Show patches with: none      |   30386 patches
« 1 2 ... 7 8 9303 304 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf-next,1/9] netfilter: nf_tables: warn if set being destroyed is still active netfilter: nf_tables: rewrite gc again - - - - --- 2024-03-07 Florian Westphal Deferred
[nf] netfilter: nf_tables: skip netdev hook unregistration if table is dormant [nf] netfilter: nf_tables: skip netdev hook unregistration if table is dormant - 2 - - --- 2024-03-07 Pablo Neira Ayuso Superseded
[net,5/5] netfilter: nf_conntrack_h323: Add protection for bmp length out of range [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[net,4/5] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[net,3/5] netfilter: nft_ct: fix l3num expectations with inet pseudo family [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[net,2/5] netfilter: nf_tables: reject constant set with timeout [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[net,0/5] Netfilter fixes for net - - - - --- 2024-03-07 Pablo Neira Ayuso Accepted
[nft,v2] evaluate: translate meter into dynamic set [nft,v2] evaluate: translate meter into dynamic set - - - - --- 2024-03-06 Pablo Neira Ayuso Accepted
[nft] evaluate: translate meter into dynamic set [nft] evaluate: translate meter into dynamic set - - - - --- 2024-03-06 Pablo Neira Ayuso Changes Requested
[net] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain [net] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain - 1 - - --- 2024-03-06 Quan Tian Accepted
[net] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery [net] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery - 1 - - --- 2024-03-06 Linus Lüssing Accepted
[xtables-nft,v2] extensions: xt_socket: add txlate support for socket match [xtables-nft,v2] extensions: xt_socket: add txlate support for socket match 1 - - - --- 2024-03-06 Florian Westphal Accepted
[xtables-nft] extensions: xt_socket: add txlate support for sk match v3 [xtables-nft] extensions: xt_socket: add txlate support for sk match v3 - - - - --- 2024-03-06 Florian Westphal Superseded
[iptables,2/2] xlate: libip6t_mh: Fix and simplify plain '-m mh' match [iptables,1/2] xlate: Improve redundant l4proto match avoidance - 1 - - --- 2024-03-05 Phil Sutter Accepted
[iptables,1/2] xlate: Improve redundant l4proto match avoidance [iptables,1/2] xlate: Improve redundant l4proto match avoidance - - - - --- 2024-03-05 Phil Sutter Accepted
[net,v3] netfilter: Add protection for bmp length out of range [net,v3] netfilter: Add protection for bmp length out of range - 1 - - --- 2024-03-05 Lena Wang (王娜) Accepted
[nf-next] netfilter: nf_tables: remove NETDEV_CHANGENAME from netdev chain event handler [nf-next] netfilter: nf_tables: remove NETDEV_CHANGENAME from netdev chain event handler - - - - --- 2024-03-05 Pablo Neira Ayuso Accepted
[nf-next] netfilter: nf_tables: skip transaction if update object is not implemented [nf-next] netfilter: nf_tables: skip transaction if update object is not implemented - - - - --- 2024-03-05 Pablo Neira Ayuso Accepted
[nf,v2] netfilter: nf_tables: mark set as dead when deactivating anonymous set with timeout [nf,v2] netfilter: nf_tables: mark set as dead when deactivating anonymous set with timeout - 1 - - --- 2024-03-04 Pablo Neira Ayuso Changes Requested
[nf] netfilter: nf_tables: mark set as dead when deactivating anonymous set [nf] netfilter: nf_tables: mark set as dead when deactivating anonymous set - 1 - - --- 2024-03-04 Pablo Neira Ayuso Changes Requested
[conntrack-tools,v2,3/3] conntrackd: exit with failure status fix potential memory loss and exit codes - - - - --- 2024-03-02 Donald Yandt Accepted
[conntrack-tools,v2,2/3] conntrackd: use size_t for element indices fix potential memory loss and exit codes - - - - --- 2024-03-02 Donald Yandt Changes Requested
[conntrack-tools,v2,1/3] conntrackd: prevent memory loss if reallocation fails fix potential memory loss and exit codes - - - - --- 2024-03-02 Donald Yandt Accepted
[conntrack-tools,3/3] conntrackd: exit with failure status fix potential memory loss and exit codes - - - - --- 2024-03-01 Donald Yandt Changes Requested
