Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: Support of different targets in nftables, (continued)
- About a bug reported, Shivani Bhardwaj
- [PATCH v4] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
- nftables symbols,
Shivani Bhardwaj
- [PATCH v3] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
- [PATCH nft 0/5] ct: add support for directional keys,
Florian Westphal
- [ANNOUNCE] iptables 1.6.0 release,
Pablo Neira Ayuso
- [PATCH] ila: add NETFILTER dependency,
Arnd Bergmann
- [PATCH nf] netfilter: nft_ct: include direction when dumping NFT_CT_L3PROTOCOL key,
Florian Westphal
- [RFC nft] ct expr: make directional keys work,
Florian Westphal
- [PATCH net-next v5 0/8] openvswitch: NAT support.,
Jarno Rajahalme
- [PATCH nft] netlink_delinearize: add previous statement to rule_pp_ctx,
Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_tables: use skb->protocol instead of assuming ethernet header, Pablo Neira Ayuso
- [PATCH 4/5,nf-next] netfilter: nfnetlink: pass down netns pointer to call() and call_rcu(),
Pablo Neira Ayuso
- [PATCH 2/5,nf-next] netfilter: nf_tables: destroy basechain and rules on netdevice removal,
Pablo Neira Ayuso
- [PATCH 1/5 nf,v3] netfilter: nf_tables: release objects on netns destruction, Pablo Neira Ayuso
- IPTables connection mark rule stops working, Justin Michael Schwartzbeck
- [ANNOUNCE] Another round of NetDev 1.1 updates, Pablo Neira Ayuso
- [PATCH -stable] netfilter: ctnetlink: put back references to master ct and expect objects, Pablo Neira Ayuso
- [PATCH -stable-*] netfilter: nf_conntrack: Support expectations in different zones, Pablo Neira Ayuso
- [PATCH -stable] netfilter: nf_log: don't zap all loggers on unregister,
Pablo Neira Ayuso
- rebasing nf tree,
Pablo Neira Ayuso
- Re: Linux 4.3.1 regression: -m state returns "Protocol wrong type for socket",
Jozsef Kadlecsik
- [PATCH 0/5] new testsuite for nft,
Arturo Borrero Gonzalez
- [PATCH V2 nf-next] netfilter: meta: add support for setting skb->pkttype,
Florian Westphal
- [PATCH 1/4] list: introduce list_is_first(),
Geliang Tang
- Re: undefined reference to `nf_conntrack_untracked', Pablo Neira Ayuso
- [PATCH nf] netfilter: nf_dup: add missing dependencies with NF_CONNTRACK, Pablo Neira Ayuso
- [PATCH nf,v2] netfilter: nf_tables: release objects on netns destruction,
Pablo Neira Ayuso
- [PATCH nf] netfilter: conntrack: resched in nf_ct_iterate_cleanup,
Florian Westphal
- [PATCH nf-next] netfilter: nf_tables: fix nf_log_trace based tracing,
Florian Westphal
- [PATCH nf-next] netfilter: cttimeout: add netns support, Pablo Neira Ayuso
- [PATCH nf 1/2] netfilter: nfnetlink: avoid recurrent netns lookups in call_batch,
Pablo Neira Ayuso
- nf_conntrack_count is increasing,
Гаврилов Игорь
- [PATCH net-next v4 0/8] openvswitch: NAT support.,
Jarno Rajahalme
- [PATCH nf-next] netfilter: ipv6: nf_defrag: fix NULL deref panic,
Florian Westphal
- libnetfilter_conntrack: set_attr_dnat_ipv4,
Sargun Dhillon
- [PATCH xtables-addons] make xt_ACCOUNT network namespace aware, Andreas Schultz
- [PATCH] netfilter: nf_ct_sctp: validate vtag for new conntrack entries,
Marcelo Ricardo Leitner
- next-20151207 - crash in IPv6 code,
Valdis Kletnieks
- [PATCH nf-next] netfilter: nftables: Change the return type of nfulnl_set_timeout() and nfulnl_set_qthresh() to be void.,
Rami Rosen
- [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup,
Tejun Heo
- [PATCH 5/8] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 8/8] netfilter: implement xt_cgroup cgroup2 path match, Tejun Heo
- [PATCH 7/8] netfilter: prepare xt_cgroup for multi revisions, Tejun Heo
- [PATCH 4/8] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 6/8] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- [PATCH 2/8] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/8] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 1/8] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- Re: [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, David Miller
- RE: [PATCHSET v4] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Dexuan Cui
- nf_conntrack_ipv4: UDP packets are spuriously dropped on parallel send via loopback device on SMP machines, Matthias Gerstner
