| [2/2] Handle the routing changes in the MASQUERADE target |
2012-11-13 |
Jozsef Kadlecsik |
|
Not Applicable |
| [nf-next:nf_tables-experiments,1/4] nf_tables: Change NFTA_NAT_ attributes to better semantic significance |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next:nf_tables-experiments,2/4] nf_tables: Split IPv4 NAT into NAT expression and NAT IPv4 chain |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next:nf_tables-experiments,3/4] nf_tables: Add support for IPv6 NAT expression |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next:nf_tables-experiments,4/4] nf_tables: Add support for IPv6 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [libnftables] expr: Add support for NAT expressions |
2012-11-15 |
Tomasz Bursztyka |
|
Superseded |
| [nf-next:nf_tables-experiments,-,v2,-,1/4] nf_tables: Change NFTA_NAT_ attributes to better semantic significance |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,2/4] nf_tables: Split IPv4 NAT into NAT expression and IPv4 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,3/4] nf_tables: Add support for IPv6 NAT expression |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [nf-next:nf_tables-experiments,-,v2,-,4/4] nf_tables: Add support for IPv6 NAT chain |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| Splitting network packets from target modules |
2012-11-15 |
Torsten Luettgert |
|
Not Applicable |
| [libnftables,-,v2] expr: Add support for NAT expressions |
2012-11-15 |
Tomasz Bursztyka |
|
Accepted |
| [1/3] api: add nfct_bitmask object |
2012-11-15 |
Florian Westphal |
|
Not Applicable |
| [2/3] api: add connlabel api and attribute |
2012-11-15 |
Florian Westphal |
|
Not Applicable |
| [3/3] examples: add connlabel dump/set/clear demo programs |
2012-11-15 |
Florian Westphal |
|
Not Applicable |
| [1/3] netfilter: add connlabel conntrack extension |
2012-11-15 |
Florian Westphal |
|
Not Applicable |
| [2/3] netfilter: ctnetlink: deliver labels to userspace via CTA_LABELS attribute |
2012-11-15 |
Florian Westphal |
|
Accepted |
| [3/3] netfilter: ctnetlink: allow userspace to set labels |
2012-11-15 |
Florian Westphal |
|
Not Applicable |
| Xtables2 status for Nov 15 (RFC) |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [01/11] netfilter: xtables2: prepare for addition of more transaction buffer types |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [02/11] netfilter: xtables2: implement the splice buffer |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [03/11] netfilter: xtables2: skeleton for single rules and rule buffer |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [04/11] netfilter: xtables2: core part for splice operation |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [05/11] netfilter: xtables2: netlink part for splice operation |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [06/11] netfilter: xtables2: rule entry handler |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [07/11] netfilter: xtables2: rule dumping |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [08/11] netfilter: add a private member to nf_hook_ops |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [09/11] netfilter: make nf_hook_ops.priv available to hooks |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [10/11] netfilter: xtables2: base chain functionality |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [11/11] netfilter: xtables2: support nomination for chains |
2012-11-16 |
Jan Engelhardt |
|
Not Applicable |
| [nf-next:nf_tables-experiments] nf_tables: Fix up build issue on IPv6 NAT support |
2012-11-16 |
Tomasz Bursztyka |
|
Accepted |
| [1/4] ipvs: remove silly double assignment |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/4] netfilter: nf_nat: use PTR_RET |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [3/4] netfilter: ipv6: add getsockopt to retrieve origdst |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [4/4] netfilter: ipv6: only provide sk_bound_dev_if for link-local addr |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [1/3,-stable] netfilter: Mark SYN/ACK packets as invalid from original direction |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/3,-stable] netfilter: Validate the sequence number of dataless ACK packets as well |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [3/3,-stable] netfilter: nf_nat: don't check for port change on ICMP tuples |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [1/3,-stable] netfilter: xt_TEE: don't use destination address found in header |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [2/3,-stable] netfilter: xt_CT: fix timeout setting with IPv6 |
2012-11-16 |
Pablo Neira |
|
Accepted |
| [3/3,-stable] netfilter: nf_conntrack: fix rt_gateway checks for H.323 helper |
2012-11-16 |
Pablo Neira |
|
Accepted |
| Correct libxt_statistic save output |
2012-11-17 |
Tom Eastep |
|
Accepted |
| netfilter: ipset: Fix range bug in hash:ip,port,net |
2012-11-19 |
Jozsef Kadlecsik |
|
Accepted |
| netfilter: ipset: Increase the number of maximal sets automatically as needed |
2012-11-19 |
Jozsef Kadlecsik |
|
Superseded |
| conntrack: fix nfct_clone with certain attribute data types |
2012-11-19 |
Florian Westphal |
|
Changes Requested |
| qa: fix handling of ATTR_HELPER_INFO attribute |
2012-11-19 |
Florian Westphal |
|
Accepted |
| netfilter: ipset: Increase the number of maximal sets automatically as needed |
2012-11-20 |
Jozsef Kadlecsik |
|
Superseded |
| [1/1] netfilter: cttimeout: fix buffer overflow |
2012-11-21 |
Florian Westphal |
|
Accepted |
