Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 28495 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
galak
galak
demarchi
ms
bhundven
chbs
kengyu
kadlec
pdp
regit
jabk
laforge
laforge
tonyb
sfr
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
patrick_delaunay
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
phil
mkresin
mkresin
thess
thess
fbarrat
fbarrat
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
vriera
darball1
sammj
ajd
jogo
jogo
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
davem
davem
davem
mwalle
naveen
pchotard
tagr
tagr
tagr
pepe2k
pepe2k
arj
arj
andmur01
amitay
matttbe
pabeni
istokes
aparcar
Ansuel
goliath
martineau
tytso
danielschwierzeck
mariosix
dcaratti
ovsrobot
ovsrobot
aserdean
XiaoYang
khem
hs
mkorpershoek
tpetazzoni
marex
liwang
robimarko
danielhb
groug
apritzel
mmichelson
npiggin
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
maximeh
dsa
jstancek
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
narmstrong
981213
0andriy
chunkeey
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
horms
monstr
vigneshr
mraynal
blocktrron
stewart
stewart
metan
wsa
sjg
rfried
ehristev
rmilecki
rmilecki
akumar
freenix
Jaehoon
jacmet
ivanhu
kevery
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
bmeng
jagan
ukleinek
ukleinek
ag
xypron
prom
kabel
arbab
pablo
pablo
trini
apconole
rw
rw
abelloni
wbx
Hauke
Hauke
legoater
legoater
legoater
chleroy
svanheule
bjonglez
ynezz
aik
pevik
sbabic
sbabic
xback
xback
richiejp
dangole
dangole
forty
anuppatel
anuppatel
acer
echaudron
benh
rgrimm
next_ghost
segher
passgat
pratyush
jms
jms
jms
ymorin
ymorin
mans0n
ruscur
Andes
jmberg
festevam
jk
jk
jk
jk
linusw
linusw
numans
xuyang
matthias_bgg
tambarus
stroese
kubu
strlen
strlen
imaximets
apalos
dceara
pbrobinson
spectrum
cazzacarna
neocturne
aldot
TIENFONG
mpe
arnout
ktraynor
nbd
nbd
calebccff
robh
anguy11
paulus
jm
Apply
«
1
2
...
32
33
34
…
284
285
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[v25,16/25] LSM: Use lsmcontext in security_secid_to_secctx
Untitled series #232990
2 - 1 -
-
-
-
2021-03-09
Casey Schaufler
pablo
Awaiting Upstream
[v25,15/25] LSM: Ensure the correct LSM context releaser
Untitled series #232990
1 - 2 -
-
-
-
2021-03-09
Casey Schaufler
pablo
Awaiting Upstream
[v25,08/25] LSM: Use lsmblob in security_secid_to_secctx
Untitled series #232990
- - - -
-
-
-
2021-03-09
Casey Schaufler
pablo
Awaiting Upstream
[v25,07/25] LSM: Use lsmblob in security_secctx_to_secid
Untitled series #232990
- - - -
-
-
-
2021-03-09
Casey Schaufler
pablo
Awaiting Upstream
[v24,18/25] LSM: security_secid_to_secctx in netlink netfilter
Untitled series #226533
2 - 2 -
-
-
-
2021-01-26
Casey Schaufler
pablo
Awaiting Upstream
[v24,16/25] LSM: Use lsmcontext in security_secid_to_secctx
Untitled series #226533
2 - 1 -
-
-
-
2021-01-26
Casey Schaufler
pablo
Awaiting Upstream
[v24,15/25] LSM: Ensure the correct LSM context releaser
Untitled series #226533
1 - 2 -
-
-
-
2021-01-26
Casey Schaufler
pablo
Awaiting Upstream
[v24,08/25] LSM: Use lsmblob in security_secid_to_secctx
Untitled series #226533
- - - -
-
-
-
2021-01-26
Casey Schaufler
pablo
Awaiting Upstream
[v24,07/25] LSM: Use lsmblob in security_secctx_to_secid
Untitled series #226533
- - - -
-
-
-
2021-01-26
Casey Schaufler
pablo
Awaiting Upstream
[v23,16/23] LSM: security_secid_to_secctx in netlink netfilter
Untitled series #215895
2 - 2 -
-
-
-
2020-11-20
Casey Schaufler
pablo
Awaiting Upstream