- [PATCH nf-next 0/3] netfilter: nftables: add set support for conntrack labels,
Florian Westphal
- [PATCH net] nftables: use list_for_each_entry_safe_reverse to traversal commit_list in nf_tables_abort,
Xin Long
- [PATCH] netfilter: nfnetlink_queue: Unregister pernet subsys in case of init failure,
Nikolay Borisov
- [PATCH v2] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
[PATCH nft 1/7,v2] tests: vlan pcp and cfi are located in the first byte,
Pablo Neira Ayuso
[PATCH] extensions: libxt_mark: Add translation to nft,
Shivani Bhardwaj
[PATCH] netfilter: Initialize local variables to NULL, to prevent using them when uninitialized.,
Tomer Barletz
Support marking/matching tc_index in netfilter,
Luuk Paulussen
[PATCH -next] netfilter: meta: add support for setting skb->pkttype,
Florian Westphal
[nft] bug in sets cache, Arturo Borrero Gonzalez
[PATCH v3 nf-next 0/12] netfilter: don't copy init ns hooks to new namespaces,
Florian Westphal
- [PATCH v3 nf-next 02/12] netfilter: conntrack: register hooks in netns when needed by ruleset, Florian Westphal
- [PATCH v3 nf-next 03/12] netfilter: xtables: don't register table hooks in namespace at init time, Florian Westphal
- [PATCH v3 nf-next 04/12] netfilter: defrag: only register defrag functionality if needed, Florian Westphal
- [PATCH v3 nf-next 06/12] netfilter: bridge: register hooks only when bridge interface is added, Florian Westphal
- [PATCH v3 nf-next 07/12] netfilter: don't call nf_hook_state_init/_hook_slow unless needed, Florian Westphal
- [PATCH v3 nf-next 05/12] netfilter: nat: add dependencies on conntrack module, Florian Westphal
- [PATCH v3 nf-next 08/12] nftables: add conntrack dependencies for nat/masq/redir expressions, Florian Westphal
- [PATCH v3 nf-next 09/12] nfnetlink: add nfnl_dereference_protected helper, Florian Westphal
- [PATCH v3 nf-next 10/12] netfilter: ctnetlink: make ctnetlink bind register conntrack hooks, Florian Westphal
- [PATCH v3 nf-next 11/12] netfilter: hook up nfnetlink log/queue to register conntrack hooks, Florian Westphal
- [PATCH v3 nf-next 12/12] netfilter: inform ctnetlink about new l3 protocol trackers, Florian Westphal
- [PATCH v3 nf-next 01/12] netfilter: add and use nf_ct_netns_get/put, Florian Westphal
- Re: [PATCH v3 nf-next 0/12] netfilter: don't copy init ns hooks to new namespaces, Pablo Neira Ayuso
[PATCH nft 1/3] tests: add *.got files to .gitignore,
Pablo M. Bermudo Garay
[ANNOUNCE] NetDev 1.1 updates (Seville, Spain February 10-12), Pablo Neira Ayuso
[PATCH nft 1/2] tests: vlan pcp and cfi are located in the first byte,
Pablo Neira Ayuso
[PATCH] netfilter: ipvs: avoid unused variable warning,
Arnd Bergmann
[PATCH nf] netfilter: nf_tables: release objects on netns destruction, Pablo Neira Ayuso
[PATCH v4 nf-next 1/2] netfilter: nf_tables: extend tracing infrastructure,
Florian Westphal
[PATCH nft] src: perform sub-byte length matching from the evaluation step,
Pablo Neira Ayuso
[PATCH nft] null pointer exception,
Linmujia
GIT: [PATCH v3 0/3] netfilter trace infrastructure support,
Florian Westphal
[PATCH nft] netlink: fix up indentation damage, Patrick McHardy
[RFC PATCH nft] datatype: add scaled integer types, Patrick McHardy
[RFC PATCH nft] parser: add typeof keyword for declarations, Patrick McHardy
[PATCH nft,v2] netlink_delinearize: fix use-after-free, Pablo Neira Ayuso
[PATCH nft] netlink_delinearize: fix use-after-free,
Pablo Neira Ayuso
[PATCH nft]evaluate function should have a explicitly return value,
Linmujia
[PATCH nft] proto: fix VLAN header definition,
Patrick McHardy
Re: Bug#806130: linux: netlink_sock_destruct() crash in netns,
Ben Hutchings
[PATCH v2 0/3] src: trace infrastructure support,
Florian Westphal
[RFC PATCH nft] proto: add missing fields for ARP with IPv4/Ethernet,
Patrick McHardy
Re: [nft patch]add default branch for code integrality, Pablo Neira Ayuso
[nft] add default branch for code integrality,
Linmujia
[PATCH net-next v3 0/8] openvswitch: NAT support.,
Jarno Rajahalme
[PATCH nft 1/2] src: add dscp support,
Pablo Neira Ayuso
[RFC PATCH -next] netfilter: nf_ct_sctp: validate vtag for new conntrack entries,
