Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH] netfilter: nf_tables: fix register ordering, (continued)
- [libmnl, PATCH 1/1] examples: update .gitignore files,
Dario Binacchi
- [libmnl, PATCH 1/1] include: cache copy of can.h and can/netlink.h, Dario Binacchi
- [PATCH 4.14 0/1] netfilter: Fix EBUSY when removing objref,
Thadeu Lima de Souza Cascardo
- [PATCH v1 nf] netfilter: ipset: Add schedule point in call_ad().,
Kuniyuki Iwashima
- [PATCH nft] evaluate: set NFT_SET_EVAL flag if dynamic set already exists,
Pablo Neira Ayuso
- [PATCH conntrack,v2] conntrack: do not silence EEXIST error, use NLM_F_EXCL, Pablo Neira Ayuso
- [PATCH conntrack 1/2] conntrack: do not ignore errors coming from the kernel,
Pablo Neira Ayuso
- [PATCH net-next] ipvs: dynamically limit the connection hash table,
Julian Anastasov
- [PATCH v3] ipvs: increase ip_vs_conn_tab_bits range for 64BIT,
Abhijeet Rastogi
Re: How to configure "full cone" NAT using iptables, imnozi
[PATCH nft] mnl: support bpf id decode in nft list hooks, Florian Westphal
[PATCH -stable,4.14 0/8] more stable fixes for 4.14,
Pablo Neira Ayuso
- [PATCH -stable,4.14 1/8] netfilter: nftables: statify nft_parse_register(), Pablo Neira Ayuso
- [PATCH -stable,4.14 2/8] netfilter: nf_tables: validate registers coming from userspace., Pablo Neira Ayuso
- [PATCH -stable,4.14 7/8] netfilter: nf_tables: do not allow RULE_ID to refer to another chain, Pablo Neira Ayuso
- [PATCH -stable,4.14 5/8] netfilter: nf_tables: stricter validation of element data, Pablo Neira Ayuso
- [PATCH -stable,4.14 3/8] netfilter: nf_tables: add nft_setelem_parse_key(), Pablo Neira Ayuso
- [PATCH -stable,4.14 8/8] netfilter: nf_tables: do not allow SET_ID to refer to another table, Pablo Neira Ayuso
- [PATCH -stable,4.14 4/8] netfilter: nf_tables: allow up to 64 bytes in the set element data area, Pablo Neira Ayuso
- [PATCH -stable,4.14 6/8] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL, Pablo Neira Ayuso
- Re: [PATCH -stable,4.14 0/8] more stable fixes for 4.14, Sasha Levin
[PATCH -stable,4.19 0/9] stable fixes for 4.19,
Pablo Neira Ayuso
- [PATCH -stable,4.19 4/9] netfilter: nf_tables: validate registers coming from userspace., Pablo Neira Ayuso
- [PATCH -stable,4.19 1/9] netfilter: nftables: add nft_parse_register_load() and use it, Pablo Neira Ayuso
- [PATCH -stable,4.19 2/9] netfilter: nftables: add nft_parse_register_store() and use it, Pablo Neira Ayuso
- [PATCH -stable,4.19 3/9] netfilter: nftables: statify nft_parse_register(), Pablo Neira Ayuso
- [PATCH -stable,4.19 5/9] netfilter: nf_tables: add nft_setelem_parse_key(), Pablo Neira Ayuso
- [PATCH -stable,4.19 9/9] netfilter: nf_tables: do not allow RULE_ID to refer to another chain, Pablo Neira Ayuso
- [PATCH -stable,4.19 7/9] netfilter: nf_tables: stricter validation of element data, Pablo Neira Ayuso
- [PATCH -stable,4.19 6/9] netfilter: nf_tables: allow up to 64 bytes in the set element data area, Pablo Neira Ayuso
- [PATCH -stable,4.19 8/9] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag, Pablo Neira Ayuso
[PATCH -stable,5.4 0/9] stable fixes for 5.4,
Pablo Neira Ayuso
- [PATCH -stable,5.4 1/9] netfilter: nftables: add nft_parse_register_load() and use it, Pablo Neira Ayuso