[v23,14/23] LSM: Use lsmcontext in security_secid_to_secctx
Untitled series #215895
2 - 1 -
-
-
-
2020-11-20
Casey Schaufler
pablo
Awaiting Upstream
[v23,13/23] LSM: Ensure the correct LSM context releaser
Untitled series #215895
1 - 2 -
-
-
-
2020-11-20
Casey Schaufler
pablo
Awaiting Upstream
[v23,06/23] LSM: Use lsmblob in security_secid_to_secctx
Untitled series #215895
- - - -
-
-
-
2020-11-20
Casey Schaufler
pablo
Awaiting Upstream
[v23,05/23] LSM: Use lsmblob in security_secctx_to_secid
Untitled series #215895
- - - -
-
-
-
2020-11-20
Casey Schaufler
pablo
Awaiting Upstream
[v22,16/23] LSM: security_secid_to_secctx in netlink netfilter
Untitled series #212289
2 - 2 -
-
-
-
2020-11-05
Casey Schaufler
pablo
Awaiting Upstream
[v21,16/23] LSM: security_secid_to_secctx in netlink netfilter
Untitled series #207434
1 - 2 -
-
-
-
2020-10-12
Casey Schaufler
pablo
Awaiting Upstream
[v2.1] conntrack: add /proc entry to disable helper by default
- - - -
-
-
-
2012-03-28
Eric Leblond
Superseded
[v2.1] conntrack: add /proc entry to disable helper by default
- - - -
-
-
-
2012-04-12
Pablo Neira Ayuso
Accepted
[v2-nftables,2/2] netfilter: nf_tables: add trace support
- - - -
-
-
-
2013-01-31
Pablo Neira Ayuso
Accepted
[v2-nftables,1/2] netfilter: nf_tables: add packet and byte counters per chain
- - - -
-
-
-
2013-01-31
Pablo Neira Ayuso
Accepted
[v2,xtables,4/4] xtables: initialize basechains for rule flush command too
[xtables,1/4] xtables: always initialize basechains on ruleset restore
- - - -
-
-
-
2018-05-28
Pablo Neira Ayuso
pablo
Accepted
[v2,xtables,3/4] xtables: rework rule cache logic
[xtables,1/4] xtables: always initialize basechains on ruleset restore
- - - -
-
-
-
2018-05-28
Pablo Neira Ayuso
pablo
Accepted
[v2,xtables,2/4] xtables: add chain cache
[xtables,1/4] xtables: always initialize basechains on ruleset restore
- - - -
-
-
-
2018-05-28
Pablo Neira Ayuso
pablo
Accepted
[v2,xtables,1/4] xtables: initialize basechains only once on ruleset restore
[v2,xtables,1/4] xtables: initialize basechains only once on ruleset restore
- - - -
-
-
-
2018-05-28
Pablo Neira Ayuso
pablo
Accepted
[v2,ulogd2,2/2] rotate all default output files
- - - -
-
-
-
2017-03-27
Kaarle Ritvanen
pablo
Accepted
[v2,ulogd2,1/2] harmonize log file defaults with ulogd.conf
- - - -
-
-
-
2017-03-27
Kaarle Ritvanen
pablo
Accepted
[v2,tip/core/rcu,02/10] net/netfilter/nf_conntrack_core: Fix net_conntrack_lock()
- - - -
-
-
-
2017-07-31
Paul E. McKenney
pablo
Awaiting Upstream
[v2,nftables,7/7] doc: ct helper objects and helper set support
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,6/7] tests: add insert-failure test
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,5/7] tests: py: add ct helper tests
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,4/7] src: implement add/create/delete for ct helper objects
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,3/7] src: allow listing all ct helpers
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,2/7] evaluate: refactor CMD_OBJ_QUOTA/COUNTER handling
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nftables,1/7] src: add initial ct helper support
- - - -
-
-
-
2017-03-15
Florian Westphal
pablo
Accepted
[v2,nft] tests: py: Add test cases for tproxy support
[v2,nft] tests: py: Add test cases for tproxy support
- - - -
-
-
-
2018-07-20
Máté Eckl
pablo
Changes Requested
[v2,nft] test: py: Add test cases for socket matching
[v2,nft] test: py: Add test cases for socket matching
- - - -
-
-
-
2018-06-04
