| nft: loop optimization |
2013-06-19 |
Giuseppe Longo |
|
New |
| netfilter: nf_conntrack_ipv6: Plug sk_buff leak in fragment handling |
2013-06-19 |
Phil Oester |
|
New |
| [libnftables] examples: add insert rule example |
2013-06-19 |
Eric Leblond |
|
New |
| netfilter: nf_tables: add insert operation |
2013-06-19 |
Eric Leblond |
|
New |
| fix filenames typo in print_usage and file header |
2013-06-19 |
gapsf |
|
New |
| [nf] ipvs: SCTP ports should be writable in ICMP packets |
2013-06-19 |
Simon Horman |
|
New |
| [GIT,PULL,nf] IPVS fix for v3.10 |
2013-06-19 |
Simon Horman |
|
New |
| [libnftables] test: add testbench for XML |
2013-06-18 |
Arturo Borrero |
|
Under Review |
| [2/2] conntrack: snprintf: add connlabel format specifier |
2013-06-18 |
Florian Westphal |
|
Under Review |
| [lnfct-ct,1/2] conntrack: snprintf: add labels in hex representation by default |
2013-06-18 |
Florian Westphal |
|
Under Review |
| netfilter: prevent harmless integer overflow |
2013-06-18 |
Dan Carpenter |
|
Under Review |
| [v2,5/5] iptables (userspace): add set match "inner" flag support |
2013-06-16 |
Mr Dash Four |
kadlec |
Under Review |
| [v2,4/5] iptables: add set match "inner" flag support |
2013-06-16 |
Mr Dash Four |
kadlec |
Under Review |
| [v2,3/5] ipset: add set match "inner" flag support |
2013-06-16 |
Mr Dash Four |
kadlec |
Under Review |
| [v2,2/5] ipset: add "inner" flag implementation |
2013-06-16 |
Mr Dash Four |
kadlec |
Under Review |
| [v2,1/5] iptables: bugfix: prevent wrong syntax being accepted by the set match |
2013-06-16 |
Mr Dash Four |
kadlec |
Under Review |
| [libnftables,2/2] Add code for testing the new functions for exporting rules to JSON Format |
2013-06-13 |
Alvaro Neira |
pablo |
Under Review |
| [libnftables,1/2] Add function for exporting rule to JSON format |
2013-06-13 |
Alvaro Neira |
pablo |
Under Review |
| [next] netfilter: conntrack: avoid large timeout for mid-stream pickup |
2013-06-13 |
Florian Westphal |
pablo |
Under Review |
| [nf-next] netfilter: ct: check return code from nla_parse_tested |
2013-06-12 |
Daniel Borkmann |
pablo |
Under Review |
| [RFC,-next] netfilter: nfqueue: add ability to dump list of supported attributes |
2013-06-04 |
Florian Westphal |
pablo |
Under Review |
| [nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag |
2013-06-03 |
Eric Dumazet |
pablo |
Under Review |
| [-next] Revert "netfilter: tproxy: do not assign timewait sockets to skb->sk" |
2013-05-29 |
Florian Westphal |
pablo |
Under Review |
| netfilter: nf_queue: add NFQA_SKB_CSUM_NOTVERIFIED info flag |
2013-05-26 |
Florian Westphal |
pablo |
Under Review |
| [1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks |
2013-05-23 |
Pablo Neira |
pablo |
Under Review |
| [libnftables,7/7] chain: handle attribute is relevant if only there is no name to use |
2013-05-14 |
Tomasz Bursztyka |
pablo |
Under Review |
| [libnftables,6/7] expr: add support for expr list and capability to add it into a rule |
2013-05-14 |
Tomasz Bursztyka |
pablo |
Under Review |
| [nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-09 |
Eric Dumazet |
pablo |
Under Review |
| [2/2] netfilter: nf_tables: set NLM_F_DUMP_INTR if dump is invalid |
2013-03-28 |
Pablo Neira |
|
Under Review |
| [1/2] netfilter: nf_tables: rework atomic transaction updates |
2013-03-28 |
Pablo Neira |
|
Under Review |
| netfilter: xt_osf: fix inversion |
2013-03-24 |
Pablo Neira |
|
Under Review |
| [5/5] libxtables: constify xtables_option_[mt]fcall argument |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [4/5] build: do not dereference symlinks on installation |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [3/5] iptables: fall back to using save function when print is not defined |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [2/5] extensions: eui64: set userspacesize=0 |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [1/5] libxtables: centralize checking for a .save function |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [2/2] netfilter: nf_tables: don't skip inactive rules and dump generation mask |
2013-02-28 |
Pablo Neira |
|
Under Review |
| [10/13] iptables: implement --line-numbers for iptables -S |
2012-12-25 |
Jan Engelhardt |
|
Under Review |
| net: ICMPv6 packets transmitted on wrong interface if nfmark is mangled |
2012-12-03 |
Dries De Winter |
|
Under Review |
| [08/17] iptables-restore: kill unused -b option |
2012-09-30 |
Jan Engelhardt |
|
Under Review |
| [06/17] iptables: fix order of internal commands list |
2012-09-30 |
Jan Engelhardt |
|
Under Review |
| netfilter: remove pointless conditional before kfree_skb() |
2012-08-28 |
Wei Yongjun |
|
Under Review |
| death_by_event() does not check IPS_DYING_BIT - race condition against ctnetlink_del_conntrack |
2012-08-28 |
Pablo Neira |
|
Under Review |
| IPv6 fragment packet handling |
2012-06-28 |
Kristof Provost |
|
Under Review |