Patches

Show patches with: Submitter = Pablo Neira       |    Archived = No   
« 1 2 3 426 27 »
Patch A/R/T S/W/F Date Submitter Delegate State
[5/5] netfilter: expect: fix crash when putting uninited expectation - - 1 0 0 0 2017-07-18 Pablo Neira davem Accepted
[4/5] netfilter: nf_tables: only allow in/output for arp packets - - - 0 0 0 2017-07-18 Pablo Neira davem Accepted
[3/5] netfilter: nat: fix src map lookup - - 1 0 0 0 2017-07-18 Pablo Neira davem Accepted
[2/5] netfilter: remove old pre-netns era hook api - - - 0 0 0 2017-07-18 Pablo Neira davem Accepted
[1/5] netfilter: nfnetlink: Improve input length sanitization in nfnetlink_rcv - - - 0 0 0 2017-07-18 Pablo Neira davem Accepted
[0/5] Netfilter fixes for net - - - 0 0 0 2017-07-18 Pablo Neira davem Accepted
[2/2] netfilter: ebt_nflog: fix unexpected truncated packet - - - 0 0 0 2017-07-06 Pablo Neira davem Accepted
[1/2] netfilter: nf_ct_dccp/sctp: fix memory leak after netns cleanup 2 - - 0 0 0 2017-07-06 Pablo Neira davem Accepted
[0/2] Netfilter fixes for net - - - 0 0 0 2017-07-06 Pablo Neira davem Accepted
[29/29] netfilter: nfnetlink: extended ACK reporting - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[28/29] netfilter: nf_tables: reduce chain type table size - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[27/29] netfilter: conntrack: use NFPROTO_MAX to size array - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[26/29] netfilter: use nf_conntrack_helpers_register when possible 1 - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[25/29] netfilter, kbuild: use canonical method to specify objs. - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[24/29] netfilter: ebt: Use new helper ebt_invalid_target to check target - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[23/29] netns: add and use net_ns_barrier 2 - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[22/29] netfilter: move table iteration out of netns exit paths - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[21/29] netfilter: ipt_CLUSTERIP: do not hold dev - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[20/29] netfilter: cttimeout: use nf_ct_iterate_cleanup_net to unlink timeout objs - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[19/29] netfilter: nf_ct_helper: use nf_ct_iterate_destroy to unlink helper objs - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[18/29] netfilter: nft_set_hash: add lookup variant for fixed size hashtable - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[17/29] netfilter: nft_set_hash: add non-resizable hashtable implementation - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[16/29] netfilter: nf_tables: allow large allocations for new sets - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[15/29] netfilter: nft_set_hash: add nft_hash_buckets() - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[14/29] netfilter: nf_tables: pass set description to ->privsize - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[13/29] netfilter: nf_tables: select set backend flavour depending on description - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[12/29] netfilter: nft_set_hash: use nft_rhash prefix for resizable set backend - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[11/29] netfilter: nf_tables: no size estimation if number of set elements is unknown - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[10/29] netfilter: nft_set_hash: unnecessary forward declaration - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[09/29] netfilter: nat: destroy nat mappings on module exit path only - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[08/29] netfilter: conntrack: restart iteration on resize - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[07/29] netfilter: conntrack: add nf_ct_iterate_destroy - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[06/29] netfilter: conntrack: don't call iter for non-confirmed conntracks - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[05/29] netfilter: conntrack: rename nf_ct_iterate_cleanup - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[04/29] netfilter: nft_rt: make local functions static - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[03/29] netfilter: dup: resolve warnings about missing prototypes - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[02/29] netfilter: ipt_CLUSTERIP: switch to nf_register_net_hook - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[01/29] netfilter: ctnetlink: delete extra spaces - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[00/29] Netfilter updates for net-next - - - 0 0 0 2017-06-29 Pablo Neira davem Accepted
[v2] netfilter: nfnetlink: Improve input length sanitization in nfnetlink_rcv - - - 0 0 0 2017-06-29 Pablo Neira davem RFC
[4/4] netfilter: ctnetlink: fix incorrect nf_ct_put during hash resize - - - 0 0 0 2017-05-29 Pablo Neira davem Accepted
[3/4] netfilter: nat: use atomic bit op to clear the _SRC_NAT_DONE_BIT - - - 0 0 0 2017-05-29 Pablo Neira davem Accepted
[2/4] netfilter: nft_set_rbtree: handle element re-addition after deletion - - 1 0 0 0 2017-05-29 Pablo Neira davem Accepted
[1/4] netfilter: conntrack: fix false CRC32c mismatch using paged skb - - - 0 0 0 2017-05-29 Pablo Neira davem Accepted
[0/4] Netfilter fixes for net - - - 0 0 0 2017-05-29 Pablo Neira davem Accepted
