| [libnftables] examples: XML parsing examples |
2013-05-15 |
Arturo Borrero |
|
Superseded |
| [libnftables] expr: Add support for NAT expressions |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [libnftables] rule: Add a function to get rule's family |
2013-01-10 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables] src: get and set NFT_*_ATTR_FAMILY |
2013-03-31 |
Arturo Borrero |
|
Accepted |
| [libnftables] src: rule: fix compat XML output |
2013-04-08 |
Arturo Borrero |
|
RFC |
| [libnl-nft] Fix file descriptor leak on error |
2012-12-25 |
Thomas Jarosch |
|
Not Applicable |
| [libnl-nft] Fix out of bounds buffer access in rtnl_netem_set_delay_distribution() |
2012-12-25 |
Thomas Jarosch |
|
Not Applicable |
| [net-next,v2,01/12] netfilter: fix problem with proto register |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,02/12] netfilter: add parameter proto for l4proto.init_net |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,03/12] netfilter: add nf_ct_kfree_compat_sysctl_table to make codes clear |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,04/12] netfilter: regard users as refcount for l4proto's per-net data |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,05/12] netfilter: merge tcpv[4,6]_net_init into tcp_net_init |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,06/12] netfilter: merge udpv[4,6]_net_init into udp_net_init |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,07/12] netfilter: nf_conntrack_l4proto_udplite[4,6] cleanup |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,08/12] netfilter: merge sctpv[4,6]_net_init into sctp_net_init |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,09/12] netfilter: nf_conntrack_l4proto_generic cleanup |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,10/12] netfilter: nf_conntrack_l4proto_dccp[4,6] cleanup |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,11/12] netfilter: nf_conntrack_l4proto_icmp cleanup |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2,12/12] netfilter: nf_conntrack_l4proto_icmpv6 cleanup |
2012-06-16 |
Gao feng |
|
Superseded |
| [net-next,v2] doc: add nf_conntrack sysctl api documentation |
2013-01-16 |
Jiri Pirko |
|
Superseded |
| [net-next] doc: add nf_conntrack sysctl api documentation |
2013-01-16 |
Jiri Pirko |
|
Superseded |
| [net-next] ipv4/netfilter: remove unnecessary goto statement for error recovery |
2012-08-20 |
Jean Sacren |
|
Accepted |
| [net-next] ipv6: use ipv6_iface_scope_id in conntrack to return scope id |
2013-03-12 |
Hannes Frederic Sowa |
|
Accepted |
| [net-next] nat: remove obsolete rcu_read_unlock call |
2012-09-20 |
Ulrich Weber |
|
Accepted |
| [net-next] netfilter: implement RFC3168 5.3 (ecn protection) for ipv6 fragmentation handling |
2013-03-25 |
Hannes Frederic Sowa |
|
Accepted |
| [net-next] netfilter: remove two dropwatch false positives |
2012-05-02 |
Eric Dumazet |
|
Not Applicable |
| [net-next] netfilter: remove xt_NOTRACK |
2012-09-04 |
Jan Engelhardt |
|
Not Applicable |
| [net-next] netfilter: remove xt_NOTRACK |
2012-09-03 |
Pablo Neira |
|
Superseded |
| [net-next] netfilter: remove xt_NOTRACK |
2012-08-26 |
Amerigo Wang |
|
Accepted |
| [net-next] netfilter: x_tables: xt_init() should run earlier |
2012-09-08 |
Patrick McHardy |
|
Superseded |
| [net-next] netfilter: x_tables: xt_init() should run earlier |
2012-09-05 |
Eric Dumazet |
|
Superseded |
| [net-next] netfilter: xt_socket: use IP early demux |
2013-05-22 |
Eric Dumazet |
|
Accepted |
| [net] ipvs: sctp: fix checksumming by adding hardware offload support |
2013-02-04 |
Daniel Borkmann |
|
Not Applicable |
| [net] ipvs: sctp: fix checksumming on snat and dnat handlers |
2013-02-05 |
Daniel Borkmann |
|
Not Applicable |
| [net] netfilter: nf_conntrack: fix rt_gateway checks for h323 |
2012-10-09 |
Julian Anastasov |
|
Accepted |
| [next,1/3] netfilter: limit, hashlimit: avoid duplicated inline |
2012-05-07 |
Florian Westphal |
|
Accepted |
| [next,2/3] netfilter: hashlimit: move rateinfo initialization to helper |
2012-05-07 |
Florian Westphal |
|
Accepted |
| [next,3/3] netfilter: hashlimit: byte-based limit mode |
2012-05-07 |
Florian Westphal |
|
Accepted |
| [next,V2] netfilter connlabel extension |
2013-01-11 |
Florian Westphal |
|
Accepted |
| [next,V2] netfilter: remove extra timer from ecache extension |
2013-01-03 |
Florian Westphal |
|
Changes Requested |
| [next,v2] iptables: add xt_bpf match |
2013-01-10 |
Willem de Bruijn |
|
Superseded |
| [next,v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS |
2013-05-17 |
Afschin Hormozdiary |
|
Accepted |
| [next,v3] iptables: add xt_bpf match |
2013-01-10 |
Willem de Bruijn |
|
Superseded |
| [next] extensions: add connlabel match |
2013-01-11 |
Florian Westphal |
|
Accepted |
| [next] extensions: add libxt_bpf extension |
2012-12-09 |
Willem de Bruijn |
|
Not Applicable |
| [next] extensions: add libxt_bpf extension |
2013-01-24 |
Willem de Bruijn |
|
Accepted |
| [next] extensions: add libxt_skbuff extension |
2012-12-09 |
Willem de Bruijn |
|
Not Applicable |
| [next] iptables: add xt_bpf match |
2013-01-21 |
Pablo Neira |
|
Accepted |
| [next] iptables: add xt_bpf match |
2012-12-09 |
Willem de Bruijn |
|
Not Applicable |
| [next] iptables: add xt_bpf match |
2013-01-21 |
Pablo Neira |
|
Accepted |
| [next] iptables: add xt_bpf match |
2013-01-18 |
Willem de Bruijn |
|
Accepted |
| [next] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS |
2013-05-16 |
Afschin Hormozdiary |
|
RFC |
| [next] netfilter: NFQUEUE: don't xor src/dst ip address |
2012-06-04 |
Florian Westphal |
|
Accepted |
| [next] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-10-30 |
Florian Westphal |
|
Accepted |
| [next] netfilter: kill support for per-af queue backends |
2012-11-23 |
Florian Westphal |
|
Accepted |
| [next] netfilter: xt_hashlimit: use _ALL macro to reject unknown flag bits |
2012-05-11 |
Florian Westphal |
|
Accepted |
| [next] utils: bpf_compile |
2013-03-12 |
Willem de Bruijn |
|
Accepted |
| [nf-next,01/11] netfilter: move nf_conntrack initialize out of pernet operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,02/11] netfilter: expect: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,03/11] netfilter: acct: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,04/11] netfilter: tstamp: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,05/11] netfilter: ecache: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,06/11] netfilter: timeout: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,07/11] netfilter: helper: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,08/11] netfilter: labels: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,09/11] netfilter: proto: move initial codes out of pernet_operations |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,1/2] netfilter: ebt_ulog: remove useless spin lock protection |
2013-02-19 |
Gao feng |
|
Accepted |
| [nf-next,1/9] ipvs: properly dereference dest_dst in ip_vs_forget_dev |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,10/11] netfilter: l3proto: refactor l3proto support for netns |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,11/11] netfilter: l4proto: refactor l4proto support for netns |
2013-01-22 |
Gao feng |
|
Accepted |
| [nf-next,2/2] netfilter: ipt_ULOG: make spinlock per nlgroup |
2013-02-19 |
Gao feng |
|
Not Applicable |
| [nf-next,2/9] ipvs: fix sparse warnings for ip_vs_conn listing |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,3/9] ipvs: fix the remaining sparse warnings in ip_vs_ctl.c |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,4/9] ipvs: fix sparse warnings in lblc and lblcr |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,5/9] ipvs: fix sparse warnings for some parameters |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,6/9] ipvs: Avoid shadowing net variable in ip_vs_leave() |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,7/9] ipvs: Use min3() in ip_vs_dbg_callid() |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,8/9] ipvs: off by one in set_sctp_state() |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,9/9] ipvs: Use network byte order for sync message size |
2013-04-23 |
Simon Horman |
|
Accepted |
| [nf-next,v2,01/10] netfilter: make /proc/net/netfilter pernet |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,02/10] netfilter: nf_log: prepar net namespace support for nf_log |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,03/10] netfilter: ebt_log: add net namespace support for ebt_log |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,04/10] netfilter: xt_LOG: add net namespace support for xt_LOG |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,05/10] netfilter: ebt_ulog: add net namesapce support for ebt_ulog |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,06/10] netfilter: ipt_ulog: add net namespace support for ipt_ulog |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,07/10] netfilter: nfnetlink_log: add net namespace support for nfnetlink_log |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,08/10] netfilter: nf_log: enable nflog in un-init net namespace |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,09/10] netfilter: nfnetlink_queue: add net namespace support for nfnetlink_queue |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2,10/10] netfilter: remove useless variable proc_net_netfilter |
2013-03-25 |
Gao feng |
|
Accepted |
| [nf-next,v2] ipvs: fix build errors related to config option combinations |
2012-10-22 |
Jesper Dangaard Brouer |
|
Accepted |
| [nf-next/nf_tables-experiments,-,1/2] nf_tables: Add support for changing users chain's name |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next/nf_tables-experiments,-,2/2] nf_tables: Add support for replacing a rule by another one. |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next/nf_tables-experiments,-,v2,1/4] nf_tables: Change chain's name to be fixed sized |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,2/4] nf_tables: Add missing policy for NFTA_CHAIN_USE |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,3/4] nf_tables: Add support for changing users chain's name |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,4/4] nf_tables: Add support for replacing a rule by another one. |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:master,10/20] net/netfilter/nf_conntrack_standalone.c:566:2: error: 'nf_ct_netfilter_header' undeclared |
2013-01-23 |
Pablo Neira |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,1/4] nf_tables: Change NFTA_NAT_ attributes to better semantic significance |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,2/4] nf_tables: Split IPv4 NAT into NAT expression and IPv4 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,3/4] nf_tables: Add support for IPv6 NAT expression |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |