Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   809 patches
« 1 2 3 48 9 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net-next,RFC,13/13] netfilter: nft_flow_offload: make sure route is not stale New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,12/13] netfilter: nft_flow_offload: remove secpath check New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,11/13] netfilter: nft_flow_offload: enable offload after second packet is seen New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,10/13] netfilter: nf_flow_table: add flowtable for early ingress hook New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,09/13] netfilter: nf_flow_table: add hooknum to flowtable type New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,08/13] netfilter: nft_chain_filter: add support for early ingress New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,07/13] netfilter: add ESP support for early ingress New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,06/13] netfilter: add early ingress support for IPv6 New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,05/13] netfilter: add early ingress hook for IPv4 New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,04/13] net: Use one bit of NAPI_GRO_CB for the netfilter fastpath. New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,03/13] net: Add a GSO feature bit for the netfilter forward fastpath. New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,02/13] net: Change priority of ipv4 and ipv6 packet offloads. New fast forwarding path - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[net-next,RFC,01/13] net: Add a helper to get the packet offload callbacks by priority. [net-next,RFC,01/13] net: Add a helper to get the packet offload callbacks by priority. - - - - 0 0 0 2018-06-14 Pablo Neira Ayuso davem RFC
[9/9] netfilter: nf_conncount: Fix garbage collection with zones [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[8/9] netfilter: xt_connmark: fix list corruption on rmmod [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[7/9] netfilter: ctnetlink: avoid null pointer dereference [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[6/9] netfilter: nf_tables: use WARN_ON_ONCE instead of BUG_ON in nft_do_chain() [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session 1 - - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[5/9] netfilter: nf_tables: close race between netns exit and rmmod [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - - - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[4/9] netfilter: nf_tables: fix module unload race [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - - - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[3/9] netfilter: nft_dynset: do not reject set updates with NFT_SET_EVAL [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[2/9] netfilter: nft_socket: fix module autoload [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session - 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session [1/9] netfilter: fix null-ptr-deref in nf_nat_decode_session 1 1 - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[0/9] Netfilter fixes for net - - - - 0 0 0 2018-06-13 Pablo Neira Ayuso davem Accepted
[15/15] netfilter: remove include/net/netfilter/nft_dup.h [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[14/15] netfilter: x_tables: initialise match/target check parameter struct [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - 1 - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[13/15] netfilter: nf_conntrack: Increase __IPS_MAX_BIT with new bit IPS_OFFLOAD_BIT [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[12/15] netfilter: nft_set_rbtree: fix parameter of __nft_rbtree_lookup() [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - 1 - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[11/15] netfilter: ebtables: reject non-bridge targets [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[10/15] netfilter: ipset: forbid family for hash:mac sets [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[09/15] netfilter: ipset: Limit max timeout value [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[08/15] netfilter: ipset: List timing out entries with "timeout 1" instead of zero [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[07/15] netfilter: xt_set: Check hook mask correctly [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[06/15] netfilter: ebtables: fix compat entry padding [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space 1 - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[05/15] ipvs: fix check on xmit to non-local addresses [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space 1 1 - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[04/15] netfilter: nft_reject_bridge: fix skb allocation size in nft_reject_br_send_v6_unreach [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[03/15] ipvs: register conntrack hooks for ftp [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space 1 1 - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[02/15] netfilter: nf_tables: check msg_type before nft_trans_set(trans) [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space 1 1 - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[01/15] netfilter: xt_CT: Reject the non-null terminated string from user space [01/15] netfilter: xt_CT: Reject the non-null terminated string from user space 1 - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[00/15] Netfilter/IPVS fixes for net - - - - 0 0 0 2018-06-11 Pablo Neira Ayuso davem Accepted
[0/9,v2] Netfilter updates for net-next - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[9/9] netfilter: nf_tables: handle chain name lookups via rhltable [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[8/9] netfilter: nf_tables: add connlimit support [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[7/9] netfilter: nf_tables: add destroy_clone expression [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[6/9] netfilter: nf_tables: garbage collection for stateful expressions [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[5/9] netfilter: nf_tables: pass ctx to nf_tables_expr_destroy() [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[4/9] netfilter: nf_conncount: expose connection list interface [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[3/9] netfilter: nf_tables: pass context to object destroy indirection [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[2/9] netfilter: Libify xt_TPROXY [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[1/9] netfilter: Decrease code duplication regarding transparent socket option [1/9] netfilter: Decrease code duplication regarding transparent socket option - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[0/9] Netfilter updates for net-next - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[20/20] ipvs: add ipv6 support to ftp [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[19/20] ipvs: add full ipv6 support to nfct [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[18/20] netfilter: nft_fwd_netdev: allow to forward packets via neighbour layer [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[17/20] netfilter: nfnetlink: Remove VLA usage [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[16/20] netfilter: nf_flow_table: attach dst to skbs [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[15/20] netfilter: nf_tables: fix chain dependency validation [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[14/20] netfilter: nf_tables: Add audit support to log statement [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[13/20] netfilter: nf_tables: add support for native socket matching [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[12/20] netfilter: fix ptr_ret.cocci warnings [01/20] netfilter: add includes to nf_socket.h 1 2 - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[11/20] netfilter: nf_tables: remove unused variables [01/20] netfilter: add includes to nf_socket.h 1 - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[10/20] netfilter: nf_tables: use call_rcu in netlink dumps [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[09/20] netfilter: nf_tables: fail batch if fatal signal is pending [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[08/20] netfilter: nf_tables: fix endian mismatch in return type [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[07/20] netfilter: nft_compat: use call_rcu for nfnl_compat_get [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[06/20] netfilter: nat: make symbol nat_hook static [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[05/20] netfilter: nf_tables: remove synchronize_rcu in commit phase [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[04/20] netfilter: nfnetlink: allow commit to fail [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[03/20] netfilter: nat: merge nf_nat_redirect into nf_nat [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[02/20] netfilter: nat: merge ipv4/ipv6 masquerade code into main nat module [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[01/20] netfilter: add includes to nf_socket.h [01/20] netfilter: add includes to nf_socket.h - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[00/20] Netfilter/IPVS updates for net-next - - - - 0 0 0 2018-06-02 Pablo Neira Ayuso davem Accepted
[9/9] netfilter: nf_tables: increase nft_counters_enabled in nft_chain_stats_replace() [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() - - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[8/9] netfilter: nf_tables: fix NULL-ptr in nf_tables_dump_obj() [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() 1 1 - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[7/9] netfilter: nf_tables: disable preemption in nft_update_chain_stats() [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() - - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[6/9] netfilter: provide correct argument to nla_strlcpy() [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() 1 1 - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[5/9] ipvs: fix buffer overflow with sync daemon and service [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() 1 2 - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[4/9] netfilter: nft_limit: fix packet ratelimiting [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() - - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[3/9] netfilter: nft_meta: fix wrong value dereference in nft_meta_set_eval [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() - - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[2/9] netfilter: ebtables: handle string from userspace with care [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() - 1 - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() [1/9] netfilter: nf_tables: fix NULL pointer dereference on nft_ct_helper_obj_dump() 1 - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[0/9] Netfilter/IPVS fixes for net - - - - 0 0 0 2018-05-28 Pablo Neira Ayuso davem Accepted
[18/18] netfilter: nf_tables: remove nft_af_info. [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[17/18] netfilter: nfnetlink_queue: resolve clash for unconfirmed conntracks [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[16/18] netfilter: add struct nf_nat_hook and use it [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[15/18] netfilter: add struct nf_ct_hook and use it [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[14/18] netfilter: ip6t_rpfilter: provide input interface for route lookup [01/18] netfilter: fix fallout from xt/nf osf separation - 1 - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[13/18] netfilter: nft_set_rbtree: add timeout support [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[12/18] netfilter: make NF_OSF non-visible symbol [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[11/18] netfilter: lift one-nat-hook-only restriction [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[10/18] netfilter: nf_nat: add nat type hooks to nat core [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[09/18] netfilter: nf_nat: add nat hook register functions to nf_nat [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[08/18] netfilter: core: export raw versions of add/delete hook functions [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[07/18] netfilter: nf_tables: allow chain type to override hook register [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[06/18] netfilter: xtables: allow table definitions not backed by hook_ops [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[05/18] netfilter: nf_nat: move common nat code to nat core [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[04/18] netfilter: nft_hash: add map lookups for hashing operations [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[03/18] netfilter: nft_numgen: add map lookups for numgen random operations [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[02/18] netfilter: nf_tables: remove old nf_log based tracing [01/18] netfilter: fix fallout from xt/nf osf separation - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[01/18] netfilter: fix fallout from xt/nf osf separation [01/18] netfilter: fix fallout from xt/nf osf separation - 1 - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
[00/18] Netfilter updates for net-next - - - - 0 0 0 2018-05-23 Pablo Neira Ayuso davem Accepted
« 1 2 3 48 9 »