Marcelo Ricardo Leitner
[PATCH nft] proto: fix arpop symbol table endianess, Patrick McHardy
[PATCH 1/2 nf-next] netfilter: nf_tables: add packet duplication to the netdev family,
Pablo Neira Ayuso
[PATCH net] ipv6: distinguish frag queues by device for multicast and link-local packets,
Michal Kubecek
[PATCH v2 nft 0/2] payload mangling support,
Patrick McHardy
[PATCH v2 libnftnl] payload mangling support,
Patrick McHardy
[PATCH 0/6] nftables trace support,
Florian Westphal
[PATCH v2] netfilter: payload mangling,
Patrick McHardy
[nft]: fix some bugs of return value,
Linmujia
[PATCH -next] netfilter: nf_tables: remove unused struct members,
Florian Westphal
New Netfilter core team PGP key (0x26D292E4), Pablo Neira Ayuso
[PATCH] iptables: Link libext_arpt to static build,
Daniel Wagner
nfnetlink warnings,
Borislav Petkov
[PATCH conntrack-tools] src: fix build with musl libc,
Rodrigo Rebello
[PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup,
Tejun Heo
- [PATCH 2/9] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/9] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 8/9] netfilter: prepare xt_cgroup for multi revisions, Tejun Heo
- [PATCH 6/9] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 9/9] netfilter: implement xt_cgroup cgroup2 path match, Tejun Heo
- [PATCH 7/9] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Tejun Heo
- [PATCH 5/9] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 1/9] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- [PATCH 4/9] cgroups: Allow dynamically changing net_classid, Tejun Heo
- [PATCH 1/2 iptables] libxt_cgroup: prepare for multi revisions, Tejun Heo
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, Daniel Wagner
- Re: [PATCHSET v3] netfilter, cgroup: implement cgroup2 path match in xt_cgroup, David Miller
[nftables] goto vs jump documentation,
Arturo Borrero Gonzalez
[PATCHSET v2] netfilter, cgroup: implement xt_cgroup2 match,
Tejun Heo
- [PATCH 5/7] net: wrap sock->sk_cgrp_prioidx and ->sk_classid inside a struct, Tejun Heo
- [PATCH 4/7] netprio_cgroup: limit the maximum css->id to USHRT_MAX, Tejun Heo
- [PATCH 7/7] netfilter: implement xt_cgroup2 match, Tejun Heo
- [PATCH 6/7] sock, cgroup: add sock->sk_cgroup, Tejun Heo
- [PATCH 2/7] kernfs: implement kernfs_walk_and_get(), Tejun Heo
- [PATCH 3/7] cgroup: implement cgroup_get_from_path() and expose cgroup_put(), Tejun Heo
- [PATCH 1/7] cgroup: record ancestor IDs and reimplement cgroup_is_descendant() using it, Tejun Heo
- [PATCH v2 iptables] libxt_cgroup2: add support for cgroup2 path matching, Tejun Heo
- [PATCH iptables] libxt_cgroup: improve wording in the man page, Tejun Heo
- Re: [PATCHSET v2] netfilter, cgroup: implement xt_cgroup2 match, David Miller
[PATCH nft 1/2] tests: regression: homogenize indentation style,
Pablo M. Bermudo Garay
[PATCH] netfilter: avoid harmless unnitialized variable warnings,
Arnd Bergmann
[PATCH] conntrack-tools: add conntrackd.conf(5) manpage,
Arturo Borrero Gonzalez
WARN due to local_bh_disable called with interrupts disabled,
subashab
[PATCH nf-next 0/2] netfilter: simplify nf_defrag_ipv6,
Florian Westphal
libxt_set.man - iptables build 20151116 - some suggestions, Martin Kratochvíl
Extending connmark to 64 bits,
Matt Bennett
[PATCH] netfilter: remove duplicate include,
Stephen Hemminger
[PATCHSET] netfilter, cgroup: implement xt_cgroup2 match,
Tejun Heo
kernel crash in netlink_sock_destruct(),
Arturo Borrero Gonzalez
"notification events for routing changes" patch,
Murat Sezgin
[PATCH nft] rule: move comment out of handle,
Patrick McHardy
[PATCH] net-ipv6: Delete unnecessary checks before the function call "kfree_skb",
SF Markus Elfring
Read-only fields in libnetfilter_conntrack ct_conntrack structure, Daniel Collins
Re: linux-next: Tree for Nov 13 (netfilter), Randy Dunlap
[conntrackd PATCH v3] conntrackd: add systemd support,
Arturo Borrero Gonzalez
[linux-4.4-mw] BUG: unable to handle kernel paging request ip_vs_out.constprop,
Sander Eikelenboom
[PATCH] netfilter: nf_ct_sctp: move ip_ct_sctp away from UAPI,
Marcelo Ricardo Leitner
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]