Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 104 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
galak
galak
demarchi
ms
bhundven
chbs
kengyu
kadlec
pdp
regit
jabk
laforge
laforge
tonyb
sfr
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
patrick_delaunay
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
vriera
darball1
sammj
ajd
jogo
jogo
bhelgaas
blogic
blogic
tagr
tagr
tagr
oohal
russellb
ptomsich
agraf
joestringer
davem
davem
davem
mwalle
naveen
pchotard
pepe2k
pepe2k
arj
arj
andmur01
amitay
matttbe
pabeni
istokes
aparcar
Ansuel
goliath
martineau
tytso
danielschwierzeck
tpetazzoni
mariosix
dcaratti
ovsrobot
ovsrobot
aserdean
XiaoYang
hs
khem
mkorpershoek
marex
liwang
apritzel
danielhb
groug
npiggin
mmichelson
pareddja
robimarko
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
maximeh
dsa
jstancek
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
narmstrong
981213
0andriy
chunkeey
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
monstr
vigneshr
mraynal
stewart
stewart
jacmet
freenix
kabel
rfried
jagan
horms
arbab
metan
Jaehoon
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
ehristev
bmeng
ukleinek
ukleinek
ag
xypron
wsa
rmilecki
rmilecki
akumar
ivanhu
sjg
prom
kevery
abelloni
apconole
wbx
svanheule
chleroy
Hauke
Hauke
legoater
legoater
legoater
rw
rw
pablo
pablo
trini
bjonglez
ynezz
pevik
aik
xback
xback
richiejp
dangole
dangole
sbabic
sbabic
forty
next_ghost
anuppatel
anuppatel
echaudron
acer
benh
rgrimm
pratyush
segher
passgat
jms
jms
jms
festevam
mans0n
ruscur
Andes
jmberg
ymorin
ymorin
numans
linusw
linusw
jk
jk
jk
jk
xuyang
kubu
matthias_bgg
tambarus
pbrobinson
imaximets
apalos
dceara
strlen
strlen
spectrum
cazzacarna
neocturne
aldot
TIENFONG
mpe
ktraynor
arnout
calebccff
anguy11
robh
nbd
nbd
paulus
stroese
jm
Apply
«
1
2
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[V6] fs/ext4: Filesystem without casefold feature cannot be mounted with spihash
[V6] fs/ext4: Filesystem without casefold feature cannot be mounted with spihash
- - - -
-
-
-
2024-06-05
Lizhi Xu
New
[nft] Check for NULL netlink attributes
[nft] Check for NULL netlink attributes
- - - -
-
-
-
2024-06-04
Davide Ornaghi
New
[nft] scanner: inet_pton() allows for broader IPv4-Mapped IPv6 addresses
[nft] scanner: inet_pton() allows for broader IPv4-Mapped IPv6 addresses
- 2 - -
-
-
-
2024-06-04
Pablo Neira Ayuso
New
[v4,net-next,06/14] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage.
Untitled series #409482
- - - -
-
-
-
2024-06-04
Sebastian Andrzej Siewior
New
[1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
[1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
- 1 - 1
-
-
-
2024-06-04
Jozsef Kadlecsik
New
[0/1] ipset patch for nf tree
- - - -
-
-
-
2024-06-04
Jozsef Kadlecsik
New
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
[nf] netfilter: nf_reject: init skb->dev for reset packet
[nf] netfilter: nf_reject: init skb->dev for reset packet
- 1 - -
-
-
-
2024-06-04
Florian Westphal
New
[nftables] tests: shell: add test case for reset tcp warning
[nftables] tests: shell: add test case for reset tcp warning
- - - -
-
-
-
2024-06-04
Florian Westphal
New
[nf-next] netfilter: nf_tables: rise cap on SELinux secmark context
[nf-next] netfilter: nf_tables: rise cap on SELinux secmark context
- 1 - -
-
-
-
2024-06-03
Pablo Neira Ayuso
New
[nf-next,v2] netfilter: nf_conncount: fix wrong variable type
[nf-next,v2] netfilter: nf_conncount: fix wrong variable type
- - - -
-
-
-
2024-05-31
Yunjian Wang
New
[net-next,v1] netfilter: cttimeout: remove 'l3num' attr check
[net-next,v1] netfilter: cttimeout: remove 'l3num' attr check
- - 1 -
-
-
-
2024-05-31
Lin Ma
New
[v4,bpf-next,3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc
netfilter: Add the capability to offload flowtable in XDP layer
- - - -
-
-
-
2024-05-29
Lorenzo Bianconi
New
[v4,bpf-next,2/3] netfilter: add bpf_xdp_flow_lookup kfunc
netfilter: Add the capability to offload flowtable in XDP layer
1 - - -
-
-
-
2024-05-29
Lorenzo Bianconi
New
[v4,bpf-next,1/3] netfilter: nf_tables: add flowtable map for xdp offload
netfilter: Add the capability to offload flowtable in XDP layer
- - - -
-
-
-
2024-05-29
Lorenzo Bianconi
New
[net-next,v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
[net-next,v1] netfilter: nfnetlink: convert kfree_skb to consume_skb
- - - -
-
-
-
2024-05-28
Donald Hunter
New
iptables: cleanup FIXME
iptables: cleanup FIXME
- - - -
-
-
-
2024-05-24
Michael Estner
New
[libnetfilter_queue,v2,15/15] build: Remove libnfnetlink from the build
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,14/15] include: Use libmnl.h instead of libnfnetlink.h
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,13/15] src: Convert all nlif_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,12/15] doc: Add iftable.c to the doxygen system