- [PATCH -stable,5.4 3/9] netfilter: nftables: statify nft_parse_register(), Pablo Neira Ayuso
- [PATCH -stable,5.4 4/9] netfilter: nf_tables: validate registers coming from userspace., Pablo Neira Ayuso
- [PATCH -stable,5.4 6/9] netfilter: nf_tables: allow up to 64 bytes in the set element data area, Pablo Neira Ayuso
- [PATCH -stable,5.4 7/9] netfilter: nf_tables: stricter validation of element data, Pablo Neira Ayuso
- [PATCH -stable,5.4 5/9] netfilter: nf_tables: add nft_setelem_parse_key(), Pablo Neira Ayuso
- [PATCH -stable,5.4 2/9] netfilter: nftables: add nft_parse_register_store() and use it, Pablo Neira Ayuso
- [PATCH -stable,5.4 8/9] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag, Pablo Neira Ayuso
- [PATCH -stable,5.4 9/9] netfilter: nf_tables: hold mutex on netns pre_exit path, Pablo Neira Ayuso
[PATCH nf-next] netfilter: nf_tables: disable delset and delsetelem on anonymous sets, Florian Westphal
Patch for -stable, 6.3.x,
Pablo Neira Ayuso
Re: ct state vmap no longer works on 6.3 kernel, Duncan Roe
[PATCH v11 00/12] Network support for Landlock,
Konstantin Meskhidze
- [PATCH v11 01/12] landlock: Make ruleset's access masks more generic, Konstantin Meskhidze
- [PATCH v11 02/12] landlock: Allow filesystem layout changes for domains without such rule type, Konstantin Meskhidze
- [PATCH v11 03/12] landlock: Refactor landlock_find_rule/insert_rule, Konstantin Meskhidze
- [PATCH v11 04/12] landlock: Refactor merge/inherit_ruleset functions, Konstantin Meskhidze
- [PATCH v11 05/12] landlock: Move and rename layer helpers, Konstantin Meskhidze
- [PATCH v11 09/12] selftests/landlock: Share enforce_ruleset(), Konstantin Meskhidze
- [PATCH v11 07/12] landlock: Refactor landlock_add_rule() syscall, Konstantin Meskhidze
- [PATCH v11 06/12] landlock: Refactor layer helpers, Konstantin Meskhidze
- [PATCH v11 12/12] landlock: Document Landlock's network support, Konstantin Meskhidze
- [PATCH v11 10/12] selftests/landlock: Add 11 new test suites dedicated to network, Konstantin Meskhidze
- [PATCH v11 08/12] landlock: Add network rules and TCP hooks support, Konstantin Meskhidze
- [PATCH v11 11/12] samples/landlock: Add network demo, Konstantin Meskhidze
- Re: [PATCH v11 00/12] Network support for Landlock, Mickaël Salaün
[PATCH v2] ipvs: increase ip_vs_conn_tab_bits range for 64BIT,
Abhijeet Rastogi
[PATCH] netfilter: conntrack: define variables exp_nat_nla_policy and any_addr with CONFIG_NF_NAT,
Tom Rix
[PATCH nf-next] netfilter: nf_tables: relax set/map validation checks, Florian Westphal
[PATCH nf-next] netfilter: nf_tables: always increment set element count, Florian Westphal
[PATCH nf] netfilter: nft_set_rbtree: fix null deref on element insertion, Florian Westphal
[PATCH AUTOSEL 5.15 4/5] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 4.19 2/2] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 5.4 2/2] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 5.10 3/3] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 6.1 7/9] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 6.2 08/10] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH AUTOSEL 6.3 09/11] netfilter: nf_tables: deactivate anonymous set from preparation phase, Sasha Levin
[PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14,
Pablo Neira Ayuso
