Show patches with: none      |   30308 patches
« 1 2 ... 16 17 18303 304 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[v13,02/12] landlock: Allow FS topology changes for domains without such rule type Network support for Landlock - - - - --- 2023-10-16 Konstantin Meskhidze (A) Not Applicable
[v13,01/12] landlock: Make ruleset's access masks more generic Network support for Landlock - - - - --- 2023-10-16 Konstantin Meskhidze (A) Not Applicable
[nf] selftests: netfilter: Run nft_audit.sh in its own netns [nf] selftests: netfilter: Run nft_audit.sh in its own netns - 1 - - --- 2023-10-13 Phil Sutter Accepted
[net-next] net: skb_find_text: Ignore patterns extending past 'to' [net-next] net: skb_find_text: Ignore patterns extending past 'to' - 1 - - --- 2023-10-13 Phil Sutter Handled Elsewhere
[nf-next,RFC] netfilter: nf_tables: shrink memory consumption of set elements [nf-next,RFC] netfilter: nf_tables: shrink memory consumption of set elements - - - - --- 2023-10-13 Pablo Neira Ayuso pablo RFC
[nf-next,3/3] netfilter: nft_set_rbtree: prefer sync gc to async worker netfilter: nf_tables: remove rbtree async garbage collection - - - - --- 2023-10-13 Florian Westphal Accepted
[nf-next,2/3] netfilter: nft_set_rbtree: rename gc deactivate+erase function netfilter: nf_tables: remove rbtree async garbage collection - - - - --- 2023-10-13 Florian Westphal Accepted
[nf-next,1/3] netfilter: nf_tables: de-constify set commit ops function argument netfilter: nf_tables: remove rbtree async garbage collection - - - - --- 2023-10-13 Florian Westphal Accepted
[nft] evaluate: suggest != in negation error message [nft] evaluate: suggest != in negation error message - - - - --- 2023-10-13 Florian Westphal Accepted
[conntrack,v6] conntrack: ct label update requires proper ruleset [conntrack,v6] conntrack: ct label update requires proper ruleset - - - - --- 2023-10-12 Pablo Neira Ayuso pablo Accepted
[conntrack,v4] conntrack: label update requires a previous label in place [conntrack,v4] conntrack: label update requires a previous label in place - - - - --- 2023-10-12 Pablo Neira Ayuso pablo Changes Requested
[iptables] extensions: string: Clarify description of --to [iptables] extensions: string: Clarify description of --to - - - - --- 2023-10-12 Phil Sutter Accepted
[iptables] libiptc: Fix for another segfault due to chain index NULL pointer [iptables] libiptc: Fix for another segfault due to chain index NULL pointer - 1 - - --- 2023-10-12 Phil Sutter Accepted
[net,7/7] netfilter: nft_payload: fix wrong mac header matching [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,6/7] nf_tables: fix NULL pointer dereference in nft_expr_inner_parse() [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,5/7] nf_tables: fix NULL pointer dereference in nft_inner_init() [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,4/7] netfilter: nf_tables: do not refresh timeout when resetting element [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,3/7] netfilter: nf_tables: Annotate struct nft_pipapo_match with __counted_by [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - - 1 - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,2/7] netfilter: nfnetlink_log: silence bogus compiler warning [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - - - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort [net,1/7] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[net,0/7] netfilter updates for net - - - - --- 2023-10-12 Florian Westphal Handled Elsewhere
[nf,v2] netfilter: nf_tables: audit log object reset once per table [nf,v2] netfilter: nf_tables: audit log object reset once per table 1 - 1 - --- 2023-10-11 Phil Sutter Accepted
[conntrack,v3] conntrack: label update requires a previous label in place [conntrack,v3] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso pablo Changes Requested
[conntrack] conntrack: label update requires a previous label in place [conntrack] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso Changes Requested
[conntrack] conntrack: label update requires a previous label in place [conntrack] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso pablo Changes Requested
[nf-next,6/6] netfilter: bridge: convert br_netfilter to NF_DROP_REASON netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nf-next,5/6] netfilter: make nftables drops visible in net dropmonitor netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nf-next,4/6] netfilter: nf_nat: mask out non-verdict bits when checking return value netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nf-next,3/6] netfilter: conntrack: convert nf_conntrack_update to netfilter verdicts netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nf-next,2/6] netfilter: nf_tables: mask out non-verdict bits when checking return value netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nf-next,1/6] netfilter: xt_mangle: only check verdict part of return value netfilter: more accurate drop statistics - - - - --- 2023-10-11 Florian Westphal Accepted
[nft,v2] doc: remove references to timeout in reset command [nft,v2] doc: remove references to timeout in reset command 1 1 - - --- 2023-10-10 Pablo Neira Ayuso Accepted
