| [3/3] ipvs: remove extra rcu lock |
2013-03-19 |
Simon Horman |
|
Accepted |
| [2/3] ipvs: add backup_only flag to avoid loops |
2013-03-19 |
Simon Horman |
|
Accepted |
| [1/3] ipvs: fix sctp chunk length order |
2013-03-19 |
Simon Horman |
|
Accepted |
| [GIT,PULL,nf,v2] IPVS fixes for v3.9 |
2013-03-19 |
Simon Horman |
|
Accepted |
| [RFC,2/4] netfilter: ip6t_NPT: Use csum_partial(). |
2013-01-26 |
YOSHIFUJI Hideaki / 吉藤英明 |
|
Accepted |
| [2/2] netfilter: nfnetlink_queue: fix incorrect initialization of copy range field |
2013-03-14 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: nfnetlink_queue: use xor hash function to distribute instances |
2013-03-14 |
Pablo Neira |
|
Accepted |
| [net-next] ipv6: use ipv6_iface_scope_id in conntrack to return scope id |
2013-03-12 |
Hannes Frederic Sowa |
|
Accepted |
| [nftables,v2] nftables: fix compilation when nf-netlink is a module |
2013-03-06 |
Nicolas Dichtel |
|
Accepted |
| [iptables-nftables] iptables: fix compil when lib[mnl|nftables] are not in standard path |
2013-03-06 |
Nicolas Dichtel |
|
Accepted |
| [3/3] netfilter: nfnetlink: silence warning if CONFIG_PROVE_RCU isn't set |
2013-03-07 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: xt_AUDIT: only generate audit log when audit enabled |
2013-03-07 |
Pablo Neira |
|
Accepted |
| [1/3] netfilter: nf_ct_helper: Fix logging for dropped packets |
2013-03-07 |
Pablo Neira |
|
Accepted |
| [libmnl] doxygen: fix a variable name. |
2013-03-14 |
Eric Leblond |
|
Accepted |
| [3/6] netfilter: ctnetlink: dump entries from the dying and unconfirmed lists |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [2/6] netfilter: nf_conntrack: improve nf_conn object traceability |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [1/6] netfilter: ipset: Increase the number of maximal sets automatically |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [libnetfilter_conntrack] refresh our public copy of nfnetlink_conntrack.h |
2012-11-29 |
Pablo Neira |
|
Accepted |
| conntrack: add support to dump the dying and unconfirmed list via ctnetlink |
2012-11-29 |
Pablo Neira |
|
Accepted |
| [1/1] netfilter: ipset: Increase the number of maximal sets automatically |
2012-11-27 |
Jozsef Kadlecsik |
|
Accepted |
| netfilter: ipset: fix netiface set name overflow |
2012-11-27 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: ctnetlink: dump entries from the dying and unconfirmed lists |
2012-11-29 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: nf_conntrack: improve nf_conn object traceability |
2012-11-29 |
Pablo Neira |
|
Accepted |
| Handle routing changes in MASQUERADE target, v4 |
2012-11-30 |
Jozsef Kadlecsik |
|
Accepted |
| [next] netfilter: kill support for per-af queue backends |
2012-11-23 |
Florian Westphal |
|
Accepted |
| [1/1] conntrack: fix nfct_clone with certain attribute data types |
2012-11-27 |
Florian Westphal |
|
Accepted |
| examples: nf-queue: fix api usage |
2012-11-25 |
Florian Westphal |
|
Accepted |
| qa: fix handling of ATTR_HELPER_INFO attribute |
2012-11-19 |
Florian Westphal |
|
Accepted |
| [2/2] netfilter: cttimeout: fix buffer overflow |
2012-11-22 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: ipset: Fix range bug in hash:ip,port,net |
2012-11-22 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: ipset: fix netiface set name overflow |
2012-11-22 |
Florian Westphal |
|
Accepted |
| [3/3,-stable] netfilter: nf_conntrack: fix rt_gateway checks for H.323 helper |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [1/3,-stable] netfilter: xt_TEE: don't use destination address found in header |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [3/3,-stable] netfilter: nf_nat: don't check for port change on ICMP tuples |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/3,-stable] netfilter: Validate the sequence number of dataless ACK packets as well |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [1/3,-stable] netfilter: Mark SYN/ACK packets as invalid from original direction |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: ctnetlink: deliver labels to userspace via CTA_LABELS attribute |
2012-11-15 |
Florian Westphal |
|
Accepted |
| netfilter: ipset: Fix range bug in hash:ip,port,net |
2012-11-19 |
Jozsef Kadlecsik |
|
Accepted |
| [1/1] netfilter: cttimeout: fix buffer overflow |
2012-11-21 |
Florian Westphal |
|
Accepted |
| [4/4] netfilter: ipv6: only provide sk_bound_dev_if for link-local addr |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: nf_nat: use PTR_RET |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [1/4] ipvs: remove silly double assignment |
2012-11-16 |
Pablo Neira |
|
Accepted |
| Correct libxt_statistic save output |
2012-11-17 |
Tom Eastep |
|
Accepted |
| netfilter: nf_tables: add support for dormant tables |
2012-11-13 |
Pablo Neira |
|
Accepted |
| [nf-next:nf_tables-experiments] nf_tables: Fix up build issue on IPv6 NAT support |
2012-11-16 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,-,v2] expr: Add support for NAT expressions |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,4/4] nf_tables: Add support for IPv6 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,3/4] nf_tables: Add support for IPv6 NAT expression |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,2/4] nf_tables: Split IPv4 NAT into NAT expression and IPv4 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,1/4] nf_tables: Change NFTA_NAT_ attributes to better semantic significance |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [1/1] netfilter: ipv6: only provide sk_bound_dev_if for link-local addr |
