| [7/7] netfilter: xt_CT: allow to attach timeout policy + glue code |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [05/12] netfilter: ebt_ulog: remove unnecessary spin lock protection |
2013-03-25 |
Pablo Neira |
|
Accepted |
| [02/23] netfilter: ipset: expose userspace-relevant parts in ip_set.h |
2012-03-08 |
Pablo Neira |
|
Accepted |
| [2/5] netfilter: nfnetlink_queue: fix error return code in nfnetlink_queue_init() |
2013-04-04 |
Pablo Neira |
|
Accepted |
| [03/23] netfilter: ipset: Log warning when a hash type of set gets full |
2012-03-08 |
Pablo Neira |
|
Accepted |
| [1/5] netfilter: reset nf_trace in nf_reset |
2013-04-04 |
Pablo Neira |
|
Accepted |
| [04/23] netfilter: ipset: Exceptions support added to hash:*net* types |
2012-03-08 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: nf_defrag_ipv6: solve section mismatch in nf_conntrack_reasm |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [5/7] netfilter: add cttimeout infrastructure for fine timeout tuning |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [07/12] ipvs: fix hashing in ip_vs_svc_hashkey |
2013-03-25 |
Pablo Neira |
|
Accepted |
| [01/23] netfilter: ipset: use NFPROTO_ constants |
2012-03-08 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: {ipt,ebt}_ULOG: rise warning on deprecation |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [4/7] netfilter: nf_conntrack: pass timeout array to l4->new and l4->packet |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [2/2] Revert "build: resolve link failure for ip6t_NETMAP" |
2013-03-19 |
Pablo Neira |
|
Accepted |
| [1/4] Netfilter: Merge ipt_LOG and ip6_LOG into xt_LOG |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [03/10] ipvs: fix the remaining sparse warnings in ip_vs_ctl.c |
2013-04-25 |
Pablo Neira |
|
Accepted |
| [1/7] netfilter: nf_ct_udp[lite]: convert UDP[lite] timeouts to array |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [1/2] libip6t_NETMAP: Use xtables_ip6mask_to_cidr and get rid of libip6tc dependency |
2013-03-19 |
Pablo Neira |
|
Accepted |
| netfilter: ctnetlink: fix race between delete and timeout expiration |
2012-03-16 |
Pablo Neira |
|
Accepted |
| [02/10] ipvs: fix sparse warnings for ip_vs_conn listing |
2013-04-25 |
Pablo Neira |
|
Accepted |
| [2/7] netfilter: nf_ct_tcp: move retransmission and unacknowledged timeout to array |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: x_tables: print correct hook names for ARP |
2013-01-14 |
Pablo Neira |
|
Accepted |
| [2/6] netfilter: ctnetlink: remove incorrect spin_[un]lock_bh on NAT module autoload |
2012-03-06 |
Pablo Neira |
|
Awaiting Upstream |
| [1/3] netfilter: xt_CT: fix unset return value if conntrack zone are disabled |
2013-01-14 |
Pablo Neira |
|
Accepted |
| [6/6] netfilter: nf_conntrack: fix early_drop with reliable event delivery |
2012-03-06 |
Pablo Neira |
|
Awaiting Upstream |
| [01/19] netfilter: move nf_conntrack initialize out of pernet operations |
2013-01-10 |
Pablo Neira |
|
Accepted |
| netfilter: bridge: fix module autoload in compat case |
2012-03-01 |
Pablo Neira |
|
Accepted |
| [7/7] netfilter: remove unused "config IP_NF_QUEUE" |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [3/5] netfilter: xt_CT: missing rcu_read_lock section in timeout assignment |
2012-03-23 |
Pablo Neira |
|
Accepted |
| [3/7] netfilter: nf_tables: remove hook definitions from struct nft_af_info |
2013-01-10 |
Pablo Neira |
|
Not Applicable |
| [5/6] bridge: netfilter: don't call iptables on vlan packets if sysctl is off |
2012-03-06 |
Pablo Neira |
|
Awaiting Upstream |
| [6/7] netfilter: nf_tables: support 32bits-64bits x_tables compat |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [08/25] ipvs: WRR scheduler does not need GFP_ATOMIC allocation |
