Show patches with: none      |   30103 patches
« 1 2 ... 3 4 5301 302 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[v3] netfilter: nat: restore default DNAT behavior [v3] netfilter: nat: restore default DNAT behavior - 1 - - --- 2024-02-08 Kyle Swenson Accepted
[nft] cache: Always set NFT_CACHE_TERSE for list cmd with --terse [nft] cache: Always set NFT_CACHE_TERSE for list cmd with --terse - - - - --- 2024-02-08 Phil Sutter Accepted
[nft,2/2] netlink_linearize: add assertion to catch for buggy byteorder [v2,nft,1/2] evaluate: skip byteorder conversion for selector smaller than 2 bytes - - - - --- 2024-02-08 Pablo Neira Ayuso Accepted
[v2,nft,1/2] evaluate: skip byteorder conversion for selector smaller than 2 bytes [v2,nft,1/2] evaluate: skip byteorder conversion for selector smaller than 2 bytes - 1 - - --- 2024-02-08 Pablo Neira Ayuso Accepted
[nf,v2,3/3] netfilter: nft_set_pipapo: remove scratch_aligned pointer netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - 1 1 - --- 2024-02-07 Florian Westphal Accepted
[nf,v2,2/3] netfilter: nft_set_pipapo: add helper to release pcpu scratch area netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - - 1 - --- 2024-02-07 Florian Westphal Accepted
[nf,v2,1/3] netfilter: nft_set_pipapo: store index in scratch maps netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - 1 1 - --- 2024-02-07 Florian Westphal Accepted
[nft] cache: Optimize caching for 'list tables' command [nft] cache: Optimize caching for 'list tables' command - - - - --- 2024-02-07 Phil Sutter Accepted
[nft,v3] evaluate: fix check for unknown in cmd_op_to_name [nft,v3] evaluate: fix check for unknown in cmd_op_to_name - 1 - - --- 2024-02-07 谢致邦 (XIE Zhibang) Accepted
[conntrack] conntrack: don't print [USERSPACE] information in case of XML output [conntrack] conntrack: don't print [USERSPACE] information in case of XML output - - - - --- 2024-02-07 Ignacy Gawędzki Accepted
[nf] netfilter: nf_tables: use timestamp to check for set element timeout [nf] netfilter: nf_tables: use timestamp to check for set element timeout - 1 - - --- 2024-02-07 Pablo Neira Ayuso Accepted
Makefile.am: don't silence -Wimplicit-function-declaration Makefile.am: don't silence -Wimplicit-function-declaration - - - - --- 2024-02-07 Sam James Accepted
[nf] netfilter: nfnetlink_queue: un-break NF_REPEAT [nf] netfilter: nfnetlink_queue: un-break NF_REPEAT - 1 - - --- 2024-02-06 Florian Westphal Accepted
[nf-next] netfilter: xtables: fix up kconfig dependencies [nf-next] netfilter: xtables: fix up kconfig dependencies 1 2 - 1 --- 2024-02-06 Florian Westphal strlen Accepted
[nf] netfilter: nft_ct: reject direction for ct id [nf] netfilter: nft_ct: reject direction for ct id - 1 - - --- 2024-02-05 Pablo Neira Ayuso Accepted
[net] net: ctnetlink: fix filtering for zone 0 [net] net: ctnetlink: fix filtering for zone 0 - 1 - - --- 2024-02-05 Felix Huettner Accepted
[1/1] netfilter: ipset: Missing gc cancellations fixed [1/1] netfilter: ipset: Missing gc cancellations fixed - 1 - 2 --- 2024-02-04 Jozsef Kadlecsik Accepted
[iptables,12/12] libxtables: xtoptions: Respect min/max values when completing ranges Range value related fixes/improvements - - - - --- 2024-02-02 Phil Sutter Accepted
[iptables,11/12] extensions: tcp/udp: Save/xlate inverted full ranges Range value related fixes/improvements - 2 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,10/12] nft: Do not omit full ranges if inverted Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,09/12] extensions: ipcomp: Save inverted full ranges Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,08/12] extensions: esp: Save/xlate inverted full ranges Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,07/12] extensions: rt: Save/xlate inverted full ranges Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,06/12] extensions: mh: Save/xlate inverted full ranges Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,05/12] extensions: frag: Save/xlate inverted full ranges Range value related fixes/improvements - 1 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,04/12] extensions: ah: Save/xlate inverted full ranges Range value related fixes/improvements - 2 - - --- 2024-02-02 Phil Sutter Accepted
[iptables,03/12] libxtables: Reject negative port ranges Range value related fixes/improvements - - - - --- 2024-02-02 Phil Sutter Accepted
[iptables,02/12] libxtables: xtoptions: Assert ranges are monotonic increasing Range value related fixes/improvements - - - - --- 2024-02-02 Phil Sutter Accepted
[iptables,01/12] extensions: *.t/*.txlate: Test range corner-cases Range value related fixes/improvements - - - - --- 2024-02-02 Phil Sutter Accepted
[nf] netfilter: nft_compat: reject unused compat flag [nf] netfilter: nft_compat: reject unused compat flag - 1 - - --- 2024-02-02 Pablo Neira Ayuso Accepted
[nf] netfilter: nft_compat: restrict match/target protocol to u16 [nf] netfilter: nft_compat: restrict match/target protocol to u16 - 1 - - --- 2024-02-02 Pablo Neira Ayuso Accepted