Máté Eckl
pablo
Accepted
[v2,nft] test: Add test cases for tproxy support
[v2,nft] test: Add test cases for tproxy support
- - - -
-
-
-
2018-07-02
Máté Eckl
pablo
Changes Requested
[v2,nft] support of dynamic map addition and update of elements
[v2,nft] support of dynamic map addition and update of elements
- - - -
-
-
-
2018-03-15
nevola
pablo
Accepted
[v2,nft] scanner: fix out-of-bound memory write in include_file()
[v2,nft] scanner: fix out-of-bound memory write in include_file()
- 1 - -
-
-
-
2019-11-29
Eric Jallot
pablo
Accepted
[v2,nft] libnftables: Print error and exit for empty string
[v2,nft] libnftables: Print error and exit for empty string
- - - -
-
-
-
2018-03-03
Harsha Sharma
strlen
Accepted
[v2,nft] doc: Document stateful objects
- - - -
-
-
-
2017-02-09
Elise Lennion
pablo
Accepted
[v2,nft] doc: Add tproxy statement to man page
[v2,nft] doc: Add tproxy statement to man page
- - - -
-
-
-
2018-08-01
Máté Eckl
pablo
Accepted
[v2,nft] Standard prios: Make invalid prio error more specific
[v2,nft] Standard prios: Make invalid prio error more specific
- - - -
-
-
-
2018-08-23
Máté Eckl
pablo
Accepted
[v2,nft] Set/print base chain prios with textual names
[v2,nft] Set/print base chain prios with textual names
- - - -
-
-
-
2018-06-06
Máté Eckl
pablo
Changes Requested
[v2,nft] Introduce socket matching
[v2,nft] Introduce socket matching
- - - -
-
-
-
2018-05-30
Máté Eckl
pablo
Changes Requested
[v2,nft] Expose socket mark via socket expression
[v2,nft] Expose socket mark via socket expression
- - - -
-
-
-
2018-07-12
Máté Eckl
pablo
Changes Requested
[v2,nft] Add tproxy support
[v2,nft] Add tproxy support
- - - -
-
-
-
2018-06-29
Máté Eckl
pablo
Changes Requested
[v2,nft,2/4] src: add offset attribute for hash expression
- - - -
-
-
-
2016-11-01
nevola
pablo
Changes Requested
[v2,nft,2/2] payload: add payload statement
- - - -
-
-
-
2015-11-24
Patrick McHardy
pablo
Accepted
[v2,nft,1/4] src: make hash seed attribute optional
- - - -
-
-
-
2016-11-01
nevola
pablo
Changes Requested
[v2,nft,1/2] proto: add checksum key information to struct proto_desc
- - - -
-
-
-
2015-11-24
Patrick McHardy
pablo
Accepted
[v2,nft,1/2] evaluate: skip byteorder conversion for selector smaller than 2 bytes
[v2,nft,1/2] evaluate: skip byteorder conversion for selector smaller than 2 bytes
- 1 - -
-
-
-
2024-02-08
Pablo Neira Ayuso
Accepted
[v2,nf] netfilter: xt_checksum: ignore gso skbs
[v2,nf] netfilter: xt_checksum: ignore gso skbs
- - 1 -
-
-
-
2018-08-22
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: x_tables: speed up jump target validation
- - - 1
-
-
-
2016-07-13
Florian Westphal
pablo
Changes Requested
[v2,nf] netfilter: x_tables: set module owner for icmp(6) matches
[v2,nf] netfilter: x_tables: set module owner for icmp(6) matches
- - - -
-
-
-
2018-07-04
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: nft_socket: only do sk lookups when indev is available
[v2,nf] netfilter: nft_socket: only do sk lookups when indev is available
- 1 - -
-
-
-
2022-04-28
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: nft_set_pipapo: do not free live element
[v2,nf] netfilter: nft_set_pipapo: do not free live element
- 1 1 -
-
-
-
2024-04-10
Florian Westphal
Accepted
[v2,nf] netfilter: nft_compat: explicitly reject ERROR and standard target
[v2,nf] netfilter: nft_compat: explicitly reject ERROR and standard target
- - - -
-
-
-
2018-07-06
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: nf_tproxy: fix possible non-linear access to transport header
