Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: none
| 30314 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
galak
galak
demarchi
ms
bhundven
chbs
kengyu
kadlec
pdp
regit
jabk
laforge
laforge
tonyb
sfr
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
patrick_delaunay
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
vriera
darball1
sammj
ajd
jogo
jogo
bhelgaas
blogic
blogic
tagr
tagr
tagr
oohal
russellb
ptomsich
agraf
joestringer
davem
davem
davem
mwalle
naveen
pchotard
pepe2k
pepe2k
arj
arj
andmur01
amitay
matttbe
pabeni
istokes
aparcar
Ansuel
goliath
martineau
tytso
danielschwierzeck
tpetazzoni
mariosix
dcaratti
ovsrobot
ovsrobot
aserdean
XiaoYang
hs
khem
mkorpershoek
marex
liwang
robimarko
apritzel
danielhb
groug
npiggin
mmichelson
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
maximeh
dsa
jstancek
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
narmstrong
981213
0andriy
chunkeey
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
monstr
vigneshr
mraynal
stewart
stewart
jacmet
freenix
wsa
rfried
jagan
xypron
kevery
arbab
metan
Jaehoon
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
ehristev
bmeng
ag
kabel
horms
rmilecki
rmilecki
akumar
ivanhu
sjg
prom
ukleinek
ukleinek
abelloni
trini
apconole
wbx
svanheule
pablo
pablo
chleroy
Hauke
Hauke
legoater
legoater
legoater
rw
rw
bjonglez
ynezz
aik
pevik
xback
xback
richiejp
dangole
dangole
sbabic
sbabic
acer
forty
next_ghost
anuppatel
anuppatel
echaudron
benh
rgrimm
pratyush
segher
passgat
jms
jms
jms
mans0n
ruscur
Andes
jmberg
ymorin
ymorin
numans
linusw
linusw
festevam
jk
jk
jk
jk
xuyang
kubu
matthias_bgg
tambarus
pbrobinson
imaximets
apalos
dceara
strlen
strlen
spectrum
cazzacarna
neocturne
aldot
TIENFONG
mpe
ktraynor
arnout
calebccff
robh
anguy11
nbd
nbd
paulus
stroese
jm
Apply
«
1
2
...
11
12
13
…
303
304
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[nft] parser_bison: fix memory leaks on hookspec error processing
[nft] parser_bison: fix memory leaks on hookspec error processing
- - - -
-
-
-
2023-12-13
Florian Westphal
Accepted
[nft] parser_bison: close chain scope before chain release
[nft] parser_bison: close chain scope before chain release
- 1 - -
-
-
-
2023-12-13
Florian Westphal
Accepted
[v2,nft] src: reject large raw payload and concat expressions
[v2,nft] src: reject large raw payload and concat expressions
- - - -
-
-
-
2023-12-12
Florian Westphal
Accepted
[PATCHv2,RFC,net-next,14/14] ipvs: add conn_lfactor and svc_lfactor sysctl vars
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,13/14] ipvs: add ip_vs_status info
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,12/14] ipvs: use more keys for connection hashing
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,11/14] ipvs: no_cport and dropentry counters can be per-net
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,10/14] ipvs: show the current conn_tab size to users
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,09/14] ipvs: switch to per-net connection table
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,08/14] ipvs: use resizable hash table for services
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,07/14] ipvs: add resizable hash tables
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,06/14] ipvs: use more counters to avoid service lookups
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,05/14] ipvs: do not keep dest_dst after dest is removed
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,04/14] ipvs: use single svc table
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,03/14] ipvs: some service readers can use RCU
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,02/14] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[PATCHv2,RFC,net-next,01/14] rculist_bl: add hlist_bl_for_each_entry_continue_rcu
ipvs: per-net tables and optimizations
- - - -
-
-
-
2023-12-12
Julian Anastasov
RFC
[nft] evaluate: error out if concat expression becomes too large
[nft] evaluate: error out if concat expression becomes too large
- - - -
-
-
-
2023-12-12
Florian Westphal
Superseded
[libnftnl] expr: fix buffer overflows in data value setters
[libnftnl] expr: fix buffer overflows in data value setters