[net-next,8/8] netfilter: cleanup struct nft_table [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,7/8] netfilter: conntrack: prefer tcp_error_log to pr_debug [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,6/8] netfilter: conntrack: simplify nf_conntrack_alter_reply [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,5/8] netfilter: nf_tables: Don't allocate nft_rule_dump_ctx [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,4/8] netfilter: nf_tables: Carry s_idx in nft_rule_dump_ctx [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,3/8] netfilter: nf_tables: Carry reset flag in nft_rule_dump_ctx [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,2/8] netfilter: nf_tables: Drop pointless memset when dumping rules [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - 1 - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx [net-next,1/8] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[net-next,0/8] netfilter updates for next - - - - --- 2023-10-10 Florian Westphal Handled Elsewhere
[nft] doc: remove references to timeout in reset command [nft] doc: remove references to timeout in reset command - 1 - - --- 2023-10-10 Pablo Neira Ayuso pablo Changes Requested
[RFC] nftables 0.9.8 -stable backports [RFC] nftables 0.9.8 -stable backports - - - - --- 2023-10-09 Pablo Neira Ayuso RFC
[RFC] nftables 1.0.6 -stable backports [RFC] nftables 1.0.6 -stable backports - 1 - - --- 2023-10-09 Pablo Neira Ayuso Not Applicable
[nf,2/2] nf_tables: fix NULL pointer dereference in nft_expr_inner_parse() [nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() - 1 - - --- 2023-10-09 Xingyuan Mo Accepted
[nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() [nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() - 1 - - --- 2023-10-09 Xingyuan Mo Accepted
[nf,2/2] nf_tables: fix NULL pointer dereference in nft_expr_inner_parse() [nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() - 1 - - --- 2023-10-09 Xingyuan Mo Superseded
[nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() [nf,1/2] nf_tables: fix NULL pointer dereference in nft_inner_init() - 1 - - --- 2023-10-09 Xingyuan Mo Superseded
[v2] netfilter: cleanup struct nft_table [v2] netfilter: cleanup struct nft_table - - 1 - --- 2023-10-09 George Guo Accepted
[nf] netfilter: nft_payload: fix wrong mac header matching [nf] netfilter: nft_payload: fix wrong mac header matching - 1 - - --- 2023-10-08 Florian Westphal Accepted
[libnetfilter_queue] src: Fix IPv6 Fragment Header processing [libnetfilter_queue] src: Fix IPv6 Fragment Header processing - 1 - - --- 2023-10-08 Duncan Roe pablo Accepted
netfilter: remove inaccurate code comments from struct nft_table netfilter: remove inaccurate code comments from struct nft_table - - - - --- 2023-10-07 George Guo Changes Requested
[nft,3/3] tests/shell: add "-S|--setup-host" option to set sysctl for rootless tests [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nft,2/3] tests/shell: preserve result directory with NFT_TEST_FAIL_ON_SKIP [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nf-next] netfilter: conntrack: prefer tcp_error_log to pr_debug [nf-next] netfilter: conntrack: prefer tcp_error_log to pr_debug - - - - --- 2023-10-06 Florian Westphal Accepted
[nf-next] netfilter: conntrack: simplify nf_conntrack_alter_reply [nf-next] netfilter: conntrack: simplify nf_conntrack_alter_reply - - - - --- 2023-10-06 Florian Westphal Accepted
[nf] netfilter: nf_tables: work around newrule after chain binding [nf] netfilter: nf_tables: work around newrule after chain binding - 1 - - --- 2023-10-05 Florian Westphal Rejected
netfilter: ipset: wait for xt_recseq on all cpus netfilter: ipset: wait for xt_recseq on all cpus - - - - --- 2023-10-05 xiaolinkui Rejected
[nf] netfilter: nfnetlink_log: silence bogus compiler warning [nf] netfilter: nfnetlink_log: silence bogus compiler warning - - - - --- 2023-10-05 Florian Westphal Accepted
[net,6/6] netfilter: nf_tables: nft_set_rbtree: fix spurious insertion failure [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access - 1 - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,5/6] netfilter: nf_tables: Deduplicate nft_register_obj audit logs [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access 1 1 1 - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,4/6] selftests: netfilter: Extend nft_audit.sh [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access - - - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,3/6] selftests: netfilter: test for sctp collision processing in nf_conntrack [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access - - - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,2/6] netfilter: handle the connecting collision properly in nf_conntrack_proto_sctp [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access - 1 - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access [net,1/6] netfilter: nft_payload: rebuild vlan header on h_proto access - 1 - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[net,0/6] netfilter patches for net - - - - --- 2023-10-04 Florian Westphal Handled Elsewhere