[nf] netfilter: nft_compat: narrow down revision to unsigned 8-bits [nf] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - - --- 2024-02-02 Pablo Neira Ayuso Accepted
[nf] netfilter: nft_set_pipapo: remove static in nft_pipapo_get() [nf] netfilter: nft_set_pipapo: remove static in nft_pipapo_get() - 1 - - --- 2024-02-02 Pablo Neira Ayuso Accepted
[iptables,7/7] ebtables: Fix for memleak with change counters command A number of ASAN-identified fixes - 1 - - --- 2024-02-01 Phil Sutter Accepted
[iptables,6/7] xshared: Introduce xtables_clear_args() Untitled series #393160 - 1 - - --- 2024-02-01 Phil Sutter Accepted
[iptables,5/7] xshared: Fix for memleak in option merging with ebtables A number of ASAN-identified fixes - 1 - - --- 2024-02-01 Phil Sutter Accepted
[iptables,4/7] xtables-eb: Eliminate 'opts' define A number of ASAN-identified fixes - - - - --- 2024-02-01 Phil Sutter Accepted
[iptables,3/7] libxtables: Fix memleak of matches' udata A number of ASAN-identified fixes - 1 - - --- 2024-02-01 Phil Sutter Accepted
[iptables,2/7] nft: ruleparse: Add missing braces around ternary A number of ASAN-identified fixes - 1 - - --- 2024-02-01 Phil Sutter Accepted
[iptables,1/7] tests: iptables-test: Increase non-fast mode strictness A number of ASAN-identified fixes - - - - --- 2024-02-01 Phil Sutter Accepted
[net,6/6] netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,5/6] netfilter: nf_log: replace BUG_ON by WARN_ON_ONCE when putting logger [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,4/6] netfilter: ipset: fix performance regression in swap operation [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - 1 --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,3/6] netfilter: conntrack: check SCTP_CID_SHUTDOWN_ACK for vtag setting in sctp_new [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,2/6] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[net,0/6] Netfilter fixes for net - - - - --- 2024-01-31 Pablo Neira Ayuso Accepted
[nft] json: Support sets' auto-merge option [nft] json: Support sets' auto-merge option - 1 - - --- 2024-01-31 Phil Sutter Accepted
[nf,v2] netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations [nf,v2] netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations - 1 - - --- 2024-01-29 Pablo Neira Ayuso Accepted
[nf-next] netfilter: nft_osf: simplify init path [nf-next] netfilter: nft_osf: simplify init path - - - - --- 2024-01-29 Pablo Neira Ayuso strlen Accepted
[nf-next,2/2] netfilter: nf_log: validate nf_logger_find_get() [nf-next,1/2] netfilter: nf_log: consolidate check for NULL logger in lookup function - - - - --- 2024-01-29 Pablo Neira Ayuso strlen Accepted
[nf-next,1/2] netfilter: nf_log: consolidate check for NULL logger in lookup function [nf-next,1/2] netfilter: nf_log: consolidate check for NULL logger in lookup function - - - - --- 2024-01-29 Pablo Neira Ayuso strlen Accepted
[nf-next,9/9] netfilter: ebtables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,8/9] netfilter: xtables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,7/9] netfilter: arptables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - 1 - --- 2024-01-29 Florian Westphal Accepted
[nf-next,6/9] ipvs: Simplify the allocation of ip_vs_conn slab caches [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag 1 - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,5/9] netfilter: nf_conncount: Use KMEM_CACHE instead of kmem_cache_create() [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,4/9] netfilter: nf_tables: pass flags to set backend selection routine [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,3/9] netfilter: nf_tables: Implement table adoption support [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,2/9] netfilter: nf_tables: Introduce NFT_TABLE_F_PERSIST [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - 1 - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,0/9] netfilter updates for -next - - - - --- 2024-01-29 Florian Westphal Accepted
[nft] datatype: display 0s time datatype [nft] datatype: display 0s time datatype - - - - --- 2024-01-29 Pablo Neira Ayuso Accepted
[nf,v2] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV [nf,v2] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV - 1 - - --- 2024-01-29 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_log: replace BUG_ON by WARN_ON_ONCE when putting logger [nf] netfilter: nf_log: replace BUG_ON by WARN_ON_ONCE when putting logger - 1 - - --- 2024-01-29 Pablo Neira Ayuso Accepted
[1/1] netfilter: ipset: fix performance regression in swap operation [1/1] netfilter: ipset: fix performance regression in swap operation - 1 - 1 --- 2024-01-29 Jozsef Kadlecsik Accepted
[0/1] ipset performance regression in swap fix - - - - --- 2024-01-29 Jozsef Kadlecsik Accepted
[nf] netfilter: check SCTP_CID_SHUTDOWN_ACK for vtag setting in sctp_new [nf] netfilter: check SCTP_CID_SHUTDOWN_ACK for vtag setting in sctp_new - 1 - - --- 2024-01-25 Xin Long Accepted
