Show patches with: Archived = No       |   14343 patches
« 1 2 ... 7 8 9143 144 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[01/12] netfilter: remove redundant assignment to e [01/12] netfilter: remove redundant assignment to e - - - - 0 0 0 2017-12-13 Pablo Neira Ayuso pablo Accepted
[00/12] Netfilter fixes for net - - - - 0 0 0 2017-12-13 Pablo Neira Ayuso pablo Accepted
[nft] netlink_linearize: exthdr op must be u32 [nft] netlink_linearize: exthdr op must be u32 1 - - - 0 0 0 2017-12-11 Florian Westphal pablo Accepted
[nf] netfilter: exthdr: add missign attributes to policy [nf] netfilter: exthdr: add missign attributes to policy - - - - 0 0 0 2017-12-11 Florian Westphal pablo Accepted
[netfilter-next] netfilter: conntrack: make struct nf_conntrack_l4proto_gre4 static [netfilter-next] netfilter: conntrack: make struct nf_conntrack_l4proto_gre4 static - - - - 0 0 0 2017-12-10 Colin Ian King pablo Accepted
[nf-next,v2,7/7] netfilter: nf_tables: remove hooks from family definition handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,6/7] netfilter: nf_tables: remove multihook chains and families handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,5/7] netfilter: nf_tables_inet: don't use multihook infrastructure anymore handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,4/7] netfilter: core: support for NFPROTO_INET hook registration handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,3/7] netfilter: core: pass family as parameter to nf_remove_net_hook() handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,2/7] netfilter: core: pass hook number, family and device to nf_find_hook_list() handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2,1/7] netfilter: core: add nf_remove_net_hook handle NFPROTO_INET from core - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next] netfilter: nf_tables: add nft_set_is_anonymous() helper [nf-next] netfilter: nf_tables: add nft_set_is_anonymous() helper - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path [nf-next,v2] netfilter: nf_tables: explicit nft_set_pktinfo() call from hook path - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[nf-next,v2] netfilter: nf_tables_arp: don't set forward chain [nf-next,v2] netfilter: nf_tables_arp: don't set forward chain - - - - 0 0 0 2017-12-10 Pablo Neira Ayuso pablo Accepted
[v5,nf-next] netfilter: connlimit: split xt_connlimit into front and backend [v5,nf-next] netfilter: connlimit: split xt_connlimit into front and backend 1 - - - 0 0 0 2017-12-09 Florian Westphal pablo Accepted
[nft] tests/py: trivial: Fix error message [nft] tests/py: trivial: Fix error message - - - - 0 0 0 2017-12-09 Phil Sutter strlen Accepted
[nft] Fix protocol context update on big-endian systems [nft] Fix protocol context update on big-endian systems - - - - 0 0 0 2017-12-09 Phil Sutter strlen Accepted
[nf-next,3/3] nftables: reject nat hook registration if prio is before conntrack netfilter: disable parallel use of xtables and nftables nat - - - - 0 0 0 2017-12-08 Florian Westphal pablo Accepted
[nf-next,2/3] netfilter: core: only allow one nat hook per hook point netfilter: disable parallel use of xtables and nftables nat - - - - 0 0 0 2017-12-08 Florian Westphal pablo Accepted
[nf-next,1/3] netfilter: xtables: add and use xt_request_find_table_lock netfilter: disable parallel use of xtables and nftables nat - - - - 0 0 0 2017-12-08 Florian Westphal pablo Accepted
[v3,nf-next,5/5] netfilter: reduce NF_MAX_HOOKS define netfilter: reduce hook array sizes - - - - 0 0 0 2017-12-07 Florian Westphal pablo Accepted
[v3,nf-next,4/5] netfilter: don't allocate space for arp/bridge hooks unless needed netfilter: reduce hook array sizes - - - - 0 0 0 2017-12-07 Florian Westphal pablo Accepted
[v3,nf-next,3/5] netfilter: don't allocate space for decnet hooks unless needed netfilter: reduce hook array sizes - - - - 0 0 0 2017-12-07 Florian Westphal pablo Accepted
[v3,nf-next,2/5] netfilter: reduce hook array sizes to what is needed netfilter: reduce hook array sizes - - - - 0 0 0 2017-12-07 Florian Westphal pablo Accepted
