Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 14342 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Search
Archived
No
Yes
Both
Delegate
Apply
«
1
2
3
4
…
143
144
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[10/47] netfilter: x_tables: enforce unique and ascending entry points
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[09/47] netfilter: x_tables: move hook entry checks into core
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[08/47] netfilter: x_tables: check error target size too
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[07/47] netfilter: x_tables: check standard verdicts in core
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[06/47] netfilter: unlock xt_table earlier in __do_replace
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[05/47] netfilter: ipt_ah: return boolean instead of integer
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[04/47] netfilter: nf_conntrack_broadcast: remove useless parameter
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[03/47] netfilter: xt_cluster: get rid of xt_cluster_ipv6_is_multicast
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[02/47] netfilter: nfnetlink_acct: remove useless parameter
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
[01/47] netfilter: nf_tables: nf_tables_obj_lookup_byhandle() can be static
- 1 - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[00/47] Netfilter/IPVS updates for net-next
- - - -
0 0 0
2018-03-30
Pablo Neira Ayuso
pablo
Accepted
[net-next,5/5] net: Remove rtnl_lock() in nf_ct_iterate_destroy()
Introduce net_rwsem to protect net_namespace_list
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,4/5] ovs: Remove rtnl_lock() from ovs_exit_net()
Introduce net_rwsem to protect net_namespace_list
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,3/5] security: Remove rtnl_lock() in selinux_xfrm_notify_policyload()
Introduce net_rwsem to protect net_namespace_list
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,2/5] net: Don't take rtnl_lock() in wireless_nlevent_flush()
Introduce net_rwsem to protect net_namespace_list
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,1/5] net: Introduce net_rwsem to protect net_namespace_list
Introduce net_rwsem to protect net_namespace_list
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
netfilter: x_tables: Add note about how to free percpu counters
netfilter: x_tables: Add note about how to free percpu counters
- 1 - -
0 0 0
2018-03-29
Ben Hutchings
pablo
Accepted
[net-next,3/3] net: Close race between {un, }register_netdevice_notifier() and setup_net()/cleanu...
Close race between {un, }register_netdevice_notifier and pernet_operations
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,2/3] netfilter: Rework xt_TEE netdevice notifier
Close race between {un, }register_netdevice_notifier and pernet_operations
1 - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,1/3] xfrm: Register xfrm_dev_notifier in appropriate place
Close race between {un, }register_netdevice_notifier and pernet_operations
- - - -
0 0 0
2018-03-29
Kirill Tkhai
pablo
Awaiting Upstream
net: netfilter: Merge assignment with return
net: netfilter: Merge assignment with return
- - - -
0 0 0
2018-03-28
Arushi Singhal
pablo
Accepted
[nf-next] netfilter: add flowtable documentation
[nf-next] netfilter: add flowtable documentation
- - 1 -
0 0 0
2018-03-28
Pablo Neira Ayuso
pablo
Accepted
[nf-next,4/4] netfilter: nf_tables: initial support for extended ACK reporting
[nf-next,1/4] netfilter: nf_tables: rename to nft_set_lookup_global()
- - - -
0 0 0
2018-03-28
Pablo Neira Ayuso
pablo
Under Review
[nf-next,3/4] netfilter: nf_tables: simplify lookup functions
[nf-next,1/4] netfilter: nf_tables: rename to nft_set_lookup_global()
- - - -
0 0 0
2018-03-28
Pablo Neira Ayuso
pablo
Under Review
[nf-next,2/4] netfilter: nf_tables: use nft_set_lookup_global from nf_tables_newsetelem()
Untitled series #36221
- - - -
0 0 0
2018-03-28
Pablo Neira Ayuso
pablo
Accepted
[nf-next,1/4] netfilter: nf_tables: rename to nft_set_lookup_global()
[nf-next,1/4] netfilter: nf_tables: rename to nft_set_lookup_global()
- - - -
0 0 0
2018-03-28
Pablo Neira Ayuso
pablo
Accepted
[nft] proto: permit icmp-in-ipv6 and icmpv6-in-ipv4
[nft] proto: permit icmp-in-ipv6 and icmpv6-in-ipv4
- - - -
0 0 0
2018-03-28
Florian Westphal
pablo
Accepted
[nft] payload: don't remove icmp family dependency in special cases
[nft] payload: don't remove icmp family dependency in special cases
