Show patches with: Archived = No       |   21008 patches
« 1 2 3 4210 211 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net-next,v2,3/3] net/sched: act_ct: fix clobber qdisc_skb_cb in defrag [net-next,v2,1/3] net: ip_fragment: Add ip_defrag_ignore_cb support - 1 - - --- 2020-07-07 wenxu New
[net-next,v2,2/3] netfilter: nf_conntrack_reasm: make nf_ct_frag6_gather elide the CB clear [net-next,v2,1/3] net: ip_fragment: Add ip_defrag_ignore_cb support - 1 - - --- 2020-07-07 wenxu New
[net-next,v2,1/3] net: ip_fragment: Add ip_defrag_ignore_cb support [net-next,v2,1/3] net: ip_fragment: Add ip_defrag_ignore_cb support - - - - --- 2020-07-07 wenxu New
[nf-next] netfilter: nf_tables: reject unsupported chain flags [nf-next] netfilter: nf_tables: reject unsupported chain flags - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nft,v2,2/2] src: support for implicit chain bindings [nft,v2,1/2] datatype: convert chain name from gmp value to string - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nft,v2,1/2] datatype: convert chain name from gmp value to string [nft,v2,1/2] datatype: convert chain name from gmp value to string - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,6/6] netfilter: nf_tables: add NFT_CHAIN_BINDING [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,5/6] netfilter: nf_tables: add nft_chain_add() [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,4/6] netfilter: nf_tables: expose enum nft_chain_flags through UAPI [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,3/6] netfilter: nf_tables: add NFTA_VERDICT_CHAIN_ID attribute [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,2/6] netfilter: nf_tables: add NFTA_RULE_CHAIN_ID attribute [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
[nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute [nf-next,v3,1/6] netfilter: nf_tables: add NFTA_CHAIN_ID attribute - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Under Review
audit: use the proper gfp flags in the audit_log_nfcfg() calls audit: use the proper gfp flags in the audit_log_nfcfg() calls - 1 1 - --- 2020-07-03 Paul Moore pablo Under Review
netfilter/ipvs: queue delayed work to expire no destination connections if expire_nodest_conn=1 netfilter/ipvs: queue delayed work to expire no destination connections if expire_nodest_conn=1 - - - - --- 2020-07-01 Andrew Sy Kim pablo Under Review
[v3,11/20] netfilter: nft_set_rbtree: Use sequence counter with associated rwlock Untitled series #178020 - - - - --- 2020-06-30 Ahmed S. Darwish pablo Under Review
[v3,10/20] netfilter: conntrack: Use sequence counter with associated spinlock Untitled series #178020 - - - - --- 2020-06-30 Ahmed S. Darwish pablo Under Review
[net/ipv6] Remove redundant null check in rt_mt6 [net/ipv6] Remove redundant null check in rt_mt6 - - - - --- 2020-06-25 Gaurav Singh pablo Under Review
[net/ipv6] Remove redundant null check in hbh_mt6 [net/ipv6] Remove redundant null check in hbh_mt6 - - - - --- 2020-06-25 Gaurav Singh pablo Under Review
[net/ipv6] remove redundant null check in frag_mt6 [net/ipv6] remove redundant null check in frag_mt6 - - - - --- 2020-06-25 Gaurav Singh pablo Under Review
[net/ipv6] Remove redundant null check in ah_mt6 [net/ipv6] Remove redundant null check in ah_mt6 - - - - --- 2020-06-25 Gaurav Singh pablo Under Review
ebtables-nft: introduce '-m <match_ext>' option ebtables-nft: introduce '-m <match_ext>' option - - - - --- 2020-06-19 Eugene Crosser pablo Under Review
[v4.10] netfilter: nf_conntrack_h323: lost .data_len definition for Q.931/ipv6 [v4.10] netfilter: nf_conntrack_h323: lost .data_len definition for Q.931/ipv6 - 1 1 - --- 2020-06-09 Vasily Averin pablo Under Review
[nf-next,2/2] netfilter: nft: add support of reject verdict from ingress [nf-next,1/2] netfilter: nft: refactor reject verdict source code - - - - --- 2020-06-08 Laura García Liébana pablo Under Review
[nf-next,1/2] netfilter: nft: refactor reject verdict source code [nf-next,1/2] netfilter: nft: refactor reject verdict source code - - - - --- 2020-06-08 Laura García Liébana pablo Under Review