2012-11-13 |
Florian Westphal |
|
Accepted |
| [1/2] netfilter: nf_tables: use 64-bits rule handle instead of 16-bits |
2012-11-01 |
Pablo Neira |
|
Accepted |
| netfilter: nf_tables: replace built-in tables by chain types |
2012-11-05 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: nf_tables: improve deletion performance |
2012-11-04 |
Pablo Neira |
|
Accepted |
| [next] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-10-30 |
Florian Westphal |
|
Accepted |
| [libnftables,-,v2,2/2] chain: Add support for NFTA_CHAIN_NEW_NAME attribute |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,-,v2,1/2] chain: Handle fixed sized name |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,4/4] nf_tables: Add support for replacing a rule by another one. |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,3/4] nf_tables: Add support for changing users chain's name |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,2/4] nf_tables: Add missing policy for NFTA_CHAIN_USE |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,1/4] nf_tables: Change chain's name to be fixed sized |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,5/5] iptables: nft: Add support for -R option |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,4/5] iptables: nft: Refactor __nft_rule_check to return rule handle when relevant |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,3/5] iptables: nft: Fix -D chain rulenum option |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,2/5] nft: Add support for chain rename options (-E) |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,1/5] headers: Make nf_tables.h up to date |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [3/3] netfilter: nf_defrag_ipv6: solve section mismatch in nf_conntrack_reasm |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: nf_nat: don't check for port change on ICMP tuples |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [1/3] netfilter: nf_conntrack: fix rt_gateway checks for H.323 helper |
2012-10-30 |
Pablo Neira |
|
Accepted |
| netfilter: use PTR_RET |
2012-10-29 |
Wu Fengguang |
|
Accepted |
| netfilter: ipv6: use PTR_RET |
2012-10-29 |
Wu Fengguang |
|
Accepted |
| netfilter: remove silly double assignment |
2012-10-26 |
Alan Cox |
|
Accepted |
| net/ipv6/netfilter: solve section mismatch in nf_conntrack_reasm |
2012-10-27 |
Hein Tibosch |
|
Accepted |
| nf_nat: dont check for port change on ICMP tuples |
2012-10-25 |
Ulrich Weber |
|
Accepted |
| ipvs: fix build errors related to config option combinations |
2012-10-23 |
Simon Horman |
|
Accepted |
| [GIT,PULL,nf-next] IPVS for 3.8 |
2012-10-23 |
Simon Horman |
|
Accepted |
| [nf-next,v2] ipvs: fix build errors related to config option combinations |
2012-10-22 |
Jesper Dangaard Brouer |
|
Accepted |
| [8/8] ipvs: fix build errors related to config option combinations |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [7/8] ipvs: SIP fragment handling |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [6/8] ipvs: API change to avoid rescan of IPv6 exthdr |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [5/8] ipvs: Complete IPv6 fragment handling for IPVS |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [4/8] ipvs: Fix faulty IPv6 extension header handling in IPVS |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [3/8] ipvs: Use config macro IS_ENABLED() |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [2/8] ipvs: IPv6 extend ICMPv6 handling for future types |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [1/8] ipvs: Trivial changes, use compressed IPv6 address in output |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [4/4] netfilter: xt_TEE: don't use destination address found in header |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: xt_nat: fix incorrect hooks for SNAT and DNAT targets |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: xt_CT: fix timeout setting with IPv6 |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [1/4] ipvs: initialize returned data in do_ip_vs_get_ctl |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [7/7] ipvs: SIP fragment handling |
2012-09-28 |
Simon Horman |
|
Accepted |
| [6/7] ipvs: API change to avoid rescan of IPv6 exthdr |
2012-09-28 |
Simon Horman |
|
Accepted |
| [5/7] ipvs: Complete IPv6 fragment handling for IPVS |
2012-09-28 |
Simon Horman |
|
Accepted |
| [4/7] ipvs: Fix faulty IPv6 extension header handling in IPVS |
2012-09-28 |
Simon Horman |
|
Accepted |
| [3/7] ipvs: Use config macro IS_ENABLED() |
2012-09-28 |
Simon Horman |
|
Accepted |
| [2/7] ipvs: IPv6 extend ICMPv6 handling for future types |
2012-09-28 |
Simon Horman |
|
Accepted |
| [1/7] ipvs: Trivial changes, use compressed IPv6 address in output |
2012-09-28 |
Simon Horman |
|
Accepted |
| [GIT,PULL,nf-next] IPVS for 3.7 #2 |
2012-09-28 |
Simon Horman |
|
Accepted |
| [net] netfilter: nf_conntrack: fix rt_gateway checks for h323 |
2012-10-09 |
Julian Anastasov |
|
Accepted |
| [2/2] build: resolve compile abort on RHEL5 #2 |
2012-10-13 |
Jan Engelhardt |
|
Accepted |