- - - -
-
-
-
2023-12-12
Florian Westphal
Accepted
[nft] parser_bison: reject large raw payload expressions
[nft] parser_bison: reject large raw payload expressions
- - - -
-
-
-
2023-12-12
Florian Westphal
Superseded
[nft] parser_bison: ensure all timeout policy names are released
[nft] parser_bison: ensure all timeout policy names are released
- 1 - -
-
-
-
2023-12-12
Florian Westphal
Accepted
[nft] parser_bison: make sure obj_free releases timeout policies
[nft] parser_bison: make sure obj_free releases timeout policies
- - - -
-
-
-
2023-12-12
Florian Westphal
Accepted
[nft] parser_bison: fix ct scope underflow if ct helper section is duplicated
[nft] parser_bison: fix ct scope underflow if ct helper section is duplicated
- - - -
-
-
-
2023-12-12
Florian Westphal
Accepted
[iptables] Fix spelling mistakes
[iptables] Fix spelling mistakes
- - - -
-
-
-
2023-12-11
Jeremy Sowden
Accepted
[libnetfilter_queue,1/1] src: add nfq_socket_sendto() - send config request and check response
src: add nfq_socket_sendto() - send config request and check response
- - - -
-
-
-
2023-12-11
Duncan Roe
New
[ulogd] log NAT events using IPFIX
[ulogd] log NAT events using IPFIX
- - - -
-
-
-
2023-12-10
Tomasz Pala
New
[libnftnl] object: getters take const struct
[libnftnl] object: getters take const struct
- - - -
-
-
-
2023-12-09
corubba
Accepted
[libnetfilter_queue,1/1] whitespace: replace spaces with tab in indent
whitespace: replace spaces with tab in indent
- - - -
-
-
-
2023-12-09
Duncan Roe
Accepted
[nft] evaluate: validate chain max length
[nft] evaluate: validate chain max length
- - - -
-
-
-
2023-12-08
Florian Westphal
Accepted
[v2,nft] parser_bison: fix objref statement corruption
[v2,nft] parser_bison: fix objref statement corruption
- 1 - -
-
-
-
2023-12-08
Florian Westphal
Accepted
[v2,nft] evaluate: fix bogus assertion failure with boolean datatype
[v2,nft] evaluate: fix bogus assertion failure with boolean datatype
- 1 - -
-
-
-
2023-12-08
Florian Westphal
Accepted
[nft] parser_bison: fix objref statement corruption
[nft] parser_bison: fix objref statement corruption
- 1 - -
-
-
-
2023-12-08
Florian Westphal
Superseded
[nft] netlink: add and use nft_data_memcpy helper
[nft] netlink: add and use nft_data_memcpy helper
- - - -
-
-
-
2023-12-08
Florian Westphal
Accepted
[03/13] evaluate: fix bogus assertion failure with boolean datatype
Untitled series #385851
- 1 - -
-
-
-
2023-12-08
Florian Westphal
Superseded
[nf-next] netfilter: nf_tables: Support updating table's owner flag
[nf-next] netfilter: nf_tables: Support updating table's owner flag
- - - -
-
-
-
2023-12-08
Phil Sutter
Changes Requested
[nft] parser_bison: fix memleak in meta set error handling
[nft] parser_bison: fix memleak in meta set error handling
- - - -
-
-
-
2023-12-08
Florian Westphal
Accepted
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines
Untitled series #385629
- - - -
-
-
-
2023-12-07
Thomas Haller
New
[net,6/6] netfilter: xt_owner: Fix for unsafe access of sk->sk_socket
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,5/6] netfilter: nf_tables: validate family when identifying table via handle
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,4/6] netfilter: nf_tables: bail out on mismatching dynset and set expressions
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,3/6] netfilter: nf_tables: fix 'exist' matching on bigendian arches
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
1 3 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,2/6] netfilter: nft_set_pipapo: skip inactive elements during set walk
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
[net,1/6] netfilter: bpf: fix bad registration on nf_defrag
1 1 1 -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[net,0/6] Netfilter fixes for net
- - - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Handled Elsewhere
[nft] evaluate: reset statement length context before evaluating statement
[nft] evaluate: reset statement length context before evaluating statement
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
strlen
Accepted
[nft] evaluate: reset statement length context for relational expressions