[v2,nf] netfilter: nf_tproxy: fix possible non-linear access to transport header
- 1 - -
-
-
-
2018-06-28
Máté Eckl
pablo
Changes Requested
[v2,nf] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
[v2,nf] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush
- - - -
-
-
-
2019-09-24
nevola
pablo
Accepted
[v2,nf] netfilter: nat: don't register device notifier twice
[v2,nf] netfilter: nat: don't register device notifier twice
- 1 - -
-
-
-
2019-03-06
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: make conntrack userspace helpers work again
[v2,nf] netfilter: make conntrack userspace helpers work again
- 1 - -
-
-
-
2020-05-15
Florian Westphal
pablo
Superseded
[v2,nf] netfilter: log: Check param to avoid overflow in nf_log_set
- - - -
-
-
-
2016-08-29
高峰
pablo
Accepted
[v2,nf] netfilter: ebtables: reject non-bridge targets
[v2,nf] netfilter: ebtables: reject non-bridge targets
- - - -
-
-
-
2018-06-06
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: don't track fragmented packets
- - - -
-
-
-
2017-03-03
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: conntrack: remove offload_pickup sysctl again
[v2,nf] netfilter: conntrack: remove offload_pickup sysctl again
- - 2 -
-
-
-
2021-08-04
Florian Westphal
pablo
Accepted
[v2,nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed
[v2,nf] netfilter: conntrack: fix removal of conntrack entries when l4tracker is removed
- 1 - -
-
-
-
2018-08-02
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: xt_socket: add XT_SOCKET_NOWILDCARD flag
- - - -
-
-
-
2013-06-20
Eric Dumazet
Accepted
[v2,nf-next] netfilter: nft_socket: Expose socket mark
[v2,nf-next] netfilter: nft_socket: Expose socket mark
- - - -
-
-
-
2018-07-12
Máté Eckl
pablo
Accepted
[v2,nf-next] netfilter: nft_set: use sequence count to avoid read lock in most cases
- - - -
-
-
-
2017-07-26
Florian Westphal
pablo
Superseded
[v2,nf-next] netfilter: nft_ct: allow to set ctnetlink event types of a connection
- - - -
-
-
-
2017-04-15
Florian Westphal
pablo
Changes Requested
[v2,nf-next] netfilter: nft: add support for native socket matching
[v2,nf-next] netfilter: nft: add support for native socket matching
- - - -
-
-
-
2018-05-30
Máté Eckl
pablo
Changes Requested
[v2,nf-next] netfilter: nfnetlink_hook: add depends-on nftables
[v2,nf-next] netfilter: nfnetlink_hook: add depends-on nftables
- 1 - -
-
-
-
2021-06-08
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: nf_tables: add userdata attributes to nft_chain
[v2,nf-next] netfilter: nf_tables: add userdata attributes to nft_chain
- - - -
-
-
-
2020-09-23
Jose M. Guisado Gomez
pablo
Changes Requested
[v2,nf-next] netfilter: meta: secpath support
[v2,nf-next] netfilter: meta: secpath support
- - - -
-
-
-
2017-12-06
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: kconfig: remove ct zone/label dependencies
[v2,nf-next] netfilter: kconfig: remove ct zone/label dependencies
- - - -
-
-
-
2018-08-03
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: introduce support for reject at prerouting stage
[v2,nf-next] netfilter: introduce support for reject at prerouting stage
- - - -
-
-
-
2020-05-29
nevola
pablo
Changes Requested
[v2,nf-next] netfilter: exthdr: add support for tcp option removal
[v2,nf-next] netfilter: exthdr: add support for tcp option removal
- - - -
-
-
-
2022-01-28
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: enable set expiration date for set elements