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,11/15] src: Copy nlif-related files from libnfnetlink
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,10/15] src: Convert remaining nfq_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,09/15] src: Convert nfq_fd() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,08/15] src: Incorporate nfnl_rcvbufsiz() in libnetfilter_queue
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,07/15] src: Convert nfq_set_verdict() and nfq_set_verdict2() to use libmnl i…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,06/15] src: Convert nfq_handle_packet(), nfq_get_secctx(), nfq_get_payload()…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,05/15] src: Convert nfq_set_queue_flags(), nfq_set_queue_maxlen() & nfq_set_…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,04/15] src: Convert nfq_create_queue(), nfq_bind_pf() & nfq_unbind_pf() to u…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,03/15] src: Convert nfq_close() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,02/15] src: Convert nfq_open_nfnl() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
[libnetfilter_queue,v2,01/15] src: Convert nfq_open() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-05-24
Duncan Roe
New
ipvs: Avoid unnecessary calls to skb_is_gso_sctp
ipvs: Avoid unnecessary calls to skb_is_gso_sctp
2 - - -
-
-
-
2024-05-23
Ismael Luceno
New
iptables: cleanup FIXME
iptables: cleanup FIXME
- - - -
-
-
-
2024-05-23
Michael Estner
New
[iptables] extensions: libxt_sctp: Add an extra assert()
[iptables] extensions: libxt_sctp: Add an extra assert()
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,7/7] selftests: netfilter: Torture nftables netdev hooks
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,6/7] netfilter: nf_tables: Add notications for hook changes
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,5/7] netfilter: nf_tables: Correctly handle NETDEV_RENAME events
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,4/7] netfilter: nf_tables: Dynamic hook interface binding
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,3/7] netfilter: nf_tables: Report active interfaces to user space
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,2/7] netfilter: nf_tables: Relax hook interface binding
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[v2,1/7] netfilter: nf_tables: Store user-defined hook ifname
Dynamic hook interface binding
- - - -
-
-
-
2024-05-17
Phil Sutter
New
[nf] netfilter: nfnetlink_queue: fix rcu splat on program exit
[nf] netfilter: nfnetlink_queue: fix rcu splat on program exit
- - - -
-
-
-
2024-05-14
Florian Westphal
New
[v3,2/2] selftests: net: netfilter: nft_queue.sh: sctp checksum
netfilter: nfqueue: incorrect sctp checksum
1 - - -
-
-
-
2024-05-13
Antonio Ojea
New
[v3,1/2] netfilter: nft_queue: compute SCTP checksum
netfilter: nfqueue: incorrect sctp checksum
- - 1 -
-
-
-
2024-05-13
Antonio Ojea
New
[nf-next,11/11] netfilter: nf_tables: do not store nft_ctx in transaction objects
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,10/11] netfilter: nf_tables: pass nft_table to destroy function
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,09/11] netfilter: nf_tables: reduce trans->ctx.chain references
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,08/11] netfilter: nf_tables: store chain pointer in rule transaction
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,07/11] netfilter: nf_tables: avoid usage of embedded nft_ctx
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,06/11] netfilter: nf_tables: pass more specific nft_trans_chain where possible
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,05/11] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,04/11] netfilter: nf_tables: reduce trans->ctx.table references
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,03/11] netfilter: nf_tables: compact chain+ft transaction objects
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,02/11] netfilter: nf_tables: move bind list_head into relevant subtypes
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[nf-next,01/11] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
netfilter: nf_tables: reduce transaction log memory usage
- - - -
-
-
-
2024-05-13
Florian Westphal
New
[libnetfilter_queue] Stop a memory leak in nfq_close
[libnetfilter_queue] Stop a memory leak in nfq_close
- 1 - -
-
-
-
2024-05-06
Duncan Roe
New
[libnetfilter_queue] Update .gitignore
[libnetfilter_queue] Update .gitignore
- - - -
-
-
-
2024-04-29
Duncan Roe
New
conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
- - - -
-
-
-
2024-04-25
pda Pfeil Daniel
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[libnftnl] expr: limit: Prepare for odd time units