[conntrack-tools,2/3] conntrackd: use size_t for element indices fix potential memory loss and exit codes - - - - --- 2024-03-01 Donald Yandt Changes Requested
[conntrack-tools,1/3] conntrackd: prevent memory loss if reallocation fails fix potential memory loss and exit codes - - - - --- 2024-03-01 Donald Yandt Changes Requested
[net,v2] netfilter: Add protection for bmp length out of range [net,v2] netfilter: Add protection for bmp length out of range - - - - --- 2024-03-01 Lena Wang (王娜) Superseded
[nft,3/3] tests: add test case for named ct objects parser: allow to define maps that contain ct objects - - - - --- 2024-03-01 Florian Westphal Accepted
[nft,2/3] parser: allow to define maps that contain ct helpers parser: allow to define maps that contain ct objects - - - - --- 2024-03-01 Florian Westphal Accepted
[nft,1/3] parser: allow to define maps that contain timeouts and expectations parser: allow to define maps that contain ct objects - - - - --- 2024-03-01 Florian Westphal Accepted
[nf,v2] netfilter: nft_ct: fix l3num expectations with inet pseudo family [nf,v2] netfilter: nft_ct: fix l3num expectations with inet pseudo family - 1 - - --- 2024-03-01 Florian Westphal Accepted
[nf] netfilter: nft_ct: fix l3num expectations with inet pseudo family [nf] netfilter: nft_ct: fix l3num expectations with inet pseudo family - 1 - - --- 2024-03-01 Florian Westphal Superseded
[nf,v2,2/2] netfilter: nf_tables: reject constant set with timeout [nf,v2,1/2] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-01 Pablo Neira Ayuso Accepted
[nf,v2,1/2] netfilter: nf_tables: disallow anonymous set with timeout flag [nf,v2,1/2] netfilter: nf_tables: disallow anonymous set with timeout flag - 1 - - --- 2024-03-01 Pablo Neira Ayuso Accepted
[nf,2/2] netfilter: nf_tables: reject constant set with timeout [nf,1/2] netfilter: nf_tables: disallow anonymous set with NFT_SET_{TIMEOUT,EVAL} flags - 1 - - --- 2024-03-01 Pablo Neira Ayuso Changes Requested
[nf,1/2] netfilter: nf_tables: disallow anonymous set with NFT_SET_{TIMEOUT,EVAL} flags [nf,1/2] netfilter: nf_tables: disallow anonymous set with NFT_SET_{TIMEOUT,EVAL} flags - 1 - - --- 2024-03-01 Pablo Neira Ayuso Changes Requested
[iptables] xtables-translate: Leverage stored protocol names [iptables] xtables-translate: Leverage stored protocol names - - - - --- 2024-02-29 Phil Sutter Accepted
[nft] rule: fix ASAN errors in priority to string conversion [nft] rule: fix ASAN errors in priority to string conversion - 1 - - --- 2024-02-29 Pablo Neira Ayuso Accepted
[nft,3/3] tests: maps: add a test case for "limit" objref map nftables: add typeof support for objref maps - - - - --- 2024-02-29 Florian Westphal Accepted
[nft,2/3] netlink: allow typeof keywords with objref maps during listing nftables: add typeof support for objref maps - - - - --- 2024-02-29 Florian Westphal Accepted
[nft,1/3] parser: allow typeof in objref maps nftables: add typeof support for objref maps - - - - --- 2024-02-29 Florian Westphal Accepted
[net,3/3] selftests: netfilter: add bridge conntrack + multicast test case [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - - - - --- 2024-02-29 Pablo Neira Ayuso Handled Elsewhere
[net,2/3] netfilter: bridge: confirm multicast packets before passing them up the stack [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - 1 - - --- 2024-02-29 Pablo Neira Ayuso Handled Elsewhere
[net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - 1 - - --- 2024-02-29 Pablo Neira Ayuso Handled Elsewhere
[net,0/3] Netfilter fixes for net - - - - --- 2024-02-29 Pablo Neira Ayuso Handled Elsewhere
[iptables] nft: Fix for broken recover_rule_compat() [iptables] nft: Fix for broken recover_rule_compat() - 1 - - --- 2024-02-27 Phil Sutter Accepted
[v2,nf] netfilter: bridge: confirm multicast packets before passing them up the stack [v2,nf] netfilter: bridge: confirm multicast packets before passing them up the stack - 1 - - --- 2024-02-27 Florian Westphal Accepted
[nft] parser: compact type/typeof set rules [nft] parser: compact type/typeof set rules - - - - --- 2024-02-27 Florian Westphal Accepted