[net,6/6] netfilter: nf_tables: validate NFPROTO_* family [net,1/6] netfilter: nf_tables: cleanup documentation - 7 - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,5/6] netfilter: nf_tables: reject QUEUE/DROP verdict parameters [net,1/6] netfilter: nf_tables: cleanup documentation - 1 - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,4/6] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes [net,1/6] netfilter: nf_tables: cleanup documentation - 1 - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,3/6] netfilter: nft_limit: reject configurations that cause integer overflow [net,1/6] netfilter: nf_tables: cleanup documentation - 1 - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,2/6] netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain [net,1/6] netfilter: nf_tables: cleanup documentation - 1 - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,1/6] netfilter: nf_tables: cleanup documentation [net,1/6] netfilter: nf_tables: cleanup documentation - - - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[net,0/6] Netfilter fixes for net - - - - --- 2024-01-24 Pablo Neira Ayuso strlen Accepted
[nf,v3] netfilter: nf_tables: validate NFPROTO_* family [nf,v3] netfilter: nf_tables: validate NFPROTO_* family - 7 - - --- 2024-01-24 Pablo Neira Ayuso Accepted
[nf-next,2/2] netfilter: ebtables: add _LEGACY kconfig symbol [nf-next,1/2] netfilter: xtables: add _LEGACY kconfig symbol - - - - --- 2024-01-24 Florian Westphal strlen Accepted
[nf-next,1/2] netfilter: xtables: add _LEGACY kconfig symbol [nf-next,1/2] netfilter: xtables: add _LEGACY kconfig symbol - - - - --- 2024-01-24 Florian Westphal strlen Accepted
[nf-next] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_init [nf-next] netfilter: expect: Simplify the allocation of slab caches in nf_conntrack_expect_init - - - - --- 2024-01-24 Kunwu Chan strlen Accepted
[nf-next] netfilter: arptables: allow arptables-nft only builds [nf-next] netfilter: arptables: allow arptables-nft only builds - - 1 - --- 2024-01-23 Florian Westphal strlen Accepted
[iptables] iptables: Add missing error codes [iptables] iptables: Add missing error codes - - - - --- 2024-01-23 Jacek Tomasiak Accepted
[nf-next] netfilter: nf_conncount: Use KMEM_CACHE instead of kmem_cache_create() [nf-next] netfilter: nf_conncount: Use KMEM_CACHE instead of kmem_cache_create() - - - - --- 2024-01-23 Kunwu Chan strlen Accepted
tests: shell: add test to cover ct offload by using nft flowtables To cover kernel patch ("netfilte… tests: shell: add test to cover ct offload by using nft flowtables To cover kernel patch ("netfilte… - - - - --- 2024-01-22 Yi Chen Accepted
netfilter: conntrack: correct window scaling with retransmitted SYN netfilter: conntrack: correct window scaling with retransmitted SYN - 1 - - --- 2024-01-21 Ryan Schaefer Accepted
[nf] netfilter: nf_tables: reject QUEUE/DROP verdict parameters [nf] netfilter: nf_tables: reject QUEUE/DROP verdict parameters - 1 - - --- 2024-01-20 Florian Westphal Accepted
[nf] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes [nf] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes - - - - --- 2024-01-19 Florian Westphal Accepted
[nf] netfilter: nft_limit: reject configurations that cause integer overflow [nf] netfilter: nft_limit: reject configurations that cause integer overflow - - - - --- 2024-01-19 Florian Westphal Accepted
[nf] netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain [nf] netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,13/13] ipvs: avoid stat macros calls from preemptible context [net,01/13] netfilter: nf_tables: reject invalid set policy 2 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,12/13] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,11/13] netfilter: nf_tables: skip dead set elements in netlink dump [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,10/13] netfilter: nf_tables: do not allow mismatch field size and set key length [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,09/13] netfilter: nf_tables: check if catch-all set element is active in next generation [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,08/13] netfilter: bridge: replace physindev with physinif in nf_bridge_info [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,07/13] netfilter: propagate net to nf_bridge_get_physindev [net,01/13] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,06/13] netfilter: nf_queue: remove excess nf_bridge variable [net,01/13] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,05/13] netfilter: nfnetlink_log: use proper helper for fetching physinif [net,01/13] netfilter: nf_tables: reject invalid set policy - - 1 - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,04/13] netfilter: nft_limit: do not ignore unsupported flags [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,03/13] netfilter: nf_tables: bail out if stateful expression provides no .clone [net,01/13] netfilter: nf_tables: reject invalid set policy - - - - --- 2024-01-18 Pablo Neira Ayuso Accepted
[net,02/13] netfilter: nf_tables: validate .maxattr at expression registration [net,01/13] netfilter: nf_tables: reject invalid set policy - - - - --- 2024-01-18 Pablo Neira Ayuso Accepted
« 1 2 ... 3 4 5301 302 »