[libnftnl] expr: limit: Prepare for odd time units
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nft,v2] expr: make map lookup expression as an argument in vmap statement
[nft,v2] expr: make map lookup expression as an argument in vmap statement
- - - -
-
-
-
2024-04-10
Son Dinh
New
[nft,v3] dynset: avoid errouneous assert with ipv6 concat data
[nft,v3] dynset: avoid errouneous assert with ipv6 concat data
- - - -
-
-
-
2024-04-09
Son Dinh
New
[nf,2/2] netfilter: flowtable: use UDP timeout after flow teardown
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
- 1 - -
-
-
-
2024-03-20
Pablo Neira Ayuso
New
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
- 1 - -
-
-
-
2024-03-20
Pablo Neira Ayuso
New
[nf] netfilter: nf_tables: do not reject dormant flag update for table with owner
[nf] netfilter: nf_tables: do not reject dormant flag update for table with owner
- 1 - -
-
-
-
2024-03-15
Quan Tian
New
[nf] netfilter: nf_tables: fix consistent table updates being rejected
[nf] netfilter: nf_tables: fix consistent table updates being rejected
- 1 - -
-
-
-
2024-03-13
Quan Tian
New
[v3,nf-next,2/2] netfilter: nf_tables: support updating userdata for nft_table
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
- - - -
-
-
-
2024-03-11
Quan Tian
New
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
- - - -
-
-
-
2024-03-11
Quan Tian
New
[nf-next] netfilter: nft_byteorder: remove multi-register support
[nf-next] netfilter: nft_byteorder: remove multi-register support
- 1 - -
-
-
-
2024-02-14
Florian Westphal
New
[1/1] tests: use common shebang in "packetpath/flowtables" test
[1/1] tests: use common shebang in "packetpath/flowtables" test
- - - -
-
-
-
2024-02-09
Thomas Haller
New
[nft] rule: do not crash if to-be-printed flowtable lacks priority
[nft] rule: do not crash if to-be-printed flowtable lacks priority
- - - -
-
-
-
2024-01-12
Florian Westphal
New
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
- - - -
-
-
-
2023-12-19
Florian Westphal
New
ulogd / JSON output / enhancement proposal
ulogd / JSON output / enhancement proposal
- - - -
-
-
-
2023-12-14
Gérald Colangelo
New
Bug in ulogd2 when destroying a stack that failed to start (with fix attached)
Bug in ulogd2 when destroying a stack that failed to start (with fix attached)
- - - -
-
-
-
2023-12-14
Gérald Colangelo
New
[libnetfilter_queue,1/1] src: add nfq_socket_sendto() - send config request and check response
src: add nfq_socket_sendto() - send config request and check response
- - - -
-
-
-
2023-12-11
Duncan Roe
New
[ulogd] log NAT events using IPFIX
[ulogd] log NAT events using IPFIX
- - - -
-
-
-
2023-12-10
Tomasz Pala
New
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines
Untitled series #385629
- - - -
-
-
-
2023-12-07
Thomas Haller
New
[nft,v2,5/5] tests/unit: add unit tests for libnftables
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am"
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,3/5] build: add `make check-tree` to check consistency of source tree
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,2/5] build: add `make check-build` to run `./tests/build/run-tests.sh`
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,1/5] build: add basic "check-{local,more,all}" and "build-all" make targets
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,4/5] datatype: extend set_datatype_alloc() to change size
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,2/5] datatype: don't clone static name/desc strings for datatype
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,1/5] datatype: make "flags" field of datatype struct simple booleans
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,v5,8/8] tests: add tests for binops with variable RHS operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,6/8] evaluate: allow binop expressions with variable right-hand operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,1/8] netlink: support (de)linearization of new bitwise boolean operations
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[libnftnl,v3,5/5] tests: bitwise: add tests for new boolean operations
bitwise: support for boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[libnftnl,v3,4/5] tests: bitwise: refactor shift tests
bitwise: support for boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[libnftnl,v3,3/5] expr: bitwise: add support for kernel space AND, OR and XOR operations
bitwise: support for boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[libnftnl,v3,2/5] expr: bitwise: rename some boolean operation functions
bitwise: support for boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[libnftnl,v3,1/5] include: add new bitwise boolean attributes to nf_tables.h
bitwise: support for boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
«
1
2
»