[v3,nf-next,1/5] netfilter: add defines for arp/decnet max hooks netfilter: reduce hook array sizes - - - - 0 0 0 2017-12-07 Florian Westphal pablo Accepted
netfilter: fix clusterip_net_exit build regression netfilter: fix clusterip_net_exit build regression - 1 1 - 0 0 0 2017-12-07 Arnd Bergmann pablo Accepted
[v2,nf-next] netfilter: meta: secpath support [v2,nf-next] netfilter: meta: secpath support - - - - 0 0 0 2017-12-06 Florian Westphal pablo Accepted
netfilter: xt_osf: Add missing permission checks netfilter: xt_osf: Add missing permission checks - - - - 0 0 0 2017-12-05 Kevin Cernekee pablo Accepted
[nft,V5,2/2] tests: shell: Add tests for low level json import [RFC,nft,V6,1/2] src: Add import command for low level json - - - - 0 0 0 2017-12-05 Shyam Saini pablo Accepted
[RFC,nft,V6,1/2] src: Add import command for low level json [RFC,nft,V6,1/2] src: Add import command for low level json 1 - - - 0 0 0 2017-12-05 Shyam Saini pablo Accepted
iptables: masquerade: add randomize-full support iptables: masquerade: add randomize-full support - - - - 0 0 0 2017-12-03 Max Laverse pablo Accepted
netfilter: nfnetlink_cthelper: Add missing permission checks netfilter: nfnetlink_cthelper: Add missing permission checks - - - - 0 0 0 2017-12-03 Kevin Cernekee pablo Accepted
[nf-next,1/2] netfilter: reduce size of hook entry point locations netfilter: reduce size of hook entry points - - - - 0 0 0 2017-12-02 Florian Westphal pablo Accepted
doc: nft.8 aim for consistent synopses throughout doc: nft.8 aim for consistent synopses throughout - - - - 0 0 0 2017-12-02 Duncan Roe pablo Accepted
[nft] meta: add secpath support [nft] meta: add secpath support - - - - 0 0 0 2017-12-01 Florian Westphal pablo Accepted
[libnftnl] meta: secpath support [libnftnl] meta: secpath support - - - - 0 0 0 2017-12-01 Florian Westphal pablo Accepted
netfilter: add overflow checks in xt_bpf.c netfilter: add overflow checks in xt_bpf.c - - - - 0 0 0 2017-12-01 Jann Horn pablo Accepted
[nf-next,3/3] netfilter: core: free hooks with call_rcu netfilter: reduce netns create/delete cost - - - - 0 0 0 2017-11-30 Florian Westphal pablo Accepted
[nf-next,2/3] netfilter: core: remove synchronize_net call if nfqueue is used netfilter: reduce netns create/delete cost - - - - 0 0 0 2017-11-30 Florian Westphal pablo Accepted
[nf-next,1/3] netfilter: core: make nf_unregister_net_hooks simple wrapper again netfilter: reduce netns create/delete cost - - - - 0 0 0 2017-11-30 Florian Westphal pablo Accepted
[ipset,nf-next] netfilter: ipset: add resched points during set listing [ipset,nf-next] netfilter: ipset: add resched points during set listing 1 - - - 0 0 0 2017-11-30 Florian Westphal pablo Accepted
[ipset,nf-next] netfilter: ipset: use nfnl_mutex_is_locked [ipset,nf-next] netfilter: ipset: use nfnl_mutex_is_locked 1 - - - 0 0 0 2017-11-30 Florian Westphal pablo Accepted
[nft,v2] Make libnftables a local static library [nft,v2] Make libnftables a local static library - - - - 0 0 0 2017-11-30 Phil Sutter pablo Accepted
[nf-next] net: netfilter: nf_conntrack_h323: Remove unwanted comments. [nf-next] net: netfilter: nf_conntrack_h323: Remove unwanted comments. - - - - 0 0 0 2017-11-30 Varsha Rao pablo Accepted
[iptables] extensions: libxt_tcpmss: Add test case for invalid ranges. [iptables] extensions: libxt_tcpmss: Add test case for invalid ranges. - - - - 0 0 0 2017-11-30 Varsha Rao pablo Accepted
iptables: xtables-eb: Remove const qualifier from struct option iptables: xtables-eb: Remove const qualifier from struct option - - - - 0 0 0 2017-11-30 Varsha Rao pablo Accepted
[1/1] iptables: patch to correct linker flag sequence [1/1] iptables: patch to correct linker flag sequence - - - - 0 0 0 2017-11-29 Jay Shah pablo Accepted
tests/py: add test for empty string match tests/py: add test for empty string match - - - - 0 0 0 2017-11-28 Harsha Sharma pablo Accepted
iptables: extensions: Fix MARK target help iptables: extensions: Fix MARK target help - - - - 0 0 0 2017-11-27 Mart Frauenlob Accepted
