Show patches with: Archived = No       |   15164 patches
« 1 2 ... 12 13 14151 152 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[iptables,3/4] xtables: Register all match/target revisions supported by us and kernel iptables: Fix [unsupported revision] for matches/targets after update - - - - 0 0 0 2018-03-07 Serhey Popovych pablo Accepted
[iptables,2/4] xtables: Check match/target size vs XT_ALIGN(size) at register time iptables: Fix [unsupported revision] for matches/targets after update - - - - 0 0 0 2018-03-07 Serhey Popovych pablo Accepted
[iptables,1/4] xtables: Do not register matches/targets with incompatible revision iptables: Fix [unsupported revision] for matches/targets after update - - - - 0 0 0 2018-03-07 Serhey Popovych pablo Accepted
[RFC] netfilter: cttimeout: remove VLA in ctnl_timeout_parse_policy [RFC] netfilter: cttimeout: remove VLA in ctnl_timeout_parse_policy - - - - 0 0 0 2018-03-06 Gustavo A. R. Silva pablo RFC
[nf-next] netfilter: x_tables: fix build with CONFIG_COMPAT=n [nf-next] netfilter: x_tables: fix build with CONFIG_COMPAT=n - 2 - - 0 0 0 2018-03-06 Florian Westphal pablo Accepted
configure: Verify libnftnl install is recent enough configure: Verify libnftnl install is recent enough - - - - 0 0 0 2018-03-06 Duncan Roe pablo Superseded
[RFC,nft] tests: shell: autogenerate dump verification [RFC,nft] tests: shell: autogenerate dump verification - - - - 0 0 0 2018-03-05 Laura Garcia pablo RFC
ipvs: use true and false for boolean values ipvs: use true and false for boolean values - - - - 0 0 0 2018-03-05 Gustavo A. R. Silva pablo Accepted
[nft] rule: broken handle listing of table and named objects [nft] rule: broken handle listing of table and named objects - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[nft] rule: print object handle with --echo --handle [nft] rule: print object handle with --echo --handle - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[nft,2/2] netlink: print table handle with --echo --handle [nft,1/2] netlink: print chain handle with --echo --handle - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[nft,1/2] netlink: print chain handle with --echo --handle [nft,1/2] netlink: print chain handle with --echo --handle - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[nft] tests: shell: set timeout and size combination coverage [nft] tests: shell: set timeout and size combination coverage - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[nf] netfilter: nft_set_hash: skip fixed hash if timeout is specified [nf] netfilter: nft_set_hash: skip fixed hash if timeout is specified - - - - 0 0 0 2018-03-05 Pablo Neira Ayuso pablo Accepted
[net] netfilter: check for out-of-bounds while copying compat entries [net] netfilter: check for out-of-bounds while copying compat entries - 1 - - 0 0 0 2018-03-05 Paolo Abeni pablo Not Applicable
[nf-next,v2,2/2] nf_conncount: Support count only use case [nf-next,v2,1/2] netfilter: Refactor nf_conncount 1 - - - 0 0 0 2018-03-04 Yi-Hung Wei pablo Accepted
[nf-next,v2,1/2] netfilter: Refactor nf_conncount [nf-next,v2,1/2] netfilter: Refactor nf_conncount 1 - - - 0 0 0 2018-03-04 Yi-Hung Wei pablo Accepted
[ebtables,4/4] ebt_ip: add support for matching IGMP type ebtables: add support for ICMP and IGMP type/code matching - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[ebtables,3/4] ebt_ip: add support for matching ICMP type and code ebtables: add support for ICMP and IGMP type/code matching - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[ebtables,2/4] Move ICMP type handling functions from ebt_ip6 to useful_functions.c ebtables: add support for ICMP and IGMP type/code matching - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[ebtables,1/4] include: sync linux/netfilter_bridge/ebt_ip.h with kernel [ebtables,1/4] include: sync linux/netfilter_bridge/ebt_ip.h with kernel - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[nf-next,2/2] ebtables: add support for matching IGMP type Untitled series #31764 - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[nf-next,1/2] ebtables: add support for matching ICMP type and code ebtables: add support for ICMP and IGMP type/code matching - - - - 0 0 0 2018-03-04 Matthias Schiffer pablo Accepted
