Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 87 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
patrick_delaunay
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
phil
mkresin
mkresin
thess
thess
fbarrat
fbarrat
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
bhelgaas
blogic
blogic
pchotard
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pepe2k
pepe2k
tagr
tagr
arj
arj
davem
davem
davem
jforissier
andmur01
amitay
matttbe
pabeni
istokes
aparcar
martineau
Ansuel
danielschwierzeck
maddy
goliath
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
tpetazzoni
marex
mkorpershoek
khem
XiaoYang
mmichelson
robimarko
apritzel
danielhb
groug
npiggin
liwang
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
bpf
shettyg
lorpie01
acelan
wigyori
wigyori
pm215
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
blocktrron
monstr
vigneshr
mraynal
shemminger
chunkeey
stewart
stewart
kabel
xypron
Jaehoon
ivanhu
rfried
wsa
ehristev
freenix
akumar
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
horms
kevery
sjg
jagan
arbab
ag
rmilecki
rmilecki
ukleinek
ukleinek
bmeng
metan
prom
jacmet
pablo
pablo
trini
wbx
apconole
legoater
legoater
legoater
chleroy
svanheule
rw
rw
juju
abelloni
bjonglez
sbabic
sbabic
ynezz
xback
xback
pevik
richiejp
dangole
dangole
jonhunter
aik
Hauke
Hauke
forty
anuppatel
anuppatel
amusil
next_ghost
acer
echaudron
benh
rgrimm
segher
passgat
pratyush
jms
jms
jms
jmberg
mans0n
ruscur
ymorin
festevam
jk
jk
jk
jk
numans
Andes
xuyang
linusw
linusw
tambarus
conchuod
kubu
matthias_bgg
tytso
ltpci
krzk
spectrum
stroese
imaximets
pbrobinson
dceara
strlen
strlen
apalos
neocturne
cazzacarna
aldot
TIENFONG
mpe
galak
sfr
arnout
ktraynor
robh
nbd
nbd
kcxt
anguy11
paulus
jm
mwilczynski
hs
Apply
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[nftables] include: fix for musl with iptables v1.8.11
[nftables] include: fix for musl with iptables v1.8.11
- - - -
-
-
-
2024-12-19
Alyssa Ross
New
[v17,nf-next,4/4] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-11-09
Eric Woudstra
New
[v17,nf-next,3/4] netfilter: nft_set_pktinfo_ipv4/6_validate: Add nhoff argument
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-11-09
Eric Woudstra
New
[v17,nf-next,2/4] netfilter: bridge: Add conntrack double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-11-09
Eric Woudstra
New
[v17,nf-next,1/4] netfilter: utils: nf_checksum(_partial) correct data!=networkheader
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-11-09
Eric Woudstra
New
[v4,nf-next] selftests: netfilter: Add bridge_fastpath.sh
[v4,nf-next] selftests: netfilter: Add bridge_fastpath.sh
- - - -
-
-
-
2025-11-04
Eric Woudstra
New
[v4,nf-next,2/2] netfilter: nf_flow_table_core: teardown direct xmit when destination changed
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-09-25
Eric Woudstra
New
[v4,nf-next,1/2] netfilter: flow: Add bridge_vid member
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-09-25
Eric Woudstra
New
[nft,v3] src: add connlimit stateful object support
[nft,v3] src: add connlimit stateful object support
- - 1 -
-
-
-
2025-11-24
Fernando Fernandez Mancera
New
[libnftnl] src: add connlimit stateful object support
[libnftnl] src: add connlimit stateful object support
- - - -
-
-
-
2025-11-04
Fernando Fernandez Mancera
New
[nf-next,v2] netfilter: nf_tables: add math expression support
[nf-next,v2] netfilter: nf_tables: add math expression support
- - - -
-
-
-
2025-11-03
Fernando Fernandez Mancera
New
[libnftnl,v2] expr: add support to math expression
[libnftnl,v2] expr: add support to math expression
- - - -
-
-
-
2025-11-03
Fernando Fernandez Mancera
New
[net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types
[net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types
- - - -
-
-
-
2026-01-22
Florian Westphal
New
[net-next,0/4] netfilter: updates for net-next
- - - -
-
-
-
2026-01-22
Florian Westphal
New
Global buffer overflow in parse_ip6_mask()
Global buffer overflow in parse_ip6_mask()
- - - -
-
-
-
2025-12-18
Ilia Kashintsev
New
[nft,v5,8/8] tests: add tests for binops with variable RHS operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nf-next,v4,5/5] selftests: netfilter: nft_flowtable.sh: Add IP6IP6 flowtable selftest
