Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   1152 patches
« 1 2 3 411 12 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[3/4] selftests: netfilter: remove unused cnt and simplify command testing [1/4] selftests: netfilter: add cpu counter check - - - - --- 2020-10-07 Pablo Neira Ayuso davem Accepted
[2/4] selftests: netfilter: fix nft_meta.sh error reporting [1/4] selftests: netfilter: add cpu counter check - - - - --- 2020-10-07 Pablo Neira Ayuso davem Accepted
[1/4] selftests: netfilter: add cpu counter check [1/4] selftests: netfilter: add cpu counter check 1 - - - --- 2020-10-07 Pablo Neira Ayuso davem Accepted
[0/4] Netfilter fixes for net - - - - --- 2020-10-07 Pablo Neira Ayuso davem Accepted
[11/11] netfilter: nf_tables: Implement fast bitwise expression [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[10/11] netfilter: nf_tables: Enable fast nft_cmp for inverted matches [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[09/11] netfilter: nfnetlink: place subsys mutexes in distinct lockdep classes [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[08/11] netfilter: ipset: enable memory accounting for ipset allocations [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[07/11] netfilter: nf_tables_offload: Remove unused macro FLOW_SETUP_BLOCK [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[06/11] netfilter: nf_tables: add userdata attributes to nft_chain [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[05/11] netfilter: nf_tables: use nla_memdup to copy udata [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[04/11] netfilter: nf_tables: fix userdata memleak [01/11] netfilter: conntrack: proc: rename stat column - 2 - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[03/11] ipvs: Remove unused macros [01/11] netfilter: conntrack: proc: rename stat column 1 - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[02/11] netfilter: nf_tables: Remove ununsed function nft_data_debug [01/11] netfilter: conntrack: proc: rename stat column - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[01/11] netfilter: conntrack: proc: rename stat column [01/11] netfilter: conntrack: proc: rename stat column - 1 - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[00/11] Netfilter updates for net-next - - - - --- 2020-10-04 Pablo Neira Ayuso davem Accepted
[13/13] netfilter: nf_tables: add userdata support for nft_object [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[12/13] selftests/net: replace obsolete NFT_CHAIN configuration [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[11/13] netfilter: ebt_stp: Remove unused macro BPDU_TYPE_TCN [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[10/13] ipvs: remove dependency on ip6_tables [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet 1 2 - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[09/13] netfilter: nft_socket: add wildcard support [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[08/13] netfilter: xt_HMARK: Use ip_is_fragment() helper [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[07/13] netfilter: conntrack: remove unneeded nf_ct_put [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[06/13] netfilter: conntrack: add clash resolution stat counter [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[05/13] netfilter: conntrack: remove ignore stats [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[04/13] netfilter: conntrack: do not increment two error counters at same time [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[03/13] netfilter: nf_tables: add userdata attributes to nft_table [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[02/13] ipvs: Fix uninit-value in do_ip_vs_set_ctl() [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet 1 - 1 - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet [01/13] netfilter: ip6t_NPT: rewrite addresses in ICMPv6 original packet - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[00/13] Netfilter updates for net-next - - - - --- 2020-09-09 Pablo Neira Ayuso davem Accepted
[5/5] netfilter: nft_meta: use socket user_ns to retrieve skuid and skgid [1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum - 1 - 1 --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[4/5] netfilter: conntrack: nf_conncount_init is failing with IPv6 disabled [1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum - 1 1 - --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[3/5] netfilter: ctnetlink: fix mark based dump filtering regression [1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum - 1 - - --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[2/5] netfilter: nf_tables: coalesce multiple notifications into one skbuff [1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum 1 - - - --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum [1/5] netfilter: ctnetlink: add a range check for l3/l4 protonum - 1 - - --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[0/5] Netfilter fixes for net - - - - --- 2020-09-08 Pablo Neira Ayuso davem Accepted
[8/8] netfilter: conntrack: do not auto-delete clash entries on reply [1/8] netfilter: delete repeated words - 1 - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[7/8] selftests: netfilter: add command usage [1/8] netfilter: delete repeated words - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[6/8] selftests: netfilter: simplify command testing [1/8] netfilter: delete repeated words - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[5/8] selftests: netfilter: remove unused variable in make_file() [1/8] netfilter: delete repeated words - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[4/8] selftests: netfilter: exit on invalid parameters [1/8] netfilter: delete repeated words - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[3/8] selftests: netfilter: fix header example [1/8] netfilter: delete repeated words - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[2/8] netfilter: nfnetlink: nfnetlink_unicast() reports EAGAIN instead of ENOBUFS [1/8] netfilter: delete repeated words - 1 - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[1/8] netfilter: delete repeated words [1/8] netfilter: delete repeated words - - 1 - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[0/8] Netfilter fixes for net - - - - --- 2020-08-31 Pablo Neira Ayuso davem Accepted
[6/6] netfilter: nf_tables: fix destination register zeroing [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - 1 - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[5/6] netfilter: nf_tables: incorrect enum nft_list_attributes definition [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - 1 - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[4/6] netfilter: nf_tables: add NFTA_SET_USERDATA if not null [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - 1 - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[3/6] netfilter: nft_set_rbtree: Detect partial overlap with start endpoint match [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - - - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[2/6] netfilter: nft_set_rbtree: Handle outcomes of tree rotations in overlap detection [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - 1 - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use [1/6] netfilter: conntrack: allow sctp hearbeat after connection re-use - - - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[0/6] Netfilter fixes for net - - - - --- 2020-08-24 Pablo Neira Ayuso davem Accepted
[8/8] netfilter: ebtables: reject bogus getopt len value [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - 1 1 - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[7/8] selftests: netfilter: kill running process only [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - - - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[6/8] selftests: netfilter: add MTU arguments to flowtables [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - - - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[5/8] selftests: netfilter: add checktool function [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - - - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[4/8] netfilter: nf_tables: free chain context when BINDING flag is missing [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - 1 - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[3/8] netfilter: avoid ipv6 -> nf_defrag_ipv6 module dependency [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - - - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[2/8] netfilter: nft_compat: remove flush counter optimization [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - 1 - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian [1/8] netfilter: nf_tables: nft_exthdr: the presence return value should be little-endian - 2 - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[0/8] Netfilter fixes for net - - - - --- 2020-08-15 Pablo Neira Ayuso davem Accepted
[5/5] netfilter: flowtable: Set offload timeout when adding flow [1/5] netfilter: nft_compat: make sure xtables destructors have run - 1 - - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[4/5] netfilter: conntrack: Move nf_ct_offload_timeout to header file [1/5] netfilter: nft_compat: make sure xtables destructors have run - - 1 - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[3/5] selftests: netfilter: add meta iif/oif match test [1/5] netfilter: nft_compat: make sure xtables destructors have run - - - - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[2/5] netfilter: nft_meta: fix iifgroup matching [1/5] netfilter: nft_compat: make sure xtables destructors have run - 1 - - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[1/5] netfilter: nft_compat: make sure xtables destructors have run [1/5] netfilter: nft_compat: make sure xtables destructors have run - - - - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[0/5] Netfilter fixes for net - - - - --- 2020-08-04 Pablo Neira Ayuso davem Accepted
[7/7] netfilter: nf_tables: report EEXIST on overlaps [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[6/7] netfilter: nf_tables: extended netlink error reporting for expressions [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[5/7] netfilter: ip6tables: Remove redundant null checks [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[4/7] netfilter: Replace HTTP links with HTTPS ones [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[3/7] netfilter: Use fallthrough pseudo-keyword [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[2/7] ipvs: queue delayed work to expire no destination connections if expire_nodest_conn=1 [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() [1/7] netfilter: nf_tables: Fix a use after free in nft_immediate_destroy() - 1 - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[0/7] Netfilter updates for net-next - - - - --- 2020-08-02 Pablo Neira Ayuso davem Accepted
[2/2] ipvs: fix the connection sync failed in some cases [1/2] netfilter: nf_tables: fix nat hook table deletion 1 1 - - --- 2020-07-23 Pablo Neira Ayuso davem Accepted
[1/2] netfilter: nf_tables: fix nat hook table deletion [1/2] netfilter: nf_tables: fix nat hook table deletion - 1 - - --- 2020-07-23 Pablo Neira Ayuso davem Accepted
[0/2] Netfilter/IPVS fixes for net - - - - --- 2020-07-23 Pablo Neira Ayuso davem Accepted
[12/12] netfilter: nf_tables: reject unsupported chain flags [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[11/12] netfilter: nf_tables: add NFT_CHAIN_BINDING [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[10/12] netfilter: nf_tables: add nft_chain_add() [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[09/12] netfilter: nf_tables: expose enum nft_chain_flags through UAPI [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[08/12] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[07/12] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[06/12] netfilter: nf_tables: add NFTA_CHAIN_ID attribute [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[05/12] ipvs: allow connection reuse for unconfirmed conntrack [01/12] netfilter: introduce support for reject at prerouting stage - 1 1 - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[04/12] ipvs: avoid expiring many connections from timer [01/12] netfilter: introduce support for reject at prerouting stage - - 1 - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[03/12] ipvs: register hooks only with services [01/12] netfilter: introduce support for reject at prerouting stage - - 1 - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[02/12] netfilter: nft_set_pipapo: Drop useless assignment of scratch map index on insert [01/12] netfilter: introduce support for reject at prerouting stage - 1 - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[01/12] netfilter: introduce support for reject at prerouting stage [01/12] netfilter: introduce support for reject at prerouting stage - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[00/12] Netfilter/IPVS updates for net-next - - - - --- 2020-07-08 Pablo Neira Ayuso davem Accepted
[2/2] netfilter: conntrack: refetch conntrack after nf_conntrack_update() [1/2] netfilter: ipset: call ip_set_free() instead of kfree() - 1 - - --- 2020-07-04 Pablo Neira Ayuso davem Accepted
[1/2] netfilter: ipset: call ip_set_free() instead of kfree() [1/2] netfilter: ipset: call ip_set_free() instead of kfree() - 2 - - --- 2020-07-04 Pablo Neira Ayuso davem Accepted
[0/2] Netfilter fixes for net - - - - --- 2020-07-04 Pablo Neira Ayuso davem Accepted
[7/7] selftests: netfilter: add test case for conntrack helper assignment [1/7] netfilter: ipset: fix unaligned atomic access - - - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
[6/7] netfilter: ip6tables: Add a .pre_exit hook in all ip6table_foo.c. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
[5/7] netfilter: ip6tables: Split ip6t_unregister_table() into pre_exit and exit helpers. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
[4/7] netfilter: iptables: Add a .pre_exit hook in all iptable_foo.c. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
[3/7] netfilter: iptables: Split ipt_unregister_table() into pre_exit and exit helpers. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
[2/7] netfilter: Add MODULE_DESCRIPTION entries to kernel modules [1/7] netfilter: ipset: fix unaligned atomic access - - - - --- 2020-06-25 Pablo Neira Ayuso davem Accepted
« 1 2 3 411 12 »