- - - -
0 0 0
2018-03-27
Florian Westphal
pablo
Accepted
[nf] netfilter: ipt_CLUSTERIP: Allow configuring --local-node 0 again
[nf] netfilter: ipt_CLUSTERIP: Allow configuring --local-node 0 again
- 1 - -
0 0 0
2018-03-27
Pablo Neira Ayuso
pablo
Changes Requested
[nf-next] nf_osf implementation: nf_osf_ttl() and nf_osf_match()
[nf-next] nf_osf implementation: nf_osf_ttl() and nf_osf_match()
- - - -
0 0 0
2018-03-27
Fernando Fernandez Mancera
pablo
Changes Requested
[nf-next,4/4] netfilter: nf_tables: enable conntrack if NAT chain is registered
[nf-next,1/4] netfilter: nf_tables: rename struct nf_chain_type
- - - -
0 0 0
2018-03-27
Pablo Neira Ayuso
pablo
Accepted
[nf-next,3/4] netfilter: nf_tables: build-in filter chain type
[nf-next,1/4] netfilter: nf_tables: rename struct nf_chain_type
- - - -
0 0 0
2018-03-27
Pablo Neira Ayuso
pablo
Accepted
[nf-next,2/4] netfilter: nf_tables: nft_register_chain_type() returns void
[nf-next,1/4] netfilter: nf_tables: rename struct nf_chain_type
- - - -
0 0 0
2018-03-27
Pablo Neira Ayuso
pablo
Accepted
[nf-next,1/4] netfilter: nf_tables: rename struct nf_chain_type
[nf-next,1/4] netfilter: nf_tables: rename struct nf_chain_type
- - - -
0 0 0
2018-03-27
Pablo Neira Ayuso
pablo
Accepted
[nft] src: avoid errouneous assert with map+concat
[nft] src: avoid errouneous assert with map+concat
- - - -
0 0 0
2018-03-27
Florian Westphal
pablo
Accepted
doc: nft.8 more spelling fixes
doc: nft.8 more spelling fixes
- - - -
0 0 0
2018-03-27
Duncan Roe
pablo
Accepted
[7/7] netfilter: nf_socket: Fix out of bounds access in nf_sk_lookup_slow_v{4,6}
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- 1 - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[6/7] netfilter: nf_tables: do not hold reference on netdevice from preparation phase
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- - - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[5/7] netfilter: nf_tables: cache device name in flowtable object
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- - - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[4/7] netfilter: drop template ct when conntrack is skipped.
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
1 1 - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[3/7] netfilter: nf_tables: add missing netlink attrs to policies
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- 3 - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[2/7] netfilter: nf_tables: permit second nat hook if colliding hook is going away
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- 1 - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
[1/7] netfilter: nf_tables: meter: pick a set backend that supports updates
- 1 - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[0/7] Netfilter fixes for net
- - - -
0 0 0
2018-03-24
Pablo Neira Ayuso
pablo
Accepted
[3/4] net: Use octal not symbolic permissions
net: drivers/net: Use octal permissions
- - - -
0 0 0
2018-03-23
Joe Perches
pablo
Awaiting Upstream
[nf-next,2/2] net: nftables: Export set backend name via netlink
net: nftables: Simplify set backend selection
- - - -
0 0 0
2018-03-23
Phil Sutter
pablo
Changes Requested
[nf-next,1/2] net: nftables: Simplify set backend selection
net: nftables: Simplify set backend selection
- - - -
0 0 0
2018-03-23
Phil Sutter
pablo
Changes Requested
[2/2] netfilter: nf_flow_table: fix offloading connections with SNAT+DNAT
Untitled series #35524
- - - -
0 0 0
2018-03-23
Felix Fietkau
pablo
Under Review
[1/2] netfilter: nf_flow_table: add missing condition for TCP state check
[1/2] netfilter: nf_flow_table: add missing condition for TCP state check
- - - -
0 0 0
2018-03-23
Felix Fietkau
pablo
Under Review
[nf] netfilter: nf_socket: Fix out of bounds access in nf_sk_lookup_slow_v{4,6}
[nf] netfilter: nf_socket: Fix out of bounds access in nf_sk_lookup_slow_v{4,6}
- 1 - -
0 0 0
2018-03-23
Subash Abhinov Kasiviswanathan
pablo
Accepted
[2/2,nf] netfilter: nf_tables: do not hold reference on netdevice from preparation phase
[1/2,nf] netfilter: nf_tables: cache device name in flowtable object
- - - -
0 0 0
2018-03-22
Pablo Neira Ayuso
pablo
Accepted
[1/2,nf] netfilter: nf_tables: cache device name in flowtable object
[1/2,nf] netfilter: nf_tables: cache device name in flowtable object
- - - -
0 0 0
2018-03-22
Pablo Neira Ayuso
pablo
Accepted
[nf] netfilter: drop template ct when conntrack is skipped.
[nf] netfilter: drop template ct when conntrack is skipped.