[12/12] netfilter: xtables: fix build failure from COMPAT_XT_ALIGN outside CONFIG_COMPAT - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[11/12] ebtables: arpreply: Add the standard target sanity check - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[10/12] netfilter: nf_tables: revisit chain/object refcounting from elements - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[09/12] netfilter: nf_tables: missing sanitization in data from userspace - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[08/12] netfilter: nf_tables: can't assume lock is acquired when dumping set elems - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[07/12] netfilter: synproxy: fix conntrackd interaction - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[06/12] netfilter: xtables: zero padding in data_to_user - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[05/12] netfilter: nfnl_cthelper: reject del request if helper obj is in use - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[04/12] netfilter: introduce nf_conntrack_helper_put helper function - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[03/12] netfilter: don't setup nat info for confirmed ct 1 - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[02/12] netfilter: ctnetlink: Make some parameters integer to avoid enum mismatch - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[01/12] ipvs: SNAT packet replies only for NATed connections - - 1 0 0 0 2017-05-19 Pablo Neira davem Accepted
[00/12] Netfilter/IPVS fixes for net - - - 0 0 0 2017-05-19 Pablo Neira davem Accepted
[16/16] netfilter: nf_tables: check if same extensions are set when adding elements - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[15/16] netfilter: update MAINTAINERS file 1 - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[14/16] netfilter: x_tables: unlock on error in xt_find_table_lock() 1 - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[13/16] ipvs: explicitly forbid ipv6 service/dest creation if ipv6 mod is disabled 1 - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[12/16] netfilter: Wrong icmp6 checksum for ICMPV6_TIME_EXCEED in reverse SNATv6 path - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[11/16] netfilter: nft_dynset: continue to next expr if _OP_ADD succeeded - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[10/16] bridge: ebtables: fix reception of frames DNAT-ed to bridge device/port - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[09/16] netfilter: xt_socket: Fix broken IPv6 handling 1 - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[08/16] netfilter: ctnetlink: acquire ct->lock before operating nf_ct_seqadj - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[07/16] netfilter: ctnetlink: make it safer when updating ct->status - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[06/16] netfilter: ctnetlink: fix deadlock due to acquire _expect_lock twice - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[05/16] netfilter: ctnetlink: drop the incorrect cthelper module request - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[04/16] netfilter: nft_set_bitmap: free dummy elements when destroy the set - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[03/16] netfilter: nf_ct_helper: permit cthelpers with different names via nfnetlink - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[02/16] openvswitch: Delete conntrack entry clashing with an expectation. 1 - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[01/16] netfilter: xt_CT: fix refcnt leak on error path - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[00/16] Netfilter/IPVS/OVS fixes for net - - - 0 0 0 2017-05-03 Pablo Neira davem Accepted
[53/53] netfilter: nf_ct_ext: invoke destroy even when ext is not attached - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[52/53] netfilter: snmp: avoid stack size warning - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[51/53] netfilter: nf_queue: only call synchronize_net twice if nf_queue is active - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[50/53] netfilter: nf_log: don't call synchronize_rcu in nf_log_unset - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[49/53] netfilter: batch synchronize_net calls during hook unregister - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[48/53] ipvs: change comparison on sync_refresh_period - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[47/53] ipvs: remove unused function ip_vs_set_state_timeout - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[46/53] netfilter: don't attach a nat extension by default - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[45/53] netfilter: pptp: attach nat extension when needed - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[44/53] netfilter: masquerade: attach nat extension if not present - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[43/53] netfilter: conntrack: handle initial extension alloc via krealloc - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[42/53] netfilter: conntrack: mark extension structs as const - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[41/53] netfilter: conntrack: remove prealloc support - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[40/53] netfilter: SYNPROXY: Return NF_STOLEN instead of NF_DROP during handshaking - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[39/53] ebtables: remove nf_hook_register usage - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[38/53] netfilter: decnet: only register hooks in init namespace - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[37/53] ipvs: convert to use pernet nf_hook api - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[36/53] netfilter: synproxy: only register hooks when needed - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[35/53] netfilter: tcp: Use TCP_MAX_WSCALE instead of literal 14 - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[34/53] netfilter: ipvs: fix incorrect conflict resolution - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[33/53] nefilter: eache: reduce struct size from 32 to 24 byte - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[32/53] netfilter: allow early drop of assured conntracks 1 - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[31/53] netfilter: conntrack: use u8 for extension sizes again - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[30/53] netfilter: remove last traces of variable-sized extensions - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
[29/53] netfilter: helpers: remove data_len usage for inkernel helpers - - - 0 0 0 2017-05-01 Pablo Neira davem Accepted
« 1 2 3 426 27 »