Show patches with: none      |   30222 patches
« 1 2 ... 8 9 10302 303 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net,v2,00/13] Netfilter fixes for net - - - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[nft] tests: py: remove huge-limit test cases [nft] tests: py: remove huge-limit test cases - - - - --- 2024-01-18 Florian Westphal Accepted
[net,14/14] netfilter: ipset: fix performance regression in swap operation [net,01/14] netfilter: nf_tables: reject invalid set policy - 2 - 2 --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,13/14] ipvs: avoid stat macros calls from preemptible context [net,01/14] netfilter: nf_tables: reject invalid set policy 2 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,12/14] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,11/14] netfilter: nf_tables: skip dead set elements in netlink dump [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,10/14] netfilter: nf_tables: do not allow mismatch field size and set key length [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,09/14] netfilter: nf_tables: check if catch-all set element is active in next generation [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,08/14] netfilter: bridge: replace physindev with physinif in nf_bridge_info [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,07/14] netfilter: propagate net to nf_bridge_get_physindev [net,01/14] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,06/14] netfilter: nf_queue: remove excess nf_bridge variable [net,01/14] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,05/14] netfilter: nfnetlink_log: use proper helper for fetching physinif [net,01/14] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,04/14] netfilter: nft_limit: do not ignore unsupported flags [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,03/14] netfilter: nf_tables: bail out if stateful expression provides no .clone [net,01/14] netfilter: nf_tables: reject invalid set policy - - - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,02/14] netfilter: nf_tables: validate .maxattr at expression registration [net,01/14] netfilter: nf_tables: reject invalid set policy - - - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,01/14] netfilter: nf_tables: reject invalid set policy [net,01/14] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net,00/14] Netfilter fixes for net - - - - --- 2024-01-17 Pablo Neira Ayuso Changes Requested
[net] ipvs: Simplify the allocation of ip_vs_conn slab caches [net] ipvs: Simplify the allocation of ip_vs_conn slab caches 1 - - - --- 2024-01-17 Kunwu Chan strlen Accepted
[1/1] netfilter: ipset: fix performance regression in swap operation [1/1] netfilter: ipset: fix performance regression in swap operation - - - 2 --- 2024-01-16 Jozsef Kadlecsik Accepted
[0/1] ipset performance regression in swap fix - - - - --- 2024-01-16 Jozsef Kadlecsik Accepted
[nft] evaluate: don't assert on net/transport header conflict [nft] evaluate: don't assert on net/transport header conflict - - - - --- 2024-01-16 Florian Westphal Accepted
[net] net: ipvs: avoid stat macros calls from preemptible context [net] net: ipvs: avoid stat macros calls from preemptible context 2 1 - - --- 2024-01-15 Fedor Pchelkin Accepted
[nft] rule: fix sym refcount assertion [nft] rule: fix sym refcount assertion - 1 - - --- 2024-01-15 Florian Westphal Accepted
[nft] evaluate: error out when store needs more than one 128bit register of align fixup [nft] evaluate: error out when store needs more than one 128bit register of align fixup - 1 - - --- 2024-01-15 Florian Westphal Accepted