[RFC,libnetfilter_queue,1/1] examples: Use sendmsg() to avoid packet copy in nfq_nlmsg_verdict_pu... [RFC,libnetfilter_queue,1/1] examples: Use sendmsg() to avoid packet copy in nfq_nlmsg_verdict_pu... - - - - --- 2020-06-03 Duncan Roe pablo Under Review
[1/1,v2] netfilter: Restore the CT mark in Flow Offload [1/1,v2] netfilter: Restore the CT mark in Flow Offload - - - - --- 2020-06-01 Sven Auhagen pablo Under Review
[1/1] Remove flow offload when ct is removed from userspace [1/1] Remove flow offload when ct is removed from userspace - - - - --- 2020-05-23 Sven Auhagen pablo Under Review
[libnetfilter_queue,1/1] example: nf-queue: use pkt_buff (updated) pktbuff API updates - - - - --- 2020-05-14 Duncan Roe pablo Under Review
[libnetfilter_queue,1/1] src & doc: Rename pktb_alloc2 to pktb_setup [libnetfilter_queue,1/1] src & doc: Rename pktb_alloc2 to pktb_setup - - - - --- 2020-05-13 Duncan Roe pablo Under Review
[iptables,3/3] libxt_SECMARK: Fix for failing target comparison Fix SECMARK target comparison - - - - --- 2020-05-12 Phil Sutter pablo Under Review
[iptables,2/3] libxtables: Introduce 'matchmask' target callback Fix SECMARK target comparison - - - - --- 2020-05-12 Phil Sutter pablo Under Review
[iptables,1/3] xshared: Share make_delete_mask() between ip{,6}tables Fix SECMARK target comparison - - - - --- 2020-05-12 Phil Sutter pablo Under Review
[libnetfilter_queue,1/1] src: add pktb_alloc2() and pktb_head_size() pktb_alloc2() - - - - --- 2020-05-10 Duncan Roe pablo Under Review
[libnetfilter_queue,2/2] pktbuff: add pktb_head_alloc(), pktb_setup() and pktb_head_size() [libnetfilter_queue,1/2] pktbuff: add __pktb_setup() - - - - --- 2020-05-09 Pablo Neira Ayuso pablo Under Review
[libnetfilter_queue,1/2] pktbuff: add __pktb_setup() [libnetfilter_queue,1/2] pktbuff: add __pktb_setup() - - - - --- 2020-05-09 Pablo Neira Ayuso pablo Under Review
[RFC] netlink: do not alter set element width [RFC] netlink: do not alter set element width - - - - --- 2020-05-05 michael-dev pablo Under Review
[RFC] concat with dynamically sized fields like vlan id [RFC] concat with dynamically sized fields like vlan id - - - - --- 2020-05-01 michael-dev pablo Under Review
[nft,2/2] expr: add jool expressions [libnftnl,1/2] expr: add jool support - - - - --- 2020-04-07 Alberto Leiva pablo Under Review
[libnftnl,1/2] expr: add jool support [libnftnl,1/2] expr: add jool support - - - - --- 2020-04-07 Alberto Leiva pablo Under Review
[iptables] avoid raw sockets which requires CAP_NET_RAW [iptables] avoid raw sockets which requires CAP_NET_RAW - - - - --- 2020-03-29 Youfu Zhang pablo Under Review
[NOMERGE,iptables,2/2] man: xt_set: Describe --update-counters-first flag man: xt_set: Describe existing behaviour and new counters update flag - - - - --- 2020-03-22 Stefano Brivio kadlec Under Review
[NOMERGE,iptables,1/2] man: xt_set: Reflect current behaviour of counter update and match flags man: xt_set: Describe existing behaviour and new counters update flag - - - - --- 2020-03-22 Stefano Brivio kadlec Under Review
ipset: Update byte and packet counters regardless of whether they match ipset: Update byte and packet counters regardless of whether they match - 1 - - --- 2020-02-24 Stefano Brivio kadlec Under Review
[libnftnl,2/2] utils: add NFCT_FILTER_DUMP_TUPLE example [libnftnl,1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API - - - - --- 2020-01-29 Romain Bellan pablo Under Review
[libnftnl,1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API [libnftnl,1/2] Adding NFCT_FILTER_DUMP_TUPLE in filter_dump_attr, using kernel CTA_FILTER API - - - - --- 2020-01-29 Romain Bellan pablo Under Review
[nft] doc: nft.8: Add BUGS section about command line parsing [nft] doc: nft.8: Add BUGS section about command line parsing - - - - --- 2019-12-11 Phil Sutter pablo Under Review
[nft,v3] src: Support maps as left side expressions [nft,v3] src: Support maps as left side expressions - - - - --- 2019-11-30 Phil Sutter pablo Under Review
[nf-next,v2,4/4] netfilter: nft_tunnel: add nft_tunnel_get_offload support netfilter: nft_tunnel: support tunnel match expr offload - - - - --- 2019-11-16 wenxu pablo Under Review
[nf-next,v2,3/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV6_SRC/DST match netfilter: nft_tunnel: support tunnel match expr offload - - - - --- 2019-11-16 wenxu pablo Under Review