[nft] evaluate: reset statement length context for relational expressions
- 1 - -
-
-
-
2023-12-06
Florian Westphal
Rejected
[nft,v2] evaluate: reject set definition with no key
[nft,v2] evaluate: reject set definition with no key
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Accepted
[nft] evaluate: reject set definition with no key
[nft] evaluate: reject set definition with no key
- 1 - -
-
-
-
2023-12-06
Pablo Neira Ayuso
Changes Requested
[nft,v3] parser: tcpopt: fix tcp option parsing with NUM + length field
[nft,v3] parser: tcpopt: fix tcp option parsing with NUM + length field
- 1 - -
-
-
-
2023-12-06
Florian Westphal
Accepted
[nft] monitor: add support for concatenated set ranges
[nft] monitor: add support for concatenated set ranges
- 1 - -
-
-
-
2023-12-05
Pablo Neira Ayuso
Accepted
[nft] tests: shell: flush ruleset with -U after feature probing
[nft] tests: shell: flush ruleset with -U after feature probing
- - - -
-
-
-
2023-12-05
Pablo Neira Ayuso
Accepted
[nft] intervals: don't assert when symbolic expression is to be split into a range
[nft] intervals: don't assert when symbolic expression is to be split into a range
- 1 - -
-
-
-
2023-12-05
Florian Westphal
Rejected
[nft] evaluate: fix double free on dtype release
[nft] evaluate: fix double free on dtype release
- - - -
-
-
-
2023-12-05
Florian Westphal
Accepted
[v2,nft] parser: tcpopt: fix tcp option parsing with NUM + length field
[v2,nft] parser: tcpopt: fix tcp option parsing with NUM + length field
- 1 - -
-
-
-
2023-12-05
Florian Westphal
Changes Requested
[libnetfilter_conntrack,2/2] flush: support filtering
dump/flush support filtering by zone
- - - -
-
-
-
2023-12-05
Felix Huettner
Accepted
[libnetfilter_conntrack,1/2] dump: support filtering by zone
dump/flush support filtering by zone
- - - -
-
-
-
2023-12-05
Felix Huettner
Accepted
[nft] parser: tcpopt: fix tcp option parsing with NUM + length field
[nft] parser: tcpopt: fix tcp option parsing with NUM + length field
- 1 - -
-
-
-
2023-12-05
Florian Westphal
strlen
Changes Requested
[nft] evaluate: catch implicit map expressions without known datatype
[nft] evaluate: catch implicit map expressions without known datatype
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: reject attempt to update a set
[nft] evaluate: reject attempt to update a set
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: disable meta set with ranges
[nft] evaluate: disable meta set with ranges
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: error out if basetypes are different
[nft] evaluate: error out if basetypes are different
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: guard against NULL basetype
[nft] evaluate: guard against NULL basetype
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: handle invalid mapping expressions gracefully
[nft] evaluate: handle invalid mapping expressions gracefully
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
[nft] evaluate: turn assert into real error check
[nft] evaluate: turn assert into real error check
- - - -
-
-
-
2023-12-04
Florian Westphal
strlen
Accepted
ipvs: add a stateless type of service and a stateless Maglev hashing scheduler
ipvs: add a stateless type of service and a stateless Maglev hashing scheduler
- - - -
-
-
-
2023-12-04
Lev Pantiukhin
Changes Requested
[nf] netfilter: nf_tables: validate family when identifying table via handle
[nf] netfilter: nf_tables: validate family when identifying table via handle
- 1 - -
-
-
-
2023-12-04
Pablo Neira Ayuso
Accepted
[nf] netfilter: nf_tables: bail out on mismatching dynset and set expressions
[nf] netfilter: nf_tables: bail out on mismatching dynset and set expressions
- 1 - -
-
-
-
2023-12-04
Pablo Neira Ayuso
Accepted
[nf] netfilter: nf_tables: fix 'exist' matching on bigendian arches
[nf] netfilter: nf_tables: fix 'exist' matching on bigendian arches
1 3 - -
-
-
-
2023-12-04
Florian Westphal
Accepted
[nft,2/2] main: Refer to nft_options in nft_options_check()
Review nft_options_check()
- - - -
-
-
-
2023-12-02
Phil Sutter
Accepted
[nft,1/2] main: Reduce indenting in nft_options_check()
Review nft_options_check()
- - - -
-
-
-
2023-12-02
Phil Sutter
Accepted