[nf] netfilter: nf_tables: skip dead set elements in netlink dump [nf] netfilter: nf_tables: skip dead set elements in netlink dump - 1 - - --- 2024-01-15 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description [nf] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description - 1 - - --- 2024-01-15 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: do not allow mismatch field size and set key length [nf] netfilter: nf_tables: do not allow mismatch field size and set key length - 1 - - --- 2024-01-15 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: check if catch-all set element is active in next generation [nf] netfilter: nf_tables: check if catch-all set element is active in next generation - 1 - - --- 2024-01-12 Pablo Neira Ayuso Accepted
[libnftnl,v3] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} [libnftnl,v3] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} - - - - --- 2024-01-12 Pablo Neira Ayuso Accepted
[libnftnl] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} [libnftnl] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} - - - - --- 2024-01-12 Pablo Neira Ayuso Changes Requested
[nft] rule: do not crash if to-be-printed flowtable lacks priority [nft] rule: do not crash if to-be-printed flowtable lacks priority - - - - --- 2024-01-12 Florian Westphal New
[1/2] parser: reject raw payload expressions with 0 length [1/2] parser: reject raw payload expressions with 0 length - - - - --- 2024-01-12 Florian Westphal Accepted
[nft,v3] src: do not merge a set with a erroneous one [nft,v3] src: do not merge a set with a erroneous one - - - - --- 2024-01-12 Florian Westphal Accepted
[libnftnl] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} [libnftnl] set_elem: use nftnl_data_cpy() in NFTNL_SET_ELEM_{KEY,KEY_END,DATA} - - - - --- 2024-01-12 Pablo Neira Ayuso Changes Requested
[libnftnl] set: buffer overflow in NFTNL_SET_DESC_CONCAT setter [libnftnl] set: buffer overflow in NFTNL_SET_DESC_CONCAT setter - 1 - - --- 2024-01-11 Pablo Neira Ayuso Accepted
[nft,2/2] evaluate: release mpz type in expr_evaluate_list() error path memleak fixes for tests/shell/testcases/bogons/nft-f/ - 1 - - --- 2024-01-11 Pablo Neira Ayuso Accepted
[nft,1/2] evaluate: release key expression in error path of implicit map with unknown datatype memleak fixes for tests/shell/testcases/bogons/nft-f/ - 1 - - --- 2024-01-11 Pablo Neira Ayuso Accepted
[nft,v2] evaluate: bail out if anonymous concat set defines a non concat expression [nft,v2] evaluate: bail out if anonymous concat set defines a non concat expression - - - - --- 2024-01-11 Pablo Neira Ayuso Accepted
[nft,v2,2/2] evaluate: add missing range checks for dup,fwd and payload statements evaluate: add more checks for '... set 1-3' - - - - --- 2024-01-11 Florian Westphal Accepted
[nft,1/2] evaluate: tproxy: move range error checks after arg evaluation evaluate: add more checks for '... set 1-3' - - - - --- 2024-01-11 Florian Westphal Accepted
[nft] evaluate: error out when expression has no datatype [nft] evaluate: error out when expression has no datatype - - - - --- 2024-01-11 Florian Westphal Accepted
[v3,4/4] netfilter: bridge: replace physindev with physinif in nf_bridge_info netlink: bridge: fix nf_bridge->physindev use after free - 1 - - --- 2024-01-11 Pavel Tikhomirov Accepted
[v3,3/4] netfilter: propagate net to nf_bridge_get_physindev netlink: bridge: fix nf_bridge->physindev use after free - - 1 - --- 2024-01-11 Pavel Tikhomirov Accepted
[v3,2/4] netfilter: nf_queue: remove excess nf_bridge variable netlink: bridge: fix nf_bridge->physindev use after free - - 1 - --- 2024-01-11 Pavel Tikhomirov Accepted
[v3,1/4] netfilter: nfnetlink_log: use proper helper for fetching physinif netlink: bridge: fix nf_bridge->physindev use after free - - 1 - --- 2024-01-11 Pavel Tikhomirov Accepted
[nft] evaluate: disable ct set with ranges [nft] evaluate: disable ct set with ranges - - - - --- 2024-01-11 Florian Westphal Superseded
[nft] payload: only assert if l2 header base has no length [nft] payload: only assert if l2 header base has no length - - - - --- 2024-01-11 Florian Westphal Accepted