- [PATCH -stable,4.14 1/6] netfilter: nf_tables: split set destruction in deactivate and destroy phase, Pablo Neira Ayuso
- [PATCH -stable,4.14 4/6] netfilter: nf_tables: use-after-free in failing rule with bound set, Pablo Neira Ayuso
- [PATCH -stable,4.14 6/6] netfilter: nf_tables: deactivate anonymous set from preparation phase, Pablo Neira Ayuso
- [PATCH -stable,4.14 2/6] netfilter: nf_tables: unbind set in rule from commit path, Pablo Neira Ayuso
- [PATCH -stable,4.14 3/6] netfilter: nft_hash: fix nft_hash_deactivate, Pablo Neira Ayuso
- [PATCH -stable,4.14 5/6] netfilter: nf_tables: bogus EBUSY when deleting set after flush, Pablo Neira Ayuso
- Re: [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14, Sasha Levin
- Re: [PATCH netfilter -stable,4.14 0/6] stable fixes for 4.14, luwei (O)
[PATCH nf] netfilter: nf_tables: fix nft_trans type confusion, Florian Westphal
[PATCH nf-next,v2 1/3] netfilter: flowtable: simplify route logic,
Pablo Neira Ayuso
[PATCH RESEND 0/4] Fix oops about sleeping in led_trigger_blink(),
Hans de Goede
Anouncement: Netdevconf 0x17, Jamal Hadi Salim
[PATCH net 0/7] Netfilter updates for net,
Pablo Neira Ayuso
[PATCH nf-next 1/3] netfilter: flowtable: simplify route logic,
Pablo Neira Ayuso
[PATCH nf-next v4] netfilter: nft_exthdr: add boolean DCCP option matching, Jeremy Sowden
[PATCH nft 1/2] datatype: misspell support with symbol table parser for error reporting,
Pablo Neira Ayuso
[PATCH nf] testing: selftests: nft_flowtable.sh: check ingress/egress chain too,
Florian Westphal
[PATCH net-next] netfilter: Reorder fields in 'struct nf_conntrack_expect',
Christophe JAILLET
[PATCH nft 1/3] evaluate: allow stateful statements with anonymous verdict maps,
Pablo Neira Ayuso
[PATCH 0/2] netfilter: nfnetlink_log & nfnetlink_queue: enable cgroup id socket info,
Patryk Sondej
[PATCH net-next] netfilter: nft_set_pipapo: Use struct_size(), Christophe JAILLET
[PATCH v2 net-next] netfilter: nft_set_pipapo: Use struct_size(),
Christophe JAILLET
[iptables PATCH 0/4] Implement a best-effort forward compat solution,
Phil Sutter
[PATCH 00/11 nf-next,v1] track, reduce and prefetch expression,
Pablo Neira Ayuso
- [PATCH nf-next,v1 01/12] netfilter: nf_tables: add nft_expr_info_setup() helper function, Pablo Neira Ayuso
- [PATCH nf-next,v1 03/12] netfilter: nf_tables: update nft_copy_data() to take struct nft_regs, Pablo Neira Ayuso
- [PATCH nf-next,v1 02/12] netfilter: nf_tables: add nft_reg_store_*() and use it, Pablo Neira Ayuso
- [PATCH nf-next,v1 06/12] netfilter: nf_tables: add struct nft_reg_track and use it, Pablo Neira Ayuso
- [PATCH nf-next,v1 04/12] netfilter: nf_tables: add nft_reg_load*() and use it, Pablo Neira Ayuso
- [PATCH nf-next,v1 05/12] netfilter: nf_tables: check if register contains valid data before access, Pablo Neira Ayuso
- [PATCH nf-next,v1 08/12] netfilter: nf_tables: remove bitwise register tracking, Pablo Neira Ayuso
- [PATCH nf-next,v1 07/12] netfilter: nf_tables: split expression comparison and reduction, Pablo Neira Ayuso
- [PATCH nf-next,v1 09/12] netfilter: nf_tables: cancel tracking when register differs from expression, Pablo Neira Ayuso
- [PATCH nf-next,v1 11/12] netfilter: nf_tables: add expression prefetch infrastructure, Pablo Neira Ayuso
