Show patches with: Archived = No       |   28523 patches
« 1 2 ... 9 10 11285 286 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net-next,08/19] netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,07/19] netfilter: conntrack: switch connlabels to atomic_t [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,06/19] br_netfilter: use single forward hook for ip and arp [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,05/19] netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requests [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,04/19] netfilter: nf_tables: Introduce nf_tables_getrule_single() [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,03/19] netfilter: nf_tables: Open-code audit log call in nf_tables_getrule() [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,02/19] netfilter: nft_set_rbtree: prefer sync gc to async worker [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function [net-next,01/19] netfilter: nft_set_rbtree: rename gc deactivate+erase function - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[net-next,00/19] Netfilter updates for net-next - - - - --- 2023-10-25 Pablo Neira Ayuso Awaiting Upstream
[nf-next,v3,3/3] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests Add locking for NFT_MSG_GETOBJ_RESET requests - - - - --- 2023-10-25 Phil Sutter Changes Requested
[nf-next,v3,2/3] netfilter: nf_tables: Introduce nf_tables_getobj_single Add locking for NFT_MSG_GETOBJ_RESET requests - - - - --- 2023-10-25 Phil Sutter Changes Requested
[nf-next,v3,1/3] netfilter: nf_tables: Audit log dump reset after the fact Add locking for NFT_MSG_GETOBJ_RESET requests - - - - --- 2023-10-25 Phil Sutter Changes Requested
[nft] evaluate: reject set in concatenation [nft] evaluate: reject set in concatenation - - - - --- 2023-10-25 Pablo Neira Ayuso Accepted
[net] netfilter: flowtable: additional checks for outdated flows [net] netfilter: flowtable: additional checks for outdated flows - 1 1 - --- 2023-10-24 Vlad Buslov pablo Changes Requested
[6/6] man: use native bullet point markup [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[5/6] man: grammar fixes to some manpages [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[4/6] man: consistent casing of "IPv[46]" [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[3/6] man: encode hyphens the way groff/man requires it [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[2/6] man: encode emdash the way groff/man requires it [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[1/6] man: encode minushyphen the way groff/man requires it [1/6] man: encode minushyphen the way groff/man requires it - - - - --- 2023-10-24 Jan Engelhardt Changes Requested
[iptables,2/2] extensions: string: Clarify description of --to Fix up string match man page - - - - --- 2023-10-24 Phil Sutter Accepted
[iptables,1/2] Revert "extensions: string: Clarify description of --to" Fix up string match man page - - - - --- 2023-10-24 Phil Sutter Accepted
[libnetfilter_queue,1/1] Retire 2 libnfnetlink-specific functions libnfnetlink dependency elimination - - - - --- 2023-10-24 Duncan Roe pablo Changes Requested
[nft,3/3] parser_bison: fix length check for ifname in ifname_expr_alloc() [nft,1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert" - 1 - - --- 2023-10-23 Thomas Haller Accepted
[nft,2/3] tests/shell: cover long interface name in "0042chain_variable_0" test [nft,1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert" - - - - --- 2023-10-23 Thomas Haller Accepted
[nft,1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert" [nft,1/3] tests/shell: add "bogons/nft-f/zero_length_devicename2_assert" - - - - --- 2023-10-23 Thomas Haller Accepted
[nft,2/2] tools: reject unexpected files in "tests/shell/testcases/" with "check-tree.sh" [nft,1/2] tests/shell: inline input data in "single_anon_set" test - - - - --- 2023-10-23 Thomas Haller Accepted
[nft,1/2] tests/shell: inline input data in "single_anon_set" test [nft,1/2] tests/shell: inline input data in "single_anon_set" test - - - - --- 2023-10-23 Thomas Haller Accepted
[nft,1/1] tests/shell: test for maximum length of "comment" in "comments_objects_0" [nft,1/1] tests/shell: test for maximum length of "comment" in "comments_objects_0" - - - - --- 2023-10-23 Thomas Haller Accepted
[nft] tests/shell: add missing "elem_opts_compat_0.nodump" file [nft] tests/shell: add missing "elem_opts_compat_0.nodump" file - 1 - - --- 2023-10-23 Thomas Haller Accepted
[netfilter] Fix hw flow offload from nftables [netfilter] Fix hw flow offload from nftables - 1 - - --- 2023-10-23 Donald Hunter RFC
[libnetfilter_queue] include: all: remove trailing spaces [libnetfilter_queue] include: all: remove trailing spaces - 1 - - --- 2023-10-23 Duncan Roe Accepted
[libnetfilter_queue,v2,1/1] examples: add an example which uses more functions New example program nfq6 - - - - --- 2023-10-22 Duncan Roe RFC
treewide: Add SPDX identifier to IETF ASN.1 modules treewide: Add SPDX identifier to IETF ASN.1 modules - - - - --- 2023-10-21 Lukas Wunner Handled Elsewhere