[nf] netfilter: nf_tables: do not remove elements if set backend implements .abort [nf] netfilter: nf_tables: do not remove elements if set backend implements .abort - 1 - - --- 2023-10-04 Pablo Neira Ayuso Accepted
netfilter: nf_tables: Annotate struct nft_pipapo_match with __counted_by netfilter: nf_tables: Annotate struct nft_pipapo_match with __counted_by - - 1 - --- 2023-10-03 Kees Cook Accepted
[PATCHv2,nf,2/2] selftests: netfilter: test for sctp collision processing in nf_conntrack netfilter: handle the sctp collision properly and add selftest - - - - --- 2023-10-03 Xin Long Accepted
[PATCHv2,nf,1/2] netfilter: handle the connecting collision properly in nf_conntrack_proto_sctp netfilter: handle the sctp collision properly and add selftest - 1 - - --- 2023-10-03 Xin Long Accepted
[nf,v2] netfilter: nf_tables: do not refresh timeout when resetting element [nf,v2] netfilter: nf_tables: do not refresh timeout when resetting element - 1 - - --- 2023-10-02 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: do not refresh timeout when resetting element [nf] netfilter: nf_tables: do not refresh timeout when resetting element - 1 - - --- 2023-10-02 Pablo Neira Ayuso Changes Requested
[nf] netfilter: handle the connecting collision properly in nf_conntrack_proto_sctp [nf] netfilter: handle the connecting collision properly in nf_conntrack_proto_sctp - 2 - - --- 2023-10-01 Xin Long Changes Requested
[nf-next,5/5] netfilter: nf_tables: Don't allocate nft_rule_dump_ctx [nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-09-29 Phil Sutter strlen Accepted
[nf-next,4/5] netfilter: nf_tables: Carry s_idx in nft_rule_dump_ctx [nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-09-29 Phil Sutter strlen Accepted
[nf-next,3/5] netfilter: nf_tables: Carry reset flag in nft_rule_dump_ctx [nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-09-29 Phil Sutter strlen Accepted
[nf-next,2/5] netfilter: nf_tables: Drop pointless memset when dumping rules [nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - 1 - - --- 2023-09-29 Phil Sutter strlen Accepted
[nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx [nf-next,1/5] netfilter: nf_tables: Always allocate nft_rule_dump_ctx - - - - --- 2023-09-29 Phil Sutter strlen Accepted
[nft] tests: shell: sets/reset_command_0: Fix drop_seconds() [nft] tests: shell: sets/reset_command_0: Fix drop_seconds() - 1 - - --- 2023-09-29 Phil Sutter Accepted
[nf,2/2] netfilter: nft_set_rbtree: remove async GC [nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit - 1 - - --- 2023-09-29 Pablo Neira Ayuso pablo RFC
[nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit [nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit - 1 - - --- 2023-09-29 Pablo Neira Ayuso pablo RFC
[nft] rule: never merge across non-expr statements [nft] rule: never merge across non-expr statements - - - - --- 2023-09-29 Florian Westphal Accepted
[libnetfilter_conntrack] src: reverse calloc() invocation [libnetfilter_conntrack] src: reverse calloc() invocation - - - - --- 2023-09-29 Pablo Neira Ayuso Accepted
[nft] tests: shell: add vlan match test case [nft] tests: shell: add vlan match test case - - - - --- 2023-09-29 Florian Westphal Accepted
[nf] netfilter: nft_payload: rebuild vlan header on h_proto access [nf] netfilter: nft_payload: rebuild vlan header on h_proto access - 1 - - --- 2023-09-29 Florian Westphal Accepted
[libnetfilter_queue,v3] make the HTML main page available as `man 7 libnetfilter_queue` [libnetfilter_queue,v3] make the HTML main page available as `man 7 libnetfilter_queue` - - - - --- 2023-09-29 Duncan Roe Accepted
[nf,v2,8/8] netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requests Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,7/8] netfilter: nf_tables: Pass reset bit in nft_set_dump_ctx Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,6/8] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,5/8] netfilter: nf_tables: Introduce nf_tables_getobj_single Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,4/8] netfilter: nf_tables: Introduce struct nft_obj_dump_ctx Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,3/8] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,2/8] netfilter: nf_tables: Introduce nf_tables_getrule_single() Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nf,v2,1/8] netfilter: nf_tables: Don't allocate nft_rule_dump_ctx Introduce locking for reset requests - - - - --- 2023-09-28 Phil Sutter Changes Requested
[nft] tests: shell: Fix for failing nft-f/sample-ruleset [nft] tests: shell: Fix for failing nft-f/sample-ruleset - 1 - - --- 2023-09-28 Phil Sutter Accepted
[net-next,4/4] netfilter: nf_tables: Utilize NLA_POLICY_NESTED_ARRAY [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Accepted
[net-next,3/4] netfilter: nf_tables: missing extended netlink error in lookup functions [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Not Applicable
[net-next,2/4] selftests: netfilter: test nat source port clash resolution interaction with tcp ear… [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Not Applicable
[net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Not Applicable
« 1 2 ... 16 17 18303 304 »