Add IP6IP6 flowtable SW acceleration
- - - -
-
-
-
2026-01-22
Lorenzo Bianconi
New
[nf-next,v4,4/5] netfilter: flowtable: Add IP6IP6 tx sw acceleration
Add IP6IP6 flowtable SW acceleration
- - - -
-
-
-
2026-01-22
Lorenzo Bianconi
New
[nf-next,v4,3/5] netfilter: flowtable: Add IP6IP6 rx sw acceleration
Add IP6IP6 flowtable SW acceleration
- - - -
-
-
-
2026-01-22
Lorenzo Bianconi
New
[nf-next,v4,2/5] netfilter: Introduce tunnel metadata info in nf_flowtable_ctx struct
Add IP6IP6 flowtable SW acceleration
- - - -
-
-
-
2026-01-22
Lorenzo Bianconi
New
[nf-next,v4,1/5] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto …
Add IP6IP6 flowtable SW acceleration
- - - -
-
-
-
2026-01-22
Lorenzo Bianconi
New
ipset: Modify pernet_operations check
ipset: Modify pernet_operations check
- - - -
-
-
-
2025-05-23
Mike Pagano
kadlec
New
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
[v3] selftests: netfilter: add nfnetlink ACK handling tests
[v3] selftests: netfilter: add nfnetlink ACK handling tests
- - - -
-
-
-
2025-10-05
Nikolaos Gkarlis
New
[v2,1/2] netfilter: nfnetlink: always ACK batch end if requested
always ACK batch end if requested
- 1 - -
-
-
-
2025-10-04
Nikolaos Gkarlis
Under Review
[nf-next,v2,4/4] netfilter: nft_set_rbtree: remove seqcount_rwlock_t
convert rbtree to binary search array
- - - -
-
-
-
2026-01-21
Pablo Neira Ayuso
Under Review
[nf-next,v2,3/4] netfilter: nft_set_rbtree: use binary search array in get command
convert rbtree to binary search array
- - - -
-
-
-
2026-01-21
Pablo Neira Ayuso
Under Review
[nf-next,v2,2/4] netfilter: nft_set_rbtree: translate rbtree to array for binary search
convert rbtree to binary search array
- - - -
-
-
-
2026-01-21
Pablo Neira Ayuso
Under Review
[nf-next,v2,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types
convert rbtree to binary search array
- - - -
-
-
-
2026-01-21
Pablo Neira Ayuso
Under Review
[nf-next,2/2] netfilter: nfnetlink: bail out batch processing with EMLINK
[nf-next,1/2] netfilter: nf_tables: skip register jump/goto validation for non-base chain
- 1 - -
-
-
-
2025-11-18
Pablo Neira Ayuso
New
[nf-next,v1,2/2] selftests: netfilter: add test for nf_tables_jumps_max_netns sysctl
[nf-next,1/2] netfilter: nf_tables: limit maximum number of jumps/gotos per netns
- - - -
-
-
-
2025-11-03
Pablo Neira Ayuso
New
[nf-next,1/2] netfilter: nf_tables: limit maximum number of jumps/gotos per netns
[nf-next,1/2] netfilter: nf_tables: limit maximum number of jumps/gotos per netns
- - - -
-
-
-
2025-11-03
Pablo Neira Ayuso
New
[nft,7/7] src: move flags from EXPR_SET_ELEM to key
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,6/7] segtree: rename set_elem_add() to set_elem_expr_add()
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,5/7] evaluate: clean up expr_evaluate_set()
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,4/7] evaluate: simplify sets as set elems evaluation
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,3/7] src: assert on EXPR_SET only contains EXPR_SET_ELEM in the expressions list
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,2/7] src: allocate EXPR_SET_ELEM for EXPR_SET in embedded set declaration in sets
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nft,1/7] src: normalize set element with EXPR_MAPPING
prepare for EXPR_SET_ELEM removal
- - - -
-
-
-
2025-09-05
Pablo Neira Ayuso
New
[nf-next,v2,4/4] netfilter: nf_tables: add support for validating incremental ruleset updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,3/4] netfilter: nf_tables: use new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/4] netfilter: nf_tables: add new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/2] netfilter: nf_tables: honor validation state in preparation phase
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
- 1 1 -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
1 1 - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
- 1 - -
-
-
-
2025-02-20
Pablo Neira Ayuso
New
[nft] datatype: Accept IPv4 addresses for ip6addr_type
[nft] datatype: Accept IPv4 addresses for ip6addr_type