| build: support for Linux 3.7 UAPI |
2012-11-21 |
Jan Engelhardt |
|
Superseded |
| [1/2] netfilter: ipset: Fix range bug in hash:ip,port,net |
2012-11-22 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: cttimeout: fix buffer overflow |
2012-11-22 |
Pablo Neira |
|
Accepted |
| [1/2] netfilter: ipset: fix netiface set name overflow |
2012-11-22 |
Florian Westphal |
|
Accepted |
| [2/2] netfilter: nla_policy updates |
2012-11-22 |
Florian Westphal |
|
Accepted |
| [trivial] netfilter: fix struct ip6t_frag field description |
2012-11-22 |
Michal Kubeček |
|
Accepted |
| [next] netfilter: kill support for per-af queue backends |
2012-11-23 |
Florian Westphal |
|
Accepted |
| netfilter: move ipv6_find_hdr to net/ipv6/netfilter.c and rename it |
2012-11-24 |
Pablo Neira |
|
Not Applicable |
| examples: nf-queue: fix api usage |
2012-11-25 |
Florian Westphal |
|
Accepted |
| ulogd fixes |
2012-11-26 |
Jan Engelhardt |
|
Not Applicable |
| [1/2] build: resolve automake-1.12 warnings |
2012-11-26 |
Jan Engelhardt |
|
Not Applicable |
| [2/2] build: resolve compile error due to missing nfacct CPPFLAGS |
2012-11-26 |
Jan Engelhardt |
|
Not Applicable |
| netfilter: ipset: fix netiface set name overflow |
2012-11-27 |
Pablo Neira |
|
Accepted |
| [1/2] build: avoid per-target CFLAGS |
2012-11-27 |
Jan Engelhardt |
|
Not Applicable |
| [2/2] build: move remaining preprocessor flags into CPPFLAGS |
2012-11-27 |
Jan Engelhardt |
|
Not Applicable |
| [1/1] conntrack: fix nfct_clone with certain attribute data types |
2012-11-27 |
Florian Westphal |
|
Accepted |
| [1/1] netfilter: ipset: Increase the number of maximal sets automatically |
2012-11-27 |
Jozsef Kadlecsik |
|
Accepted |
| [1/1] Introduce notification events for routing changes |
2012-11-27 |
Jozsef Kadlecsik |
|
Not Applicable |
| net: ICMPv6 packets transmitted on wrong interface if nfmark is mangled |
2012-11-28 |
Dries De Winter |
|
Superseded |
| lnf_conntrack: nfct_cmp NFCT_CMP_TIMEOUT_* flags not supported? |
2012-11-28 |
Florian Westphal |
|
RFC |
| [1/1] Introduce notification events for routing changes |
2012-11-28 |
Jozsef Kadlecsik |
|
Not Applicable |
| [1/2] netfilter: nf_conntrack: improve nf_conn object traceability |
2012-11-29 |
Pablo Neira |
|
Accepted |
| [2/2] netfilter: ctnetlink: dump entries from the dying and unconfirmed lists |
2012-11-29 |
Pablo Neira |
|
Accepted |
| conntrack: add support to dump the dying and unconfirmed list via ctnetlink |
2012-11-29 |
Pablo Neira |
|
Accepted |
| [libnetfilter_conntrack] refresh our public copy of nfnetlink_conntrack.h |
2012-11-29 |
Pablo Neira |
|
Accepted |
| [RFC] Handle routing changes for the MASQUERADE target |
2012-11-29 |
Jozsef Kadlecsik |
|
Superseded |
| netfilter: remove extra timer from ecache extension |
2012-11-30 |
Florian Westphal |
|
Superseded |
| Handle routing changes for the MASQUERADE target |
2012-11-30 |
Jozsef Kadlecsik |
|
Superseded |
| Handle routing changes in MASQUERADE target, v4 |
2012-11-30 |
Jozsef Kadlecsik |
|
Accepted |
| build: resolve link failure for ip6t_NETMAP |
2012-12-02 |
Jan Engelhardt |
|
Not Applicable |
| net: ICMPv6 packets transmitted on wrong interface if nfmark is mangled |
2012-12-03 |
Dries De Winter |
|
Under Review |
| Xtables2 status for Dec 04 |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [1/8] netfilter: xtables2: support for entering/dumping rule verdicts |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [2/8] netfilter: xtables2: execute verdicts in live rule traversal |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [3/8] netfilter: xtables2: store netns in table and rule blob |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [4/8] netfilter: xtables2: iterator for obtain/drop references to actions |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [5/8] netfilter: xtables2: support for entering/dumping match actions |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [6/8] netfilter: xtables2: execute matches in live rule traversal |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [7/8] netfilter: xtables2: support for entering/dumping target actions |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [8/8] netfilter: xtables2: execute targets in live rule traversal |
2012-12-04 |
Jan Engelhardt |
|
Not Applicable |
| [V2] netfilter: remove extra timer from ecache extension |
2012-12-04 |
Florian Westphal |
|
Superseded |
| [1/6] netfilter: ipset: Increase the number of maximal sets automatically |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [2/6] netfilter: nf_conntrack: improve nf_conn object traceability |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [3/6] netfilter: ctnetlink: dump entries from the dying and unconfirmed lists |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [4/6] netfilter: kill support for per-af queue backends |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [5/6] netfilter: ctnetlink: nla_policy updates |
2012-12-04 |
Pablo Neira |
|
Accepted |
| [6/6] netfilter: nf_nat: Handle routing changes in MASQUERADE target |
2012-12-04 |
Pablo Neira |
|
Accepted |
| nfnetlink_log mac address for 6in4 tunnels |
2012-12-05 |
Bob Hockney |
|
Accepted |
| [1/2] netfilter: add xt_priority xtables match |
2012-12-05 |
Willem de Bruijn |
|
Superseded |
| [2/2] netfilter: add xt_bpf xtables match |
2012-12-05 |
Willem de Bruijn |
|
Superseded |
| fix conntrack reassembly expire code |
2012-12-07 |
haibbo@gmail.com |
|
Accepted |
| [2/4] net: remove obsolete simple_strto<foo> |
2012-12-07 |
Abhijit Pawar |
|
Superseded |