1 1 - -
0 0 0
2018-03-22
Paolo Abeni
pablo
Accepted
[nft] Export libnftables (again)
[nft] Export libnftables (again)
1 - - -
0 0 0
2018-03-21
Phil Sutter
pablo
Accepted
[nft] tests/shell: Test flush and nat chain recreate in one go
[nft] tests/shell: Test flush and nat chain recreate in one go
- - - -
0 0 0
2018-03-21
Phil Sutter
strlen
Accepted
[nf-next] net: nftables: Respect hash set backend features
[nf-next] net: nftables: Respect hash set backend features
- - - -
0 0 0
2018-03-21
Phil Sutter
pablo
Not Applicable
bridge: netfilter: ebt_stp: Use generic functions for comparisons
bridge: netfilter: ebt_stp: Use generic functions for comparisons
- - - -
0 0 0
2018-03-21
Joe Perches
pablo
Accepted
[v2] iptables: constify option struct
[v2] iptables: constify option struct
- - - -
0 0 0
2018-03-21
Arushi Singhal
pablo
Accepted
iptables: extension: Constify option struct
iptables: extension: Constify option struct
- - - -
0 0 0
2018-03-21
Arushi Singhal
pablo
Changes Requested
[ebtables,v2] Add string filter to ebtables
[ebtables,v2] Add string filter to ebtables
- - - -
0 0 0
2018-03-21
Bernie Harris
pablo
Under Review
[v2,3/3] ebtables: Add string filter
[v2,1/3] net: Allow to and from offsets to be equal in skb_find_text
- - - -
0 0 0
2018-03-21
Bernie Harris
pablo
Accepted
[v2,2/3] ebtables: Add support for specifying match revision
[v2,1/3] net: Allow to and from offsets to be equal in skb_find_text
- - - -
0 0 0
2018-03-21
Bernie Harris
pablo
Accepted
[v2,1/3] net: Allow to and from offsets to be equal in skb_find_text
[v2,1/3] net: Allow to and from offsets to be equal in skb_find_text
- - - -
0 0 0
2018-03-21
Bernie Harris
pablo
Under Review
netfilter: ipset: Use is_zero_ether_addr instead of static and memcmp
netfilter: ipset: Use is_zero_ether_addr instead of static and memcmp
- - - -
0 0 0
2018-03-20
Joe Perches
pablo
Accepted
[libnftnl,v2] examples: add nft-ct-helper-{add,get,del}
[libnftnl,v2] examples: add nft-ct-helper-{add,get,del}
- - - -
0 0 0
2018-03-20
Yang Zheng
pablo
Accepted
[nf] netfilter: nf_tables: add missing netlink attrs to policies
[nf] netfilter: nf_tables: add missing netlink attrs to policies
- 3 - -
0 0 0
2018-03-20
Florian Westphal
pablo
Accepted
[2/2,conntrackd] conntrackd: add TCP flag support
[1/2,conntrackd] src: add ARRAY_SIZE definition
- - - -
0 0 0
2018-03-20
Pablo Neira Ayuso
pablo
Accepted
[1/2,conntrackd] src: add ARRAY_SIZE definition
[1/2,conntrackd] src: add ARRAY_SIZE definition
- - - -
0 0 0
2018-03-20
Pablo Neira Ayuso
pablo
Accepted
[nf-next,RFC] netfilter: nf_conntrack_tcp: reset entry only from CLOSE and TIME_WAIT states
[nf-next,RFC] netfilter: nf_conntrack_tcp: reset entry only from CLOSE and TIME_WAIT states
- - - -
0 0 0
2018-03-20
Pablo Neira Ayuso
pablo
RFC
[2/2,nf-next] netfilter: SYNPROXY: don't proxy invalid PSH,ACK packets
Untitled series #34803
- - - -
0 0 0
2018-03-20
Pablo Neira Ayuso
pablo
Not Applicable
[1/2,nf-next,v2] netfilter: ctnetlink: synproxy support
[1/2,nf-next,v2] netfilter: ctnetlink: synproxy support
- - - -
0 0 0
2018-03-20
Pablo Neira Ayuso
pablo
Accepted
[libnftnl] examples: add nft-ct-helper-{add,get,del}
[libnftnl] examples: add nft-ct-helper-{add,get,del}
1 - - -
0 0 0
2018-03-19
Yang Zheng
pablo
Changes Requested
[nft,5/6] tests/shell: Fix sporadic fail of include/0007glob_double_0
Untitled series #34639
- - - -
0 0 0
2018-03-19
Phil Sutter
pablo
Accepted
[RFC] netfilter: nf_tables: nf_tables_allow_nat_conflict() can be static
[RFC] netfilter: nf_tables: nf_tables_allow_nat_conflict() can be static
- 1 - -
0 0 0
2018-03-19
kbuild test robot
pablo
RFC
[net-next,2/2] net: Convert nf_ct_net_ops
Converting pernet_operations (part #10)
- - - -
0 0 0
2018-03-19
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,1/2] net: Convert lowpan_frags_ops
Converting pernet_operations (part #10)
- - - -
0 0 0
2018-03-19
Kirill Tkhai
pablo
Awaiting Upstream
doc: nft.8 aim for consistent synopses throughout (again)
doc: nft.8 aim for consistent synopses throughout (again)
- - - -
0 0 0
2018-03-19
Duncan Roe
pablo
Accepted
[nft] rule: reset cache iff there is an existing cache
[nft] rule: reset cache iff there is an existing cache
- - - -
0 0 0
2018-03-18
Pablo Neira Ayuso
pablo
Accepted
libxt_CONNMARK: Support bit-shifting for --restore,set and save-mark
libxt_CONNMARK: Support bit-shifting for --restore,set and save-mark
- - 1 -
0 0 0
2018-03-18
Jack Ma
pablo
Under Review
xt_conntrack: Support bit-shifting for CONNMARK & MARK targets.