doc: nft.8 Syslog level is introduced by "level" not "syslog-level" doc: nft.8 Syslog level is introduced by "level" not "syslog-level" - - - - 0 0 0 2017-11-26 Duncan Roe pablo Accepted
[nft,2/2] parser_bison: no need for 'name' token for meters [nft,1/2] parser_bison: dismiss anonymous meters - - - - 0 0 0 2017-11-24 Pablo Neira Ayuso pablo Accepted
[nft,1/2] parser_bison: dismiss anonymous meters [nft,1/2] parser_bison: dismiss anonymous meters 1 - - - 0 0 0 2017-11-24 Pablo Neira Ayuso pablo Accepted
evaluate: print error for null string befort assert statement evaluate: print error for null string befort assert statement - - - - 0 0 0 2017-11-23 Harsha Sharma pablo Accepted
[nft] src: deprecate "flow table" syntax, replace it by "meter" [nft] src: deprecate "flow table" syntax, replace it by "meter" 1 - - - 0 0 0 2017-11-23 Pablo Neira Ayuso pablo Accepted
[nft,2/2] gmputil: turn mpz_printf into mpz_vfprintf to restore --with-mini-gmp [nft,1/2] utils: fix one compilation error with --with-mini-gmp - - - - 0 0 0 2017-11-22 Pablo Neira Ayuso pablo Accepted
[nft,1/2] utils: fix one compilation error with --with-mini-gmp [nft,1/2] utils: fix one compilation error with --with-mini-gmp - - - - 0 0 0 2017-11-22 Pablo Neira Ayuso pablo Accepted
[nft] tests: shell: Prevent lockout in nft-f/0008split_tables_0 [nft] tests: shell: Prevent lockout in nft-f/0008split_tables_0 - - - - 0 0 0 2017-11-21 Phil Sutter pablo Accepted
[nft] libnftables: Ensure output_fp is never NULL [nft] libnftables: Ensure output_fp is never NULL - - - - 0 0 0 2017-11-20 Phil Sutter pablo Accepted
[nf] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0 [nf] netfilter: conntrack: lower timeout to RETRANS seconds if window is 0 1 - - - 0 0 0 2017-11-19 Florian Westphal pablo Accepted
[nft] tests: shell: Add test for IPv4 Mapped IPv6 address. [nft] tests: shell: Add test for IPv4 Mapped IPv6 address. - - - - 0 0 0 2017-11-19 Varsha Rao pablo Accepted
doc: nft.8 document use of -f option to start nft scripts doc: nft.8 document use of -f option to start nft scripts - - - - 0 0 0 2017-11-19 Duncan Roe strlen Accepted
[nft,1/2] Make 'nft export' respect output_fp Review code regarding output_fp - - - - 0 0 0 2017-11-16 Phil Sutter pablo Accepted
[v4] netfilter: conntrack: clamp timeouts to INT_MAX [v4] netfilter: conntrack: clamp timeouts to INT_MAX 1 - - - 0 0 0 2017-11-15 Jay Elliott pablo Accepted
[net-next] netfilter: add ifdef around ctnetlink_proto_size [net-next] netfilter: add ifdef around ctnetlink_proto_size - - - - 0 0 0 2017-11-15 Pablo Neira Ayuso pablo Accepted
[v3] netfilter: conntrack: clamp timeouts to INT_MAX [v3] netfilter: conntrack: clamp timeouts to INT_MAX - - - - 0 0 0 2017-11-15 Jay Elliott pablo Accepted
[nft] libnftables: Split code into frontend and library [nft] libnftables: Split code into frontend and library - - - - 0 0 0 2017-11-14 Phil Sutter pablo Accepted
[nft,v2] src: tests: files: Remove test files. [nft,v2] src: tests: files: Remove test files. - - - - 0 0 0 2017-11-13 Varsha Rao pablo Accepted
[nf-next] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp [nf-next] netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hp 1 - - - 0 0 0 2017-11-13 Gao Feng pablo Accepted
[nft,v3] libnftables: Unexport enum nftables_exit_codes [nft,v3] libnftables: Unexport enum nftables_exit_codes - - - - 0 0 0 2017-11-13 Phil Sutter pablo Accepted
[iptables,v2] libxt_sctp: fix array out of range in print_chunk [iptables,v2] libxt_sctp: fix array out of range in print_chunk - - - - 0 0 0 2017-11-13 Nicolas Dichtel pablo Accepted
[2/2] Extend nf_h323_error_boundary to work on bits as well [1/2] Convert CHECK_BOUND macro to function - - - - 0 0 0 2017-11-13 Eric Sesterhenn pablo Accepted
[1/2] Convert CHECK_BOUND macro to function [1/2] Convert CHECK_BOUND macro to function - - - - 0 0 0 2017-11-13 Eric Sesterhenn pablo Accepted
[nf-next] netfilter: conntrack: timeouts can be const [nf-next] netfilter: conntrack: timeouts can be const - - - - 0 0 0 2017-11-12 Florian Westphal pablo Accepted