[v2,nf-next] netfilter: enable set expiration date for set elements
- - - -
-
-
-
2019-06-18
nevola
pablo
Changes Requested
[v2,nf-next] netfilter: ebt: Use new helper ebt_invalid_target to check target
- - - -
-
-
-
2017-05-31
Gao Feng
pablo
Accepted
[v2,nf-next] netfilter: disable defrag once its no longer needed
[v2,nf-next] netfilter: disable defrag once its no longer needed
- - - -
-
-
-
2021-04-21
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: conntrack: udp: only extend timeout to stream mode after 2s
[v2,nf-next] netfilter: conntrack: udp: only extend timeout to stream mode after 2s
- - - -
-
-
-
2018-12-06
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: conntrack: remove the central spinlock
- - - 1
-
-
-
2013-05-22
Eric Dumazet
Not Applicable
[v2,nf-next] netfilter: conntrack: remove the central spinlock
- - - -
-
-
-
2013-05-22
Joe Perches
Not Applicable
[v2,nf-next] netfilter: conntrack: avoid use-after free on rmmod
[v2,nf-next] netfilter: conntrack: avoid use-after free on rmmod
- 1 - -
-
-
-
2018-08-03
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: added includes to nf_socket.h
[v2,nf-next] netfilter: added includes to nf_socket.h
- - - -
-
-
-
2018-05-23
Máté Eckl
pablo
Accepted
[v2,nf-next] netfilter: add and use nf_hook_slow_list()
[v2,nf-next] netfilter: add and use nf_hook_slow_list()
1 - - -
-
-
-
2019-10-10
Florian Westphal
pablo
Accepted
[v2,nf-next] netfilter: Kconfig: Change select dependencies from IPV6 to NF_TABLES_IPV6 and IP6_NF_…
[v2,nf-next] netfilter: Kconfig: Change select dependencies from IPV6 to NF_TABLES_IPV6 and IP6_NF_…
- - - -
-
-
-
2018-07-10
Máté Eckl
pablo
Accepted
[v2,nf-next] netfilter: Decrease code duplication regarding transparent socket option
[v2,nf-next] netfilter: Decrease code duplication regarding transparent socket option
- - - -
-
-
-
2018-06-01
Máté Eckl
pablo
Accepted
[v2,nf-next] netfilter: Add the missed return value check of register_netdevice_notifier
- - - -
-
-
-
2016-09-08
高峰
pablo
Changes Requested
[v2,nf-next] netfilter: Add native tproxy support for nf_tables
[v2,nf-next] netfilter: Add native tproxy support for nf_tables
- - - -
-
-
-
2018-06-28
Máté Eckl
pablo
Changes Requested
[v2,nf-next] added missing icmpv6 codes in REJECT
- - - -
-
-
-
2015-08-21
Andreas Herz
pablo
Accepted
[v2,nf-next,9/9] nftables: add conntrack dependencies for nat/masq/redir expressions
- - - -
-
-
-
2015-10-23
Florian Westphal
pablo
RFC
[v2,nf-next,9/9] netfilter: conntrack: consider ct netns in early_drop logic
- - - -
-
-
-
2016-05-02
Florian Westphal
pablo
Accepted
[v2,nf-next,8/9] netfilter: don't call nf_hook_state_init/_hook_slow unless needed
- - - -
-
-
-
2015-10-23
Florian Westphal
pablo
RFC
[v2,nf-next,8/9] netfilter: conntrack: use a single hashtable for all namespaces
- - - -
-
-
-
2016-05-02
Florian Westphal
pablo
Accepted
[v2,nf-next,8/8] netfilter: nat: remove nf_nat_l4proto struct
[v2,nf-next,1/8] netfilter: remove NF_NAT_RANGE_PROTO_RANDOM support
- - - -
-
-
-
2018-12-13
Florian Westphal
pablo
Accepted
[v2,nf-next,8/8] netfilter: conntrack: remove l3proto abstraction
netfilter: conntrack: move ipv4/v6 trackers into core
- - - -
-
-
-
2018-06-29
Florian Westphal
pablo
Accepted
[v2,nf-next,7/9] netfilter: conntrack: make netns address part of hash
- - - -
-
-
-
2016-05-02
Florian Westphal
strlen
Superseded
[v2,nf-next,7/9] netfilter: bridge: register hooks only when bridge is added
- - - -
-
-
-
2015-10-23
Florian Westphal
pablo
RFC
«
1
2
...
32
33
34
…
284
285
»