[nft,v2] parser_bison: Fix for broken compatibility with older dumps [nft,v2] parser_bison: Fix for broken compatibility with older dumps - 1 - - --- 2023-10-19 Phil Sutter Accepted
[nft] parser_bison: Fix for broken compatibility with older dumps [nft] parser_bison: Fix for broken compatibility with older dumps - 1 - - --- 2023-10-19 Phil Sutter Accepted
[nft,1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL) [nft,1/1] tests/shell: add NFT_TEST_FAIL_ON_SKIP_EXCEPT for allow-list of skipped tests (XFAIL) - - - - --- 2023-10-17 Thomas Haller Not Applicable
[nft] evaluate: validate maximum log statement prefix length [nft] evaluate: validate maximum log statement prefix length - - - - --- 2023-10-17 Pablo Neira Ayuso pablo Accepted
netfilter: ipset: fix race condition in ipset swap, destroy and test/add/del netfilter: ipset: fix race condition in ipset swap, destroy and test/add/del - - - - --- 2023-10-17 xiaolinkui pablo RFC
[libnetfilter_queue] examples: add an example which uses more functions [libnetfilter_queue] examples: add an example which uses more functions - - - - --- 2023-10-16 Duncan Roe RFC
[nf-next,RFC] netfilter: nf_tables: shrink memory consumption of set elements [nf-next,RFC] netfilter: nf_tables: shrink memory consumption of set elements - - - - --- 2023-10-13 Pablo Neira Ayuso pablo RFC
[conntrack,v6] conntrack: ct label update requires proper ruleset [conntrack,v6] conntrack: ct label update requires proper ruleset - - - - --- 2023-10-12 Pablo Neira Ayuso pablo Accepted
[conntrack,v4] conntrack: label update requires a previous label in place [conntrack,v4] conntrack: label update requires a previous label in place - - - - --- 2023-10-12 Pablo Neira Ayuso pablo Changes Requested
[conntrack,v3] conntrack: label update requires a previous label in place [conntrack,v3] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso pablo Changes Requested
[conntrack] conntrack: label update requires a previous label in place [conntrack] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso Changes Requested
[conntrack] conntrack: label update requires a previous label in place [conntrack] conntrack: label update requires a previous label in place - - - - --- 2023-10-11 Pablo Neira Ayuso pablo Changes Requested
[nft,v2] doc: remove references to timeout in reset command [nft,v2] doc: remove references to timeout in reset command 1 1 - - --- 2023-10-10 Pablo Neira Ayuso Accepted
[nft] doc: remove references to timeout in reset command [nft] doc: remove references to timeout in reset command - 1 - - --- 2023-10-10 Pablo Neira Ayuso pablo Changes Requested
[RFC] nftables 0.9.8 -stable backports [RFC] nftables 0.9.8 -stable backports - - - - --- 2023-10-09 Pablo Neira Ayuso RFC
[libnetfilter_queue] src: Fix IPv6 Fragment Header processing [libnetfilter_queue] src: Fix IPv6 Fragment Header processing - 1 - - --- 2023-10-08 Duncan Roe pablo Accepted
[nft,3/3] tests/shell: add "-S|--setup-host" option to set sysctl for rootless tests [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nft,2/3] tests/shell: preserve result directory with NFT_TEST_FAIL_ON_SKIP [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" [nft,1/3] tests/shell: mount all of "/var/run" in "test-wrapper.sh" - - - - --- 2023-10-06 Thomas Haller pablo Accepted
[nf] netfilter: nf_tables: do not refresh timeout when resetting element [nf] netfilter: nf_tables: do not refresh timeout when resetting element - 1 - - --- 2023-10-02 Pablo Neira Ayuso Changes Requested
[nft] tests: shell: sets/reset_command_0: Fix drop_seconds() [nft] tests: shell: sets/reset_command_0: Fix drop_seconds() - 1 - - --- 2023-09-29 Phil Sutter Accepted
[nf,2/2] netfilter: nft_set_rbtree: remove async GC [nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit - 1 - - --- 2023-09-29 Pablo Neira Ayuso pablo RFC
[nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit [nf,1/2] netfilter: nft_set_rbtree: move sync GC from insert path to set->ops->commit - 1 - - --- 2023-09-29 Pablo Neira Ayuso pablo RFC
[net-next,4/4] netfilter: nf_tables: Utilize NLA_POLICY_NESTED_ARRAY [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Accepted
[nft,5/5] datatype: use xmalloc() for allocating datatype in datatype_clone() more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller pablo Accepted
[nft,4/5] datatype: extend set_datatype_alloc() to change size more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,2/5] datatype: don't clone static name/desc strings for datatype more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,1/5] datatype: make "flags" field of datatype struct simple booleans more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,1/1] include: include <string.h> in <nft.h> [nft,1/1] include: include <string.h> in <nft.h> - - - - --- 2023-09-27 Thomas Haller Accepted
[v3,2/2] Make num_actions unsigned Prevent potential write out of bounds - - - - --- 2023-09-27 Joao Moreira Changes Requested
[v3,1/2] Make loop indexes unsigned Prevent potential write out of bounds - - - - --- 2023-09-27 Joao Moreira Changes Requested