- [PATCH nf-next,v1 12/12] netfilter: nf_tables: re-enable expression reduction, Pablo Neira Ayuso
- [PATCH nf-next,v1 10/12] netfilter: nf_tables: add track infrastructure to prepare for expression prefetch, Pablo Neira Ayuso
- Re: [PATCH 00/11 nf-next,v1] track, reduce and prefetch expression, Florian Westphal
nft transaction semantics and flowtable hw offload,
Florian Westphal
[PATCH nf-next 0/3] netfilter: nf_tables: reject loads from uninitialized registers,
Florian Westphal
[PATCH AUTOSEL 5.10 22/24] ipvs: Update width of source for ip_vs_sync_conn_options, Sasha Levin
[PATCH AUTOSEL 6.1 39/49] ipvs: Update width of source for ip_vs_sync_conn_options, Sasha Levin
[PATCH AUTOSEL 5.15 27/30] ipvs: Update width of source for ip_vs_sync_conn_options, Sasha Levin
[PATCH AUTOSEL 6.2 43/53] ipvs: Update width of source for ip_vs_sync_conn_options, Sasha Levin
[PATCH AUTOSEL 6.3 49/59] ipvs: Update width of source for ip_vs_sync_conn_options, Sasha Levin
[PATCH nf] netfilter: fix possible bug_on with enable_hooks=1,
Florian Westphal
[PATCH nf] netfilter: nf_tables: always release netdev hooks from notifier,
Florian Westphal
[PATCH nf-next v2 0/4] selftest: netfilter: small test tweaks,
Boris Sukholitko
[PATCH nft] payload: add offload flag to the statements, Boris Sukholitko
[PATCH nf-next 00/19] netfilter: nftables: dscp modification offload,
Boris Sukholitko
- [PATCH nf-next 02/19] selftest: netfilter: no need for ps -x option, Boris Sukholitko
- [PATCH nf-next 01/19] selftest: netfilter: use /proc for pid checking, Boris Sukholitko
- [PATCH nf-next 03/19] selftest: netfilter: wait for specific nc pids, Boris Sukholitko
- [PATCH nf-next 04/19] selftest: netfilter: monitor result file sizes, Boris Sukholitko
- [PATCH nf-next 06/19] netfilter: nft_payload: publish nft_payload_set, Boris Sukholitko
- [PATCH nf-next 05/19] netfilter: nft_payload: refactor mangle operation, Boris Sukholitko
- [PATCH nf-next 07/19] netfilter: nft_payload: export mangle, Boris Sukholitko
- [PATCH nf-next 09/19] netfilter: nft_payload: add offload flag define, Boris Sukholitko
- [PATCH nf-next 08/19] netfilter: nft_payload: use flag for checksum need, Boris Sukholitko
- [PATCH nf-next 11/19] netfilter: conntrack: nft extension Kconfig, Boris Sukholitko
- [PATCH nf-next 12/19] netfilter: nft: empty nft conntrack extension, Boris Sukholitko
- [PATCH nf-next 10/19] netfilter: nft_payload: allow offload in the netlink, Boris Sukholitko
- [PATCH nf-next 14/19] netfilter: nft: add payload context into extension, Boris Sukholitko
- [PATCH nf-next 13/19] netfilter: conntrack: register nft extension, Boris Sukholitko
- [PATCH nf-next 16/19] netfilter: nftables: fast path payload mangle, Boris Sukholitko
- [PATCH nf-next 15/19] netfilter: nft: add payload application, Boris Sukholitko
- [PATCH nf-next 17/19] netfilter: nftables: payload save mechanism, Boris Sukholitko
- [PATCH nf-next 19/19] selftests: netfilter: dscp offload test, Boris Sukholitko
- [PATCH nf-next 18/19] netfilter: nft_payload: save payload if needed, Boris Sukholitko
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload, Florian Westphal
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload, Pablo Neira Ayuso
- Re: [PATCH nf-next 00/19] netfilter: nftables: dscp modification offload, Pablo Neira Ayuso
