| [GIT,PULL,nf-next,v2] IPVS for v3.11 |
2013-05-25 |
Simon Horman |
|
New |
| [GIT,PULL,nf] IPVS fixes for v3.10 |
2013-05-25 |
Simon Horman |
|
New |
| ipvs: Fix reuse connection if real server is dead |
2013-05-25 |
Simon Horman |
|
New |
| [-next,resend] netfilter: nfnetlink_queue: avoid peer_portid test |
2013-05-25 |
Florian Westphal |
|
New |
| [libnftables,2/2] src: xml: add versioning |
2013-05-24 |
Arturo Borrero |
|
New |
| [libnftables,1/2] src: chain: delete useless castings |
2013-05-24 |
Arturo Borrero |
|
New |
| [1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks |
2013-05-23 |
Pablo Neira |
|
Under Review |
| [v2] xtables: Add locking to prevent concurrent instances |
2013-05-22 |
Phil Oester |
|
Under Review |
| [v2,nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-22 |
Joe Perches |
|
Under Review |
| [v2,nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-22 |
Eric Dumazet |
|
Under Review |
| xtables: Add locking to prevent concurrent instances |
2013-05-22 |
Phil Oester |
|
Under Review |
| [2/2] ipvs: Fix reuse connection if real server is dead |
2013-05-22 |
Simon Horman |
|
Under Review |
| [1/2] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max |
2013-05-22 |
Simon Horman |
|
Under Review |
| [GIT,PULL,nf-next] IPVS for v3.11 |
2013-05-22 |
Simon Horman |
|
Under Review |
| [nftables] rule: display rule handle as comment |
2013-05-20 |
Eric Leblond |
|
Under Review |
| iptables: use autoconf to process .in man pages |
2013-05-20 |
Andy Spencer |
|
Under Review |
| ipv4: netfilter: always let NUL terminated string ended by '\0' |
2013-05-17 |
Chen Gang |
|
Superseded |
| Save funcs, installation, const |
2013-03-05 |
Jan Engelhardt |
|
Not Applicable |
| Documentation and a build fix |
2012-12-25 |
Jan Engelhardt |
|
Accepted |
| [nf-next] netfilter: xt_CT: optimize XT_CT_NOTRACK |
2013-05-09 |
Eric Dumazet |
|
Superseded |
| [11/11] db: db ring has precedence over backlog. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [10/11] db: disable SIGHUP if ring buffer is used. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [09/11] db: add ring buffer for DB query |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [08/11] db: use offset instead of direct pointer. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [07/11] db: suppress field in db structure |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [06/11] db: store data in memory during database downtime |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [05/11] sqlite3: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [04/11] mysql: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [03/11] postgresql: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [02/11] Fix automagic support of dbi, pcap and sqlite3 |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [01/11] ulogd: display stack during configuration |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [1/2] ulogd: Perform nice() before giving up root |
2013-05-11 |
Chris Boot |
|
Accepted |
| ipset: Fix hyphen used as minus sign in manpage |
2013-05-12 |
Neutron Soutmun |
|
Not Applicable |
| ipset: Fix syntax error of bash completion in Debian environment |
2013-05-12 |
Neutron Soutmun |
|
Not Applicable |
| [v2] ulogd: Implement PID file writing |
2013-05-12 |
Chris Boot |
|
Accepted |
| [next,v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS |
2013-05-17 |
Afschin Hormozdiary |
|
Accepted |
| [Ulogd] Improve pid file handling. |
2013-05-19 |
Eric Leblond |
|
Accepted |
| [v2] ipv4: netfilter: always let NUL terminated string ended by '\0' |
2013-05-23 |
Chen Gang |
|
Accepted |
| [ipvs-next,v3,2/2] ipvs: use cond_resched_rcu() helper when walking connections |
2013-05-22 |
Simon Horman |
|
Accepted |
| [ipvs-next,v3,1/2] sched: add cond_resched_rcu() helper |
2013-05-22 |
Simon Horman |
|
Accepted |
| [libnftables,v2] examples: XML parsing examples |
2013-05-22 |
Arturo Borrero |
|
Accepted |
| [libnftables,v4] src: support for XML parsing |
2013-05-14 |
Arturo Borrero |
|
Accepted |
| [v2] netfilter: add and use nf_ipv6_ops in xt_addrtype |
2013-05-17 |
Florian Westphal |
|
Accepted |
| [3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: don't panic on error while walking through the init path |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [resend,nf-next] netfilter: xt_CT: optimize XT_CT_NOTRACK |
2013-05-22 |
Eric Dumazet |
|
Accepted |
| [net-next] netfilter: xt_socket: use IP early demux |
2013-05-22 |
Eric Dumazet |
|
Accepted |
| bridge: netfilter: using strlcpy() instead of strncpy() |
2013-05-17 |
Chen Gang |
|
Accepted |
| [libnftables] examples: XML parsing examples |
2013-05-15 |
Arturo Borrero |
|
Superseded |
| cli: complete basic functionality of the interactive mode |
2013-05-14 |
Pablo Neira |
|
Accepted |
| [RFC,2/2] netfilter: nf_tables: improvements for the existing transaction approach |
2013-05-20 |
Pablo Neira |
|
RFC |
| [RFC,1/2] netfilter: nfnetlink: add commit operation to nfnl_subsystems |
2013-05-20 |
Pablo Neira |
|
RFC |
| doc: mention SNAT in INPUT chain since kernel 2.6.36 |
2013-05-19 |
Michael Roth |
|
Accepted |
| netfilter: add and use nf_afinfo in xt_addrtype |
