Show patches with: State = Action Required       |   151 patches
« 1 2 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf-next,v2,3/3] selftests: netfilter: flowtable vlan filtering bridge support [nf-next,v2,1/3] nf_flow_table_offload: offload the vlan encap in the flowtable - - - - --- 2022-05-26 wenxu@chinatelecom.cn pablo Under Review
Incorrect dependency handling with delayed ipset destroy ipset 7.21 Incorrect dependency handling with delayed ipset destroy ipset 7.21 - - - - --- 2024-04-13 keltargw New
conntrackd: Fix signal handler race-condition conntrackd: Fix signal handler race-condition - - - - --- 2024-04-04 bre Breitenberger Markus New
[nft,1/2] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() netfilter: nf_tables: Use rcu lock to enhance protection of the lists - 1 - - --- 2024-04-07 Ziyang Xuan New
[nft,2/2] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get() netfilter: nf_tables: Use rcu lock to enhance protection of the lists - 1 - - --- 2024-04-07 Ziyang Xuan New
[net-next] netfilter: nft_chain_filter: remove redundant code in nf_tables_netdev_event [net-next] netfilter: nft_chain_filter: remove redundant code in nf_tables_netdev_event - - - - --- 2024-04-14 Zhengchao Shao New
[net-next] selftests: fix netfilter path in Makefile [net-next] selftests: fix netfilter path in Makefile - - - - --- 2024-04-16 Yujie Liu New
[ulogd] log NAT events using IPFIX [ulogd] log NAT events using IPFIX - - - - --- 2023-12-10 Tomasz Pala New
[nft,1/5] datatype: make "flags" field of datatype struct simple booleans more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,2/5] datatype: don't clone static name/desc strings for datatype more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,4/5] datatype: extend set_datatype_alloc() to change size more various cleanups related to struct datatype - - - - --- 2023-09-27 Thomas Haller New
[nft,v2,1/5] build: add basic "check-{local,more,all}" and "build-all" make targets add infrastructure for unit tests - - - - --- 2023-11-05 Thomas Haller New
[nft,v2,2/5] build: add `make check-build` to run `./tests/build/run-tests.sh` add infrastructure for unit tests - - - - --- 2023-11-05 Thomas Haller New
[nft,v2,3/5] build: add `make check-tree` to check consistency of source tree add infrastructure for unit tests - - - - --- 2023-11-05 Thomas Haller New
[nft,v2,4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am" add infrastructure for unit tests - - - - --- 2023-11-05 Thomas Haller New
[nft,v2,5/5] tests/unit: add unit tests for libnftables add infrastructure for unit tests - - - - --- 2023-11-05 Thomas Haller New
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines Untitled series #385629 - - - - --- 2023-12-07 Thomas Haller New
[1/1] tests: use common shebang in "packetpath/flowtables" test [1/1] tests: use common shebang in "packetpath/flowtables" test - - - - --- 2024-02-09 Thomas Haller New
iptables-nft: Wrong payload merge of rule filter - "! --sport xx ! --dport xx" iptables-nft: Wrong payload merge of rule filter - "! --sport xx ! --dport xx" 1 - - - --- 2024-03-08 Sriram Rajagopalan New
[nft,v3] dynset: avoid errouneous assert with ipv6 concat data [nft,v3] dynset: avoid errouneous assert with ipv6 concat data - - - - --- 2024-04-09 Son Dinh New
[nft,v2] expr: make map lookup expression as an argument in vmap statement [nft,v2] expr: make map lookup expression as an argument in vmap statement - - - - --- 2024-04-10 Son Dinh New
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table [v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table - - - - --- 2024-03-11 Quan Tian New
[v3,nf-next,2/2] netfilter: nf_tables: support updating userdata for nft_table [v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table - - - - --- 2024-03-11 Quan Tian New
[nf] netfilter: nf_tables: fix consistent table updates being rejected [nf] netfilter: nf_tables: fix consistent table updates being rejected - 1 - - --- 2024-03-13 Quan Tian New
[nf] netfilter: nf_tables: do not reject dormant flag update for table with owner [nf] netfilter: nf_tables: do not reject dormant flag update for table with owner - 1 - - --- 2024-03-15 Quan Tian New
[nft,v3] Add support for table's persist flag [nft,v3] Add support for table's persist flag - - - - --- 2024-04-12 Phil Sutter New
[libnftnl] expr: limit: Prepare for odd time units [libnftnl] expr: limit: Prepare for odd time units - - - - --- 2024-04-13 Phil Sutter New
[nft] limit: Support arbitrary unit values [nft] limit: Support arbitrary unit values - - - - --- 2024-04-13 Phil Sutter New
[nf-next] netfilter: nf_tables: skip transaction if update object is not implemented [nf-next] netfilter: nf_tables: skip transaction if update object is not implemented - - - - --- 2024-03-05 Pablo Neira Ayuso New