[nft] parser: compact interval typeof rules [nft] parser: compact interval typeof rules - - - - --- 2024-02-27 Florian Westphal Accepted
[libnftnl,3/3] utils: remove unused code [libnftnl,1/3] expr: immediate: check for chain attribute to release chain name - - - - --- 2024-02-26 Pablo Neira Ayuso pablo Accepted
[libnftnl,2/3] udata: incorrect userdata buffer size validation [libnftnl,1/3] expr: immediate: check for chain attribute to release chain name - - - - --- 2024-02-26 Pablo Neira Ayuso pablo Accepted
[libnftnl,1/3] expr: immediate: check for chain attribute to release chain name [libnftnl,1/3] expr: immediate: check for chain attribute to release chain name - - - - --- 2024-02-26 Pablo Neira Ayuso pablo Accepted
[nf,2/2] selftests: netfilter: add bridge conntrack + multicast test case netfilter: bridge_netfilter: - - - - --- 2024-02-26 Florian Westphal Accepted
[nf,1/2] netfilter: bridge: confirm multicast packets before passing them up the stack netfilter: bridge_netfilter: - 1 - - --- 2024-02-26 Florian Westphal Superseded
[nft] parser_json: allow 0 offsets again [nft] parser_json: allow 0 offsets again - 1 - - --- 2024-02-26 Florian Westphal Accepted
[net] netlink: validate length of NLA_{BE16,BE32} types [net] netlink: validate length of NLA_{BE16,BE32} types - 1 2 - --- 2024-02-25 Pablo Neira Ayuso Not Applicable
netfilter: xtables: fix IP6_NF_IPTABLES_LEGACY typo netfilter: xtables: fix IP6_NF_IPTABLES_LEGACY typo - 1 - - --- 2024-02-24 Arnd Bergmann Not Applicable
[v3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() [v3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - 1 - - --- 2024-02-22 Ignat Korchagin pablo Accepted
[net,5/5] netfilter: nf_tables: use kzalloc for hook allocation [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[net,4/5] netfilter: nf_tables: register hooks last when adding new chain/flowtable [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - 2 - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[net,3/5] netfilter: nft_flow_offload: release dst in case direct xmit path is used [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[net,2/5] netfilter: nft_flow_offload: reset dst in route object after setting up flow [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[net,1/5] netfilter: nf_tables: set dormant flag on hook register failure [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[net,0/5] Netfilter fixes for net - - - - --- 2024-02-22 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: use kzalloc for hook allocation [nf] netfilter: nf_tables: use kzalloc for hook allocation - 1 - - --- 2024-02-21 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: register hooks last when adding new chain/flowtable [nf] netfilter: nf_tables: register hooks last when adding new chain/flowtable - 2 - - --- 2024-02-21 Pablo Neira Ayuso pablo Accepted
[nf,2/2] netfilter: nft_flow_offload: release dst in case direct xmit path is used [nf,1/2] netfilter: nft_flow_offload: reset dst in route object after setting up flow - 1 - - --- 2024-02-21 Pablo Neira Ayuso pablo Accepted
[nf,1/2] netfilter: nft_flow_offload: reset dst in route object after setting up flow [nf,1/2] netfilter: nft_flow_offload: reset dst in route object after setting up flow - 1 - - --- 2024-02-21 Pablo Neira Ayuso pablo Accepted
[nft] src: improve error reporting for destroy command [nft] src: improve error reporting for destroy command - 1 - - --- 2024-02-21 谢致邦 (XIE Zhibang) Accepted
[net-next,12/12] netfilter: x_tables: Use unsafe_memcpy() for 0-sized destination [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - 1 - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,11/12] netfilter: move nf_reinject into nfnetlink_queue modules [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,10/12] netfilter: nft_set_pipapo: use GFP_KERNEL for insertions [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,09/12] netfilter: nft_set_pipapo: speed up bulk element insertions [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - 1 - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,08/12] netfilter: nft_set_pipapo: shrink data