[nft,v2] src: add variable expression and use it to allow redefinitions [nft,v2] src: add variable expression and use it to allow redefinitions - - - - 0 0 0 2018-03-03 Pablo Neira Ayuso pablo Accepted
[nft,2/2] tests: shell: redefine and undefine [nft,1/2] src: add variable expression and use it to allow redefinitions - - - - 0 0 0 2018-03-03 Pablo Neira Ayuso pablo Accepted
[nft,1/2] src: add variable expression and use it to allow redefinitions [nft,1/2] src: add variable expression and use it to allow redefinitions - - - - 0 0 0 2018-03-03 Pablo Neira Ayuso pablo Changes Requested
[nft] src: datatype: prefer sscanf, avoid strncpy [nft] src: datatype: prefer sscanf, avoid strncpy - - - - 0 0 0 2018-03-03 Florian Westphal strlen Accepted
[nft] netlink: remove non-batching routines [nft] netlink: remove non-batching routines - - - - 0 0 0 2018-03-03 Pablo Neira Ayuso strlen Accepted
[nft] configure: misc updates [nft] configure: misc updates - - - - 0 0 0 2018-03-03 Pablo Neira Ayuso strlen Accepted
[v2,nft] libnftables: Print error and exit for empty string [v2,nft] libnftables: Print error and exit for empty string - - - - 0 0 0 2018-03-03 Harsha Sharma strlen Accepted
[14/14] ipvs: remove IPS_NAT_MASK check to fix passive FTP [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount 1 1 - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[13/14] netfilter: nf_tables: use the right index from flowtable error path [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[12/14] netfilter: nf_tables: missing attribute validation in nf_tables_delflowtable() [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[11/14] netfilter: nf_tables: return EBUSY if device already belongs to flowtable [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[10/14] netfilter: use skb_to_full_sk in ip6_route_me_harder [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - 1 - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[09/14] netfilter: don't set F_IFACE on ipv6 fib lookups [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[08/14] netfilter: increase IPSTATS_MIB_CSUMERRORS stat [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[07/14] netfilter: nf_flow_table: fix checksum when handling DNAT [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[06/14] netfilter: ebtables: CONFIG_COMPAT: don't trust userland offsets [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[05/14] netfilter: ebtables: convert BUG_ONs to WARN_ONs [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[04/14] netfilter: bridge: ebt_among: add missing match size checks [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[03/14] netfilter: ipv6: fix use-after-free Write in nf_nat_ipv6_manip_pkt [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - 1 - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[02/14] netfilter: ipt_CLUSTERIP: put config instead of freeing it [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount [01/14] netfilter: ipt_CLUSTERIP: put config struct if we can't increment ct refcount - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[00/14] Netfilter/IPVS fixes for net - - - - 0 0 0 2018-03-02 Pablo Neira Ayuso pablo Accepted
[nft] fix integer type size to be used as a key for sets and maps [nft] fix integer type size to be used as a key for sets and maps - - - - 0 0 0 2018-03-02 Laura Garcia pablo Changes Requested
[trivial,resend] ] netfilter: xt_limit: Spelling s/maxmum/maximum/ [trivial,resend] ] netfilter: xt_limit: Spelling s/maxmum/maximum/ - - - - 0 0 0 2018-03-02 Geert Uytterhoeven pablo Accepted
[nft] parser: support of maps with timeout [nft] parser: support of maps with timeout - - - - 0 0 0 2018-03-02 Laura Garcia pablo Accepted
[nf-next] netfilter: make xt_rateest hash table per net [nf-next] netfilter: make xt_rateest hash table per net - - 1 - 0 0 0 2018-03-02 Cong Wang pablo Accepted