[iptables,v2,3/3] iptables-save: Avoid /etc/protocols lookups iptables-save: Avoid /etc/protocols lookups - - - - --- 2024-01-10 Phil Sutter Accepted
[iptables,v2,2/3] libxtables: Add dccp and ipcomp to xtables_chain_protos iptables-save: Avoid /etc/protocols lookups - - - - --- 2024-01-10 Phil Sutter Accepted
[iptables,v2,1/3] Revert "xshared: Print protocol numbers if --numeric was given" iptables-save: Avoid /etc/protocols lookups - - - - --- 2024-01-10 Phil Sutter Accepted
[nft,4/4] Revert "datatype: do not assert when value exceeds expected width" assorted fixes - - - - --- 2024-01-10 Pablo Neira Ayuso Not Applicable
[nft,3/4] evaluate: bail out if anonymous concat set defines a non concat expression assorted fixes - - - - --- 2024-01-10 Pablo Neira Ayuso Changes Requested
[nft,2/4] evaluate: do not fetch next expression on runaway number of concatenation components assorted fixes - 1 - - --- 2024-01-10 Pablo Neira Ayuso Accepted
[nft,1/4] evaluate: skip anonymous set optimization for concatenations assorted fixes - 1 - - --- 2024-01-10 Pablo Neira Ayuso Accepted
[iptables,2/2] iptables-save: Avoid /etc/protocols lookups [iptables,1/2] Revert "xshared: Print protocol numbers if --numeric was given" - - - - --- 2024-01-10 Phil Sutter Superseded
[iptables,1/2] Revert "xshared: Print protocol numbers if --numeric was given" [iptables,1/2] Revert "xshared: Print protocol numbers if --numeric was given" - - - - --- 2024-01-10 Phil Sutter Superseded
[v2,nft,3/3] evaluate: don't assert if set->data is NULL set related parser fixes - 1 - - --- 2024-01-10 Florian Westphal Rejected
[v2,nft,2/3] src: do not merge a set with a erroneous one set related parser fixes - - - - --- 2024-01-10 Florian Westphal Superseded
[v2,nft,1/3] intervals: allow low-level interval code to return errors set related parser fixes - - - - --- 2024-01-10 Florian Westphal Rejected
[nftables] doc: clarify reject is supported at prerouting stage [nftables] doc: clarify reject is supported at prerouting stage - - - - --- 2024-01-10 Quan Tian Accepted
[nft] doc: incorrect datatype description for icmpv6_type and icmpvx_code [nft] doc: incorrect datatype description for icmpv6_type and icmpvx_code - - - - --- 2024-01-09 Pablo Neira Ayuso Accepted
[nf-next] netfilter: nf_tables: bail out if stateful expression provides no .clone [nf-next] netfilter: nf_tables: bail out if stateful expression provides no .clone - - - - --- 2024-01-08 Pablo Neira Ayuso Accepted
[nf-next] netfilter: nf_tables: validate .maxattr at expression registration [nf-next] netfilter: nf_tables: validate .maxattr at expression registration - - - - --- 2024-01-08 Pablo Neira Ayuso Accepted
[nft] tests: shell: extend coverage for netdevice removal [nft] tests: shell: extend coverage for netdevice removal - - - - --- 2024-01-08 Pablo Neira Ayuso Accepted
[bpf-next,v3,3/3] bpf: treewide: Annotate BPF kfuncs in BTF Annotate kfuncs in .BTF_ids section - - - - --- 2024-01-06 Daniel Xu Handled Elsewhere
[nft] tests: shell: prefer project nft to system-wide nft [nft] tests: shell: prefer project nft to system-wide nft - - - - --- 2024-01-06 Florian Westphal Accepted
[bpf-next,v2,3/3] bpf: treewide: Annotate BPF kfuncs in BTF Annotate kfuncs in .BTF_ids section - - - - --- 2024-01-05 Daniel Xu Handled Elsewhere
[nf-next] netfilter: nf_tables: pass flags to set backend selection routine [nf-next] netfilter: nf_tables: pass flags to set backend selection routine - - - - --- 2024-01-04 Pablo Neira Ayuso strlen Accepted
[nf] netfilter: nf_tables: reject invalid set policy [nf] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-04 Pablo Neira Ayuso Accepted
[libnetfilter_queue] include: pktbuff.h needs stdbool.h [libnetfilter_queue] include: pktbuff.h needs stdbool.h - 1 - - --- 2024-01-03 Duncan Roe strlen Accepted
[bpf-next,2/2] bpf: treewide: Annotate BPF kfuncs in BTF Annotate kfuncs in .BTF_ids section - - - - --- 2024-01-03 Daniel Xu Handled Elsewhere
