| [1/3] ipvs: fix oops in ip_vs_dst_event on rmmod |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: nf_conntrack: fix racy timer handling with reliable events |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: ipset: timeout fixing bug broke SET target special timeout value |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [1/1] netfilter: nfnetlink_log: fix NLA_PUT macro removal bug |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [1/6] netfilter: nf_ct_ipv4: packets with wrong ihl are invalid |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [2/6] netfilter: nf_nat_sip: fix incorrect handling of EBUSY for RTCP expectation |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [3/6] netfilter: nf_nat_sip: fix via header translation with multiple parameters |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [4/6] netfilter: nf_ct_expect: fix possible access to uninitialized timer |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [5/6] ipvs: fix oops on NAT reply in br_nf context |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [6/6] netfilter: xt_limit: have r->cost != 0 case work |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [1/3] ipvs: fix oops in ip_vs_dst_event on rmmod |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: nf_conntrack: fix racy timer handling with reliable events |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: ipset: timeout fixing bug broke SET target special timeout value |
2012-10-11 |
Pablo Neira |
|
Accepted |
| [1/1] netfilter: nfnetlink_log: fix NLA_PUT macro removal bug |
2012-10-11 |
Pablo Neira |
|
Accepted |
| libnetfilter_acct: ancient systems |
2012-10-13 |
Jan Engelhardt |
|
Accepted |
| [1/2] build: resolve compile abort on RHEL5 #1 |
2012-10-13 |
Jan Engelhardt |
|
Accepted |
| [2/2] build: resolve compile abort on RHEL5 #2 |
2012-10-13 |
Jan Engelhardt |
|
Accepted |
| [RFC] Multi-namespace support (Request for comments) |
2012-10-14 |
Ansis Atteka |
|
Under Review |
| [1/1] netfilter : fix hooks for SNAT and DNAT targets |
2012-10-15 |
Elison Niven |
|
Accepted |
| netfilter: xt_CT: fix timeout setting with IPv6 |
2012-10-15 |
Pablo Neira |
|
Accepted |
| TEE broken in 3.6 |
2012-10-16 |
Eric Dumazet |
|
Superseded |
| TEE broken in 3.6 |
2012-10-17 |
Pablo Neira |
|
Superseded |
| netfilter: xt_TEE: dont use destination address found in header |
2012-10-17 |
Eric Dumazet |
|
Accepted |
| [1/4] ipvs: initialize returned data in do_ip_vs_get_ctl |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: xt_CT: fix timeout setting with IPv6 |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: xt_nat: fix incorrect hooks for SNAT and DNAT targets |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [4/4] netfilter: xt_TEE: don't use destination address found in header |
2012-10-17 |
Pablo Neira |
|
Accepted |
| [RFC] netfilter: add connlabel conntrack extension |
2012-10-18 |
Florian Westphal |
|
Superseded |
| [nf-next] ipvs: fix build error when CONFIG_IP_VS_IPV6 is disabled |
2012-10-22 |
Jesper Dangaard Brouer |
|
Superseded |
| [nf-next,v2] ipvs: fix build errors related to config option combinations |
2012-10-22 |
Jesper Dangaard Brouer |
|
Accepted |
| [GIT,PULL,nf-next] IPVS for 3.8 |
2012-10-23 |
Simon Horman |
|
Accepted |
| ipvs: fix build errors related to config option combinations |
2012-10-23 |
Simon Horman |
|
Accepted |
| nf_nat: dont check for port change on ICMP tuples |
2012-10-25 |
Ulrich Weber |
|
Accepted |
| [1/8] ipvs: Trivial changes, use compressed IPv6 address in output |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [2/8] ipvs: IPv6 extend ICMPv6 handling for future types |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [3/8] ipvs: Use config macro IS_ENABLED() |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [4/8] ipvs: Fix faulty IPv6 extension header handling in IPVS |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [5/8] ipvs: Complete IPv6 fragment handling for IPVS |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [6/8] ipvs: API change to avoid rescan of IPv6 exthdr |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [7/8] ipvs: SIP fragment handling |
2012-10-26 |
Pablo Neira |
|
Accepted |
| [8/8] ipvs: fix build errors related to config option combinations |
2012-10-26 |
Pablo Neira |
|
Accepted |
| netfilter: remove silly double assignment |
2012-10-26 |
Alan Cox |
|
Accepted |
| net/ipv6/netfilter: solve section mismatch in nf_conntrack_reasm |
2012-10-27 |
Hein Tibosch |
|
Accepted |
| netfilter: use PTR_RET |
2012-10-29 |
Wu Fengguang |
|
Accepted |
| netfilter: ipv6: use PTR_RET |
2012-10-29 |
Wu Fengguang |
|
Accepted |
| [1/3] netfilter: nf_conntrack: fix rt_gateway checks for H.323 helper |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [2/3] netfilter: nf_nat: don't check for port change on ICMP tuples |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [3/3] netfilter: nf_defrag_ipv6: solve section mismatch in nf_conntrack_reasm |
2012-10-30 |
Pablo Neira |
|
Accepted |
| [next] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-10-30 |
Florian Westphal |
|
Accepted |
| [1/2] Helper macros used for replacing the use of VLAIS |
2012-10-30 |
Behan Webster |
|
Rejected |
| [2/2] Remove VLAIS usage from netfilter |
2012-10-30 |
Behan Webster |
|
Rejected |
| [V2,1/3] Helper macros used for replacing the use of VLAIS |