[nf-next] netfilter: nf_tables: remove NETDEV_CHANGENAME from netdev chain event handler [nf-next] netfilter: nf_tables: remove NETDEV_CHANGENAME from netdev chain event handler - - - - --- 2024-03-05 Pablo Neira Ayuso New
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown [nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown - 1 - - --- 2024-03-20 Pablo Neira Ayuso New
[nf,2/2] netfilter: flowtable: use UDP timeout after flow teardown [nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown - 1 - - --- 2024-03-20 Pablo Neira Ayuso New
[nft] netlink_delinearize: unused code in reverse cross-day meta hour range [nft] netlink_delinearize: unused code in reverse cross-day meta hour range - 1 - - --- 2024-04-01 Pablo Neira Ayuso New
[nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets [nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets - 1 - - --- 2024-04-09 Pablo Neira Ayuso New
[nf] netfilter: nft_set_pipapo: walk over current view on netlink dump [nf] netfilter: nft_set_pipapo: walk over current view on netlink dump - 1 - - --- 2024-04-10 Pablo Neira Ayuso New
[nf,v3] netfilter: flowtable: validate pppoe header [nf,v3] netfilter: flowtable: validate pppoe header - 1 - - --- 2024-04-10 Pablo Neira Ayuso New
[nf] netfilter: flowtable: incorrect pppoe tuple in reply direction [nf] netfilter: flowtable: incorrect pppoe tuple in reply direction - 1 - - --- 2024-04-10 Pablo Neira Ayuso New
[nf,v2] netfilter: flowtable: incorrect pppoe tuple [nf,v2] netfilter: flowtable: incorrect pppoe tuple - 1 - - --- 2024-04-10 Pablo Neira Ayuso New
[net,0/7] Netfilter fixes for net - - - - --- 2024-04-11 Pablo Neira Ayuso New
[net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net,2/7] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get() [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net,3/7] netfilter: br_netfilter: skip conntrack input hook for promisc packets [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net,4/7] netfilter: nft_set_pipapo: walk over current view on netlink dump [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net,5/7] netfilter: nft_set_pipapo: do not free live element [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 1 - --- 2024-04-11 Pablo Neira Ayuso New
[net,6/7] netfilter: flowtable: validate pppoe header [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net,7/7] netfilter: flowtable: incorrect pppoe tuple [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - 1 - - --- 2024-04-11 Pablo Neira Ayuso New
[net] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery [net] netfilter: conntrack: fix ct-state for ICMPv6 Multicast Router Discovery - 1 - - --- 2024-03-06 Linus Lüssing New
[v3,0/4] sysctl: Remove sentinel elements from networking - - - - --- 2024-04-12 Joel Granados via B4 Relay New
[v3,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array [v3,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-04-12 Joel Granados via B4 Relay New
[v3,2/4] netfilter: Remove the now superfluous sentinel elements from ctl_table array [v3,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-04-12 Joel Granados via B4 Relay New
[v3,3/4] appletalk: Remove the now superfluous sentinel elements from ctl_table array [v3,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-04-12 Joel Granados via B4 Relay New
[v3,4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array [v3,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - 1 - --- 2024-04-12 Joel Granados via B4 Relay New
[nf-next,v4,1/2] netfilter: bitwise: rename some boolean operation functions netfilter: bitwise: support boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nf-next,v4,2/2] netfilter: bitwise: add support for doing AND, OR and XOR directly netfilter: bitwise: support boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[libnftnl,v3,1/5] include: add new bitwise boolean attributes to nf_tables.h bitwise: support for boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[libnftnl,v3,2/5] expr: bitwise: rename some boolean operation functions bitwise: support for boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[libnftnl,v3,3/5] expr: bitwise: add support for kernel space AND, OR and XOR operations bitwise: support for boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[libnftnl,v3,4/5] tests: bitwise: refactor shift tests bitwise: support for boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[libnftnl,v3,5/5] tests: bitwise: add tests for new boolean operations bitwise: support for boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,1/8] netlink: support (de)linearization of new bitwise boolean operations Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,6/8] evaluate: allow binop expressions with variable right-hand operands Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nft,v5,8/8] tests: add tests for binops with variable RHS operands Bitwise boolean operations with variable RHS operands - - - - --- 2023-05-28 Jeremy Sowden Under Review