2012-05-08 |
Pablo Neira |
|
Superseded |
| [5/7] netfilter: nf_tables: x_tables support as a compile time option |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [3/6] netfilter: ctnetlink: use GFP_ATOMIC in all allocations |
2012-03-06 |
Pablo Neira |
|
Awaiting Upstream |
| [4/7] netfilter: nf_tables: move specific layer 3 compat code to nf_tables_ipv[4|6] |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [1/6] netfilter: ebtables: fix wrong name length while copying to user-space |
2012-03-06 |
Pablo Neira |
|
Awaiting Upstream |
| [2/7] netfilter: nf_tables: move filter chain definition to layer 3 modules |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [6/7] netfilter: nf_ct_ext: add timeout extension |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [1/7] netfilter: nf_tables: nft_compat: release cached matches/targets |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [7/7] netfilter: xt_CT: allow to attach timeout policy + glue code |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [19/19] netfilter: gre: fix resource leak when unregister gre proto |
2013-01-05 |
Pablo Neira |
|
Not Applicable |
| [4/7] netfilter: nf_conntrack: pass timeout array to l4->new and l4->packet |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [01/13] doc: add package version to all manpages |
2012-12-26 |
Pablo Neira |
|
Under Review |
| [5/7] netfilter: add cttimeout infrastructure for fine timeout tuning |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [01/10] ipvs: properly dereference dest_dst in ip_vs_forget_dev |
2013-04-25 |
Pablo Neira |
|
Accepted |
| [1/7] netfilter: nf_ct_udp[lite]: convert UDP[lite] timeouts to array |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [6/7] ipvs: remove extra rcu lock |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [2/7] netfilter: nf_ct_tcp: move retransmission and unacknowledged timeout to array |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [5/7] ipvs: add backup_only flag to avoid loops |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [06/25] ipvs: LBLC scheduler does not need GFP_ATOMIC allocation on init |
2012-05-08 |
Pablo Neira |
|
Superseded |
| [7/7] netfilter: nf_tables: fix alias for xtables over nftables module |
2013-01-10 |
Pablo Neira |
|
Accepted |
| [3/7] netfilter: nf_ct_gre: add unsigned int array to define timeouts |
2012-02-29 |
Pablo Neira |
|
Superseded |
| [2/3] netfilter: don't panic on error while walking through the init path |
2013-05-23 |
Pablo Neira |
|
Accepted |
| [14/25] ipvs: fix ip_vs_try_bind_dest to rebind app and transmitter |
2012-05-08 |
Pablo Neira |
|
Superseded |
| [4/7] ipvs: fix sctp chunk length order |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [10/25] ipvs: SH scheduler does not need GFP_ATOMIC allocation |
2012-05-08 |
Pablo Neira |
|
Superseded |
| [2/3] netfilter: nf_conntrack: fix BUG_ON while removing nf_conntrack with netns |
2013-01-14 |
Pablo Neira |
|
Accepted |
| [6/8] ipvs: take care of return value from protocol init_netns |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [3/7] netfilter: ip6t_NPT: restrict to mangle table |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [7/8] ipvs: kernel oops - do_ip_vs_get_ctl |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [00/10] netfilter fixes for net-next |
2013-04-25 |
Pablo Neira |
|
Accepted |
| [1/4] netfilter: ipset: fix timeout value overflow bug |
2012-05-14 |
Pablo Neira |
|
Not Applicable |
| [2/7] netfilter: nfnetlink_queue: fix incorrect initialization of copy range field |
2013-03-20 |
Pablo Neira |
|
Accepted |
| [4/8] ipvs: reset ipvs pointer in netns |
2012-04-30 |
Pablo Neira |
|
Accepted |
| linux-next: Tree for Jan 2 (netfilter) |