2012-10-30 |
Behan Webster |
|
Rejected |
| [V2,2/3] Remove VLAIS usage from gadget code |
2012-10-30 |
Behan Webster |
|
Rejected |
| [V2,3/3] Remove VLAIS usage from netfilter |
2012-10-30 |
Behan Webster |
|
Rejected |
| [nf-next/nf_tables-experiments,-,1/2] nf_tables: Add support for changing users chain's name |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next/nf_tables-experiments,-,2/2] nf_tables: Add support for replacing a rule by another one. |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [libnftables,-] build: Add autogen.sh script |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [libnftables,-] chain: Add support for NFTA_CHAIN_NEW_NAME attribute |
2012-10-31 |
Tomasz Bursztyka |
|
Superseded |
| [iptables-nftables,-,1/5] headers: Make nf_tables.h up to date |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,2/5] nft: Add support for chain rename options (-E) |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,3/5] iptables: nft: Fix -D chain rulenum option |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,4/5] iptables: nft: Refactor __nft_rule_check to return rule handle when relevant |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [iptables-nftables,-,5/5] iptables: nft: Add support for -R option |
2012-10-31 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,1/4] nf_tables: Change chain's name to be fixed sized |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,2/4] nf_tables: Add missing policy for NFTA_CHAIN_USE |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,3/4] nf_tables: Add support for changing users chain's name |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next/nf_tables-experiments,-,v2,4/4] nf_tables: Add support for replacing a rule by another one. |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,-,v2,1/2] chain: Handle fixed sized name |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [libnftables,-,v2,2/2] chain: Add support for NFTA_CHAIN_NEW_NAME attribute |
2012-11-01 |
Tomasz Bursztyka |
|
Accepted |
| [1/2] netfilter: nf_tables: use 64-bits rule handle instead of 16-bits |
2012-11-01 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: nf_tables: improve deletion performance |
2012-11-01 |
Pablo Neira |
|
Superseded |
| RFC on xt2 code 20121102 |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [01/11] netfilter: xtables2: initial table skeletal functions |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [02/11] netfilter: xtables2: initial Netlink interface |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [03/11] netfilter: xtables2: chain creation and deletion |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [04/11] netfilter: xtables2: chain renaming support |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [05/11] netfilter: xtables2: transaction commit operation |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [06/11] netfilter: xtables2: (atomic) table replace support |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [07/11] netfilter: xtables2: transaction abort support |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [08/11] netfilter: xtables2: redirect writes into transaction buffer |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [09/11] netfilter: xtables2: supply a revision number |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [10/11] netfilter: xtables2: chain dump support |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [11/11] netfilter: xtables2: table dump support |
2012-11-02 |
Jan Engelhardt |
|
Not Applicable |
| [RFC,v2] netfilter: add connlabel conntrack extension |
2012-11-02 |
Florian Westphal |
|
Superseded |
| [1/4] Add configure flag to disable NFACCT build |
2012-11-03 |
Eric Leblond |
|
Not Applicable |
| [2/4] Add configure flag to disable NFCT build |
2012-11-03 |
Eric Leblond |
|
Not Applicable |
| [3/4] Add configure flag to disable NFLOG build |
2012-11-03 |
Eric Leblond |
|
Not Applicable |
| [4/4] configure: display info about build plugins |
2012-11-03 |
Eric Leblond |
|
Not Applicable |
| [libnflog] Add include needed for integer type definition. |
2012-11-04 |
Eric Leblond |
|
Not Applicable |
| [libnfacct] Add include needed for integer types definition. |
2012-11-04 |
Eric Leblond |
|
Not Applicable |
| netfilter: nf_tables: replace built-in tables by chain types |
2012-11-04 |
Pablo Neira |
|
Superseded |
| [2/2] netfilter: nf_tables: improve deletion performance |
2012-11-04 |
Pablo Neira |
|
Accepted |
| netfilter: nf_tables: replace built-in tables by chain types |
2012-11-05 |
Pablo Neira |
|
Accepted |
| net/netfilter/nf_conntrack_pptp.c: Fix comment referring to incorrect RFC. |
2012-11-07 |
Reese Moore |
|
Accepted |
| [1/3] ipvs: remove silly double assignment |
2012-11-13 |
Pablo Neira |
|
Changes Requested |
| [2/3] netfilter: nf_nat: use PTR_RET |
2012-11-13 |
Pablo Neira |
|
Changes Requested |
| [3/3] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-11-13 |
Pablo Neira |
|
Changes Requested |
| [1/1] netfilter: ipv6: only provide sk_bound_dev_if for link-local addr |
2012-11-13 |
Florian Westphal |
|
Accepted |
| netfilter: nf_tables: add support for dormant tables |
2012-11-13 |
Pablo Neira |
|
Accepted |
| [1/2] Introduce notification chain for routing changes |
2012-11-13 |
Jozsef Kadlecsik |
|
Not Applicable |