[v5,5/5] x_tables: exit_net cleanup check added netfilter: exit_net checks for objects initialized in net_init hook - - - - 0 0 0 2017-11-12 Vasily Averin pablo Accepted
[v5,4/5] nfnetlink_gueue: exit_net cleanup check added netfilter: exit_net checks for objects initialized in net_init hook 1 - - - 0 0 0 2017-11-12 Vasily Averin pablo Accepted
[v5,3/5] nfnetlink_log: exit_net cleanup check added netfilter: exit_net checks for objects initialized in net_init hook 1 - - - 0 0 0 2017-11-12 Vasily Averin pablo Accepted
[v5,2/5] nf_tables: exit_net cleanup check added netfilter: exit_net checks for objects initialized in net_init hook - - - - 0 0 0 2017-11-12 Vasily Averin pablo Accepted
[v5,1/5] clusterip: exit_net cleanup check added netfilter: exit_net checks for objects initialized in net_init hook - - - - 0 0 0 2017-11-12 Vasily Averin pablo Accepted
[nft] Eliminate struct mnl_ctx [nft] Eliminate struct mnl_ctx - - - - 0 0 0 2017-11-10 Phil Sutter pablo Accepted
[nft] libnftables: Flush iface cache after command execution [nft] libnftables: Flush iface cache after command execution - - - - 0 0 0 2017-11-09 Phil Sutter pablo Accepted
[v2] netfilter: mark expected switch fall-throughs [v2] netfilter: mark expected switch fall-throughs - - - - 0 0 0 2017-11-07 Gustavo A. R. Silva pablo Accepted
[net-next] netfilter: add ifdef around ctnetlink_proto_size [net-next] netfilter: add ifdef around ctnetlink_proto_size - - - - 0 0 0 2017-11-07 Arnd Bergmann pablo Accepted
[V2] netfilter: remove redundant assignment to e [V2] netfilter: remove redundant assignment to e - - - - 0 0 0 2017-11-07 Colin Ian King pablo Accepted
[v2,nf-next,3/3] netfilter: conntrack: l4 protocol trackers can be const netfilter: conntrack: make l4 tracker structs const - - - - 0 0 0 2017-11-07 Florian Westphal pablo Accepted
[v2,nf-next,2/3] netfilter: conntrack: constify list of builtin trackers netfilter: conntrack: make l4 tracker structs const - - - - 0 0 0 2017-11-07 Florian Westphal pablo Accepted
[v2,nf-next,1/3] netfilter: conntrack: remove nlattr_size pointer from l4proto trackers netfilter: conntrack: make l4 tracker structs const - - - - 0 0 0 2017-11-07 Florian Westphal pablo Accepted
[23/23] netfilter: nf_tables: get set elements via netlink [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[22/23] netfilter: nf_tables: performance set policy skips size description in selection [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[21/23] netfilter: conntrack: use power efficient workqueue [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[20/23] netfilter: conntrack: move nf_ct_netns_{get,put}() to core [01/23] netfilter: ipset: Compress return logic 1 - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[19/23] netfilter: conntrack: don't cache nlattr_tuple_size result in nla_size [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[18/23] netfilter: nft_hash: fix nft_hash_deactivate [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[17/23] netfilter: xt_connlimit: remove mask argument [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[16/23] netfilter: ebtables: clean up initialization of buf [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[15/23] netfilter: ipvs: Fix inappropriate output of procfs [01/23] netfilter: ipset: Compress return logic 1 - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[14/23] netfilter: ipvs: Use %pS printk format for direct addresses [01/23] netfilter: ipset: Compress return logic 1 - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[13/23] netfilter: nf_ct_h323: Out Of Bound Read in Netfilter Conntrack [01/23] netfilter: ipset: Compress return logic 1 - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[12/23] netfilter: xt_connlimit: don't store address in the conn nodes [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
[11/23] netfilter: nf_conntrack_h323: Remove typedef struct [01/23] netfilter: ipset: Compress return logic - - - - 0 0 0 2017-11-07 Pablo Neira Ayuso pablo Accepted
« 1 2 ... 7 8 9143 144 »