@xxxxxxxxx>
- Re: [PATCH v8 net-next 01/15] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH nft] evaluate: release existing datatype when evaluating unary expression
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 4/4] netlink_delinearize: support for bitfield payload statement with binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 3/4] evaluate: support for bitfield payload statement with binary operation
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 1/4] evaluate: payload statement evaluation for bitfields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 2/4] evaluate: reject unsupported expressions in payload statement for bitfields
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH nft 0/4] payload mangling enhancements
- From: Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>
- [PATCH] tools: add a systemd unit for static rulesets
- From: Jan Engelhardt <jengelh@xxxxxxx>
- [PATCH v8 net-next 11/15] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 15/15] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 14/15] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW for bridge-fastpath
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 13/15] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 10/15] netfilter: nft_flow_offload: Add NFPROTO_BRIDGE to validate
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 12/15] netfilter: nft_flow_offload: No ingress_vlan forward info for dsa user port
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 09/15] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 08/15] netfilter :nf_flow_table_offload: Add nf_flow_rule_bridge()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 07/15] net: core: dev: Add dev_fill_bridge_path()
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 06/15] bridge: Add filling forward path from port to port
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 05/15] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 04/15] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 01/15] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 03/15] netfilter: flow: remove hw_outdev, out.hw_ifindex and out.hw_ifidx
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 00/15] bridge-fastpath and related improvements
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH v8 net-next 02/15] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
- From: Eric Woudstra <ericwouds@xxxxxxxxx>
- [PATCH] build: add hint for a2x error message
- From: Jan Engelhardt <jengelh@xxxxxxx>
- Re: [PATCH] netfilter: Make xt_cgroup independent from net_cls
- From: Jan Engelhardt <ej@xxxxxxx>
- [PATCH] netfilter: Make xt_cgroup independent from net_cls
- From: Michal Koutný <mkoutny@xxxxxxxx>
- Re: [PATCH v7 net-next 03/14] netfilter: bridge: Add conntrack double vlan and pppoe
- From: Jakub Kicinski <kuba@xxxxxxxxxx>
- [PATCH][next] [NETFILTER]: nf_conntrack_h323: Fix spelling mistake "authenticaton" -> "authentication"
- From: Colin Ian King <colin.i.king@xxxxxxxxx>
- Re: [PATCH] Fix bug where garbage collection for nf_conncount is not skipped when jiffies wrap around
- From: Florian Westphal <fw@xxxxxxxxx>
- Re: [PATCH] Fix bug where garbage collection for nf_conncount is not skipped when jiffies wrap around
- From: Florian Westphal <fw@xxxxxxxxx>
- [PATCH] Fix bug where garbage collection for nf_conncount is not skipped when jiffies wrap around
- From: "Jensen, Nicklas Bo" <njensen@xxxxxxxxxx>
- [PATCH nft 4/4] expression: expr_build_udata_recurse should recurse
- From: Florian Westphal <fw@xxxxxxxxx>
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite News]
[Samba]