2013-05-13 |
Florian Westphal |
|
Superseded |
| netfilter: log: netns NULL ptr bug when calling from conntrack. |
2013-05-15 |
Hans Schillstrom |
|
Accepted |
| [4/4] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: log: netns NULL ptr bug when calling from conntrack |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: update MAINTAINERS file |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [1/4] netfilter: nf_{log,queue}: fix compilation without CONFIG_PROC_FS |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [0/4] Netfilter fixes for net (3.10-rc1) |
2013-05-16 |
Pablo Neira |
|
Accepted |
| libipset.pc must be installed via 'make install' |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [2/2] ulogd: Implement PID file writing |
2013-05-11 |
Chris Boot |
|
Superseded |
| [next] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS |
2013-05-16 |
Afschin Hormozdiary |
|
RFC |
| [iptables-nftables,6/6] xtables: add suport for DNAT rule translation to nft extensions |
2013-05-14 |
Tomasz Bursztyka |
|
RFC |
| [iptables-nftables,5/6] xtables: add support for translating xtables matches into nft expressions |
2013-05-14 |
Tomasz Bursztyka |
|
RFC |
| [iptables-nftables,4/6] xtables: Add support for translating xtables target into nft expressions |
2013-05-14 |
Tomasz Bursztyka |
|
RFC |
| [iptables-nftables,3/6] xtables: policy can be changed only on builtin chain |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,1/6] xtables: initialize xtables defaults even on listing rules |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,5/7] map: fix nft_rule_expr_build_payload export |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,4/7] expr: remove inconsistent and non implemented function |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,3/7] rule: declare nft_rule_list structure at a proper place |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,2/7] build: add an autogen.sh script |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,1/7] git: add a .gitignore file |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [Ulog2] Exec libmnl config check only if nfacct is enabled |
2013-04-05 |
Victor Julien |
|
Accepted |
| BUG: unable to handle kernel paging request at 0000000000609920 in networking code on 3.2.23. |
2013-01-24 |
Florian Westphal |
|
Superseded |
| [09/13] iptables: fix order of internal commands list |
2012-12-25 |
Jan Engelhardt |
|
Not Applicable |
| [PATCHv2] conntrackd: make conntrackd namespace aware |
2012-09-11 |
Ansis Atteka |
|
Not Applicable |
| [PATCHv3] conntrackd: make conntrackd namespace aware |
2012-10-04 |
Ansis Atteka |
|
Not Applicable |
| ipset: fix syntax error in bash completion and hyphen used as minus sign in manpage |
2013-05-11 |
Neutron Soutmun |
|
Not Applicable |
| ipset: fix syntax error in bash completion and hyphen used as minus sign in manpage |
2013-05-11 |
Neutron Soutmun |
|
Not Applicable |
| [v4] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-15 |
Pablo Neira |
|
Superseded |
| [v3] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-15 |
Pablo Neira |
|
Superseded |
| [v2] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-15 |
Pablo Neira |
|
Superseded |
| netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-15 |
Pablo Neira |
|
Superseded |
| [iptables-nftables,2/6] xtables: destroy list iterator relevantly |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| [libnftables,7/7] chain: handle attribute is relevant if only there is no name to use |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| [libnftables,6/7] expr: add support for expr list and capability to add it into a rule |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| Some netfilter compile errors when CONFIG_IPV6=m |
2013-05-14 |
Amerigo Wang |
|
Under Review |
| [nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-09 |
Eric Dumazet |
|
Under Review |
| [-stable-3.8.y,9/9] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,8/9] netfilter: xt_rpfilter: skip locally generated broadcast/multicast, too |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,2/9] netfilter: nf_nat: fix race when unloading protocol modules |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,1/9] ipvs: ip_vs_sip_fill_param() BUG: bad check of return value |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,7/9] netfilter: ctnetlink: don't permit ct creation with random tuple |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,6/9] netfilter: nf_ct_helper: don't discard helper if it is actually the same |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,5/9] netfilter: ipset: "Directory not empty" error message |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,4/9] netfilter: nf_ct_sip: don't drop packets with offsets pointing outside the packet |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,3/9] netfilter: ipset: list:set: fix reference counter update |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [nfacct] Improve 'flush' man page entry |
2013-05-08 |
Thomas Jarosch |
|
Accepted |
| ipvs: change type of netns_ipvs->sysctl_sync_qlen_max |
2013-05-25 |
Simon Horman |
|
New |