[nft,4/6] hash: Fix potential null-pointer dereference in hash_expr_cmp() Untitled series #31275 - 1 - - 0 0 0 2018-03-01 Phil Sutter pablo Accepted
[iptables,3/3] xtables: Introduce and use common function to print val[/mask] arguments iptables: Unify val[/mask] parsing and printing routines - - - - 0 0 0 2018-03-01 Serhey Popovych pablo Accepted
[iptables,2/3] xtables: Introduce and use common function to parse val[/mask] arguments iptables: Unify val[/mask] parsing and printing routines - - - - 0 0 0 2018-03-01 Serhey Popovych pablo Accepted
[iptables,1/3] extensions: Initialize linear mapping of symbols in _init() of extension iptables: Unify val[/mask] parsing and printing routines - - - - 0 0 0 2018-03-01 Serhey Popovych pablo Accepted
[nf-next,2/2] nf_conncount: Support count only use case [nf-next,1/2] netfilter: nf_conncount: Refactor nf_conncount - - - - 0 0 0 2018-02-28 Yi-Hung Wei pablo Changes Requested
[nf-next,1/2] netfilter: nf_conncount: Refactor nf_conncount [nf-next,1/2] netfilter: nf_conncount: Refactor nf_conncount - - - - 0 0 0 2018-02-28 Yi-Hung Wei pablo Changes Requested
[nft] tests: shell: regression test for bugzilla 1228 [nft] tests: shell: regression test for bugzilla 1228 - - - - 0 0 0 2018-02-28 Pablo Neira Ayuso pablo Accepted
[nft] Review switch statements for unmarked fall through cases [nft] Review switch statements for unmarked fall through cases - - - - 0 0 0 2018-02-28 Phil Sutter strlen Accepted
[nft] netlink_delinearize: Fix resource leaks [nft] netlink_delinearize: Fix resource leaks - - - - 0 0 0 2018-02-28 Phil Sutter strlen Superseded
[nft,2/2] monitor: Make JSON/XML output respect output_fp Review monitor code for output_fp conformity - - - - 0 0 0 2018-02-28 Phil Sutter pablo Accepted
[nft,1/2] monitor: Make trace events respect output_fp Review monitor code for output_fp conformity - - - - 0 0 0 2018-02-28 Phil Sutter pablo Accepted
[nft] doc: add example for rule add/delete [nft] doc: add example for rule add/delete - - - - 0 0 0 2018-02-28 Florian Westphal strlen Accepted
[nft] doc: remove ipv6 address FIXME [nft] doc: remove ipv6 address FIXME - - - - 0 0 0 2018-02-28 Florian Westphal strlen Accepted
[nf-next,11/11] netfilter: x_tables: ensure last rule in base chain matches underflow/policy netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,10/11] netfilter: x_tables: make sure compat af mutex is held netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,09/11] netfilter: compat: reject huge allocation requests netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,08/11] netfilter: compat: prepare xt_compat_init_offsets to return errors netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,07/11] netfilter: x_tables: add counters allocation wrapper netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,06/11] netfilter: x_tables: limit allocation requests for blob rule heads netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,05/11] netfilter: x_tables: cap allocations at 512 mbyte netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,04/11] netfilter: x_tables: enforce unique and ascending entry points netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,03/11] netfilter: x_tables: move hook entry checks into core netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,02/11] netfilter: x_tables: check error target size too netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf-next,01/11] netfilter: x_tables: check standard verdicts in core netfilter: x_tables: add more checks on rule blob format - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: use the right index from flowtable error path [nf] netfilter: nf_tables: use the right index from flowtable error path - - - - 0 0 0 2018-02-27 Pablo Neira Ayuso pablo Accepted
[1/2,nf,v2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable [1/2,nf,v2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable - - - - 0 0 0 2018-02-27 Pablo Neira Ayuso pablo Accepted