2013-01-03 |
Pablo Neira |
|
Accepted |
| [2/8] ipvs: fix crash in ip_vs_control_net_cleanup on unload |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [1/7] netfilter: nf_conntrack: register pernet subsystem before register L4 proto |
2013-03-20 |
Pablo Neira |
|
Accepted |
| xt_LOG depends on ip6t_ext_hdr |
2012-04-07 |
Pablo Neira |
|
Accepted |
| [next] iptables: add xt_bpf match |
2013-01-21 |
Pablo Neira |
|
Accepted |
| [07/25] ipvs: DH scheduler does not need GFP_ATOMIC allocation |
2012-05-08 |
Pablo Neira |
|
Not Applicable |
| [2/3,-stable] netfilter: xt_CT: fix timeout setting with IPv6 |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [v2.1] conntrack: add /proc entry to disable helper by default |
2012-04-12 |
Pablo Neira |
|
Accepted |
| netfilter: ctnetlink: allow to dump expectation per master conntrack |
2013-03-18 |
Pablo Neira |
|
Accepted |
| [5/5] netfilter: nf_conntrack: fix incorrect logic in nf_conntrack_init_net |
2012-04-10 |
Pablo Neira |
|
Accepted |
| [1/5] netfilter: ipv4: propagate routing errors from ip_route_me_harder() |
2013-04-19 |
Pablo Neira |
|
Accepted |
| [01/25] netfilter: nf_ct_ecache: refactor notifier registration |
2012-05-08 |
Pablo Neira |
|
Not Applicable |
| [0/5] Netfilter updates for net-next |
2013-04-19 |
Pablo Neira |
|
Accepted |
| [0/2] Handle invalid packets in conntrack consistently |
2012-04-09 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: xt_rpfilter: skip locally generated broadcast/multicast, too |
2013-04-19 |
Pablo Neira |
|
Accepted |
| [2/5] netfilter: ip6_tables: ip6t_ext_hdr is now static inline |
2012-04-10 |
Pablo Neira |
|
Accepted |
| ipvs: ip_vs_sip_fill_param() BUG: bad check of return value |
2013-04-27 |
Pablo Neira |
|
Accepted |
| [4/5] netfilter: nf_ct_ipv4: packets with wrong ihl are invalid |
2012-04-10 |
Pablo Neira |
|
Accepted |
| net/netfilter/nf_log.c:373:38: error: 'struct netns_nf' has no member named 'proc_netfilter' |
2013-04-30 |
Pablo Neira |
|
Accepted |
| [1/5] netfilter: nf_ct_tcp: don't scale the size of the window up twice |
2012-04-10 |
Pablo Neira |
|
Accepted |
| [3/3] libxtables: add xtables_print_num |
2012-12-27 |
Pablo Neira |
|
Accepted |
| scheduling while atomic followed by oops upon conntrackd -c execution |
2012-03-04 |
Pablo Neira |
|
Accepted |
| [2/3] libxtables: add xtables_rule_matches_free |
2012-12-27 |
Pablo Neira |
|
Accepted |
| [1/3] netfilter: xt_LOG: don't use xchg() for simple assignment |
2012-04-03 |
Pablo Neira |
|
Accepted |
| [1/4] iptables: remove unused leftover definitions |
2012-12-27 |
Pablo Neira |
|
Accepted |
| [5/5] netfilter: nf_conntrack: permanently attach timeout policy to conntrack |
2012-03-23 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: nf_tables: partially rework commit and abort operation |
2013-02-28 |
Pablo Neira |
|
Accepted |
| [22/25] net: export sysctl_[r|w]mem_max symbols needed by ip_vs_sync |
2012-05-08 |
Pablo Neira |
|
Superseded |
| [4/4] netfilter: nf_tables: complete net namespace support |
2012-12-30 |
Pablo Neira |
|
Accepted |
| [5/8] ipvs: null check of net->ipvs in lblc(r) shedulers |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: nf_tables: validate hooks for compat match/target |
2012-12-30 |
Pablo Neira |
|
Accepted |
| [3/8] ipvs: add check in ftp for initialized core |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: nf_tables: nft_compat: private data of target and matches in contiguous area |
2012-12-30 |
Pablo Neira |
|
Accepted |
| [1/8] ipvs: Verify that IP_VS protocol has been registered |
2012-04-30 |
Pablo Neira |
|
Accepted |
| [1/4] netfilter: nf_tables: rise maximum number of expressions from 12 to 128 |
2012-12-30 |
Pablo Neira |
|
Accepted |