| [1/3] netfilter: ctnetlink: attach expectations to unconfirmed conntracks |
2013-05-23 |
Pablo Neira |
|
Under Review |
| [v2] xtables: Add locking to prevent concurrent instances |
2013-05-22 |
Phil Oester |
|
Under Review |
| [v2,nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-22 |
Joe Perches |
|
Under Review |
| [v2,nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-22 |
Eric Dumazet |
|
Under Review |
| xtables: Add locking to prevent concurrent instances |
2013-05-22 |
Phil Oester |
|
Under Review |
| [2/2] ipvs: Fix reuse connection if real server is dead |
2013-05-22 |
Simon Horman |
|
Under Review |
| [1/2] ipvs: change type of netns_ipvs->sysctl_sync_qlen_max |
2013-05-22 |
Simon Horman |
|
Under Review |
| [GIT,PULL,nf-next] IPVS for v3.11 |
2013-05-22 |
Simon Horman |
|
Under Review |
| [nftables] rule: display rule handle as comment |
2013-05-20 |
Eric Leblond |
|
Under Review |
| iptables: use autoconf to process .in man pages |
2013-05-20 |
Andy Spencer |
|
Under Review |
| [iptables-nftables,2/6] xtables: destroy list iterator relevantly |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| [libnftables,7/7] chain: handle attribute is relevant if only there is no name to use |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| [libnftables,6/7] expr: add support for expr list and capability to add it into a rule |
2013-05-14 |
Tomasz Bursztyka |
|
Under Review |
| Some netfilter compile errors when CONFIG_IPV6=m |
2013-05-14 |
Amerigo Wang |
|
Under Review |
| [nf-next] netfilter: conntrack: remove the central spinlock |
2013-05-09 |
Eric Dumazet |
|
Under Review |
| bridge: fix IP DNAT handling when packet is sent back via same bport |
2013-04-18 |
Florian Westphal |
|
Under Review |
| iptables manpage: Update LOG target |
2013-04-10 |
Mart Frauenlob |
|
Under Review |
| iptables manpage: Update MASQUERADE target |
2013-04-10 |
Mart Frauenlob |
|
Under Review |
| [iptables,v2] configure: display summary at end of configure |
2013-01-27 |
Eric Leblond |
|
Under Review |
| net: ICMPv6 packets transmitted on wrong interface if nfmark is mangled |
2012-12-03 |
Dries De Winter |
|
Under Review |
| netfilter: xt_osf: fix inversion |
2013-03-24 |
Pablo Neira |
|
Under Review |
| [5/5] libxtables: constify xtables_option_[mt]fcall argument |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [4/5] build: do not dereference symlinks on installation |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [3/5] iptables: fall back to using save function when print is not defined |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [2/5] extensions: eui64: set userspacesize=0 |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [1/5] libxtables: centralize checking for a .save function |
2013-03-05 |
Jan Engelhardt |
|
Under Review |
| [2/2] netfilter: nf_tables: don't skip inactive rules and dump generation mask |
2013-02-28 |
Pablo Neira |
|
Under Review |
| [RFC] Multi-namespace support (Request for comments) |
2012-10-14 |
Ansis Atteka |
|
Under Review |
| [1/2] netfilter: nf_tables: rework atomic transaction updates |
2013-03-28 |
Pablo Neira |
|
Under Review |
| [2/2] netfilter: nf_tables: set NLM_F_DUMP_INTR if dump is invalid |
2013-03-28 |
Pablo Neira |
|
Under Review |
| [01/13] doc: add package version to all manpages |
2012-12-26 |
Pablo Neira |
|
Under Review |
| [10/13] iptables: implement --line-numbers for iptables -S |
2012-12-25 |
Jan Engelhardt |
|
Under Review |
| [01/13] doc: add package version to all manpages |
2012-12-25 |
Jan Engelhardt |
|
Under Review |
| [08/17] iptables-restore: kill unused -b option |
2012-09-30 |
Jan Engelhardt |
|
Under Review |
| [06/17] iptables: fix order of internal commands list |
2012-09-30 |
Jan Engelhardt |
|
Under Review |
| netfilter: remove pointless conditional before kfree_skb() |
2012-08-28 |
Wei Yongjun |
|
Under Review |
| death_by_event() does not check IPS_DYING_BIT - race condition against ctnetlink_del_conntrack |
2012-08-28 |
Pablo Neira |
|
Under Review |
| IPv6 fragment packet handling |
2012-06-28 |
Kristof Provost |
|
Under Review |
| [RFC] netfilter: xt_TEE: IPv4 Don't Fragmet options |
2012-06-14 |
Hans Schillstrom |
|
Under Review |
| Documentation and a build fix |
2012-12-25 |
Jan Engelhardt |
|
Accepted |
| [11/11] db: db ring has precedence over backlog. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [10/11] db: disable SIGHUP if ring buffer is used. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [09/11] db: add ring buffer for DB query |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [08/11] db: use offset instead of direct pointer. |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [07/11] db: suppress field in db structure |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [06/11] db: store data in memory during database downtime |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [05/11] sqlite3: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [04/11] mysql: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [03/11] postgresql: add sanity checking |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [02/11] Fix automagic support of dbi, pcap and sqlite3 |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [01/11] ulogd: display stack during configuration |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [1/2] ulogd: Perform nice() before giving up root |