[nft PATCH] evaluate: Reject set stmt refs to sets without dynamic flag,
Phil Sutter
[PATCH nf] netfilter: nf_tables: fix ct untracked match breakage,
Florian Westphal
[PATCH nf] netfilter: nf_tables: deactivate anonymous set from preparation phase, Pablo Neira Ayuso
[PATCH nft] netlink: restore typeof interval map data type,
Florian Westphal
[PATCH nft] doc: list set/map flag keywords in a table, Florian Westphal
[PATCH nft] doc: add nat examples,
Florian Westphal
[iptables PATCH 1/3] arptables: Fix parsing of inverted 'arp operation' match,
Phil Sutter
[PATCH] netfilter: nf_conntrack_sip: fix the ct_sip_parse_numerical_param() return value.,
Gavrilov Ilia
[PATCH nf-next v3] netfilter: nft_exthdr: add boolean DCCP option matching, Jeremy Sowden
[PATCH nft] mnl: incomplete extended error reporting for singleton device in chain, Pablo Neira Ayuso
[PATCH nft] mnl: handle singleton element in netdevice set, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: hit ENOENT on unexisting chain/flowtable update with missing attributes, Pablo Neira Ayuso
[PATCH nft] json: allow to specify comment on chain, Pablo Neira Ayuso
[PATCH nft] json: allow to specify comment on table, Pablo Neira Ayuso
[PATCH nft] meta: skip protocol context update for nfproto with same table family, Pablo Neira Ayuso
LPC 2023 Networking and BPF Track CFP,
Daniel Borkmann
[PATCH nf] netfilter: nf_tables: integrate pipapo into commit protocol,
Pablo Neira Ayuso
[PATCH] netfilter: conntrack: allow insertion clash of gre protocol, Faicker Mo
[PATCH net-next 00/19] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 12/19] ipvs: Remove {Enter,Leave}Function, Pablo Neira Ayuso
- [PATCH net-next 14/19] netfilter: nf_tables: extended netlink error reporting for netdevice, Pablo Neira Ayuso
- [PATCH net-next 04/19] netfilter: nf_tables: don't write table validation state without mutex, Pablo Neira Ayuso
- [PATCH net-next 07/19] netfilter: nf_tables: do not store pktinfo in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 03/19] netfilter: nf_tables: don't store chain address on jump, Pablo Neira Ayuso
- [PATCH net-next 05/19] netfilter: nf_tables: make validation state per table, Pablo Neira Ayuso
- [PATCH net-next 19/19] netfilter: nf_tables: allow to create netdev chain without device, Pablo Neira Ayuso
- [PATCH net-next 09/19] netfilter: nf_tables: do not store rule in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 02/19] netfilter: nf_tables: don't store address of last rule on jump, Pablo Neira Ayuso
- [PATCH net-next 16/19] netfilter: nf_tables: rename function to destroy hook list, Pablo Neira Ayuso
- [PATCH net-next 13/19] ipvs: Correct spelling in comments, Pablo Neira Ayuso
- [PATCH net-next 06/19] netfilter: nf_tables: remove unneeded conditional, Pablo Neira Ayuso
- [PATCH net-next 15/19] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
- [PATCH net-next 11/19] ipvs: Consistently use array_size() in ip_vs_conn_init(), Pablo Neira Ayuso
- [PATCH net-next 01/19] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker, Pablo Neira Ayuso
- [PATCH net-next 10/19] ipvs: Update width of source for ip_vs_sync_conn_options, Pablo Neira Ayuso
- [PATCH net-next 08/19] netfilter: nf_tables: do not store verdict in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 18/19] netfilter: nf_tables: support for deleting devices in an existing netdev chain, Pablo Neira Ayuso
- [PATCH net-next 17/19] netfilter: nf_tables: support for adding new devices to an existing netdev chain, Pablo Neira Ayuso
- <Possible follow-ups>
- [PATCH net-next 00/19] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
- [PATCH net-next 01/19] netfilter: conntrack: table full detailed log, Pablo Neira Ayuso
- [PATCH net-next 02/19] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid, Pablo Neira Ayuso
- [PATCH net-next 03/19] netfilter: x_tables: Remove unused functions xt_{in|out}name(), Pablo Neira Ayuso
- [PATCH net-next 05/19] netfilter: conntrack: Remove unused net in nf_conntrack_double_lock(), Pablo Neira Ayuso
- [PATCH net-next 04/19] netfilter: nf_tables: Remove unused nft_reduce_is_readonly(), Pablo Neira Ayuso
- [PATCH net-next 07/19] selftests: net: Enable legacy netfilter legacy options., Pablo Neira Ayuso
- [PATCH net-next 06/19] netfilter: Exclude LEGACY TABLES on PREEMPT_RT., Pablo Neira Ayuso
- [PATCH net-next 10/19] netfilter: nfnetlink: New NFNLA_HOOK_INFO_DESC helper, Pablo Neira Ayuso
- [PATCH net-next 08/19] selftests: netfilter: Enable CONFIG_INET_SCTP_DIAG, Pablo Neira Ayuso
- [PATCH net-next 12/19] netfilter: nft_set_pipapo: remove unused arguments, Pablo Neira Ayuso
- [PATCH net-next 09/19] ipvs: Rename del_timer in comment in ip_vs_conn_expire_now(), Pablo Neira Ayuso
- [PATCH net-next 15/19] netfilter: nft_set_pipapo: merge pipapo_get/lookup, Pablo Neira Ayuso
- [PATCH net-next 13/19] netfilter: nft_set: remove one argument from lookup and update functions, Pablo Neira Ayuso
- [PATCH net-next 11/19] netfilter: nfnetlink_hook: Dump flowtable info, Pablo Neira Ayuso
- [PATCH net-next 17/19] netfilter: xt_nfacct: don't assume acct name is null-terminated, Pablo Neira Ayuso
- [PATCH net-next 14/19] netfilter: nft_set: remove indirection from update API call, Pablo Neira Ayuso
- [PATCH net-next 19/19] selftests: netfilter: ipvs.sh: Explicity disable rp_filter on interface tunl0, Pablo Neira Ayuso
- [PATCH net-next 16/19] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps, Pablo Neira Ayuso
- [PATCH net-next 18/19] selftests: netfilter: Ignore tainted kernels in interface stress test, Pablo Neira Ayuso
[PATCH net-next 00/20] Netfilter/IPVS updates for net-next,
Pablo Neira Ayuso
- [PATCH net-next 03/20] netfilter: nf_tables: don't store address of last rule on jump, Pablo Neira Ayuso
- [PATCH net-next 13/20] ipvs: Remove {Enter,Leave}Function, Pablo Neira Ayuso
- [PATCH net-next 19/20] netfilter: nf_tables: support for deleting devices in an existing netdev chain, Pablo Neira Ayuso
- [PATCH net-next 12/20] ipvs: Consistently use array_size() in ip_vs_conn_init(), Pablo Neira Ayuso
- [PATCH net-next 18/20] netfilter: nf_tables: support for adding new devices to an existing netdev chain, Pablo Neira Ayuso
- [PATCH net-next 05/20] netfilter: nf_tables: don't write table validation state without mutex, Pablo Neira Ayuso
- [PATCH net-next 01/20] netfilter: nft_exthdr: add boolean DCCP option matching, Pablo Neira Ayuso
- [PATCH net-next 14/20] ipvs: Correct spelling in comments, Pablo Neira Ayuso