extensions: libxt_bpf: Fix build with old kernel versions extensions: libxt_bpf: Fix build with old kernel versions - 1 - - 0 0 0 2018-02-27 Hauke Mehrtens pablo Accepted
[nft] doc: mention meta l4proto and ipv6 nexthdr issue wrt. extension headers [nft] doc: mention meta l4proto and ipv6 nexthdr issue wrt. extension headers - - - - 0 0 0 2018-02-27 Florian Westphal pablo Accepted
[nft] nftables: Adding support for segment routing header 'srh' [nft] nftables: Adding support for segment routing header 'srh' - - - - 0 0 0 2018-02-27 Ahmed Abdelsalam pablo Accepted
[nft] nftables: Fixing Bug 1219 - handle rt0 and rt2 properly [nft] nftables: Fixing Bug 1219 - handle rt0 and rt2 properly - - - - 0 0 0 2018-02-27 Ahmed Abdelsalam pablo Accepted
[nf-next] netfilter: nf_tables: Fixing Bug 1219 - handle rt0 and rt2 properly [nf-next] netfilter: nf_tables: Fixing Bug 1219 - handle rt0 and rt2 properly - - - - 0 0 0 2018-02-27 Ahmed Abdelsalam pablo Accepted
[2/2] ebtables: Add string filter [1/2] net: Allow to and from offsets to be equal in skb_find_text - - - - 0 0 0 2018-02-26 Bernie Harris pablo Changes Requested
[1/2] net: Allow to and from offsets to be equal in skb_find_text [1/2] net: Allow to and from offsets to be equal in skb_find_text - - - - 0 0 0 2018-02-26 Bernie Harris pablo Changes Requested
[ebtables] Add string filter to ebtables [ebtables] Add string filter to ebtables - - - - 0 0 0 2018-02-26 Bernie Harris pablo Changes Requested
[nft,5/5] tests: add raw payload test cases. payload: make raw protocl expressions work - - - - 0 0 0 2018-02-26 Florian Westphal strlen Accepted
[nft,4/5] doc: document raw protocol expression payload: make raw protocl expressions work - - - - 0 0 0 2018-02-26 Florian Westphal strlen Accepted
[nft,3/5] src: make raw payloads work payload: make raw protocl expressions work - - - - 0 0 0 2018-02-26 Florian Westphal strlen Accepted
[nft,2/5] payload: don't resolve expressions using the inet pseudoheader payload: make raw protocl expressions work - - - - 0 0 0 2018-02-26 Florian Westphal strlen Accepted
[nft,1/5] payload: use integer_type when initializing a raw expression payload: make raw protocl expressions work - - - - 0 0 0 2018-02-26 Florian Westphal strlen Accepted
[nf,2/2] netfilter: nf_tables: missing attribute validation in nf_tables_delflowtable() [nf,1/2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable - - - - 0 0 0 2018-02-26 Pablo Neira Ayuso pablo Accepted
[nf,1/2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable [nf,1/2] netfilter: nf_tables: return EBUSY if device already belongs to flowtable - - - - 0 0 0 2018-02-26 Pablo Neira Ayuso pablo Changes Requested
[v3,17/17] netfilter: nf_flow_table: tear down TCP flows if RST or FIN was seen netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,16/17] netfilter: nf_flow_table: add support for sending flows back to the slow path netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,15/17] netfilter: nf_flow_table: in flow_offload_lookup, skip entries being deleted netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,14/17] netfilter: nf_flow_table: add a new flow state for tearing down offloading netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,13/17] netfilter: nf_flow_table: make flow_offload_dead inline netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,12/17] netfilter: nf_flow_table: track flow tables in nf_flow_table directly netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,11/17] netfilter: nf_flow_table: fix priv pointer for netdev hook netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,10/17] netfilter: nf_flow_table: move init code to nf_flow_table_core.c netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,09/17] netfilter: nf_flow_table: relax mixed ipv4/ipv6 flowtable dependencies netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
[v3,08/17] netfilter: nf_flow_table: move ipv6 offload hook code to nf_flow_table netfilter: nf_flow_table: refactoring, TCP state tracking, sending flows to slow path - - - - 0 0 0 2018-02-26 Felix Fietkau pablo Accepted
« 1 2 ... 12 13 14151 152 »