[nf-next,v2,2/4] netfilter: nft_tunnel: support NFT_TUNNEL_IPV4_SRC/DST match netfilter: nft_tunnel: support tunnel match expr offload - - - - --- 2019-11-16 wenxu pablo Under Review
[nf-next,v2,1/4] netfilter: nft_tunnel: add nft_tunnel_mode_match function netfilter: nft_tunnel: support tunnel match expr offload - - - - --- 2019-11-16 wenxu pablo Under Review
netfilter: nf_conntrack_sip: fix ct_sip_walk_headers netfilter: nf_conntrack_sip: fix ct_sip_walk_headers - - - - --- 2019-06-05 Igor Ryzhov pablo Under Review
[nft] segtree: zap element statement when decomposing interval [nft] segtree: zap element statement when decomposing interval - 1 - - --- 2020-07-06 Pablo Neira Ayuso pablo Accepted
[iptables] tests: shell: Add help output to run-tests.sh [iptables] tests: shell: Add help output to run-tests.sh - - - - --- 2020-07-06 Phil Sutter pablo Accepted
[2/2] netfilter: conntrack: refetch conntrack after nf_conntrack_update() [1/2] netfilter: ipset: call ip_set_free() instead of kfree() - 1 - - --- 2020-07-04 Pablo Neira Ayuso pablo Accepted
[1/2] netfilter: ipset: call ip_set_free() instead of kfree() [1/2] netfilter: ipset: call ip_set_free() instead of kfree() - 2 - - --- 2020-07-04 Pablo Neira Ayuso pablo Accepted
[0/2] Netfilter fixes for net - - - - --- 2020-07-04 Pablo Neira Ayuso pablo Accepted
[nft] src: Allow for empty set variable definition [nft] src: Allow for empty set variable definition - - - - --- 2020-07-03 Pablo Neira Ayuso pablo Accepted
[net-next] ipvs: allow connection reuse for unconfirmed conntrack [net-next] ipvs: allow connection reuse for unconfirmed conntrack - 1 1 - --- 2020-07-01 Julian Anastasov pablo Accepted
[nf] netfilter: nf_conntrack: refetch conntrack after nf_conntrack_update() [nf] netfilter: nf_conntrack: refetch conntrack after nf_conntrack_update() - 1 - - --- 2020-07-01 Pablo Neira Ayuso pablo Accepted
[net] netfilter: ipset: call ip_set_free() instead of kfree() [net] netfilter: ipset: call ip_set_free() instead of kfree() - 2 - - --- 2020-06-30 Eric Dumazet pablo Accepted
[7/7] selftests: netfilter: add test case for conntrack helper assignment [1/7] netfilter: ipset: fix unaligned atomic access - - - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[6/7] netfilter: ip6tables: Add a .pre_exit hook in all ip6table_foo.c. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[5/7] netfilter: ip6tables: Split ip6t_unregister_table() into pre_exit and exit helpers. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[4/7] netfilter: iptables: Add a .pre_exit hook in all iptable_foo.c. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[3/7] netfilter: iptables: Split ipt_unregister_table() into pre_exit and exit helpers. [1/7] netfilter: ipset: fix unaligned atomic access - 1 - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[2/7] netfilter: Add MODULE_DESCRIPTION entries to kernel modules [1/7] netfilter: ipset: fix unaligned atomic access - - - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[1/7] netfilter: ipset: fix unaligned atomic access [1/7] netfilter: ipset: fix unaligned atomic access 1 1 - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[0/7] Netfilter fixes for net - - - - --- 2020-06-25 Pablo Neira Ayuso pablo Accepted
[libnf_ct,v2,9/9] Fix buffer overflows in __snprintf_protoinfo* like in *2str fns [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,8/9] Fix buffer overflow in protocol related snprintf functions [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,7/9] Move icmp request>reply type mapping to common file [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,6/9] Fix buffer overflow on invalid icmp type in setters [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,5/9] Add ARRAY_SIZE() macro [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,4/9] Fix incorrect snprintf size calculation [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,3/9] Replace strncpy with snprintf to improve null byte handling [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,2/9] Fix nfexp_snprintf return value docs [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[libnf_ct,v2,1/9] Handle negative snprintf return values properly [libnf_ct,v2,1/9] Handle negative snprintf return values properly - - - - --- 2020-06-24 Daniel Gröber pablo Accepted