- [PATCH net-next 10/20] netfilter: nf_tables: do not store rule in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 07/20] netfilter: nf_tables: remove unneeded conditional, Pablo Neira Ayuso
- [PATCH net-next 06/20] netfilter: nf_tables: make validation state per table, Pablo Neira Ayuso
- [PATCH net-next 04/20] netfilter: nf_tables: don't store chain address on jump, Pablo Neira Ayuso
- [PATCH net-next 11/20] ipvs: Update width of source for ip_vs_sync_conn_options, Pablo Neira Ayuso
- [PATCH net-next 17/20] netfilter: nf_tables: rename function to destroy hook list, Pablo Neira Ayuso
- [PATCH net-next 15/20] netfilter: nf_tables: extended netlink error reporting for netdevice, Pablo Neira Ayuso
- [PATCH net-next 08/20] netfilter: nf_tables: do not store pktinfo in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 16/20] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
- [PATCH net-next 20/20] netfilter: nf_tables: allow to create netdev chain without device, Pablo Neira Ayuso
- [PATCH net-next 09/20] netfilter: nf_tables: do not store verdict in traceinfo structure, Pablo Neira Ayuso
- [PATCH net-next 02/20] netfilter: nf_tables: merge nft_rules_old structure and end of ruleblob marker, Pablo Neira Ayuso
- Re: [PATCH net-next 00/20] Netfilter/IPVS updates for net-next, Pablo Neira Ayuso
[iptables PATCH 0/3] Extract nftnl_rule parsing code,
Phil Sutter
[PATCH bpf-next v5 0/7] bpf: add netfilter program type,
Florian Westphal
[iptables PATCH 1/2] utils: nfbpf_compile: Replace pcap_compile_nopcap(),
Phil Sutter
[PATCH nft] evaluate: bail out if new flowtable does not specify hook and priority,
Pablo Neira Ayuso
[PATCH nft,v3 1/2] mnl: flowtable support for extended netlink error reporting,
Pablo Neira Ayuso
[PATCH nf-next,v6 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice,
Pablo Neira Ayuso
- [PATCH nf-next,v6 3/7] netfilter: nf_tables: rename function to destroy hook list, Pablo Neira Ayuso
- [PATCH nf-next,v6 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v6 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices, Pablo Neira Ayuso
- [PATCH nf-next,v6 6/7] netfilter: nf_tables: allow to create netdev chain without device, Pablo Neira Ayuso
- [PATCH nf-next,v6 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v6 2/7] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
[libmnl, PATCH] examples: add rtnl-link-can, Dario Binacchi
[PATCH nf-next,v5 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice,
Pablo Neira Ayuso
- [PATCH nf-next,v5 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v5 3/7] netfilter: nf_tables: rename function to destroy hook list, Pablo Neira Ayuso
- [PATCH nf-next,v5 6/7] netfilter: nf_tables: allow to create netdev chain without device, Pablo Neira Ayuso
- [PATCH nf-next,v5 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices, Pablo Neira Ayuso
- [PATCH nf-next,v5 2/7] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
- [PATCH nf-next,v5 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain, Pablo Neira Ayuso
[nft PATCH] tests: shell: Fix for unstable sets/0043concatenated_ranges_0,
Phil Sutter
[PATCH bpf-next v4 0/7] bpf: add netfilter program type,
Florian Westphal
[PATCH nft 1/2] mnl: flowtable support for extended netlink error reporting,