xt_conntrack: Support bit-shifting for CONNMARK & MARK targets.
- - 1 -
0 0 0
2018-03-18
Jack Ma
pablo
Accepted
[libmnl] attr: zero attribute padding
[libmnl] attr: zero attribute padding
1 - - -
0 0 0
2018-03-18
Florian Westphal
strlen
Accepted
[nf] netfilter: nf_tables: permit second nat hook if colliding hook is going away
[nf] netfilter: nf_tables: permit second nat hook if colliding hook is going away
- 1 - -
0 0 0
2018-03-18
Florian Westphal
pablo
Accepted
[nft] doc: describe table dormant flag
[nft] doc: describe table dormant flag
1 - - -
0 0 0
2018-03-17
Florian Westphal
pablo
Accepted
[nft] Combine redir and masq statements into nat
[nft] Combine redir and masq statements into nat
- - - -
0 0 0
2018-03-17
Phil Sutter
pablo
Accepted
[nft,2/2] tests: add srh test cases
[nft,1/2] src: fix routing header support
- - - -
0 0 0
2018-03-16
Florian Westphal
Accepted
[nft,1/2] src: fix routing header support
[nft,1/2] src: fix routing header support
1 1 - -
0 0 0
2018-03-16
Florian Westphal
Accepted
[iptables] iptables: add xtables-translate.8 manpage
[iptables] iptables: add xtables-translate.8 manpage
- - - -
0 0 0
2018-03-16
Arturo Borrero Gonzalez
strlen
Accepted
[nft] tests: update to new syntax to add/update set from packet path
[nft] tests: update to new syntax to add/update set from packet path
- - - -
0 0 0
2018-03-16
Pablo Neira Ayuso
pablo
Accepted
[nft,v2] src: revisit syntax to update sets and maps from packet path
[nft,v2] src: revisit syntax to update sets and maps from packet path
- - - -
0 0 0
2018-03-16
Pablo Neira Ayuso
pablo
Accepted
[nft] src: revisit syntax to update sets and maps from packet path
[nft] src: revisit syntax to update sets and maps from packet path
- - - -
0 0 0
2018-03-16
Pablo Neira Ayuso
pablo
Changes Requested
[nft] src: update dynamic set updates from packet path syntax
[nft] src: update dynamic set updates from packet path syntax
- - - -
0 0 0
2018-03-16
Pablo Neira Ayuso
pablo
Accepted
[nft,2/2] netlink: Fold netlink_gen_cmp() into netlink_gen_relational()
relational: Eliminate meta OPs
- - - -
0 0 0
2018-03-15
Phil Sutter
pablo
Accepted
[nft,1/2] relational: Eliminate meta OPs
relational: Eliminate meta OPs
- - - -
0 0 0
2018-03-15
Phil Sutter
pablo
Accepted
[nft] tests/shell: Use custom nft binary for ruleset listing
[nft] tests/shell: Use custom nft binary for ruleset listing
- - - -
0 0 0
2018-03-15
Phil Sutter
pablo
Accepted
[v2,nft] support of dynamic map addition and update of elements
[v2,nft] support of dynamic map addition and update of elements
- - - -
0 0 0
2018-03-15
Laura Garcia
pablo
Accepted
[net-next,6/6] net: Convert ip_vs_ftp_ops
Converting pernet_operations (part #8)
- - - -
0 0 0
2018-03-15
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,5/6] net: Convert ipvs_core_dev_ops
Converting pernet_operations (part #8)
- - - -
0 0 0
2018-03-15
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,4/6] net: Convert ipvs_core_ops
Converting pernet_operations (part #8)
- - - -
0 0 0
2018-03-15
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,3/6] net: Convert ovs_net_ops
Converting pernet_operations (part #8)
- - - -
0 0 0
2018-03-15
Kirill Tkhai
pablo
Awaiting Upstream
[net-next,2/6] net: Convert mpls_net_ops
Converting pernet_operations (part #8)
- - - -
0 0 0
2018-03-15
Kirill Tkhai
pablo
Awaiting Upstream
«
1
2
3
4
…
143
144
»