[nft,v3] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 [nft,v3] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 - 1 - - --- 2023-09-27 Pablo Neira Ayuso Accepted
[nft,v2] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 [nft,v2] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 - 1 - - --- 2023-09-27 Pablo Neira Ayuso Changes Requested
[nft] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 [nft] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 - 1 - - --- 2023-09-27 Pablo Neira Ayuso Changes Requested
[nft] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 [nft] tests: shell: fix spurious errors in sets/0036add_set_element_expiration_0 - 1 - - --- 2023-09-27 Pablo Neira Ayuso Changes Requested
[nft,2/3] nfnl_osf: rework nf_osf_parse_opt() and avoid "-Wstrict-overflow" warning Two fixes to avoid "-Wstrict-overflow" warnings - - - - --- 2023-09-27 Thomas Haller pablo Changes Requested
[nft,1/3] nft: add NFT_ARRAY_SIZE() helper Two fixes to avoid "-Wstrict-overflow" warnings - - - - --- 2023-09-27 Thomas Haller pablo Changes Requested
[nft,v2,1/1] mergesort: avoid cloning value in expr_msort_cmp() [nft,v2,1/1] mergesort: avoid cloning value in expr_msort_cmp() - - - - --- 2023-09-27 Thomas Haller Accepted
[nft] mergesort: avoid cloning value in expr_msort_cmp() [nft] mergesort: avoid cloning value in expr_msort_cmp() - - - - --- 2023-09-27 Thomas Haller Changes Requested
[v2,2/2] Make num_actions unsigned Prevent potential write out of bounds - - - - --- 2023-09-27 Joao Moreira Changes Requested
[v2,1/2] Make loop indexes unsigned Prevent potential write out of bounds - - - - --- 2023-09-27 Joao Moreira Changes Requested
[libnetfilter_queue] Fix typo in examples/nf-queue.c from patch 9a8e4c3 [libnetfilter_queue] Fix typo in examples/nf-queue.c from patch 9a8e4c3 - - - - --- 2023-09-27 Duncan Roe pablo Accepted
[net,v6,3/3] net: prevent address rewrite in kernel_bind() Insulate Kernel Space From SOCK_ADDR Hooks - 1 1 - --- 2023-09-26 Jordan Rife Handled Elsewhere
[net,v6,2/3] net: prevent rewrite of msg_name and msg_namelen in sock_sendmsg() Insulate Kernel Space From SOCK_ADDR Hooks - 1 - - --- 2023-09-26 Jordan Rife Handled Elsewhere
[net,v6,1/3] net: replace calls to sock->ops->connect() with kernel_connect() Insulate Kernel Space From SOCK_ADDR Hooks - 1 1 - --- 2023-09-26 Jordan Rife Handled Elsewhere
[nft] tests: shell: features: Fix table owner flag check [nft] tests: shell: features: Fix table owner flag check - 1 - - --- 2023-09-26 Phil Sutter Accepted
[nft,3/3,v2] netlink_linearize: skip set element expression in map statement key Untitled series #374964 - - - - --- 2023-09-26 Pablo Neira Ayuso Accepted
[nft,3/3] netlink_linearize: skip set element expression in map statement key [nft,1/3] tests: py: add map support - - - - --- 2023-09-26 Pablo Neira Ayuso pablo Changes Requested
[nft,2/3] json: expose dynamic flag [nft,1/3] tests: py: add map support 1 1 - - --- 2023-09-26 Pablo Neira Ayuso Accepted
[nft,1/3] tests: py: add map support [nft,1/3] tests: py: add map support - - - - --- 2023-09-26 Pablo Neira Ayuso Accepted
[conntrack-tools] conntrackd: consolidate check for maximum number of channels [conntrack-tools] conntrackd: consolidate check for maximum number of channels - - - - --- 2023-09-25 Pablo Neira Ayuso Accepted
[-stable,5.10,17/17] netfilter: nf_tables: fix memleak when more than 255 elements expired Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,16/17] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,15/17] netfilter: nft_set_pipapo: stop GC iteration if GC transaction allocation fails Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,14/17] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,13/17] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,12/17] netfilter: nf_tables: defer gc run if previous batch is still pending Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,11/17] netfilter: nf_tables: use correct lock to protect gc_list Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,10/17] netfilter: nf_tables: GC transaction race with abort path Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,09/17] netfilter: nf_tables: GC transaction race with netns dismantle Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,08/17] netfilter: nf_tables: fix GC transaction races with netns and netlink event ex… Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,07/17] netfilter: nf_tables: don't fail inserts if duplicate has expired Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,06/17] netfilter: nf_tables: remove busy mark and gc batch API Netfilter stable fixes for 5.10 - - - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,05/17] netfilter: nft_set_hash: mark set element as dead when deleting from packet pa… Netfilter stable fixes for 5.10 - 1 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
[-stable,5.10,04/17] netfilter: nf_tables: adapt set backend to use GC transaction API Netfilter stable fixes for 5.10 - 3 - - --- 2023-09-22 Pablo Neira Ayuso Awaiting Upstream
« 1 2 ... 9 10 11285 286 »