2013-05-11 |
Chris Boot |
|
Accepted |
| [v2] ulogd: Implement PID file writing |
2013-05-12 |
Chris Boot |
|
Accepted |
| [next,v2] libnetfilter_conntrack: don't ignore ATTR_CONNLABELS |
2013-05-17 |
Afschin Hormozdiary |
|
Accepted |
| [Ulogd] Improve pid file handling. |
2013-05-19 |
Eric Leblond |
|
Accepted |
| [v2] ipv4: netfilter: always let NUL terminated string ended by '\0' |
2013-05-23 |
Chen Gang |
|
Accepted |
| [ipvs-next,v3,2/2] ipvs: use cond_resched_rcu() helper when walking connections |
2013-05-22 |
Simon Horman |
|
Accepted |
| [ipvs-next,v3,1/2] sched: add cond_resched_rcu() helper |
2013-05-22 |
Simon Horman |
|
Accepted |
| [libnftables,v2] examples: XML parsing examples |
2013-05-22 |
Arturo Borrero |
|
Accepted |
| [libnftables,v4] src: support for XML parsing |
2013-05-14 |
Arturo Borrero |
|
Accepted |
| [v2] netfilter: add and use nf_ipv6_ops in xt_addrtype |
2013-05-17 |
Florian Westphal |
|
Accepted |
| [3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: don't panic on error while walking through the init path |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [resend,nf-next] netfilter: xt_CT: optimize XT_CT_NOTRACK |
2013-05-22 |
Eric Dumazet |
|
Accepted |
| [net-next] netfilter: xt_socket: use IP early demux |
2013-05-22 |
Eric Dumazet |
|
Accepted |
| bridge: netfilter: using strlcpy() instead of strncpy() |
2013-05-17 |
Chen Gang |
|
Accepted |
| cli: complete basic functionality of the interactive mode |
2013-05-14 |
Pablo Neira |
|
Accepted |
| doc: mention SNAT in INPUT chain since kernel 2.6.36 |
2013-05-19 |
Michael Roth |
|
Accepted |
| netfilter: log: netns NULL ptr bug when calling from conntrack. |
2013-05-15 |
Hans Schillstrom |
|
Accepted |
| [4/4] netfilter: xt_TCPOPTSTRIP: fix possible mangling beyond packet boundary |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: log: netns NULL ptr bug when calling from conntrack |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: update MAINTAINERS file |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [1/4] netfilter: nf_{log,queue}: fix compilation without CONFIG_PROC_FS |
2013-05-16 |
Pablo Neira |
|
Accepted |
| [0/4] Netfilter fixes for net (3.10-rc1) |
2013-05-16 |
Pablo Neira |
|
Accepted |
| libipset.pc must be installed via 'make install' |
2013-05-10 |
Eric Leblond |
|
Accepted |
| [iptables-nftables,3/6] xtables: policy can be changed only on builtin chain |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,1/6] xtables: initialize xtables defaults even on listing rules |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,5/7] map: fix nft_rule_expr_build_payload export |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,4/7] expr: remove inconsistent and non implemented function |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,3/7] rule: declare nft_rule_list structure at a proper place |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,2/7] build: add an autogen.sh script |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,1/7] git: add a .gitignore file |
2013-05-14 |
Tomasz Bursztyka |
|
Accepted |
| [Ulog2] Exec libmnl config check only if nfacct is enabled |
2013-04-05 |
Victor Julien |
|
Accepted |
| [-stable-3.8.y,9/9] netfilter: ip6t_NPT: Fix translation for non-multiple of 32 prefix lengths |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,8/9] netfilter: xt_rpfilter: skip locally generated broadcast/multicast, too |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,2/9] netfilter: nf_nat: fix race when unloading protocol modules |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,1/9] ipvs: ip_vs_sip_fill_param() BUG: bad check of return value |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,7/9] netfilter: ctnetlink: don't permit ct creation with random tuple |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,6/9] netfilter: nf_ct_helper: don't discard helper if it is actually the same |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,5/9] netfilter: ipset: "Directory not empty" error message |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,4/9] netfilter: nf_ct_sip: don't drop packets with offsets pointing outside the packet |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [-stable-3.8.y,3/9] netfilter: ipset: list:set: fix reference counter update |
2013-05-06 |
Pablo Neira |
|
Accepted |
| [nfacct] Improve 'flush' man page entry |
2013-05-08 |
Thomas Jarosch |
|
Accepted |
| libxtables: fix parsing of dotted network mask format |
2013-05-08 |
Pablo Neira |
|
Accepted |
| ipvs: ip_vs_sip_fill_param() BUG: bad check of return value |
2013-04-27 |
Pablo Neira |
|
Accepted |
| net/netfilter/nf_log.c:373:38: error: 'struct netns_nf' has no member named 'proc_netfilter' |
2013-04-30 |
Pablo Neira |
|
Accepted |
| [libnftables,1/2] src: delete exporting internal flags in XML |
2013-04-29 |
Arturo Borrero |
|
Accepted |
| [2/4] examples/nf-queue: handle recv error, use larger buffer |
2013-04-26 |
Florian Westphal |
|
Accepted |
| [3/4] src: add new GSO handling capabilities |
2013-04-26 |
Florian Westphal |
|
Accepted |
| [4/4] examples/nf-queue: receive large gso packets |
2013-04-26 |
Florian Westphal |
|
Accepted |