Pablo Neira Ayuso
[PATCH nf-next,v4 1/7] netfilter: nf_tables: extended netlink error reporting for netdevice,
Pablo Neira Ayuso
- [PATCH nf-next,v4 3/7] netfilter: nf_tables: rename function to destroy hook list, Pablo Neira Ayuso
- [PATCH nf-next,v4 6/7] netfilter: nf_tables: allow to create netdev chain without device, Pablo Neira Ayuso
- [PATCH nf-next,v4 7/7] netfilter: nf_tables: remove artificial cap on maximum number of netdevices, Pablo Neira Ayuso
- [PATCH nf-next,v4 5/7] netfilter: nf_tables: support for deleting devices in an existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v4 4/7] netfilter: nf_tables: support for adding new devices to an existing netdev chain, Pablo Neira Ayuso
- [PATCH nf-next,v4 2/7] netfilter: nf_tables: do not send complete notification of deletions, Pablo Neira Ayuso
[PATCH nf-next,v3 1/5] netfilter: nf_tables: do not send complete notification of deletions,
Pablo Neira Ayuso
[PATCH v3] netfilter: conntrack: fix wrong ct->timeout value,
Tzung-Bi Shih
[PATCH nf] netfilter: conntrack: restore IPS_CONFIRMED out of nf_conntrack_hash_check_insert(),
Pablo Neira Ayuso
[PATCH bpf-next v3 0/6] bpf: add netfilter program type,
Florian Westphal
[PATCH nft] mnl: set SO_SNDBUF before SO_SNDBUFFORCE, Pablo Neira Ayuso
[PATCH nf,v2] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: tighten netlink attribute requirements for catch-all elements, Pablo Neira Ayuso
[PATCH nf,v2] netfilter: nf_tables: validate catch-all set elements, Pablo Neira Ayuso
[PATCH nf-next v3 0/4] ipvs: Cleanups for v6.4,
Simon Horman
[PATCH nf] netfilter: nf_tables: validate catch-all set elements, Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m,
Florian Westphal
[PATCH v5 3/3] Replace invocation of weak PRNG,
david . keisarschm
[PATCH nf-next 0/4] netfilter: nf_tables: shrink stack usage a bit more,
Florian Westphal
[PATCH nf-next 0/2] netfilter: nf_tables: move ruleset validation state to table,
Florian Westphal
[PATCH bpf-next v2 0/6] bpf: add netfilter program type,
Florian Westphal
[PATCH] ipvs: change ip_vs_conn_tab_bits range to [8,31],
Abhijeet Rastogi via B4 Relay
[PATCH nftables v2] exthdr: add boolean DCCP option matching,
Jeremy Sowden
[PATCH nf-next v2] netfilter: nft_exthdr: add boolean DCCP option matching, Jeremy Sowden
[PATCH nf-next 0/3] netfilter: nf_tables: shrink jump stack size,
Florian Westphal
[PATCH nf-next v2 0/4] ipvs: Cleanups for v6.4,
Simon Horman
[PATCH nf-next 0/4] ipvs: Cleanups for v6.4,
Simon Horman
[PATCH v2] netfilter: conntrack: fix wrong ct->timeout value, Tzung-Bi Shih
[PATCH] netfilter: conntrack: fix wrong ct->timeout value,
Tzung-Bi Shih
[PATCH nft] main: Error out when combining -i/--interactive and -f/--file, Pablo Neira Ayuso
[PATCH] src: try SO_SNDBUF before SO_SNDBUFFORCE,
Dave Pifke
[PATCH net,v2] uapi: linux: restore IPPROTO_MAX to 256 and add IPPROTO_UAPI_MAX,
Pablo Neira Ayuso
[PATCH] netfilter: nf_tables: Modify nla_memdup's flag to GFP_KERNEL_ACCOUNT,
Chen Aotian
[PATCH bpf-next 0/6] bpf: add netfilter program type,
Florian Westphal
[PATCH nft,v2 4/4] optimize: support for redirect and masquerade,
Pablo Neira Ayuso
[iptables PATCH] tests: shell: Test for false-positive rule check,
Phil Sutter
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]