[nftables] evaluate: add support for variables in map expressions [nftables] evaluate: add support for variables in map expressions - - - - --- 2024-03-24 Jeremy Sowden New
[net-next] netfilter: conntrack: avoid sending RST to reply out-of-window skb [net-next] netfilter: conntrack: avoid sending RST to reply out-of-window skb - - - - --- 2024-03-07 Jason Xing New
[net-next] netfilter: conntrack: using NF_DROP in test statement in nf_conntrack_in() [net-next] netfilter: conntrack: using NF_DROP in test statement in nf_conntrack_in() - - - - --- 2024-03-08 Jason Xing New
[nf-next,v2] netfilter: conntrack: avoid sending RST to reply out-of-window skb [nf-next,v2] netfilter: conntrack: avoid sending RST to reply out-of-window skb 1 - - - --- 2024-03-11 Jason Xing New
[RESEND,net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack [RESEND,net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack - - - - --- 2024-03-25 Jason Xing New
[net-next,v2] netfilter: use NF_DROP instead of -NF_DROP [net-next,v2] netfilter: use NF_DROP instead of -NF_DROP - - - - --- 2024-03-25 Jason Xing New
Bug in ulogd2 when destroying a stack that failed to start (with fix attached) Bug in ulogd2 when destroying a stack that failed to start (with fix attached) - - - - --- 2023-12-14 Gérald Colangelo New
ulogd / JSON output / enhancement proposal ulogd / JSON output / enhancement proposal - - - - --- 2023-12-14 Gérald Colangelo New
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer [v3,nft] support for afl++ (american fuzzy lop++) fuzzer - - - - --- 2023-12-19 Florian Westphal New
[nft] rule: do not crash if to-be-printed flowtable lacks priority [nft] rule: do not crash if to-be-printed flowtable lacks priority - - - - --- 2024-01-12 Florian Westphal New
[nf-next] netfilter: nft_byteorder: remove multi-register support [nf-next] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2024-02-14 Florian Westphal New
[nft] tests: packetpath: add check for drop policy [nft] tests: packetpath: add check for drop policy - - - - --- 2024-04-03 Florian Westphal New
[v2,nf] netfilter: nft_set_pipapo: do not free live element [v2,nf] netfilter: nft_set_pipapo: do not free live element - 1 1 - --- 2024-04-10 Florian Westphal New
[net-next,01/15] selftests: netfilter: move to net subdir selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,02/15] selftests: netfilter: bridge_brouter.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,03/15] selftests: netfilter: br_netfilter.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,04/15] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,05/15] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,06/15] selftests: netfilter: conntrack_sctp_collision.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,07/15] selftests: netfilter: conntrack_vrf.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,08/15] selftests: netfilter: conntrack_ipip_mtu.sh" move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,09/15] selftests: netfilter: place checktool helper in lib.sh selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,10/15] selftests: netfilter: ipvs.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,11/15] selftests: netfilter: nf_nat_edemux.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,12/15] selftests: netfilter: nft_conntrack_helper.sh: test to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,13/15] selftests: netfilter: nft_fib.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,14/15] selftests: netfilter: nft_flowtable.sh: move test to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,15/15] selftests: netfilter: nft_nat.sh: move to lib.sh infra selftests: move netfilter tests to net - - - - --- 2024-04-11 Florian Westphal New
[net-next,01/12] selftests: netfilter: conntrack_icmp_related.sh: move to lib.sh infra selftests: netfilter: move to lib.sh infra - - - - --- 2024-04-14 Florian Westphal New
[net-next,02/12] selftests: netfilter: conntrack_tcp_unreplied.sh: move to lib.sh infra selftests: netfilter: move to lib.sh infra - - - - --- 2024-04-14 Florian Westphal New
[net-next,03/12] selftests: netfilter: nft_queue.sh: move to lib.sh infra selftests: netfilter: move to lib.sh infra - - - - --- 2024-04-14 Florian Westphal New
[net-next,04/12] selftests: netfilter: nft_synproxy.sh: move to lib.sh infra selftests: netfilter: move to lib.sh infra - - - - --- 2024-04-14 Florian Westphal New
« 1 2 »