[iptables] libxtables/xtables.c - compiler warning fixes for NO_SHARED_LIBS [iptables] libxtables/xtables.c - compiler warning fixes for NO_SHARED_LIBS - - - - --- 2020-06-23 Maciej Żenczykowski pablo Accepted
[v1,4/4] netfilter: Add a .pre_exit hook in all ip6table_foo.c. iptables: Module unload causing NULL pointer reference. - - - - --- 2020-06-22 David Wilder pablo Accepted
[v1,3/4] netfilter: Split ip6t_unregister_table() into pre_exit and exit helpers. iptables: Module unload causing NULL pointer reference. - - - - --- 2020-06-22 David Wilder pablo Accepted
[v1,2/4] netfilter: Add a .pre_exit hook in all iptable_foo.c. iptables: Module unload causing NULL pointer reference. - - - - --- 2020-06-22 David Wilder pablo Accepted
[v1,1/4] netfilter: Split ipt_unregister_table() into pre_exit and exit helpers. iptables: Module unload causing NULL pointer reference. - - - - --- 2020-06-22 David Wilder pablo Accepted
[nft] doc: Document notrack statement [nft] doc: Document notrack statement - - 1 - --- 2020-06-22 Phil Sutter pablo Accepted
[nft] doc: revisit meta/rt primary expressions and ct statement [nft] doc: revisit meta/rt primary expressions and ct statement - - - - --- 2020-06-22 Florian Westphal pablo Accepted
[nf,1/1] selftests: netfilter: add test case for conntrack helper assignment [nf,1/1] selftests: netfilter: add test case for conntrack helper assignment - - - - --- 2020-06-22 Florian Westphal pablo Accepted
[net-next] ipvs: register hooks only with services [net-next] ipvs: register hooks only with services - - 1 - --- 2020-06-21 Julian Anastasov pablo Accepted
[v3] netfilter: Add MODULE_DESCRIPTION entries to kernel modules [v3] netfilter: Add MODULE_DESCRIPTION entries to kernel modules - - - - --- 2020-06-21 Rob Gill pablo Accepted
[net-next] ipvs: avoid expiring many connections from timer [net-next] ipvs: avoid expiring many connections from timer - - 1 - --- 2020-06-20 Julian Anastasov pablo Accepted
[iptables] xtables-translate: Use proper clear_cs function [iptables] xtables-translate: Use proper clear_cs function - - - - --- 2020-06-16 Phil Sutter pablo Accepted
[iptables] xtables-translate: don't fail if help was requested [iptables] xtables-translate: don't fail if help was requested 1 1 - - --- 2020-06-16 Arturo Borrero Gonzalez pablo Accepted
[4/4] netfilter: nf_tables: hook list memleak in flowtable deletion [1/4] netfilter: nft_set_rbtree: Don't account for expired elements on insertion - 1 - - --- 2020-06-14 Pablo Neira Ayuso pablo Accepted
[3/4] netfilter: ctnetlink: memleak in filter initialization error path [1/4] netfilter: nft_set_rbtree: Don't account for expired elements on insertion - 1 - - --- 2020-06-14 Pablo Neira Ayuso pablo Accepted
[2/4] netfilter: nft_set_pipapo: Disable preemption before getting per-CPU pointer [1/4] netfilter: nft_set_rbtree: Don't account for expired elements on insertion - 1 - - --- 2020-06-14 Pablo Neira Ayuso pablo Accepted
[1/4] netfilter: nft_set_rbtree: Don't account for expired elements on insertion [1/4] netfilter: nft_set_rbtree: Don't account for expired elements on insertion 1 2 - - --- 2020-06-14 Pablo Neira Ayuso pablo Accepted
[0/4] Netfilter fixes for net - - - - --- 2020-06-14 Pablo Neira Ayuso pablo Accepted
[nf-next] nft_set_pipapo: Drop useless assignment of scratch map index on insert [nf-next] nft_set_pipapo: Drop useless assignment of scratch map index on insert - 1 - - --- 2020-06-14 Stefano Brivio pablo Accepted
[nft] tests: Run in separate network namespace, don't break connectivity [nft] tests: Run in separate network namespace, don't break connectivity - - - - --- 2020-06-14 Stefano Brivio pablo Accepted
[nft] tests: shell: Allow wrappers to be passed as nft command [nft] tests: shell: Allow wrappers to be passed as nft command - - - - --- 2020-06-14 Stefano Brivio pablo Accepted
[nf,v2] netfilter: nf_tables: hook list memleak in flowtable deletion [nf,v2] netfilter: nf_tables: hook list memleak in flowtable deletion - 1 - - --- 2020-06-12 Pablo Neira Ayuso pablo Accepted
« 1 2 3 4210 211 »