[nft] initial support for the afl++ (american fuzzy lop++) fuzzer
[nft] initial support for the afl++ (american fuzzy lop++) fuzzer
- - - -
-
-
-
2023-12-01
Florian Westphal
Changes Requested
[nf] netfilter: nft_set_pipapo: skip inactive elements during set walk
[nf] netfilter: nft_set_pipapo: skip inactive elements during set walk
- 1 - -
-
-
-
2023-12-01
Florian Westphal
Accepted
[nft] evaluate: prevent assert when evaluating very large shift values
[nft] evaluate: prevent assert when evaluating very large shift values
- 1 - -
-
-
-
2023-12-01
Florian Westphal
Accepted
[nft] evaluate: reject sets with no key
[nft] evaluate: reject sets with no key
- 1 - -
-
-
-
2023-11-30
Florian Westphal
Accepted
[net] net/netfilter: bpf: fix bad registration on nf_defrag
[net] net/netfilter: bpf: fix bad registration on nf_defrag
1 1 1 -
-
-
-
2023-11-30
D. Wythe
Accepted
[iptables,13/13] ebtables: Use do_parse() from xshared
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,12/13] xshared: Introduce option_test_and_reject()
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,11/13] ebtables: Use struct xt_cmd_parse
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,10/13] ebtables: Make 'h' case just a call to print_help()
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,09/13] ebtables: Pass struct iptables_command_state to print_help()
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,08/13] ebtables: Change option values to avoid clashes
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,07/13] ebtables{,-translate}: Convert if-clause to switch()
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,06/13] xshared: Support for ebtables' --change-counters command
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,05/13] xshared: Support rule range deletion in do_parse()
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,04/13] xshared: Introduce print_help callback (again)
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,03/13] xshared: Turn command_default() into a callback
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,02/13] xshared: Perform protocol value parsing in callback
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[iptables,01/13] xshared: do_parse: Skip option checking for CMD_DELETE_NUM
ebtables: Use the shared commandline parser
- - - -
-
-
-
2023-11-29
Phil Sutter
Accepted
[net] net/netfilter: bpf: avoid leakage of skb
[net] net/netfilter: bpf: avoid leakage of skb
- 1 - -
-
-
-
2023-11-29
D. Wythe
Changes Requested
[iptables,2/2] libxtables: xtoptions: Fix for non-CIDR-compatible hostmasks
libxtables: Fix two xtoptions bugs
- 1 - -
-
-
-
2023-11-28
Phil Sutter
Accepted
[iptables,1/2] libxtables: xtoptions: Fix for garbage access in xtables_options_xfrm()
libxtables: Fix two xtoptions bugs
- 1 - -
-
-
-
2023-11-28
Phil Sutter
Accepted
[iptables] man: Do not escape exclamation marks
[iptables] man: Do not escape exclamation marks
- 2 - -
-
-
-
2023-11-28
Phil Sutter
Accepted
[nft,2/2] tests/shell: workaround lack of $SRANDOM before bash 5.1
tests/shell: workaround for bash
- - - -
-
-
-
2023-11-27
Thomas Haller
Accepted
[nft,1/2] tests/shell: workaround lack of `wait -p` before bash 5.1
tests/shell: workaround for bash
- - - -
-
-
-
2023-11-27
Thomas Haller
Accepted
[nf-next] netfilter: nf_tables: mark newset as dead on transaction abort
[nf-next] netfilter: nf_tables: mark newset as dead on transaction abort
- 1 - -
-
-
-
2023-11-27
Florian Westphal
Accepted
[libnetfilter_queue,v3,1/1] examples: add an example which uses more functions
New example program nfq6
- - - -
-
-
-
2023-11-26
Duncan Roe
RFC
[libnetfilter_queue,v3,1/1] examples: add an example which uses more functions
New example program nfq6
- - - -
-
-
-
2023-11-26
Duncan Roe
RFC
[libnetfilter_queue,v5,1/1] src: Add nfq_nlmsg_put2() - user specifies header flags
src: Add nfq_nlmsg_put2() - user specifies header flags
- - - -
-
-
-
2023-11-26
Duncan Roe
Accepted
man: proper roff encoding for ^
man: proper roff encoding for ^
- 1 - -
-
-
-
2023-11-25
Jan Engelhardt
Accepted
man: proper roff encoding for ~ and ^
man: proper roff encoding for ~ and ^
- 1 - -
-
-
-
2023-11-25
Jan Engelhardt
Accepted
«
1
2
...
11
12
13
…
303
304
»