structures [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - 1 - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,07/12] netfilter: nft_set_pipapo: do not rely on ZERO_SIZE_PTR [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - 1 - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,06/12] netfilter: nft_set_pipapo: constify lookup fn args where possible [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - 1 - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,05/12] netfilter: xtables: fix up kconfig dependencies [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… 1 2 - 1 --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,04/12] netfilter: nft_osf: simplify init path [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,03/12] netfilter: nf_log: validate nf_logger_find_get() [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,02/12] netfilter: nf_log: consolidate check for NULL logger in lookup function [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… [net-next,01/12] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_i… - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[net-next,00/12] netfilter updates for net-next - - - - --- 2024-02-21 Florian Westphal strlen Handled Elsewhere
[v2] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() [v2] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - 1 - - --- 2024-02-20 Ignat Korchagin Changes Requested
[libnftnl] obj: ct_timeout: setter checks for timeout array boundaries [libnftnl] obj: ct_timeout: setter checks for timeout array boundaries - 1 - - --- 2024-02-20 Pablo Neira Ayuso pablo Accepted
Add protection for bmp length out of range Add protection for bmp length out of range - - - - --- 2024-02-20 Lena Wang (王娜) Changes Requested
[nf] netfilter: nf_tables: set dormant flag on hook register failure [nf] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-19 Florian Westphal pablo Accepted
netfilter: x_tables: Use unsafe_memcpy() for 0-sized destination netfilter: x_tables: Use unsafe_memcpy() for 0-sized destination - - 1 - --- 2024-02-16 Kees Cook strlen Accepted
[nf-next] netfilter: nft_set_pipapo: use GFP_KERNEL for insertions [nf-next] netfilter: nft_set_pipapo: use GFP_KERNEL for insertions - - - - --- 2024-02-15 Florian Westphal strlen Accepted
[net,3/3] netfilter: nf_tables: fix bidirectional offload regression [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - 1 - - --- 2024-02-14 Pablo Neira Ayuso Accepted
[net,2/3] netfilter: nat: restore default DNAT behavior [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - 1 - - --- 2024-02-14 Pablo Neira Ayuso Accepted
[net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - 1 - - --- 2024-02-14 Pablo Neira Ayuso Accepted
[net,0/3] Netfilter fixes for net - - - - --- 2024-02-14 Pablo Neira Ayuso Accepted
[net] netfilter: nf_tables: fix bidirectional offload regression [net] netfilter: nf_tables: fix bidirectional offload regression - 1 - - --- 2024-02-14 Felix Fietkau Accepted
[nf-next] netfilter: move nf_reinject into nfnetlink_queue modules [nf-next] netfilter: move nf_reinject into nfnetlink_queue modules - - - - --- 2024-02-14 Florian Westphal strlen Accepted
[nf-next] netfilter: nft_byteorder: remove multi-register support [nf-next] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2024-02-14 Florian Westphal New
[libnetfilter_queue,1/1] Convert libnetfilter_queue to use entirely libmnl functions Convert libnetfilter_queue to use entirely libmnl functions - - - - --- 2024-02-13 Duncan Roe RFC
[nft] expression: missing line in describe command with invalid expression [nft] expression: missing line in describe command with invalid expression - 1 - - --- 2024-02-13 Pablo Neira Ayuso Accepted
[v2,nf-next,4/4] netfilter: nft_set_pipapo: speed up bulk element insertions netfilter: nft_set_pipapo: speed up bulk element insertions - - - - --- 2024-02-13 Florian Westphal strlen Accepted
[v2,nf-next,3/4] netfilter: nft_set_pipapo: shrink data structures netfilter: nft_set_pipapo: speed up bulk element insertions - - - - --- 2024-02-13 Florian Westphal strlen Accepted
« 1 2 ... 7 8 9303 304 »