Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   2697 patches
« 1 2 3 426 27 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[12/12] netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1' [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel 2 - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[11/12] netfilter: SYNPROXY: skip non-tcp packet in {ipv4, ipv6}_synproxy_hook [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[10/12] netfilter: x_tables: avoid stack-out-of-bounds read in xt_copy_counters_from_user [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel 1 - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[09/12] netfilter: nf_tables: do not dump chain counters if not enabled [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - 1 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[08/12] netfilter: nf_tables: Release memory obtained by kasprintf [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[07/12] netfilter: ebtables: fix race condition in frame_filter_net_init() [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[06/12] netfilter: nf_tables: fix update chain error [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[05/12] netfilter: ipset: Fix race between dump and swap [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel 1 - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[04/12] netfilter: ipset: pernet ops must be unregistered last [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel 1 - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[03/12] netfilter: ipset: Fix adding an IPv4 range containing more than 2^31 addresses [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[02/12] netfilter: xt_socket: Restore mark from full sockets only [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel [01/12] netfilter: ipvs: full-functionality option for ECN encapsulation in tunnel 1 1 - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[00/12] Netfilter/IPVS fixes for net - - - 0 0 0 2017-10-09 Pablo Neira Ayuso davem Accepted
[2/2] netfilter: ipset: ipset list may return wrong member count for set with timeout [1/2] netfilter: nat: Do not use ARRAY_SIZE() on spinlocks to fix zero div - 1 - 0 0 0 2017-09-20 Pablo Neira Ayuso davem Accepted
[1/2] netfilter: nat: Do not use ARRAY_SIZE() on spinlocks to fix zero div [1/2] netfilter: nat: Do not use ARRAY_SIZE() on spinlocks to fix zero div - - - 0 0 0 2017-09-20 Pablo Neira Ayuso davem Accepted
[0/2] Netfilter fixes for net - - - 0 0 0 2017-09-20 Pablo Neira Ayuso davem Accepted
[9/9] netfilter: xt_hashlimit: fix build error caused by 64bit division [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[8/9] netfilter: xt_hashlimit: alloc hashtable with right size [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[7/9] netfilter: core: remove erroneous warn_on [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet 1 - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[6/9] netfilter: nat: use keyed locks [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[5/9] netfilter: nat: Revert "netfilter: nat: convert nat bysrc hash to rhashtable" [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[4/9] netfilter: xtables: add scheduling opportunity in get_counters [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet 1 - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[3/9] netfilter: nf_nat: don't bug when mapping already exists [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[2/9] netfilter: ipvs: do not create conn for ABORT packet in sctp_conn_schedule [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet [1/9] netfilter: ipvs: fix the issue that sctp_conn_schedule drops non-INIT packet - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[0/9] Netfilter/IPVS fixes for net - - - 0 0 0 2017-09-08 Pablo Neira Ayuso davem Accepted
[12/12] netfilter: nf_tables: support for recursive chain deletion [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[11/12] netfilter: nf_tables: use NLM_F_NONREC for deletion requests [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[10/12] netlink: add NLM_F_NONREC flag for deletion requests [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[09/12] netfilter: nf_tables: add nf_tables_addchain() [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[08/12] netfilter: nf_tables: add nf_tables_updchain() [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[07/12] net: Remove CONFIG_NETFILTER_DEBUG and _ASSERT() macros. [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[06/12] net: Replace NF_CT_ASSERT() with WARN_ON(). [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[05/12] netfilter: remove unused hooknum arg from packet functions [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[04/12] netfilter: nft_limit: add stateful object type [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[03/12] netfilter: nft_limit: replace pkt_bytes with bytes [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[02/12] netfilter: nf_tables: add select_ops for stateful objects [01/12] netfilter: xt_hashlimit: add rate match mode - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[01/12] netfilter: xt_hashlimit: add rate match mode [01/12] netfilter: xt_hashlimit: add rate match mode - 1 - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[00/12] Netfilter updates for next-net (part 2) - - - 0 0 0 2017-09-04 Pablo Neira Ayuso davem Accepted
[47/47] netfilter: rt: account for tcp header size too Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[46/47] netfilter: conntrack: remove unused code in nf_conntrack_proto_generic.c Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[45/47] netfilter: Remove NFDEBUG() Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[44/47] netfilter: conntrack: don't log "invalid" icmpv6 connections Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[43/47] netfilter: core: batch nf_unregister_net_hooks synchronize_net calls Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[42/47] netfilter: debug: check for sorted array Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[41/47] netfilter: convert hook list to an array Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[40/47] netfilter: fix a few (harmless) sparse warnings Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[39/47] netfilter: ebtables: fix indent on if statements Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[38/47] netfilter: conntrack: make protocol tracker pointers const Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[37/47] netfilter: conntrack: print_conntrack only needed if CONFIG_NF_CONNTRACK_PROCFS Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[36/47] netfilter: conntrack: place print_tuple in procfs part Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[35/47] netfilter: conntrack: reduce size of l4protocol trackers Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[34/47] netfilter: conntrack: remove protocol name from l4proto struct Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[33/47] netfilter: conntrack: remove protocol name from l3proto struct Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[32/47] netfilter: conntrack: compute l3proto nla size at compile time Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[31/47] netfilter: nf_nat_h323: fix logical-not-parentheses warning Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[30/47] netfilter: rt: add support to fetch path mss Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[29/47] netfilter: exthdr: tcp option set support Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[28/47] netfilter: exthdr: split netlink dump function Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[27/47] netfilter: exthdr: factor out tcp option access Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[26/47] netfilter: use audit_log() Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[25/47] netfilter: remove prototype of netfilter_queue_init Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[24/47] netfilter: connlimit: merge root4 and root6. Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[23/47] netfilter: constify nf_loginfo structures Untitled series #1283 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[22/47] netfilter: constify nf_conntrack_l3/4proto parameters [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[21/47] netfilter: xtables: Remove unused variable in compat_copy_entry_from_user() [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[20/47] netfilter: conntrack: do not enable connection tracking unless needed [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[19/47] netfilter: nft_set_rbtree: use seqcount to avoid lock in most cases [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[18/47] netfilter: nf_tables: Allow object names of up to 255 chars [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[17/47] netfilter: nf_tables: Allow set names of up to 255 chars [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[16/47] netfilter: nf_tables: Allow chain name of up to 255 chars [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[15/47] netfilter: nf_tables: Allow table names of up to 255 chars [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[14/47] netlink: Introduce nla_strdup() [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[13/47] netfilter: nf_tables: No need to check chain existence when tracing [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[12/47] netfilter: nf_hook_ops structs can be const [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[11/47] netfilter: nfnetlink_queue: don't queue dying conntracks to userspace [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[10/47] netfilter: conntrack: destroy functions need to free queued packets [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[09/47] netfilter: add and use nf_ct_unconfirmed_destroy [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[08/47] netfilter: expect: add and use nf_ct_expect_iterate helpers [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[07/47] netfilter: conntrack: Change to deferable work queue [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[06/47] netfilter: nf_tables: add fib expression to the netdev family [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[05/47] netfilter: nf_tables: fib: use skb_header_pointer [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[04/47] netfilter: nf_tables: Attach process info to NFT_MSG_NEWGEN notifications [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[03/47] netfilter: Remove duplicated rcu_read_lock. [01/47] netfilter: expect: add to hash table after expect init 1 - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[02/47] netfilter: nf_tables: keep chain counters away from hot path [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[01/47] netfilter: expect: add to hash table after expect init [01/47] netfilter: expect: add to hash table after expect init - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[00/47] Netfilter updates for net-next - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Accepted
[nf-next,5/5] netfilter: nf_tables: support for recursive chain deletion Untitled series #1278 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Changes Requested
[nf-next,4/5] netfilter: nf_tables: use NLM_F_NONREC for deletion requests Untitled series #1278 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Changes Requested
[nf-next,3/5] netlink: add NLM_F_NONREC flag for deletion requests Untitled series #1278 - - - 0 0 0 2017-09-03 Pablo Neira Ayuso davem Changes Requested
[5/5] netfilter: nf_tables: Fix nft limit burst handling 1 - - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[4/5] netfilter: check for seqadj ext existence before adding it in nf_nat_setup_info 1 - - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[3/5] netfilter: x_tables: Fix use-after-free in ipt_do_table. - - - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[2/5] netfilter: nft_compat: check extension hook mask only if set - - - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[1/5] netfilter: ipt_CLUSTERIP: fix use-after-free of proc entry - 1 - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[0/5] Netfilter fixes for net - - - 0 0 0 2017-08-24 Pablo Neira Ayuso davem Accepted
[5/5] netfilter: expect: fix crash when putting uninited expectation - - 1 0 0 0 2017-07-18 Pablo Neira Ayuso davem Accepted
[4/5] netfilter: nf_tables: only allow in/output for arp packets - - - 0 0 0 2017-07-18 Pablo Neira Ayuso davem Accepted
[3/5] netfilter: nat: fix src map lookup - - 1 0 0 0 2017-07-18 Pablo Neira Ayuso davem Accepted
[2/5] netfilter: remove old pre-netns era hook api - - - 0 0 0 2017-07-18 Pablo Neira Ayuso davem Accepted
« 1 2 3 426 27 »