- - - -
-
-
-
2025-12-10
Phil Sutter
New
[nft,v2] src: Convert ip {s,d}addr to IPv4-mapped as needed
[nft,v2] src: Convert ip {s,d}addr to IPv4-mapped as needed
- - - -
-
-
-
2025-12-10
Phil Sutter
New
[nft,v2,11/11] utils: Introduce expr_print_debug()
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,10/11] tests: py: Update payload records
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,09/11] tests: py: tools: Add regen_payloads.sh
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,08/11] netlink: Make use of nftnl_{expr,set_elem}_set_imm()
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,07/11] netlink: Introduce struct nft_data_linearize::sizes
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,06/11] netlink: Introduce struct nft_data_linearize::byteorder
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,05/11] expression: Set range expression 'len' field
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,04/11] intervals: Convert byte order implicitly
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,03/11] mergesort: Align concatenation sort order with Big Endian
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,02/11] mergesort: Fix sorting of string values
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
New
[nft,v2,01/11] segtree: Fix range aggregation on Big Endian
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
New
[libnftnl,9/9] udata: Store u32 udata values in Big Endian
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,8/9] data_reg: Support concatenated data
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,7/9] data_reg: Respect data byteorder when printing
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,6/9] Introduce nftnl_{expr,set_elem}_set_imm()
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,5/9] data_reg: Introduce struct nftnl_data_reg::sizes array
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,4/9] data_reg: Introduce struct nftnl_data_reg::byteorder field
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,3/9] expr: Pass byteorder to struct expr_ops::set callback
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,2/9] expr: data_reg: Avoid extra whitespace
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[libnftnl,1/9] set_elem: Review debug output
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
New
[ipset] tests: Fix for standalone calls to setlist_resize.sh
[ipset] tests: Fix for standalone calls to setlist_resize.sh
- 1 - -
-
-
-
2025-07-22
Phil Sutter
kadlec
Under Review
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
- - - -
-
-
-
2024-03-11
Quan Tian
New
[v6,6/6] doc/netlink: nftables: Fill out operation attributes
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
[v6,5/6] doc/netlink: nftables: Add getcompat operation
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
[v6,4/6] doc/netlink: nftables: Add sub-messages
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
[v6,3/6] doc/netlink: nftables: Update attribute sets
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
[v6,2/6] doc/netlink: nftables: Add definitions
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
[v6,1/6] doc/netlink: netlink-raw: Add max check
doc/netlink: Expand nftables specification
- - - -
-
-
-
2026-01-21
Remy D. Farley
New
Some common changes in ulogs: 1) Added debug log to indicate when stack is created. Helps to debug …
Some common changes in ulogs: 1) Added debug log to indicate when stack is created. Helps to debug …
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
Update nlog plufin to provide more information to other ones
Update nlog plufin to provide more information to other ones
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
Added netfilter output plugin with ability to write into pcap nflog packets
Added netfilter output plugin with ability to write into pcap nflog packets
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- - - -
-
-
-
2025-04-15
lvxiafei
Under Review
[v4] net/bridge: Optimizing read-write locks in ebtables.c
[v4] net/bridge: Optimizing read-write locks in ebtables.c
- - - -
-
-
-
2024-09-25
yushengjin
New