[net,2/2] netfilter: nft_immediate: drop chain reference counter on error [net,1/2] netfilter: nf_nat: fix action not being set for all ct states - 1 - - --- 2024-01-03 Pablo Neira Ayuso Handled Elsewhere
[net,1/2] netfilter: nf_nat: fix action not being set for all ct states [net,1/2] netfilter: nf_nat: fix action not being set for all ct states 2 1 1 - --- 2024-01-03 Pablo Neira Ayuso Handled Elsewhere
[net,0/2] Netfilter fixes for net - - - - --- 2024-01-03 Pablo Neira Ayuso Handled Elsewhere
[libnftnl] object: define nftnl_obj_unset() [libnftnl] object: define nftnl_obj_unset() - 1 - - --- 2024-01-02 Pablo Neira Ayuso Accepted
[nf] netfilter: nft_immediate: drop chain reference counter on error [nf] netfilter: nft_immediate: drop chain reference counter on error - 1 - - --- 2024-01-02 Pablo Neira Ayuso Accepted
[RFC,nf-next,v5,2/2] selftests/bpf: Add netfilter link prog update test netfilter: bpf: support prog update - - - - --- 2024-01-02 D. Wythe RFC
[RFC,nf-next,v5,1/2] netfilter: bpf: support prog update netfilter: bpf: support prog update - - - - --- 2024-01-02 D. Wythe RFC
[RFC,libnetfilter_queue,1/1] utils/nfqnl_test runs without libnfnetlink libnfnetlink dependency elimination - - - - --- 2023-12-31 Duncan Roe RFC
[RFC,nf-next,v4,2/2] selftests/bpf: Add netfilter link prog update test netfilter: bpf: support prog update - - - - --- 2023-12-29 D. Wythe RFC
[RFC,nf-next,v4,1/2] netfilter: bpf: support prog update netfilter: bpf: support prog update - - - - --- 2023-12-29 D. Wythe RFC
[libnftnl] chain: Removed non-defined functions [libnftnl] chain: Removed non-defined functions - - - - --- 2023-12-27 Nicholas Vinson Accepted
[14/14] netfilter: cleanup struct nft_flowtable [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[13/14] netfilter: cleanup struct nft_object_ops [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[12/14] netfilter: cleanup struct nft_object [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[11/14] netfilter: cleanup struct nft_base_chain [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[10/14] netfilter: cleanup struct nft_chain [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[09/14] netfilter: cleanup struct nft_expr_ops [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[08/14] netfilter: cleanup struct nft_expr_type [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[07/14] netfilter: cleanup struct nft_set_ext_tmpl [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[06/14] netfilter: cleanup struct nft_set [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[05/14] netfilter: cleanup struct nft_set_ops [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[04/14] netfilter: cleanup struct nft_set_iter [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[03/14] netfilter: cleanup struct nft_ctx [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[02/14] netfilter: cleanup struct nft_set_elem [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[01/14] netfilter: cleanup enum nft_set_class [01/14] netfilter: cleanup enum nft_set_class - - - - --- 2023-12-26 George Guo Accepted
[nft,2/2] datatype: Describe rt symbol tables [nft,1/2] datatype: Initialize rt_symbol_tables' base field - - - - --- 2023-12-22 Phil Sutter Accepted
[nft,1/2] datatype: Initialize rt_symbol_tables' base field [nft,1/2] datatype: Initialize rt_symbol_tables' base field - - - - --- 2023-12-22 Phil Sutter Accepted
[v2,nft] datatype: do not assert when value exceeds expected width [v2,nft] datatype: do not assert when value exceeds expected width - - - - --- 2023-12-22 Florian Westphal Accepted
[net-next,8/8] netfilter: nf_tables: validate chain type update if available [net-next,1/8] netfilter: nf_tables: Pass const set to nft_get_set_elem - 1 - - --- 2023-12-22 Pablo Neira Ayuso Accepted
« 1 2 ... 8 9 10302 303 »